Quidway SVN3000 Security Access Gateway



Similar documents
SVN3000 Security Access Gateway SSL/IPSec VPN Access Gateway

Eudemon1000E Series Firewall HUAWEI TECHNOLOGIES CO., LTD.

Eudemon8000 High-End Security Gateway HUAWEI TECHNOLOGIES CO., LTD.

Huawei Remote Access Security Solution for Enterprise Networks. -Secure and Stable Platforms for Network Interconnection and Data Interaction

Introduction of Quidway SecPath 1000 Security Gateway

SVN5800 Secure Access Gateway

Log Audit Ensuring Behavior Compliance Secoway elog System

Product Overview. Product Family. Product Features. Powerful intrusion detection and monitoring capacity

PT Mbps Powerline Adapter. User Guide

Intranet Security Solution

HP IMC Firewall Manager

HP A-IMC Firewall Manager

Huawei Eudemon1000E-X series Firewall. Eudemon 1000E-X Series Firewall. Huawei Technologies Co., Ltd.

Mobile Admin Architecture

HUAWEI USG6000 Next-Generation Firewall V100R001. Product Description. Issue 01. Date HUAWEI TECHNOLOGIES CO., LTD.

Professional Integrated SSL-VPN Appliance for Small and Medium-sized businesses

DATA SECURITY 1/12. Copyright Nokia Corporation All rights reserved. Ver. 1.0

United Security Technology White Paper

Implementing and Administering Security in a Microsoft Windows Server 2003 Network

SSL-TLS VPN 3.0 Certification Report. For: Array Networks, Inc.

DS SERIES SOLUTIONS ALL AT ONCE

Optimal Network Connectivity Reliable Network Access Flexible Network Management

Executive Summary and Purpose

Table of Contents. 1 Overview 1-1 Introduction 1-1 Product Design 1-1 Appearance 1-2

INTEGRATION GUIDE. DIGIPASS Authentication for Cisco ASA 5505

CA Performance Center

Huawei Agile WAN Solution

BIMS - Branch Intelligent Management System

Huawei esight Brief Product Brochure

QuickSpecs. Models. Features and benefits Application highlights. HP 7500 SSL VPN Module with 500-user License

MOBILITY & INTERCONNECTIVITY. Features SECURITY OF INFORMATION TECHNOLOGIES

Cyberoam Configuration Guide for VPNC Interoperability Testing using DES Encryption Algorithm

HUAWEI Tecal E6000 Blade Server

Defender 5.7. Remote Access User Guide

Chapter 6 Configuring the SSL VPN Tunnel Client and Port Forwarding

Dell One Identity Cloud Access Manager How To Deploy Cloud Access Manager in a Virtual Private Cloud

Secospace elog. Secospace elog

HUAWEI 9000 HD Video Endpoint V100R011. Security Maintenance. Issue 02. Date HUAWEI TECHNOLOGIES CO., LTD.

External Authentication with Cisco VPN 3000 Concentrator Authenticating Users Using SecurAccess Server by SecurEnvoy

HUAWEI TECHNOLOGIES CO., LTD. Huawei IDS2000-S Small Modular Data Center Solution

Eudemon8000E Anti-DDoS SPU

Radius Integration Guide Version 9

Technical White Paper for Multi-Layer Network Planning

How To Connect Checkpoint To Gemalto Sa Server With A Checkpoint Vpn And Connect To A Check Point Wifi With A Cell Phone Or Ipvvv On A Pc Or Ipa (For A Pbv) On A Micro

Nokia Mobile VPN How to configure Nokia Mobile VPN for Cisco ASA with PSK/xAuth authentication

Total solution for your network security. Provide policy-based firewall on scheduled time. Prevent many known DoS and DDoS attack

Security. Contents. S Wireless Personal, Local, Metropolitan, and Wide Area Networks 1

Huawei Business Continuity and Disaster Recovery Solution

Secure Access Gateway 3000er Serie

SSL VPN Technical Primer

MPLS L2VPN (VLL) Technology White Paper

McAfee Firewall Enterprise 8.3.1

Remote Access Platform. Architecture and Security Overview

SafeNet Authentication Service

Quidway AR 18-1X Series Router Datasheet

Using Self Certified SSL Certificates. Paul Fisher. Quest Software. Systems Consultant. Desktop Virtualisation Group

Release Notes for Version

visionapp Remote Desktop 2010 (vrd 2010)

SSL VPN Technology White Paper

ActivIdentity 4TRESS AAA Web Tokens and SSL VPN Fortinet Secure Access. Integration Handbook

Sophos UTM. Remote Access via PPTP. Configuring UTM and Client

Using Innominate mguard over BGAN

IPSec or SSL VPN? Copyright 2004 Juniper Networks, Inc. 1

Tel: Toll-Free: Fax: Oct Website: CAIL Security Facility

Requirements Collax Security Gateway Collax Business Server or Collax Platform Server including Collax SSL VPN module

VPN. Date: 4/15/2004 By: Heena Patel

McAfee Firewall Enterprise 8.2.1

CA Single Sign-On r12.x (CA SiteMinder) Implementation Proven Professional Exam

Netop Remote Control Security Server

Cisco RV082 Dual WAN VPN Router Cisco Small Business Routers

Secured Voice over VPN Tunnel and QoS. Feature Paper

Deploying Cisco ASA VPN Solutions Exam.

Eudemon8000E Series 10-Gigabits IPS security gateway

SSL VPN vs. IPSec VPN

How To Create A Network Access Control (Nac) Solution

Secure Remote Monitoring of the Critical System Infrastructure. An Application Note from the Experts in Business-Critical Continuity

Deployment Options for Microsoft Hyper-V Server

Cisco ASA. Administrators

Gigabit SSL VPN Security Router

USG6600 Next-Generation Firewall

DS Series Solutions Integrated Solutions for Secure, Centralized Data Center Management

CA Unified Infrastructure Management Server

HUAWEI HG256s. Home Gateway Quick Start

Scenario: IPsec Remote-Access VPN Configuration

Introduction. Technology background

Using Entrust certificates with VPN

RSA Authentication Manager 7.1 Security Best Practices Guide. Version 2

QLIKVIEW MOBILE SECURITY

Network Security Firewall

Evaluating the Cisco ASA Adaptive Security Appliance VPN Subsystem Architecture

Remote Firewall Deployment

Accessing BlackBerry Data Services Using Wi-Fi Networks

HG658c Home Gateway. User Guide HUAWEI TECHNOLOGIES CO., LTD.

Brocade Monitoring Services Security White Paper

QoS VPN Router.

Configuring GTA Firewalls for Remote Access

Ports Reference Guide for Cisco Virtualization Experience Media Engine for SUSE Linux Release 9.0

HUAWEI HG533 Home Gateway. User Guide HUAWEI TECHNOLOGIES CO., LTD.

Transcription:

Quidway SVN3000 Security Access Gateway SSL/IPSec VPN Access Gateway HUAWEI TECHNOLOGIES CO., LTD.

Product Overview With the rapid development and popularization of the Internet, informatization of enterprise Internets is increasingly improved and Internets have to meet the ever-growing demands for remote access. How to realize the security access to the Intranet IT information system becomes a critical problem for enterprise IT departments to further improve the IT efficiency. For example, the enterprise branches, personnel on business trip, Small Office Home Office (SOHO) personnel, partners, and customers need to obtain important information in time. To solve the previous problems, Huawei launches the SVN3000, which is a Secure Socket Layer (SSL)/ IP Security Protocol (IPSec) Virtual Private Network (VPN) security access gateway of large capacity and high reliability. Through the SSL VPN function, the SVN3000 provides the secure, easy-to-use, and easy-to-manage remote access for terminals, such as the personnel on business trip, SOHO personnel, partners, and customers. The SVN3000 supports the IPSec function and low-cost remote interconnections among branches. The SVN3000 is based on professional and highly reliable hardware platform and dedicated real-time operation system of Huawei. It provides outstanding system security and reliability and is the best solution for the enterprise VPN network construction. Product Series SVN3000 Product Features Superior SSL/IPSec VPN gateway The SVN3000 deeply integrates VPN technologies and functions, such as the SSL VPN, IPSec VPN and Authentication, Authorization, and Accounting (AAA). Combing their advantages and features, the SVN3000 provides excellent security access solution for the IP VNP networking. The SVN3000 supports the standard Web browser that the remote access terminal adopts. The security access to the Intranet resources can be realized with no installation of customer software. It supports the powerful authentication and fine-granularity control on

authorized access to Intranet resources. It provides encryption and decryption algorithms, such as the Data Encryption Standard (DES), 3DES, and Advanced Encryption Standard (AES). All these provide a hierarchical end-to-end secure protection for remote access. Advanced service support capability The SVN3000 provides the comprehensive remote access function for the intranet applications. It supports the remote terminals implementing the instant application access based on the Web interface. It also supports the application access, such as the Web server security access, file sharing access, Notes, Exchange, File Transfer Protocol (FTP), Oracle, Telnet, Secure Shell (SSH), Reliable Data Protocol (RDP), and Virtual Network Computing (VNC). The abundant service application supports bring unprecedented scalability to enterprise applications. For the fast development of new service applications in the future, the SNV3000 supports the VPN Tunnel mode to realize the supporting capability for all service access. Supporting comprehensive authentication modes The SVN3000 supports the authentication and authorization modes based on user names besides the common authentication modes and external authorization platforms such as Remote Authentication Dial in User Service (RADIUS), Lightweight Directory Access Protocol (LDAP), SecurID, AD,X.509, and USBKey + digital certificate. The diversified authentication and authorization help the administrator configure and manage access users in a centralized way, which dramatically decreases the support cost and maintenance cost. Moreover, the SVN3000 provides system logs, administrator logs, and user access logs. It supports viewing logs in categories and exporting logs in real time. This helps the administrator to perform external analysis and audit for logs. Providing convenient deployment and management For SSL VPN services, the SVN3000 provides abundant and easyto-use WebUI management interface in both Chinese and English. Through the Web management interface, the administrator completes related SSL VPN user configuration and resource configuration, which supports the real-time monitoring and management. As a professional security access gateway, the SVN3000 supports the command line management and Simple Network Management Protocol (SNMP). Supporting the virtual gateway technology The SVN3000 supports the advanced virtual gateway technology. Multiple SSL VPN systems are realized on one set of devices through the virtual gateway technology. Each of these virtual systems has its own administrator, user options, and configuration options, which prevents different systems from communication with each other. The virtual gateway technology brings unprecedented scalability to the devices. It is the core technology for enterprises and carriers to further improve the security and provide secure services, which brings higher return on investment to enterprises and carriers. One single SVN3000 provides up to 128 virtual SSL VPN gateways. Highly reliable security access gateway By adopting the Huawei proprietary highly reliable hardware platform, dedicated real-time operating system, and professional Versatile

Routing Platform (VRP), the SVN3000 security access gateway is able to deliver better performance and higher system security than the traditional VPN service platform that is based on the universal system. The SVN3000 provides the standard dual power supply configuration and supports the hot backup networking. It is the best choice for constructing a highly reliable VPN service network. Typical Networking Servers Headquarter LDAP & Radius & CA Intranet 3000 3000 SVN3000 Network Manager IPSEC VPN SSL VPN Internet Branch SVN3000/USG/Eudemon Branch SVN3000/USG/Eudemon Mobile Office Typical network topology of the SVN3000

Product Specifications Item SVN3000 Fixed interface Three mutually exclusive 10/100/1000 M optical/electrical interfaces, one console interface Expansion slot 2 Reliability Dual power supply, dual-system hot backup Management mode Command line, Web configuration, and SNMP Dimensions (mm) (W D H) 436 420 44.45 Weight 6.0kg Max. power 60W AC: 100 to 240V 50/60 Hz Power supply DC: -48 to 60V Mean time between failures (MTBF) 12.67 years Standard and protocol SSLv2.0, SSLv3.0, TLSv1.0, and others

NO WARRANTY THE CONTENTS OF THIS BROCHURE ARE PROVIDED AS IS. EXCEPT AS REQUIRED BY APPLICABLE LAWS, NO WARRANTIES OF ANY KIND, EITHER EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE, ARE MADE IN RELATION TO THE ACCURACY, RELIABILITY OR CONTENTS OF THIS MANUAL. TO THE MAXIMUM EXTENT PERMITTED BY APPLICABLE LAW, IN NO CASE SHALL HUAWEI TECHNOLOGIES CO., LTD BE LIABLE FOR ANY SPECIAL, INCIDENTAL, INDIRECT, OR CONSEQUENTIAL DAMAGES, OR LOST PROFITS, BUSINESS, REVENUE, DATA, GOODWILL OR ANTICIPATED SAVINGS. Copyright Huawei Technologies Co., Ltd. 2009. All Rights Reserved. The information contained in this document is for reference purpose only, and is subject to change or withdrawal according to specific customer requirements and conditions. HUAWEI TECHNOLOGIES CO., LTD. Add: Huawei Industrial Base Bantian Longgang Shenzhen 518129, P.R. China Tel: +86-755-28780808 Version No.: M3-080030-20090416-C-1.0 www.huawei.com