+ All Categories
Home > Documents > Net-Gateway nTMG Business Security Series Threat Management

Net-Gateway nTMG Business Security Series Threat Management

Date post: 03-Feb-2022
Category:
Upload: others
View: 4 times
Download: 0 times
Share this document with a friend
4
7 6 5 4 www.nappliance.com Integrated Business Security Gateway • High performance Unified-Threat-Management security appliance platform • Firewall, IPS, remote access, Web caching, secure application publishing, URL and anti-malware filtering and Email protection functionalities • Cost effective, designed for Small and Mid-Sized Businesses Net-Gateway nTMG Business Security Series Threat Management Gateway Appliance nAppliance Net-Gateway nTMG network security appliance delivers comprehensive, multi-layered defense against threats to networks and Microsoft applications, content acceleration, intuitive management, and scalability - fully integrated, with turnkey “out of the box” convenience. • At the heart of the nTMG is Microsoft Forefront Edge TMG 2010 Standard Edition, an advanced Stateful packet and application-layer inspection firewall, virtual private network (VPN) and a Web cache solution that enables all size business customers to easily maximize existing information technology (IT) investments by improving network security and performance with seamless Active Directory Service (ADS) Support. nTMG Turn-Key Appliance Platform Highlights • Integrated Business Gateway Security solution for businesses of all sizes • Four Models to choose from • Maximum Reliability through Redundant Hotswap Disks and PS Modules • Large Network Port Density & Remote KVM Support • Oneface™ Appliance Management System • Powered by Forefront Threat Management Gateway 2010 – Standard Edition Multi-Layer Stateful Firewall Support: Securely Publish Business Application for Remote Access: • Increased web performance with accelerated web caching • Active content caching of popular content, con- tent distribution and mirroring, and scheduled content download. • URL filtering for compliance with corporate policy • Preventing malware outbreaks caused by inadvertent employee visits to malicious sites or by downloads of infected files. • Preventing the latest viruses, spam, worms, and inappropriate content from reaching inboxes with e-mail protection at the network perimeter. • Monitoring tools to help track network status create alerts to get status on firewall behavior, configure and view logs graphically to track TMG activity, and create reports to customize and summarize log information. • Supports standard data formats such as W3C and ODBC 1 • Offers all three functionality, packet-filtering, stateful filtering and deep application-level content filtering • Stateful filtering supports dynamic packet filtering which opens ports only when necessary, it examine data crossing the firewall in the context of its protocol and the state of the connection and protect against number of sub-application layer attacks, such as session hijacking • Flood resiliency feature protect from being permanently unavailable, compromised, or unmanageable during a flood attack Smart Application-Layer Firewall Support: 2 • Full featured application aware firewall comprehensively helps protect from both external and internal threats. It performs deep inspection of Internet protocols such as HTTP, FTP, SMTP, steaming media applications, H.323, IDS, RPC, SOCKS and Web Proxy filters which enables it to detect many threats that traditional firewalls cannot detect VPN – Secure Remote Client Access and Regional Office Connectivity: 3 • Integrated VPN client access Integrated based on Windows Server 2008 functionality • VPN Client stateful filtering, deep inspection and quarantine, helping protect networks from attacks that enter through a VPN connection • Site-Site IPSec Connectivity between two separate offices, stateful filtering and inspection of remote office resource access • Secure access to remote users outside the corporate network, protects web application behind the firewall such as Web Servers, Share- Point Portal, IIS, E-mail server applications like “outlook anywhere” access to Exchange using Outlook Web and Mobile Access (OWA/OMA), Active Sync and RPC over HTPS. High Performance Web Caching and Bandwidth Optimization: Secure Web and Messaging Protection: Monitoring, Logging and Reporting:
Transcript

7

6

5

4

www.nappliance.com

Integrated Business Security Gateway• High performance Unified-Threat-Management security appliance

platform• Firewall, IPS, remote access, Web caching, secure application

publishing, URL and anti-malware filtering and Email protection functionalities

• Cost effective, designed for Small and Mid-Sized Businesses

Net-Gateway nTMG Business Security Series

Threat Management Gateway Appliance

• nApplianceNet-GatewaynTMGnetworksecurityappliancedeliverscomprehensive,multi-layereddefenseagainstthreatstonetworksandMicrosoftapplications,contentacceleration,intuitivemanagement,andscalability-fullyintegrated,withturnkey“outofthebox”convenience.

• AttheheartofthenTMGisMicrosoftForefrontEdgeTMG2010StandardEdition,anadvancedStatefulpacketandapplication-layerinspectionfirewall,virtualprivatenetwork(VPN)andaWebcachesolutionthatenablesallsizebusinesscustomerstoeasilymaximizeexistinginformationtechnology(IT)investmentsbyimprovingnetworksecurityandperformancewithseamlessActiveDirectoryService(ADS)Support.

nTMG Turn-Key Appliance Platform Highlights

• IntegratedBusinessGatewaySecuritysolutionforbusinessesofallsizes• FourModelstochoosefrom• MaximumReliabilitythroughRedundantHotswapDisksandPSModules• LargeNetworkPortDensity&RemoteKVMSupport• Oneface™ApplianceManagementSystem• PoweredbyForefrontThreatManagementGateway2010–StandardEdition

Multi-Layer Stateful Firewall Support:

Securely Publish Business Application for Remote Access:

•Increasedwebperformancewithacceleratedwebcaching

•Activecontentcachingofpopularcontent,con-tentdistributionandmirroring,andscheduledcontentdownload.

•URLfilteringforcompliancewithcorporatepolicy

•Preventingmalwareoutbreakscausedbyinadvertentemployeevisitstomalicioussitesorbydownloadsofinfectedfiles.

•Preventingthelatestviruses,spam,worms,andinappropriatecontentfromreachinginboxeswithe-mailprotectionatthenetworkperimeter.

•Monitoringtoolstohelptracknetworkstatuscreatealertstogetstatusonfirewallbehavior,configureandviewlogsgraphicallytotrackTMGactivity,andcreatereportstocustomizeandsummarizeloginformation.

•SupportsstandarddataformatssuchasW3CandODBC

1•Offersallthreefunctionality,packet-filtering,

statefulfilteringanddeepapplication-levelcontentfiltering

•Statefulfilteringsupportsdynamicpacketfilteringwhichopensportsonlywhennecessary,itexaminedatacrossingthefirewallinthecontextofitsprotocolandthestateoftheconnectionandprotectagainstnumberofsub-applicationlayerattacks,suchassessionhijacking

•Floodresiliencyfeatureprotectfrombeingpermanentlyunavailable,compromised,orunmanageableduringafloodattack

Smart Application-Layer Firewall Support:

2

•Fullfeaturedapplicationawarefirewallcomprehensivelyhelpsprotectfrombothexternalandinternalthreats.ItperformsdeepinspectionofInternetprotocolssuchasHTTP,FTP,SMTP,steamingmediaapplications,H.323,IDS,RPC,SOCKSandWebProxyfilterswhichenablesittodetectmanythreatsthattraditionalfirewallscannotdetect

VPN – Secure Remote Client Access and Regional Office Connectivity:

3

•IntegratedVPNclientaccessIntegratedbasedonWindowsServer2008functionality

•VPNClientstatefulfiltering,deepinspectionandquarantine,helpingprotectnetworksfromattacksthatenterthroughaVPNconnection

•Site-SiteIPSecConnectivitybetweentwoseparateoffices,statefulfilteringandinspectionofremoteofficeresourceaccess

•Secureaccesstoremoteusersoutsidethecorporatenetwork,protectswebapplicationbehindthefirewallsuchasWebServers,Share-PointPortal,IIS,E-mailserverapplicationslike“outlookanywhere”accesstoExchangeusingOutlookWebandMobileAccess(OWA/OMA),ActiveSyncandRPCoverHTPS.

High Performance Web Caching and Bandwidth Optimization:

Secure Web and Messaging Protection:

Monitoring, Logging and Reporting:

Secure Web Gateway for Corporate Networks

Microsoft®Forefront™ThreatManagementGateway2010isasecureWebgatewaythatenablesemployeestousetheInternetsafelyandproductivelywithoutworryingaboutmalwareandotherthreats.TohelpblockthelatestWeb-basedthreats,itprovidesmultiplelayersofcontinuouslyupdatedprotectionsincludingURLfiltering,malwareinspection,andintrusionprevention.

Forefront Threat Management Gateway (TMG) 2010 is designed to increase the security of corporate Web usage by:•Preventingmalwareoutbreakscausedbyinadvertentemployeevisitstomalicioussitesorbydownloadsofinfectedfiles.•EnforcingWebsecuritypolicyforapplicationprotection,malwareinspection,andURLfiltering

Unified Web Security Interface: SingleinterfaceformanagingWebsecuritypolicy

Forefront nTMG delivers comprehensiveprotectionagainstWeb-basedthreats,integratedintoaunifiedgatewaythatreducesthecostandsimplifiesthecomplexityofWebsecurity.

Comprehensive Protection:•Blocksmalicioussitesmoreeffectively•PreventsExploitationofvulnerabilities•CatchesWeb-basedmalware•Deliverscorenetworkprotectionfeatures•Extendsenforcementtoencryptedweb-traffic

Integrated Security:•Deliversasinglesourceforwebsecurity•ReducesCosts•Leveragesexistinginfrastructureinvestments

Simplified management:•Centralizesmanagementinasingle,easy-to-

useconsole•Deliverscomprehensivecustomreports

The secure Web gateway solution includes four components:•TheForefrontTMG2010server,whichprovides

multipleinspectiontechnologies,includingapplication-andnetwork-layerfirewall,intrusionprevention,andmalwarefilteringtokeepuserssafefromWeb-basedattacks.ItconnectstotheForefrontTMGWebProtectionService*forURLfilteringandanti-malwareupdates.ForefrontTMGWebProtectionService,whichdeliversanti-malwareupdatesandprovidesareal-timeconnectiontocloud-basedURLfilteringtechnologiesthatcanbeusedtomonitororblockemployeeWebusage.

•Themanagementconsole,whichofferslocalpolicymanagementfornTMGserver

•Amanagementserver(onlyavailablewithpurchaseofForefrontnTMGEEnterpriseEdition),whichenablesthecreationofenterprise-widepoliciesthatcanbeassignedtoanarrayofnTMGservers.

•ForefrontnTMGcanscaleperformancewhenadministratorsdeploymultipleForefrontnTMGatindividualsites.

Better Protection Against Web-Based Threats

ForefrontTMG2010protectsemployeesfromWeb-basedthreatsbyintegratingmultiplelayersofsecurityintoaneasy-to-managesolution.Deployedoncorporatenetworksasaunifiedgateway,ForefrontTMG2010inspectsWebtrafficatthenetwork,application,andcontentlayerstohelpensureasingle,consistentWebpolicy.Inadditiontocomprehensiveprotection,italsohelpsimprovefirewallperformancebyoffloadingprocessor-intensivefunctionslikeinspectionformalware.

Key Features and Benefits

www.nappliance.com

nTMG Series: Secure Remote Office Gateway FunctionalityHelps connect remote-site regional offices

OrganizationscanusenTMGseriesappliancetoconnecttoandsecuretheirregionalofficesordepartments.Itoffersacost-effectivesolutionforsite-to-sitevirtualprivatenetwork(VPN)connectivity.

•LowCost,EasytoDeploy,Non-managedRegionalofficeconnectivitysolution

•FourModelstochoosefrom,custom-builtforSmall,MidandLargeBusinesses

•RedundantHotswapDisksandPowerSupplyModules

•LargeNetworkPortDensity&RemoteKVMSupport

•Built-inDualNodeHighAvailabilityNLBSupport

•PoweredbyMicrosoftForefrontTMG2010–StandardEdition.

nTMGB, when used in conjunction with nTMGE series of appliances offers advance centralized management of large number of remote offices and efficient network bandwidth by providing HTTP compression and caching of content - including software updates. Please visit nTMGE Series on our website for more information.

Net-Gateway nTMG Business Series: Integrated Security Gateway Appliance

InternetsuchasOutlookWebAccess,SharePoint,WebserverandTerminalservices.

Anywhere VPN Remote Access Solution:

Securelyextendaccesstopartners,customers,consultantsandremoteemployeestoapplications,documents,anddatafromanyPCordevicefromoutsidethecorporatenetwork.

Site-to-Site VPN Connectivity Solution:

AsanalternativetonTMGBseries

appliances,itofferseasy,LowCostcorporatenetworkexpansion.Idealsolutionfordepartmentsandlargenumberofremoteofficesofallsizesatmultiplelocations.

Intelligent Content Caching and Acceleration:

Activecontentcachingandschedulingenhancebandwidthefficiency.

Deployment Scenarios:ThenAppliancenTMGisafullyintegrated“’all-in-one”securitygatewayappliance,itiseasytodeploywithout-of-boxturnkeyconvenience.Itprovides:

Unified Gateway Security Solution:

Purpose-built,robust,standalone,multi-purpose,fullyfeaturedcorporateapplicationFirewall,IPS,VPN,CachingandUnifiedThreatManagement(UTM)capability.Itisoneplatformwhichfitsallbusinesssecurityneeds,providesbusinesscontinuitythroughmultiplelinkmanagement,singlesign-onandseamlessActiveDirectoryServiceintegration.

Web and Email Content Filtering Solution:

Comprehensiveemployeeaccesscontrolandprotectionagainstexternalandinternalweb-basedthreads.ItprovidescontinuousupdatesforURLfiltering,anti-virus&anti-malware,anti-spamandExchangeemailsecurityserviceforbusinessesofallsizes.

Secure Web Application Publishing Solution:

Streamlineremoteaccessbyprovidingsecurityforcorporateapplicationsaccessedoverthe

www.nappliance.com

2

1

3

4

5

6

nAppliance Networks, Inc.540 Dado Street, San Jose, CA 95131, USAPhone: 1-408-895-5000 (Local) 1-877-895-nAPP (6277) (US-Toll Free) 011-408-895-5000 (International)Fax: 1-408-943-8222/8101 Email: [email protected] Website: http//www.nappliance.com

nApplianceNetworks,NetGateway,nTMG,nTMGE,nUAG,Sonavault,Oneface,ARRMSaretrademarksofnApplianceNetworks,Inc.Allotherbrands,productnames,tradenames,trademarksandservicemarksusedhereinarethepropertyoftheirrespectiveowners.Copyright©1996-2010nApplianceNetworks,Inc.Allrightsreserved.

3rd Party Add-On Integration:

Offers Comprehensive ISV security application support

nApplianceForefrontapplianceplatformsarepurpose-built,highperformancehardwaredevicesintegratedwithnAppliancedesignedOneface™systemmanagementtoolsandMicrosoftForefrontEdgeSecuritySoftwareSolutions.nApplianceForefrontSecurityproductsarepre-integratedwithanumberofadditionalindustryleadinganduseful3rdpartysecuritysoftwaremodulestogreatlyincreasethecapabilitiesof

Microsoft Forefront TMG Appliance Editions ComparisonForefront Gateway Appliance Platform Benefits

• Intelligent Application Gateway Platform.Integratedappliancefornetworkperimeterdefense,remoteaccess,application-layerprotection,webcontentcaching,emailandwebprotectionforMicrosoftbasedInfrastructures

•Centralized Policy Based Access Control.Centralizespolicymanagement,controllingaccessbyprotocolorapplicationtypeandbyuser,group,roles,schedules,contenttypetiedtoActiveDirectory

•Easy Windows MMC based Manageability. Traditionally,enterprise-classfirewallshavehadareputationforbeingdifficulttolearn,configureandmaintain.Net-GatewaynTMGseriesoffersindustrymostadvancefeatureandfamiliarwindowsinterfaceandisthemostcompleteproductinitsclass

•Lowest Total Cost of Ownership. ExceptionaleaseofimplementationenablesITleaderstobeconfidentthattheirnetwork,users,clientdevices,andapplicationareprotectedwiththeleadingMicrosoftsecurityappliancefamilycelebratedforassuredperformanceandlowestTCO

•Centralized Appliance Management through ONEface™. OurIntuitiveWebGUImanagementtoolofferseasynetworksetup,configuration,backup/restore,updates,logging,reporting,3rdpartysecurityapplicationsadd-onandcentralizedappliancemanagement

•Appliance Recovery and Remote Management (ARRMS™).OurrecoverysystemcombinedwithadvancedLCDfunctionalityoffersappliancerecoverytofactorydefaultsenablesmultiplesystemimagecopiesbackuptolocaldiskornetwork,andinstantrestoretolastgoodknownstate.

•Superior Product Technology, Value and Support.Stateoftheartsystemandapplicationintegration,bestprice-to-performance-ratiosintheindustry,deploymentassistanceforMicrosoftForefrontGatewaytechnologies,globaltechnicalsupport,efficientappliancelifecyclemanagementandupgrades,andaboveallfutureproofingwithMicrosoftsecurityarchitecture. nAppliance delivers Integrated Appliance “Turnkey” Solutions:

nApplianceNetworks,an ISO9001:2000 isaproviderofmissioncriticalnetworkedgesecu-rityinfrastructureprovider.Unlikealternativesthataresimplybasedongeneral-purposeserverhardware, our appliances are designed for highest reliability, optimized for maximum perfor-mance,andmanufacturedtoexactqualityspecifications.TrustnApplianceNet-GatewayFore-frontapplianceseriestodeliverreliableandcomprehensivesolutions.

eachoftheappliance.Theseoptional-packagesaretested,pre-loadandmadeavailableasaninstalloptionsforyourconvince.Customerscanchooseneededoptional-packagesforinstallationmanuallyandpurchaseasoftwarelicenseforactivation.Allsecuritysoftwareapplicationpackagesrunonahardenedoperatingsystem,securelymanagedandupdatedviaONEface,thenApplianceappliancemanagementservicesinterface.

“Best-of-the-Breed”ISVAdd-OnSecurityApplicationSupport.These3rdpartyadd-onsincludeQoS,BandwidthandWANOptimization,ContentManagement,Multi-FactorAuthentication,Single-Sign-OnandAdvanceReportingsoftwarecomponents.nApplianceComponentManager,aMMCbasedsnap-intoolallowsthecustomerstoaddandremoveadditionalcomponentsasdesired.

TOTAL SECURITY: Purpose-Built, Microsoft Forefront TMG Optimized Appliance

Comprehensive ISV Support

nApplianceIntegrated3rdPartySecurityComponents

•WANOptimization•QoS,TrafficShaping•Multi-FactorAuthentication•Single-Sign-On


Recommended