+ All Categories
Home > Documents > ShareTech UR Series distributed system architecture

ShareTech UR Series distributed system architecture

Date post: 22-Nov-2021
Category:
Upload: others
View: 2 times
Download: 0 times
Share this document with a friend
2
promise you a secure network Tech Sheet Multi-Function Firewall + Recorder for Small / Medium / Large Enterprises ShareTech UR Series combine UTM (United Threat Management) with 24 / 7 recorder that is a secured gateway product processing speed and safety. All online activities such as Web / FTP / IM / Mail (including browsed webpages, detailed dialogue, transferred files, contacters, and attachments) are recorded to prevent data leakage. ShareTech UR series also support multi-WANs and make use of in-built DNS for Outbound / Inbound load balance which assures a stable network. History flow and various flow analyses assist administrators to have real-time trouble shooting. Regular self-defined reports can be deployed in either texts or graphics. ShareTech UR series have all these in a single appliance! ShareTech secures you Tighten Security Effective Control Complete Record Branch Office Branch Office Branch Office Branch Office Load Balance Head Office Service Department RD Department Sales Department Web Server Mail Server Customer Internet Internet CMS ShareTech UTM appliances are ALL IPv6 Ready! ShareTech UR Series distributed system architecture V. 201309 DM Control Security Record App Access Control, Content Filter, Bandwidth / IM / Flow Control, VPN/SSL VPN, Authentication Anti-Hacker / Malware / Virus / Spam, BotNet Detection,IDP Defection, Co-Defense, Encrypted HTTPS/SSL Mail / IM / WEB / FTP log, Report, Firewall log, Flow Analysis, ARP Spoofing Detection, Event log promise you a secure network www.sharetech.com.tw Thailand NetinforTech Co.,Ltd. 39/78 Soi sukhapiban 5 Soi 82, samwatawantok, Klongsamwa, Bangkok 10510 THAILAND T: + 66 02-974-5619 F: + 66 02-998-1527 Malayzia Softmy Technology Sdn. Bhd. 4005, Level 4, FBL Building, Multimedia University, 75450 Bukit Beruang, Melaka, Malaysia. Sales Inquiry: Lester Lau T: + 6 06-231-5568 Web: http://www.softmy.com/ Bangladesh Richman Informatics 20/2 North Dhanmondi, West Panthopath Dhaka-1205, Bangladesh T: + 880 (2) 914-0339, 914-3683 M: [email protected] Web: http://www.richman.com.bd/ Vietnam KTD Trading & Services Co.,Ltd 51 Nguyen Trai Str., Ngo Quyen Dist., HaiPhong, Vietnam T: + 84 31-3630888 F: + 84 31-3630889 Mail: [email protected] Web: http://www.ktd.vn/
Transcript
Page 1: ShareTech UR Series distributed system architecture

promise you a secure network

Tech SheetMulti-Function Firewall + Recorder for Small / Medium / Large Enterprises

ShareTech UR Series combine UTM (United Threat

Management) with 24 / 7 recorder that is a secured gateway

product processing speed and safety.

All online activities such as Web / FTP / IM / Mail (including

browsed webpages, detailed dialogue, transferred files,

contacters, and attachments) are recorded to prevent data

leakage. ShareTech UR series also support multi-WANs

and make use of in-built DNS for Outbound / Inbound load

balance which assures a stable network.

H is to r y f low and var ious f low ana lyses ass is t

administrators to have real-time trouble shooting. Regular

self-defined reports can be deployed in either texts or

graphics. ShareTech UR series have all these in a single

appliance!

ShareTech secures you

Tighten Security

Effective Control

Complete Record

Branch OfficeBranch Office

Branch OfficeBranch Office

Load Balance

Head Office

Service DepartmentRD DepartmentSales Department

Web ServerMail ServerCustomer

InternetInternet

CMS

ShareTech UTM appliances are ALL IPv6 Ready!

ShareTech UR Series distributed system architecture

V. 201309 DM

Control Security

Record

App Access Control, Content

Filter, Bandwidth / IM / Flow

Control, VPN/SSL VPN,

Authentication

Anti-Hacker / Malware / Virus /

Spam, BotNet Detection,IDP

Defection, Co-Defense,

Encrypted HTTPS/SSL

Mail / IM / WEB / FTP log, Report,

Firewall log, Flow Analysis, ARP

Spoofing Detection, Event log

promise you a secure network

www.sharetech.com.tw

Thailand

NetinforTech Co.,Ltd.39/78 Soi sukhapiban 5 Soi 82, samwatawantok, Klongsamwa, Bangkok 10510 THAILANDT: + 66 02-974-5619F: + 66 02-998-1527

Malayzia

Softmy Technology Sdn. Bhd.4005, Level 4, FBL Building, Multimedia University, 75450 Bukit Beruang, Melaka, Malaysia.Sales Inquiry: Lester LauT: + 6 06-231-5568Web: http://www.softmy.com/

Bangladesh

Richman Informatics20/2 North Dhanmondi, West Panthopath Dhaka-1205, BangladeshT: + 880 (2) 914-0339, 914-3683M: [email protected]: http://www.richman.com.bd/

Vietnam

KTD Trading & Services Co.,Ltd51 Nguyen Trai Str., Ngo Quyen Dist., HaiPhong, VietnamT: + 84 31-3630888F: + 84 31-3630889Mail: [email protected]: http://www.ktd.vn/

Page 2: ShareTech UR Series distributed system architecture

Model HiGuard PRO 910 915 918 930HardwareSize Desk top Rack mount Rack mount Rack mount Rack mountDRAM 1G 1G 1G 2G 2GFlash Mode 1G CF 2G CF 1G CF 1G CF 1G CFHD x X SATA 250G SATA 250G SATA 250GInterface (WAN/LAN/DMZ) 2/1/1 2/1/1 2/1/1 2/1/1 2/1/1Dimension W*D*H(mm) 232*152*44 432*270*44 432*270*44 432*270*44 430*255*44Power 100V~240V 100V~240V 100V~240V 100V~240V 100V~240VHardware Bypass x x 1# 1# 1#Max. Concurrent users under 70 pcs 50-75 pcs 50-75 pcs 75-100 pcs 100-200 pcsMax. users limit Unlimited Unlimited Unlimited Unlimited UnlimitedSystem PerformanceThroughput (NAT, Bidirection, Mbps) 600 600 600 600 950Max. Connections 160,000 170,000 170,000 170,000 600,000

VPN3DES 50 50 50 50 150AES 85 85 85 85 280

Mail Scan/Day x x 550,000 550,000 2,100,000Anti-Viurs HTTP Throughput (Bidirection, Mbps)

x x 65 65 120

Anti-Viurs FTP Throughput (Bidirection, Mbps)

x x 64 64 120

Firewall rulesURL blocking group 32 32 32 32 64

Virtual ServerMapped IP 32 32 32 32 64Virtual Server 32 32 32 32 64

VPN TunnelsIPSec (Max. Entry) 500 500 500 500 2,000PPTP Server (Max. Entry) 200 200 200 200 300SSL Connection Tunnels (Max. Entry) 50 50 50 50 400

Model 935 938 955 958 959HardwareSize Rack mount Rack mount Rack mount Rack mount Rack mountDRAM 2G 2G 2G 2G 2GFlash Mode 1G CF 1G CF 1G CF 1G CF 1G CFHD SATA 250G SATA 250G SATA 500G SATA 500G SATA 500GInterface (WAN/LAN/DMZ) 4/1/1 4/1/1 4/1/1 4/3/1 4/3/1DimensionW*D*H(mm) 430*255*44 430*255*44 443*407*44 443*407*44 443*407*44Power 100V~240V 100V~240V 100V~240V 100V~240V 100V~240VHardware Bypass 1# 1# 2# 2# 2#Max. Concurrent users 100~200 pcs 100~200 pcs above 400 pcs above 400 pcs above 400 pcsMax. users limit Unlimited Unlimited Unlimited Unlimited UnlimitedSystem PerformanceThroughput (NAT, Bidirection, Mbps) 960 960 1.7 Gbps 4.8 Gbps 4.8 GbpsMax. Connections 620,000 620,000 1,850,000 1,850,000 1,850,000

VPN3DES 160 160 500 500 500AES 290 290 368 368 368

Mail Scan/Day 1,950,000 1,950,000 5,282,156 5,282,156 5,282,156Anti-Viurs HTTP Throughput (Bidirection, Mbps)

124 124 350 350 350

Anti-Viurs FTP Throughput (Bidirection, Mbps)

122 122 350 350 350

Firewall rulesURL blocking group 4,000 4,000 6,000 6,000 6,000

Virtual ServerMapped IP 256 256 400 400 400Virtual Server 256 256 400 400 400

VPN TunnelsIPSec (Max. Entry) 4,000 4,000 6,000 6,000 6,000PPTP Server (Max. Entry) 500 500 1,000 2,000 2,000SSL Connection Tunnels (Max. Entry) x 500 x 1,000 1,000

Environmental Conditions:Operating Temperature 0 to 40 °C, StorageTemperature - 25 to 75 °C,Relative Humidity (Non condensing) 10 to 90%# If Enabled, will bypass traffic only in case of Power failure. * Anti-virus and UTM performance is measured based on HTTP traffic.Actual performance may vary depending on the real network traffic environments. [email protected]

Feature Specification

Stateful Inspection Firewall- User Authentication - Multiple Security Zones- Access Control Criteria (ACC) - User-Identity, Source

&Destination Zone, MAC and IP address, Service- UTM policies : IDP, Web Filtering, Application Filtering, Anti-virus, Anti-spam and Bandwidth

Management1

- Layer 7 (Application) Control & Visibility- Access Scheduling- Policy based Source & Destination NAT- H.323, SIP NAT Traversal- 802.1q VLAN Support- DoS & DDoS attack prevention- MAC & IP-MAC filtering and Spoof prevention

Administration & System Management- Role-based Access control- Firmware Upgrades viaWeb UI- Web 2.0 compliant UI (HTTPS)- Commandline interface (Serial)- SNMP(v1, v2c, v3) - Multi-lingual support: Simplified Chinese, Traditional Chinese, English- NTP Support- Management: sub-administrator- HA- E-Bulletin- Configuration Backup/Recovery

Gateway Anti-spam1

- Filter based on message header, size, sender, recipient

- Subject line tagging- Redirect spam mails to dedicated email address- Image-spam filtering using SIP Technology- IP address Black list/White list- Spam Notification - IP Reputation-based spam filtering*Clam AV (free anti-virus engine)

It can detect over 1,300,000 kinds of viruses, worms and Trojans. Virus scanning for websites and all packages through FTP.

*Karpersky (optional anti-virus engine) One of the best anti-virus solutions.

Gateway Anti-Virus1 & Anti-Spyware- Virus, Worm, Trojan Detection & Removal,

Malware protection- Automatic virus signature database update- Scan HTTP, FTP, SMTP, POP3 Tunnels- Scan and deliver by file size- Self Service Quarantine area (BotNet)- Bayesian filtering- Graylist filtering- Personal and System Black/White List

User Identity & Group Based Controls- Access time restriction- Time and Data Quota restriction, MSN Controls- Schedule based Committed and Burstable Bandwidth

Log- Syslog support- Log Viewer

Codefense2

- Anomaly IP Analysis (block/notify)- Switch Display- Co-defense with Anomaly IP Analysis- Co-defense with Botnet

VPN (Virtual Private Network)- IPSec, PPTP- Encryption: 3DES, DES, AES- Hash Algorithms: MD5, SHA-1- Authentication: Preshared key- Dead peer detection and PFS support- Diffie Hellman Groups: 1,2,5- Overlapping Network support- Hub & Spoke VPN support

SSL VPN3

- TCP & UDP Tunneling - Authentication: Active Directory, LDAP, RADIUS- Multi-layered Client Authentication: Certificate, Username/Password- User & Group policy enforcement- Lightweight SSL VPN Tunneling Client

Recorder4

- WEB/FTP/IM/Mail/MSN- Remote Backup: Flow Analysis/WEB/FTP/Mail- Encrypted IM: Skype/QQ4.1

Mail Audit5

- Email Notification- Audit rule setting: sender, recipient, attachments,

etc.- Action: Quarantine, Delay, and Block.

Intrusion Detection and Prevention6

- Signatures: Default (2243), Custom- IDP Policies: Multiple, Custom- Protocol Anomaly Detection- DDoS attack prevention

BotNet6

- Signature: Default (2243), custom- Mode: Sniffer, Inline

Web Filtering- Inbuilt Web Category Database (firmware)7

- URL, keyword, File type block- Web Categories: Default &Custom- Protocols supported: HTTP- Block Malware- Data leakage control via HTTP upload- Schedule-based access control- Custom block messages per category

IM (Instant Messaging) Management- Yahoo and Windows Live Messenger- ICQ/AIM/Google Talk/QQ- WebIM/LINE- Allow/Block: Login, File Transfer

HA (High Availability)- Active-Standby- Active-Passive with state synchronization- Stateful Failover- Alerts on Appliance status change

AP Management8

- Setting Delivery- Central Management

Bandwidth Management- IP Identity based Bandwidth Management- Guaranteed & Burstable bandwidth- Multi WAN bandwidth reporting- Smart QoS- Session Control by IP or Service- Scheduling

Application Filtering- Inbuilt Application Category Database(firewall)- Application Categories e.g. File Sharing,IM,VOIP,Web,Web Mail,Game- Schedule: base access control- Block- File Sharing: e.g. Foxy- IM: e.g. MSN- VOIP Application: e.g. SIP- Game: e.g. PPStream

User Authentication- Internal database- Active Directory Integration- External LDAP/RADIUS database Integration- External Authentication: Users and Administrators- User/MAC Binding- Multiple Authentication servers

Networking- Automated Failover/Failback, Multi-WAN failover- WRR based Load balancing- IP Address Assignment: Static, PPPoE, PPTP & DDNS, Client, Proxy ARP, DHCP server- Dynamic Routing: RIP v1& RIPv2 supported- Routing Mode: Device operated in Layer 3 Block and protect against broadcast storms IP protocal supported only

Reports9

- Username, IP, Email ID specific Monitoring Dashboard- Reports: CPU/RAMsystem load, network flow, Outgoing ranking, and Incoming ranking- Mixed format reports: tabular and graphical- Exportable formats: csv- Automated Report Scheduling- PDF report (based on different time range)

Certification- IPv6 Ready Gold Logo

Compliance- CE- FCC

1 availabe in all models except PRO/910 optional anti-virus engine supported in models above 9302 available in all models except PRO3 available in all models except 935/955 optional purchase in PRO4 available in 918/930/935/955/959 4.1 available in 930/935/955/9595 optional purchase in 955/958/9596 available in all models except PRO/935/9557 available in all models except PRO/9108 available in PRO/930 above9 optional purchase in PRO/918/930 available in 955/958/959

Remarks: 918/930/959 are full-functioned.


Recommended