Network Security www planet com tw Copyright PLANET

  • Slides: 41
Download presentation
Network Security www. planet. com. tw Copyright © PLANET Technology Corporation. All rights reserved.

Network Security www. planet. com. tw Copyright © PLANET Technology Corporation. All rights reserved.

Introduction l Advantage of PLANET’s Solution l Product Overview l Product Features & Comparison

Introduction l Advantage of PLANET’s Solution l Product Overview l Product Features & Comparison l Solutions l Roadmap www. planet. com. tw 2 / 41

PLANET Advantages l Full Range of Security Solutions l All-in-One Security Appliance l Easy

PLANET Advantages l Full Range of Security Solutions l All-in-One Security Appliance l Easy integration with existing network infrastructure l Low Total Cost of Ownership from integrated security solutions UTM Content Security Gateway Multi-Homing Security Gateway VPN Security Gateway Bandwidth Management Gateway www. planet. com. tw 3 / 41

Product Overview Model Content Security Content Description Content Security VPN Multi-Homing Security Bandwidth Management

Product Overview Model Content Security Content Description Content Security VPN Multi-Homing Security Bandwidth Management UTM Content Security Gateway CS-1000 UTM Content Security Gateway CS-2000 (200/1000 SSL/IPSec VPN tunnels, IDP, Anti-Virus, Anti-Spam) VPN Security SG-500 Broadband Router / Wireless Gateway SG-1000 Unified Office Gateway (200 IPSec VPN tunnels, IDP, Anti-Virus, Anti-Spam) VPN Security Gateway (5 SSL VPN tunnels, 200 IPSEC VPN tunnels) VPN Security Gateway (50 SSL VPN tunnels, 200 IPSEC VPN tunnels) www. planet. com. tw 4 / 41

Product Overview Content Security Model Description Multi-Homing Security VPN Security MH-2001 Multi-Homing Security WLS-1280

Product Overview Content Security Model Description Multi-Homing Security VPN Security MH-2001 Multi-Homing Security WLS-1280 Bandwidth Management Broadband Router / Wireless Gateway Multi-Homing Security Gateway (200 VPN tunnels) Wireless LAN Switch / Security Gateway (120 VPN tunnels, 12 Access Points Management) Bandwidth Management BM-525 Bandwidth Management Gateway (25 Mbps Bandwidth Control) Unified Office Gateway www. planet. com. tw 5 / 41

Product Overview Model Content Security Description Broadband Router VPN Security VRT-401 Multi-Homing Security VRT-311

Product Overview Model Content Security Description Broadband Router VPN Security VRT-401 Multi-Homing Security VRT-311 S VPN Broadband Router (100 VPN tunnels) VPN Broadband Router (10 VPN tunnels) Wireless Gateway Bandwidth Management WSG-404 Broadband Router / Wireless Gateway Unified Office Gateway Hot-Spot Wireless Subscriber Gateway (50 Pn. P IP Users, account generate via printer) Unified Office Gateway UMG-2000 Unified Office Gateway (IP PBX / Storage / Email / Security / Wi. Fi / L 2 Switch) www. planet. com. tw 6 / 41

Features & Comparison Content Security VPN Security www. planet. com. tw

Features & Comparison Content Security VPN Security www. planet. com. tw

Product Overview Model CS-1000 CS-2000 SG-500 SG-1000 Firewall V V SSL VPN - V

Product Overview Model CS-1000 CS-2000 SG-500 SG-1000 Firewall V V SSL VPN - V V V Content Filtering V V Outbound Inbound/ Outbound - Outbound Bandwidth Management V V IDP V V - - Anti-Virus V V - - Anti-Spam V V - - SME SME Function Load Balancing Target Market www. planet. com. tw 8 / 41

Features CS-1000 l UTM security Gateway with dual WAN, WAN backup, load balance l

Features CS-1000 l UTM security Gateway with dual WAN, WAN backup, load balance l Hardware-based Anti-Virus device l Built-in Clam AV Anti-Virus engine can detect viruses, worms or other threats from email transfer l Anti-Spam block over 95% spam mail l SMTP throughput 12, 000 mails/ day l Auto-Training system raises identify rate of spam mails substantially l SPI Firewall, IDP support l Dual WAN, VPN Trunk support l VPN with DES, 3 DES, AES encryption l VPN Trunk support l Up to 200 VPN tunnels l Qo. S and Authentication feature WAN DMZ LAN CS-1000 Mail Server CS-1000 DMZ Internet LAN Spam Virus www. planet. com. tw 9 / 41

Features CS-2000 l Anti-Spam Filtering: block over 95% spam mail l Anti-Virus Protection: Built-in

Features CS-2000 l Anti-Spam Filtering: block over 95% spam mail l Anti-Virus Protection: Built-in double virus scan engines – Clam and Sophos l Built-in 80 GB Hard Disk can store the spam and Virus mail in Quarantine l Auto-Training system raises identify rate of spam mails substantially l VPN Connectivity: IPSec, SSL, PPTP Server, and PPTP Client support l Up to 1000 IPSec VPN tunnels and 200 SSL VPN tunnels l SPI Firewall l IDP support l Dual WAN, VPN Trunk support l Outbound/Inbound Load Balancing l Content Filter includes URL, Script, P 2 P, IM, and Download blocking l Qo. S and Authentication feature WAN CS-2000 LAN DMZ www. planet. com. tw 10 / 41

Features SG-500 l Supports SSL VPN and IPSec VPN l Up to 5 SSL

Features SG-500 l Supports SSL VPN and IPSec VPN l Up to 5 SSL VPN connection tunnels l VPN with DES, 3 DES, AES encryption l SHA-1 / MD 5 authentication l Up to 200 IPSec VPN tunnels l SPI Firewall l Qo. S l Content Filtering l Hacker Alert and Anomaly Flow Detection l Authentication: User Authentication, RADIUS, and POP 3 SG-500 www. planet. com. tw 11 / 41

Features SG-1000 l Supports SSL VPN, IPSec VPN, and PPTP server/client l Up to

Features SG-1000 l Supports SSL VPN, IPSec VPN, and PPTP server/client l Up to 50 SSL VPN connection tunnels l VPN with DES, 3 DES, AES encryption l SHA-1 / MD 5 authentication l VPN Trunk support l Up to 200 VPN tunnels l SPI Firewall l Qo. S l Content Filtering l Dual WAN, WAN backup, load balance WAN DMZ LAN SG-1000 www. planet. com. tw 12 / 41

Features Brief SG-1000 SG-500 CS-2000 CS-1000 Description VPN Security Gateway UTM Content Security Gateway

Features Brief SG-1000 SG-500 CS-2000 CS-1000 Description VPN Security Gateway UTM Content Security Gateway Placement 19” Rack Mount Desktop 19” Rack Mount LAN x 1, WAN x 2, DMZ x 1 LAN x 1, WAN x 1, DMZ x 1 LAN x 1, WAN x 2, DMZ x 1 110, 000 20, 000 1, 000 582, 000 20, 000 110, 000 100 Mbps 70 Mbps 100 Mbps 17 Mbps 10 Mbps 30 Mbps 17 Mbps - - 600, 000 120, 000 WAN Load Balance Outbound - Load Balance mode Round-Robin, by traffic, by sessions, by packets - Content Filtering V Mail Security Model Interface System Performance Max. Concurrent Sessions New Sessions per second Firewall Throughput 3 DES performance Email Capacity per day Multi-Homing Inbound/ Outbound Round-Robin, by traffic, by sessions, by packets V V V - - Anti-virus, Anti-spam IDP - - V V Do. S, DDo. S protections V V User Authentication V V V V 100/200 200/1000 100/200 50 tunnels 5 tunnels 200 tunnels - V V Outbound Content Security Qo. S VPN IPSec VPN Tunnel SSL VPN Trunk www. planet. com. tw 13 / 41

CS-1000 Comparison Brand PLANET Fortinet Zyxel Model CS-1000 Fotigate-60 Zy. WALL-70 UTM LAN x

CS-1000 Comparison Brand PLANET Fortinet Zyxel Model CS-1000 Fotigate-60 Zy. WALL-70 UTM LAN x 1, WAN x 2, DMZ x 1 LAN x 4, WAN x 2, DMZ x 1 LAN x 1, WAN x 2, DMZ x 4 Max. Concurrent Sessions 110, 000 50, 000 10, 000 Firewall Throughput 100 Mbps 70 Mbps 90 Mbps 17 Mbps 20 Mbps 40 Mbps Transparent V V V NAT, PAT V Virtual server V V V Multiple Subnet V - - Anti-spam V V V Spam Mail Training System V - - Anti-virus V V V Automatically virus database update V V V Whitelist & Blacklist V V V Alert by email V V V Free of charge Per Year LAN System Performance 3 DES performance Mode of Operation  Mail Security Update License Fees www. planet. com. tw 14 / 41

CS-1000 Comparison Brand PLANET Fortinet Zyxel Model CS-1000 Fotigate-60 Zy. WALL-70 UTM Scripts, URL

CS-1000 Comparison Brand PLANET Fortinet Zyxel Model CS-1000 Fotigate-60 Zy. WALL-70 UTM Scripts, URL Blocking V V V IM, P 2 P Blocking V - - Download, Upload Blocking V - - VPN Tunnel 100/200 40 100 PPTP server V V - VPN Trunk V V - Outbound Load Balance V - V WAN Fail over V V V IDP V V V Qo. S V V V User Authentication V V V Log to Syslog server V V V Accounting Report V V V Content Filtering VPN Advance Feature  Monitor www. planet. com. tw 15 / 41

CS-2000 Comparison Brand PLANET Fortinet Juniper Model CS-2000 Forti. Gate 100 A Net. Screen

CS-2000 Comparison Brand PLANET Fortinet Juniper Model CS-2000 Forti. Gate 100 A Net. Screen 25 Intel Celeron 1. 2 GHz Forti. ASIC Power. PC 266 MHz RAM 512 MB 256 MB 128 MB Flash 128 MB - - H. D. 80 G - - LAN x 1, WAN x 2, DMZ x 1 LAN x 4, WAN x 2, DMZ x 2 10/100 RJ-45 Port x 4 582, 000 200, 000 32, 000 20, 000 4, 000 100 Mbps 30 Mbps 40 Mbps 20 Mbps Qo. S V V V IDP Report V V - VPN Tunnel 200 80 125 V V - Inbound / Outbound - V V V Hardware Processor Network port Software Concurrent session New Sessions / second Firewall performance 3 DES performance SSL VPN WAN Load balancing Content Filtering www. planet. com. tw 16 / 41

CS-2000 Comparison Brand PLANET Fortinet Juniper Model CS-2000 Forti. Gate 100 A Net. Screen

CS-2000 Comparison Brand PLANET Fortinet Juniper Model CS-2000 Forti. Gate 100 A Net. Screen 25 V - - Local Database, RADIUS, POP 3, LDAP Local Database, RADIUS, LDAP High Availability V - V Event log and alarm V V V Syslog server support V V V Accounting Report V - - Statistic V V V Anti-Virus V V - 2(Clam & Sophos) 1 - Anti-Spam V V V Mail Report V - - IM/P 2 P Blocking User Authentication Anti-Virus Engine www. planet. com. tw 17 / 41

SG-1000 Comparison Brand PLANET Cisco Sonic. Wall Model SG-1000 VPN 3005 SSL-VPN 2000 19”

SG-1000 Comparison Brand PLANET Cisco Sonic. Wall Model SG-1000 VPN 3005 SSL-VPN 2000 19” Rack Mount LAN x 1, WAN x 2, DMZ x 1 DMZ Transparent V - V Static Route V V V NAT, PAT V V V Firewall V - V Do. S, DDo. S protections V - V 200 50 50 V - V 50 50 50 Authentication User V - V RADIUS Authentication V V V Round-Robin, by traffic, by packet, by session V - Qo. S V - V Content Blocking V - - URL Filtering V - V H/W Watch-Dog V - - Hacker Alert V - V Hardware Dimension Network Port Software VPN Entry SSL VPN Tunnels WAN Load balancing www. planet. com. tw 18 / 41

Features & Comparison Multi-Homing Security www. planet. com. tw

Features & Comparison Multi-Homing Security www. planet. com. tw

Features MH-2001 l Four 10/100 M Ethernet ports: LAN x 1, WAN x 2,

Features MH-2001 l Four 10/100 M Ethernet ports: LAN x 1, WAN x 2, DMZ x 1 l Stateful Packet Inspection (SPI) Firewall & protection for Do. S l Web Content Filtering l Hardware-based VPN with DES, 3 DES, AES encryption l IPSec, PPTP VPN tunnels and VPN passthrough support MH-2001 WAN LAN n l Round Robin of outbound load balancing by traffic, by packet, by session l Supports Qo. S and Authentication feature l Up to 200 VPN tunnels l User authentication n n DMZ WAN Load Balancing Firewall VPN Content Filter Qo. S www. planet. com. tw 20 / 41

MH-2001 Comparison Brand PLANET Sonic. Wall Watch Guard Juniper Cisco Model MH-2001 TZ 170

MH-2001 Comparison Brand PLANET Sonic. Wall Watch Guard Juniper Cisco Model MH-2001 TZ 170 Firebox 700 NS-25 PIX 506 E Concurrent Session 60, 000 6, 000 10, 000 16, 000 25, 000 Firewall Throughput 100 Mbps 90 Mbps 150 Mbps 100 Mbps 25 Mbps 30 Mbps 5 Mbps 20 Mbps 17 Mbps 200 50 100 25 Outbound Load Balancing V V - - - Bandwidth Management V V - 4 groups - - User-defined / Websense * User-defined / Webblocker * User-defined / Websense * 3 DES Throughput VPN Tunnels Server Load Balancing URL Filtering Remark: * Need additional annual fee www. planet. com. tw 21 / 41

Features WLS-1280 Wireless LAN Switch l Manageable 12 APs include WAP-4033, WAP-4033 PE and

Features WLS-1280 Wireless LAN Switch l Manageable 12 APs include WAP-4033, WAP-4033 PE and WAP-4060 PE l Supports up to 120 concurrent users l Provides 500 local accounts and 2000 demand accounts l Multiple User login method via local database, RADIUS, POP 3, NT domain l Role-based and Policy-based access control, bandwidth control l Supports monitor IP on 3 rd party Access Points l Managed APs support WEP, WPA, and WPA 2 l Supports VPN termination of IPSec tunnels for secured wired/wireless connection l Supports MAC Access Control List WLS-1280 WAN LAN on- IPSec VPN Encrypted Network www. planet. com. tw 22 / 41

Features & Comparison Bandwidth Management www. planet. com. tw

Features & Comparison Bandwidth Management www. planet. com. tw

Features BM-525 l One 10/100 Mbps LAN, DMZ, and WAN ports l NAT mode

Features BM-525 l One 10/100 Mbps LAN, DMZ, and WAN ports l NAT mode and DMZ mode l Guaranteed and maximum bandwidth with three levels of priorities l Professional Monitor function includes Log, Accounting Report, Statistics, and Status l MRTG-like Traffic Statistics, easy to trace and analyze l Content Filter includes URL, Script, P 2 P, IM, and Download blocking l Hacker Alert and Anomaly Flow Detection l Virtual Server and IP mapping (Multi-DMZ Host) l Assign daily and weekly access schedule to each individual policy BM-525 Policy Statistics Service Distribution Chart Outbound Service Statistics Report www. planet. com. tw 24 / 41

Features Broadband Router / Wireless Gateway www. planet. com. tw

Features Broadband Router / Wireless Gateway www. planet. com. tw

Features VRT-401 VPN Broadband Router l IPsec, PPTP, and L 2 TP server/ client

Features VRT-401 VPN Broadband Router l IPsec, PPTP, and L 2 TP server/ client support l Provides up to 100 VPN tunnels l 15 Mbps 3 DES VPN performance l SPI firewall + Do. S prevention protection l 90 Mbps Firewall throughput l Virtual Server, DMZ, UPn. P and DDNS support VRT-401 www. planet. com. tw 26 / 41

Features VRT-311 S l Built-in NAT Firewall l Stateful Packet Inspection (SPI) Firewall for

Features VRT-311 S l Built-in NAT Firewall l Stateful Packet Inspection (SPI) Firewall for Do. S attacks l UPn. P support l IPsec, PPTP and L 2 TP VPN pass through support l Provides up to 10 VPN tunnels l Group-based / Scheduled Access Control l Predefined / User-defined service database VRT-311 S www. planet. com. tw 27 / 41

Features Brief Model VRT-401 VRT-311 S LAN port 4 3 WAN port 1 1

Features Brief Model VRT-401 VRT-311 S LAN port 4 3 WAN port 1 1 DMZ port Software 1 x hardware DMZ V V Rule-based DDNS, UPn. P V V Virtual Server V V Do. S support V V Scheduling V V Logs V V 100 10 IPSec, PPTP, L 2 TP - V MD 5/SHA-1 DES/3 DES/ AES SME SOHO Function Content Filtering Firewall VPN Tunnels VPN pass through Microsoft VPN support VPN Authentication VPN Encryption Target Market www. planet. com. tw 28 / 41

VRT-311 S Comparison Brand PLANET Sonicwall Juniper Watch. Guard Model VRT-311 S SOHO 3

VRT-311 S Comparison Brand PLANET Sonicwall Juniper Watch. Guard Model VRT-311 S SOHO 3 Netscreen-5 XT Firebox X 15 LAN x 3, WAN x 1, DMZ x 1 LAN x 1, WAN x 1, console x 1 LAN x 4, WAN x 1 80 Mbps 75 Mbps 70 Mbps 95 Mbps 3. 5 Mbps * 20 Mbps 35 Mbps URL Blocking V V DDNS V - - V Do. S V V UPn. P V - - - Virtual Server V V Hardware Software* Routing Mode Static Route, RIP v 1, v 2 Static Route, RIP v 2 VPN Tunnels 10 10 10 15 IPSec, PPTP, L 2 TP IPSec, PPTP V - - - MD 5/SHA-1 DES/3 DES/AES DES/3 DES - V V - Interface Firewall Throughput 3 DES Throughput DMZ VPN Pass Through Microsoft PPTP VPN Server VPN Authentication VPN Encryption Hardware VPN Remark: * software based 3 DES performance. www. planet. com. tw 29 / 41

Features WSG-404 54 Mbps 11 g Hot Spot Wireless Subscriber Gateway l Plug-n-Play IP

Features WSG-404 54 Mbps 11 g Hot Spot Wireless Subscriber Gateway l Plug-n-Play IP Internet access, no configuration changes required l Comply with 802. 11 g wireless standard • l Work with any Wi. Fi adapters such as Centrino Notebook, 11 g 54 Mbps adapters or 11 b adapters Built-in or RADIUS AAA support (Authentication, Authorization and Accounting) l Built-in RC 4 WEP Encryption, secure HTML login page (SSL), VLAN Security for Wireless, VPN (IPSec/PPTP) Pass through l Operate with the compact thermal printer (WSG-ACG 4) to print out billing information in a minute l Right for any places that provide public access to the Internet, such as Cyber Café, Airport, Government, and etc. WSG-404 www. planet. com. tw 30 / 41

Features Unified Office Gateway www. planet. com. tw

Features Unified Office Gateway www. planet. com. tw

Applications Unified office network management at single point www. planet. com. tw 32 /

Applications Unified office network management at single point www. planet. com. tw 32 / 41

Features UMG-2000 Unified Office Gateway ü IP PBX / Vo. IP Service ü E-mail

Features UMG-2000 Unified Office Gateway ü IP PBX / Vo. IP Service ü E-mail Service ü Internet Security Service UMG-2000 ü Network Storage Service ü Wi. Fi Service ü 24+2 G Switch Service www. planet. com. tw 33 / 41

Features UMG-2000 Front Panel Network Storage Service • RAID 0, 0/1, 5, and JBOD

Features UMG-2000 Front Panel Network Storage Service • RAID 0, 0/1, 5, and JBOD • Up to 4 TB Hot-swap Disk Array • User Network Storage Quota • Scheduled Auto Backup, Auto Snapshot • User/Group Privilege ACL E-mail Service Internet Security Service • Supports POP 3, SMTP, IMAP • Access Control List (ACL) • Secured Socket Layer (SSL) • URL / IM / P 2 P Blocking • Junk Mail Filtering • Firewall / NAT • Anti-Virus and Anti-Spam • Do. S Attack Protection • Auto Backup, Auto Reply • Site-to-Site SSL VPN • Web Mail • PPTP VPN Remote Access www. planet. com. tw 34 / 41

Features UMG-2000 Rear Panel Wi. Fi Service • 802. 11 b/g/n Wireless Access Point

Features UMG-2000 Rear Panel Wi. Fi Service • 802. 11 b/g/n Wireless Access Point • 3 RP-SMA Detachable Antennas • Security: WEP / WPA 2 24+2 G Switch Service • IEEE 802. 1 d Spanning Tree • IGMP Snooping IP PBX / Vo. IP Service • SIP 2. 0 (RFC 3261) compliant • Up to 250 Registrations • Call-Parking, Echo Cancellation • Qo. S Support • Telephone Conference, 3 -Way Calling • Call Hold, Call Waiting • Fax Server Support www. planet. com. tw 35 / 41

Network Security Solutions www. planet. com. tw

Network Security Solutions www. planet. com. tw

When Customers Choose CS Series Products? Planet CS series products are All-in-One Security Solution

When Customers Choose CS Series Products? Planet CS series products are All-in-One Security Solution which includes important security functions, such as VPN, IDP, Anti-Virus, and Anti-Spam. If customers mainly look for Anti-Virus and Anti-Spam functions, CS-1000 or CS-2000 would be the best choice. l SPI Firewall l VPN l IDP l Anti-Virus l Anti-Spam l URL Filtering l Content Filtering l Bandwidth Management Use the Browser www. planet. com. tw 37 / 41

When Customers Choose SG Series Products? Planet SG series products provide important security functions,

When Customers Choose SG Series Products? Planet SG series products provide important security functions, such as VPN, SPI Firewall, Content Blocking, and Qo. S. If customers look for SSL, IPSec, PPTP VPN mostly, they can choose SG-500 or SG-1000. l SPI Firewall l SSL VPN l IPSec VPN l PPTP VPN (SG-1000) l VPN Trunk (SG- Support up to 50 SSL VPN connection tunnels 1000) l WAN Load Balancing (SG-1000) l Content Filtering l Bandwidth Management www. planet. com. tw 38 / 41

When Customers Choose MH Series Products? Planet MH series products provide two WAN ports

When Customers Choose MH Series Products? Planet MH series products provide two WAN ports and important security functions, such as SPI Firewall, Script Blocking, URL Blocking, and Qo. S. If customers looking for WAN Fail Over function mostly, they can choose MH-2001. l SPI Firewall l WAN Fail Over l WAN Load Balancing l IPSec VPN l PPTP VPN l URL Blocking l Script Blocking l Bandwidth Management Access Internet through WAN 2 WAN 1 Fail ISP 1 ISP 2 DMZ LAN www. planet. com. tw 39 / 41

Roadmap 100 tunnels MH 2 WAN / Authentication / VPN / FW MH-2001 Security

Roadmap 100 tunnels MH 2 WAN / Authentication / VPN / FW MH-2001 Security Gateway Unified Office Gateway 1 WAN / 24+2 G / 11 n / 4 FXO / 4 Hard Disk, IPPBX / Vo. IP / Network Storage / Email / Internet Security / Wi. Fi / L 2 Switch UMG-2000 50 tunnels SSL VPN 500 tunnels MH 2 WAN / SSL VPN / FW 2 WAN / VPN / FW SG-1000 MH-3000 1000 tunnels CS 100 users Internet Recorder 2 WAN / VPN / FW / Anti. Virus / Anti- Spam / IPD IM / Web Mail / E-mail / HTTP/ FTP/ Telnet, Cost-effective CS-2000 IM-1010 200 users Internet Recorder IM / Web Mail / E-mail / HTTP/ FTP/ Telnet VPN Security Bandwidth Management IM-2000 Gigabit Router 5 -port Gigabit VPN / IPS Router XRT-501 2000 tunnels CS Bandwidth Gateway Gigabit Router (4 virtual IP, 1~50 users) 5 -port Gigabit VPN / IPS Router BM-525 2 WAN / VPN / FW/ IDP / Anti-Virus / Anti-spam / ICSA-certified CS-3000 XRT-502 2009/Q 3 www. planet. com. tw 40 / 41

www. planet. com. tw

www. planet. com. tw