NetDefend UTM Firewall DFL-260E/860E DFL-1660/2560/2560G Sales Guide v1.2 D-Link HQ SSPD Team D-Link Confidential.

Slides:



Advertisements
Similar presentations
Barracuda Link Balancer Link Reliability and Bandwidth Optimization.
Advertisements

Business Solutions Network Security Solutions Gateway Security
(c) 2003, SOHOware, Inc. Proprietary and Confidential Your OEM Partner for Intel XScale based Networking Appliances Targeting Small and Medium Business.
Introducing New Additions to ProSafe Advanced Smart Switch Family: GS724TR and GS748TR (ProSafe 24 and 48-port Gigabit Smart Switches with Static Routing)
New Solutions to New Threats. The Threats, They Are A Changing Page 2 | © 2008 Palo Alto Networks. Proprietary and Confidential.
© 2014 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 1 High-performance Gigabit Ethernet ports rapidly transfer large files supporting.
True Unified Threat Management
Business Solution Seminar 2008 NetDefend : Security Defined by D-Link October – November 2008 D-Link Indonesia.
1 Panda GateDefender Performa Your First Line of Defense Product Presentation Name 2008.
Building Your Own Firewall Chapter 10. Learning Objectives List and define the two categories of firewalls Explain why desktop firewalls are used Explain.
Module 3 Windows Server 2008 Branch Office Scenario.
Introduction to ISA 2004 Dana Epp Microsoft Security MVP.
MSIT 458: Information Security & Assurance By Curtis Pethley.
Avaya Data Solutions for SME. ©2010 Avaya Inc. All rights reserved. 2 2 Avaya’s Unique Value Proposition  Up to 7X better resiliency  100% Call Completion.
Lesson 11-Virtual Private Networks. Overview Define Virtual Private Networks (VPNs). Deploy User VPNs. Deploy Site VPNs. Understand standard VPN techniques.
Copyright 2011 Trend Micro Inc. Trend Micro Web Security- Overview.
MIGRATION FROM SCREENOS TO JUNOS based firewall
Cisco Confidential 1 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Small Business RV320/RV325 Product Overview.
Barracuda Web Filter Overview March 26, 2008 Alan Pearson, Monroe County School District Marcus Burge, Network Engineer.
Unified Services Router Sales Guide Apr, Content Unified Services Router Introduction Product Introduction and Market Status Performance Overview.
Kaspersky Open Space Security: Release 2 World-class security solution for your business.
Copyright Microsoft Corp Ramnish Singh IT Advisor Microsoft Corporation Secure Remote Access Challenges, Choices, Best Practices.
Meet the Next Generation Firewall (NGFW)
Barracuda Networks Steve Scheidegger Commercial Account Manager
Barracuda Networks Confidential 1 Barracuda Web Filter Overview 1 Barracuda Networks Confidential11 Barracuda Web Filter Overview.
CPE5021 Advanced Network Security ---Network Security and Performance--- Lecture 9 CPE5021 Advanced Network Security ---Network Security and Performance---
Introducing Kerio Control Unified Threat Management Solution Release date: June 1, 2010 Kerio Technologies, Inc.
Week #10 Objectives: Remote Access and Mobile Computing Configure Mobile Computer and Device Settings Configure Remote Desktop and Remote Assistance for.
1 Managed Security. 2 Managed Security provides a comprehensive suite of security services to manage and protect your network assets –Managed Firewall.
© 2007 Cisco Systems, Inc. All rights reserved.Cisco Public 1 Version 4.1 ISP Responsibility Working at a Small-to-Medium Business or ISP – Chapter 8.
VPN for Sales Nokia FireWall-1 Products Complete Integrated Solution including: –CheckPoint FireWall-1 enterprise security suite –Interfaces installed.
1 Monday, June 27, 2011Copyright© 2011 Dragnet Dragnet ® Cloud Service Introduction Matthew McLeod, Managing Director
PROJECT PAPER ON BLUEFIRE MOBILE SECURITY. BY PONNURU VENKATA DINESH KUMAR STUDENT ID # A0815 PROFESSOR – VICKY HSU CS-426.
ShareTech 2015 Next-Gen UTM.
Selecting the Right Network Access Protection Architecture
70-411: Administering Windows Server 2012
Barracuda Web Filter Overview. Introduction to the Barracuda Web Filter Integrated content filtering and Web security –Regulate leisure browsing Adult,
1 Overview of Microsoft ISA Server Introducing ISA Server Protects resourcesProtects resources Connects directly to the Internet and your private.
Network and Perimeter Security Paula Kiernan Senior Consultant Ward Solutions.
Chapter 5: Implementing Intrusion Prevention
© 2006 Cisco Systems, Inc. All rights reserved.Cisco Public 1 Version 4.0 Introducing Network Design Concepts Designing and Supporting Computer Networks.
© 2006 Cisco Systems, Inc. All rights reserved.Cisco PublicITE I Chapter 6 1 Introducing Network Design Concepts Designing and Supporting Computer Networks.
Security fundamentals Topic 10 Securing the network perimeter.
Juniper Networks Mobile Security Solution Nosipho Masilela COSC 356.
NSA 240 Overview For End Users. 2 New Challenges To Solve  Threats Are Increasing  Web 2.0 & SaaS  Impacts to servers, users & networks  Threats go.
Firewalls. Overview of Firewalls As the name implies, a firewall acts to provide secured access between two networks A firewall may be implemented as.
Network Security Solution. 2 Security Gateway Switch Network Security Products  Multi-Homing  VPN/Firewall  SPI Firewall  Anti-Virus  Anti-Spam 
UTM ( Unified Threat Management) Firewalls  Firewall Throughput: 150 Mbps  VPN Performance: 45 Mbps (3DES/AES)  1 x 10/100/1000 Ethernet WAN Port 
Security fundamentals
Web Content Security Unlock the Power of the Web
Barracuda NG Firewall ™
Chapter 1: Explore the Network
Instructor Materials Chapter 1: Explore the Network
Barracuda Firewall The Next-Generation Firewall for Everyone
Chapter 1: Exploring the Network
Product Introduction --QoS VPN Router G3 16/12/2015 Business WLAN
Network Security Solution
UTM Content Security Gateway
Working at a Small-to-Medium Business or ISP – Chapter 8
Barracuda Firewall The Next-Generation Firewall for Everyone
HP ProCurve Alliance + Dr Carl Windsor CISSP Major Account Manager
AT&T Premises-Based Firewall Enhanced SBS Solution
CONNECTING TO THE INTERNET
UTM (Unified Threat Management) Firewalls
Chapter 1: Explore the Network
A10 Networks vThunder Leverages the Powerful Microsoft Azure Cloud Platform to Offer Advanced Layer 4-7 Networking, Security on a Global Scale MICROSOFT.
Protecting your mobile devices away from virus by a cloud-based approach Wei Wu.
Threat Management Gateway
Check Point Connectra NGX R60
Virtual Private Network
Presentation transcript:

NetDefend UTM Firewall DFL-260E/860E DFL-1660/2560/2560G Sales Guide v1.2 D-Link HQ SSPD Team D-Link Confidential

Contents NetDefend Firewall Family Security Trend on NetDefend Firewall Single View vs. Holistic View UTM Functionality Highlight NetDefend UTM Firewall Introduction Product Position and Target Market Functionality and Technology Product introduction Deployment Scenario Competitive Landscape

Security Product Strategy NetDefend Firewall Family Security Product Strategy NetDefend UTM Firewall DFL-2560/2560G DFL-1660 DFL-860E DFL-260E NetDefend SOHO UTM DFL-160 is NOT ICSA or VPNC certified. DFL-160

Contents NetDefend Firewall Family Security Trend on NetDefend Firewall Single View vs. Holistic View UTM Functionality Highlight UTM Subscription Services NetDefend UTM Firewall Introduction Product Position and Target Market Functionality and Technology Product introduction Deployment Scenario Competitive Landscape

Security Trend: Single View vs. Holistic View Single View: Traditional Multiple Point Solutions in Network Load Balancing ISP1 IPS/IDP Appliance Firewall/VPN Anti-Virus ISP2 Anti-Spam Web URL filtering Disadvantage: Complex network architecture. Multiple vendors & appliances. Higher appliance operation and maintenance cost. Increases management effort. Switch Users Server Farm

Single View vs. Holistic View Single View: NetDefend Multi-Layered Security Solutions in Network Advantage: Provide comprehensive security approach. Minimizes down time from individual threats. Reduces number of vendors and appliances. Simplifies security management. Improves detection capabilities. ISP1 ISP2 Multi-Layered Security NetDefend UTM Firewall Load Balancing Traffic Shaping Switch IPS/IDP Anti-Virus Users Web Content Filtering Anti-Spam Firewall Server Farm IPSec/PPTP/L2TP Network/Content Processing

Security Trend: Single View vs. Holistic View Holistic View: Integrate NetDefend and xStack for Multi-Layered Security 802.1x Enforcement If Malicious Attack happened ! Wireless System Health Server Guest Guest Access Scenario : Guests are assigned restrictive access right to the network Worms Microsoft Network Policy Server Non-Compliant Scenario : If client’s patch is not updated, it just can go to remediation server, health server and network policy server Remediation Scenario : The client gets patch/virus pattern etc, To correct its health status Client DHCP Enforcer Server On-Demand Policy Manager NetDefend Firewall informs xStack Switch to block malicious attacker’s IP traffic Router xStack Switch NetDefend APplications Remediation NetDefend DHCP Kiosk Applications Mobile User Hackers Patch Updated Service Pack Updated Personal Firewall On Anti-Virus Updated Anti-Virus On Status Host Integrity Rule Patch Updated Service Pack Updated Personal Firewall On Anti-Virus Updated Anti-Virus On Status Host Integrity Rule Password Token User Name Status EAP Telecommuter UNPROTECTED WAN Partner Thieves Integrated Client to Gateway Protection that Ensures Secure Network

UTM Functionality Highlight IPS/IDP Highlight Purpose built inline Intrusion Detection and Prevention scan engine Close-Knit integration with rest of the system to trigger ZoneDefense In-Depth inspection from Layer 2 to Layer 7 Extreme performance for demanding networks Unique Signature Set Database is Powered by Endeavor Component based signatures – Zero-Day attack protection Vulnerability Signatures –Virtual Patching Advanced Protection Mechanisms Protocol Anomaly – Catches unknown attacks Re-Assembly – Catches fragmented attacks Backdoor detection mechanisms Insertion / Evasion Protection Secure Global Network of NetDefend Center Timely provisioning of new IPS signatures Reliable and authenticated access to NetDefend Center

UTM Functionality Highlight Anti-Virus Highlight Extremely high performance in combination with Stream-Based virus scanning technology. Detect the most dangerous and widespread malware threats at Wire-Speed Stream-based virus scanning, unlike in traditional proxy-based scanning, network traffic is processed packet by packet without file size limitation Little memory and computing power required for packet sequencing and reassembly Kaspersky 7x24 VirusLab continuously monitors “Virus Weather” all over the world and release signature database updates. The signature database is utilized in Kaspersky best-of-breed end point products to deliver optimal protection.

UTM Functionality Highlight Anti-Virus Scanning Approach in DFL UTM series Traditional File-based scanning approach requires cache memory for object scanning Dependent on file size additional latency on traffic scanning Stream-based scanning approach Doesn’t require additional memory cache Without file size limitation Real-Time packet based scanning minimal latency on traffic scanning possibility of hardware acceleration Conclusion: Stream-based technology is perfect for high performance of network appliances with optimal protection level

UTM Functionality Highlight Features of Web Content Filtering D-Link’s Web Content Filtering Service provides various mechanisms for ensuring organizations infrastructure being used in an appropriated way. Before every web access establish, NetDefend firewall verifies website contents by matching database of the Web Service Cloud, which collects over XXXX website information every hour . D-Link’s Web Content Filtering service features include: Active Content Filtering Object Removal Active X Flash Java Applets Jscript/VBStript Cookies Invalid UTF-8 Characters Static Content Filtering Blacklists/Whitelists Use of wildcards Dynamic Content Filtering Managed Service Per Device Service Licensing Internal URL Cashe Audit/ Blocking Mode Override Options Re-Categorization Options Customizable Block Pages Hourly Database Update 31 Content Categories Block Access to peer-to-peer (P2P), Phishing and Spyware Sites

UTM Functionality Highlight Benefits of Web Content Filtering D-Link’s Web Content Filtering Service helps organizations Monitor, Manage, and Control employee usage of and access to Internet resources. It puts management back in control, protects system from Internet borne threats, ensures more business focused and implements cost effective usage of the Internet. D-Link’s Web Content Filtering Service allows organizations: WASTED BANDWIDTH Protect network from threats by matching the most updated web database center to filter high risk websites Reduce information leakage via social networking platform (such as web mail, blogs, image/video sharing website, etc.) Maintain network performance and availability by limiting and/or controlling non-business related use, and improve network response Cut spending of unnecessary Internet access and staff time by reducing in appropriate web surfing. Lower illegal exposure to work place relations (e.g. sexual harassment cases / child pornography and the adverse publicity that an incident would generate) Match your needs via setting flexible policy management rules. $ 100 STAFF x 10% BANDWIDTH @ $$$$$ =$ $$$$$$$$ WASTED STAFF TIME COST $ 100 STAFF x 10% MINUTES PER DAY @ 60.00 PER HOUR = $240,000 PER YEAR

Contents NetDefend Firewall Family Security Trend on NetDefend Firewall Single View vs. Holistic View UTM Functionality Highlight NetDefend UTM Firewall Introduction Product Position and Target Market Functionality and Technology Product introduction Deployment Scenario Competitive Landscape

Product Position and Target Market D-Link – Value Innovation Leader D-Link is security solution provider which delivers complete product portfolio from edge to core, from border to backbone. Solution Oriented Product Oriented Solution Oriented Rookie Level Cisco Juniper Symantec Fortinet Sonicwall Watchguard D-Link Linksys Netgear Risk Taker Fancy Maker Pragmatist Procrastinator Innovators Early Adopters Early Majority Late Majority Laggards Value Innovation Solution / Integration Best of Breed Gateway / Client Mainly Gateway Security Only Low Cost Commoditization

Product Position and Target Market D-Link UTM firewall portfolio target from SOHO to Enterprise market which secure IT infrastructure, and protect customers against hybrid threats with NetDefend UTM security services, including Anti-Virus, Intrusion Detection Prevention, Web Content Filtering and Anti-Spam. 70Mbps DFL-2560 DFL-2560(G) Positioning SOHO DFL-160 DFL-1660 Performance Enterprise Medium Office DFL-860E Small Office DFL-260E 150Mbps 250Mbps 1.2Gbps 2Gbps

Product Position and Target Market SOHO Market: The DFL-160 is a simple-to-deploy wired UTM firewall designed specifically for the Small Office/Home Office (SOHO) market that demands superior performance and security in a compact desktop chassis. SMB Market: DFL-210/260/800/860 delivers rich advanced features to enable the stability, flexibility and scalability of IT infrastructure, and it is a cost-effective solution for Small to Medium Business. Business Market: DFL-1660/2560(G) provides outstanding firewall/VPN/UTM throughput designing for the environment with 1,200~2,000 users. Vertical Market: DFL-210/800/800/860/1660/2560(G) all series cooperating with D-Link switch products construct D-Link E2ES solution offering a high level security for education and government environments.

Functionality and Technology Inherits advanced and security feature set from NetDefendOS Following feature sets are available on FCS release Outbound Traffic Load Balancing LDAP Authentication IM/P2P bandwidth control ZoneDefense Triggered by Anti-Virus Customized Web page for user Authentication and WCF NetDefend IPS/UTM Firewall Family Comprehensive Services via NetDefend Smart Cloud Infrastructure Security Integration Intrusion Prevention Gateway Anti-Virus ZoneDefense Stateful Packet Inspection Productivity Control Anti-Spam Web Content Filtering IM/P2P Blocking Quality of Service Network Resilience High Availability Outbound Load Balancing Policy-Based Routing Server Load Balancing ICSA Firewall Corporate and IPSec 1.3 Enhanced Certificates User Authentication LDAP Authentication RADIUS Authentication Web-Based Authentication RADIUS Accounting

Functionality and Technology Energy-Efficient Commitment to Sustain D-Link Green Strategy DFL-160/260E/860E implements D-Link Green Technology which includes power-saving features such as Cable Length Detection and Power Saving Mode. Power levels are automatically adjusted based on the length of connected cables. Ports with no link are automatically powered down, drastically reducing the amount of power used for that port. In addition, the firewall’s power adapter is certified by ENERGY STAR. Generally, ENERGY STAR compliant adapters are 30% more efficient than conventional models. DFL-160 DFL-260E DFL-860E

Functionality and Technology Energy-Efficient Commitment to Sustain D-Link Green Strategy DFL-1660/2560/2560G are designed to run energy-efficient with 80 PLUS certificate power supply. Benefits of 80 PLUS Qualified Appliance Increased power supply reliability due to grater efficiency Maintenance: Lower TCO due to longer equipment life Environmental: Prevent pollution by reducing energy consumption. HVAC(Heat Ventilation & Air-Condition): cut cooling costs DFL-1660 DFL-2560 Percent Loading Efficiency 20% 81.45% 50% 83.13% 100% 80.04% DFL-2560G Average Efficiency: 81.54%

Product Introduction Performance Overview DFL-160 (IPS/AV/WCF one year subscription bundled) 1 x 10/100 for WAN 1 x 10/100/1000 for DNZ 4 x 10/100/1000 for LAN 70Mbps plaintext firewall throughput 25Mbps 3DES/AES VPN throughput 15Mbps IPS throughput 15Mbps Anti-Virus throughput DFL-260E 1 x 10/100/1000 for WAN 5 x 10/100/1000 for LAN 150Mbps plaintext firewall throughput 45Mbps 3DES/AES VPN throughput 60Mbps IPS throughput 35Mbps Anti-Virus throughput

Product Introduction Performance Overview DFL-860E 2 x 10/100/1000 for WAN 1 x 10/100/1000 for DNZ 8 x 10/100/1000 for LAN 200Mbps plaintext firewall throughput 60Mbps 3DES/AES VPN throughput 80Mbps IPS throughput 50Mbps Anti-Virus throughput DFL-1660(IPS/AV one year subscription bundled) 6 x 10/100/1000Mbps configurable ports 1.2Gbps plaintext firewall throughput 350Mbps 3DES/AES VPN throughput 400Mbps IPS throughput 225Mbps Anti-Virus throughput

Product Introduction Performance Overview DFL-2560/2560G (IPS/AV one year subscription bundled) 10 x 10/100/1000Mbps configurable ports (DFL-2560) 6 x 10/100/1000Mbps + 4 x SFP configurable ports (DFL-2560G) 2Gbps plaintext firewall throughput 1Gbps Mbps 3DES/AES VPN throughput 600Mbps IPS throughput 450Mbps Anti-Virus throughput

Product Introduction Subscription Packages DFL-160 Default: One-year IPS/AV/WCF subscriptions Renewal: ALL-in-ONE (IPS, AV, WCF) subscription sku only DFL-260E/860E/1660/2560 NB (Non-Bundle) UTM firewall appliance only Default : 90-day IPS/AV/WCF trial subscriptions Renewal: Customer can purchase any one of three, or any combination as their needs DFL-260E/860E/1660/2560 IA1(IPS and AV bundled) Default: One-year free IPS and AV subscriptions

Deployment Scenario Secured VoIP Business Partner Secured VoIP Roaming User UTM Firewall IPSec VPN Secured VoIP UTM Firewall Taipei Headquarter IPSec VPN IPSec VPN Moscow Office IPSec VPN UTM Firewall Server Farm Secured VoIP London Office