Firewalllösungen für Klein- und Mittelstandsunternehmen | |||||||||||||||||||||||
|
Neben den sogenannten Personal-Firewall's (SW-Installation auf der jeweiligen Arbeitsstation zumeist mit Antiviren-Engines gekoppelt), werden für Klein und Mittelstandsunternehmen eine breite Palette von Firewallgeräten angeboten. | |||||||||||||||||||||||
Auszug von Herstellern die Firewallgeräte anbieten:
Diese Firewallgeräte bieten ein gewisses Leistungsspektrum,daß sicherlich für viele Anwendungsfälle ausreichend ist,wobei im oberen Leistungssegment bei diesen Firewallanbietern entsprechende Invest-Kosten mit einzuplanen sind. Eine weitere Produktlinie bei den Firewall-Gateway Lösungen stellen SW-Firewalllösungen, die auf den herkömmlichen Serverplattformen (wie. z.B. von Intel, AMD, usw.) installiert werden, - dar. Hervorzuheben sind:
|
|||||||||||||||||||||||
| Allgemein: | ||
| Open Source License (GPL) | ||
| Free Download | ||
| Network Security | ||
| Stateful Packet Firewall | ||
| Demilitarized Zone (DMZ) | ||
| Intrusion Prevention (IPS) | ||
| Multiple Public IPs | ||
| QOS and Bandwidth Management | ||
| SNMP Support | ||
| VoIP/SIP Support | ||
| DoS and DDoS Protection | ||
| SYN/ICMP Flood Protection | ||
| Anti-Spoofing Protection | ||
| VLAN support (IEEE 802.1Q trunking) | ||
| DNS Proxy/Routing | ||
| WEB - Security | ||
| HTTP & FTP Proxies | ||
| Anti-Virus | ||
| Transparent Proxy Support | ||
| Content Analysis/Filtering | ||
| URL Blacklist | ||
| Authentication: Local, RADIUS, LDAP, Active Directory | ||
| NTLM Single Sign-On | ||
| Group based WEB Content Filter | ||
| Group based WEB Access Policies | ||
| Time based Access Control with multiple Time Intervals | ||
| MAIL- Security | ||
| SMTP u. POP3 Proxies | ||
| Anti-Spam with Bayes, Pattern, SPF | ||
| Heuristics, Black- and White-Lists support | ||
| Anti-Virus | ||
| Transparent Proxy support | ||
| Spam Auto-Learning | ||
| Transparent Mail Forwarding (BCC) | ||
| Greylisting | ||
| Virtual Private Networks (VPN) | ||
| True SSL/TLS VPN | ||
| IPSEC | ||
| Encryption; DES, 3DES, AES 128-,192-, 256-bit | ||
| Authentication:Pre-Shared Key, Certification Authority, Local | ||
| Support for VPN over HTTPS Proxy | ||
| X.509 and 2 factor based Authentication | ||
| PPTP Passthrough | ||
| Pushing of DNS settings and Routes to Clients | ||
| Automatic connection Failover | ||
| Multi - WAN with Failover | ||
| Support for multiple Uplinks/WANs | ||
| Automatic WAN Uplink Failover | ||
| Monitoring of WAN Uplinks | ||
| Uplink types: Ethernet (Static/DHCP), PPPoE, ADSL, ISDN, PPTP | ||
| UMTS/GPRS/3G support | ||
| Routing | ||
| Static Routes | ||
| Source-based Routing | ||
| Destination-based Routing | ||
| Policy-based Routing (based on Interface, Mac, Protocol or Port) | ||
| Network Address Translation (NAT) | ||
| Destination NAT | ||
| Incoming Routed Traffic | ||
| One-to-One NAT | ||
| Source NAT (SNAT) | ||
| IPSec NAT Traversal | ||
| Logging / Reporting | ||
| Real-time Dashboard | ||
| Event Handling and Notification | ||
| Live Log Viewer (AJAX based) | ||
| Detailed User Based Web Access Report | ||
| Network/System/Performance Statistics | ||
| Rule-based logging settings (Firewall Rules) | ||
| Syslog: Local or Remote | ||
| Management | ||
| Easy Web-based Administration (SSL) | ||
| Secure Remote SSH/SCP Access | ||
| Serial Console | ||
| Updates and Backup | ||
| Backup/Restore Firewall settings from Web-Interface | ||
| Centralized Updates through Endian Network | ||
| Anti-Virus Definitions | ||
| URL Blacklist Definitions | ||
| Scheduled Automatic Backup | ||
| Encrypted Backups via E-mail | ||
| Instant Recovery/Backup to USB-Stick | ||
| Allgemein: | ||
| Open Source License (GPL) | ||
| Free Download | ||
| Network Security | ||
| Stateful Packet Firewall | ||
| Demilitarized Zone (DMZ) | ||
| Wireless Support | ||
| DynDNS Client | ||
| caching DNS Forwarder | ||
| SNMP Support | ||
| DHCP Server and Relay / DHCPClient | ||
| Traffic Shaper | ||
| Captive Portal (force Authentication and Redirection | ||
| Authentication: LDAP | ||
| Virtual Private Networks (VPN) | ||
| Open VPN | ||
| PPPoE and PPTP Support on the WAN-Interface | ||
| IPsec VPN Tunnels (IKE with Support for HW- Cryptocards, Mobile Clients) | ||
| PPTP VPN (with RADIUS Server Support) | ||
| Multi - WAN with Failover | ||
| Support for multiple Uplinks/WANs | ||
| Redundancy (Hardware Fauilover) | ||
| Routing | ||
| Static Routes | ||
| Source-based Routing | ||
| Destination-based Routing | ||
| Policy-based Routing | ||
| Network Address Translation (NAT) | ||
| Port Forwarding (inkl. Use of Multiple Public IP's) | ||
| One-to-One NAT | ||
| NAT Traversal | ||
| IPSec NAT Traversal | ||
| Logging / Reporting | ||
| Reporting / Monitoring (Realtime and Historical) | ||
| Management | ||
| Web Interface (supports SSL) | ||
| Serial Console | ||
| Updates and Backup | ||
| SW-Upgrades through the Webbrowser | ||
| Configuration Backup/Restore | ||