Multi-Homing Security Gateway

Multi-Homing Security Gateway
CS-1000
Multi-Homing Security Gateway
Key Feature
Anti-Spam Filtering
• Multiple defense layers (Head Analysis, Text Analysis, Blacklist &
Whitelist, Bayesian Filtering), and Heuristics Analysis to block over
95% spam mail. Customizable notification options and spam mail
report are provided for administrator. Varied actions toward spam
mail include: Delete, Deliver, and Forward. Built-in auto-training
system to rise identify rate of spam mail substantially.
Anti-Virus Protection
• Built-in Clam virus scan engine can detect viruses, worms, and other
The innovation of the Internet has created a tremendous worldwide venue
for e-business and information sharing, but it also creates network security
problems, so the security request will be the primary concerned for the
enterprise. Planet's Content Security Gateway CS-1000, a special designed
of security gateway for small business, adopts Heuristics Analysis to filter
spam and virus mail, auto-training system can raise identify rate of spam,
and built-in Clam virus scan engine can detect viruses, worms and other
threats from email transfer.
threats from email transfer. Scan mission-critical content protocolsSMTP, POP in real time as traffic enters the network to provide
maximum protection. Customizable notification options and virus
mail report are provided for administrator. Varied actions toward
spam mail include: Delete, Deliver, and Forward.
WAN Backup
• The CS-1000 can monitor each WAN link status and automatically
activate backup links when a failure is detected. The detection is
based on the configurable target Internet addresses.
Outbound Load Balancing
• The network sessions are assigned based on the user configurable
load balancing mode, including “Auto”, “Round-Robin”, “By
Traffic”, “By Session” and “By Packet”. User can also configure
which IP or TCP/UDP type of traffic use which WAN port to connect.
VPN Connectivity
• The security gateway support PPTP server/client and IPSec VPN.
Meanwhile, Instant Messaging (IM) and peer-to-peer (P2P) are the fastest
growing communications medium of all time, the spread of IM and P2P
has created a network security threats and consumed amount of
bandwidth. CS-1000 also can prevent employees using varied IM and P2P
like MSN, Yahoo Messenger, ICQ, QQ and Skype.
With DES, 3DES and AES encryption and SHA-1/MD5
authentication, the network traffic over public Internet is secured.
Content Filtering
• The security gateway can block network connection based on URLs,
Scripts (The Pop-up, Java Applet, cookies and Active X), P2P
(eDonkey, Bit Torrent and WinMX), Instant Messaging (MSN, Yahoo
Messenger, ICQ, QQ and Skype) and Download. If there are new
updated version of P2P or IM software in client side, CS-1000 will
detect the difference and update the Content Filtering pattern to
renew the filtering mechanism.
IDP
CS-1000 not only can filter spam and virus mail, but also is a high
performance VPN firewall. The firewall function can defense hacker and
• CS-1000 provides three kinds of the Signature to complete the
intrusion detection system, user can select to configure “Anomaly”,
“Pre-defined” and “Custom” according to the current
environment's request.
blaster attack from Internet. Furthermore, QoS and User Authentication
QoS
features are available now, it makes CS-1000 to a completely security
• Network packets can be classified based on IP address, IP subnet
gateway and can fulfill varied of customer's need.
and TCP/UDP port number and give guarantee and maximum
bandwidth with three levels of priority.
Authentication
• Web-based authentication allows users to be authenticated by web
browser. User database can be configured on the devices or through
external RADIUS server.
Multiple NAT
• Multiple NAT allows local port to set multiple subnet works and
connect to the Internet through different WAN IP addresses.
Data Sheet
1
CS-1000
Specification
Product
Multi-Homing Security Gateway
Model
Hardware
Ethernet
CS-1000
LAN
WAN
DMZ
Power
Operating Environment
Dimension (W x D x H)
Regulatory
Software
Management
Network Connection
Outbound Load Balancing
Routing Mode
Firewall
VPN Tunnels
VPN Function
Content Filtering
IDP
Scanned Mail Settings
Anti-Virus
Anti-Spam
QoS
Authentication
Logs
Statistics
Others
Data Sheet
2
1 x 10/100Mbps RJ-45
2 x 10/100Mbps RJ-45
1 x 10/100Mbps RJ-45
100~250 VAC
Temperature: 0 ~ 60°C
Relative Humidity: 5% ~ 95%
440 x 237 x 43 mm
FCC, CE Mark
Web
Transparent, NAT, Multi-NAT
Policy-based routing
Load-balancing by Round-Robin, traffic, session and packet
Static Route, RIPv2
Policy-based Firewall rule with schedule, NAT/NAPT, SPI Firewall
100/200
PPTP server and client, IPSec
DES, 3DES and AES encrypting
SHA-1/MD5 authentication algorithm
VPN Trunk Support
Remote access VPN (Client-to-Site) and Site to Site VPN
URL, P2P Application, Instant Message and download Blocking
Blocks Popup, Java Applet, cookies and Active X
Anomaly: Syn Flood, UDP Flood, ICMP Flood and more
Pre-defined: Backdoor, DDoS, DoS, Exploit, NetBIOS and Spyware
Custom: User defined based on TCP, UDP, ICMP or IP protocol
The allowed size of scanned mail : 10 ~ 512KBytes
Email attachment virus scanning by SMTP, POP3
Inbound scanning for internal and external Mail Server
Action of infected mail : Delete, Deliver to the recipient, forward to a specific account
Automatic or manual update virus database
Inbound scanning for external and internal Mail Server
Check sender address in RBL
Black list and white list support auto training system
Action of spam mail : Delete, Deliver to the recipient, forward to a specific account
Up to 100 spam mail rule entries
Policy-based bandwidth management
Guarantee and maximum bandwidth with 3 priority levels
Classify traffics based on IP, IP subnet, TCP/UDP port
Built-in user database with up to 500 entries
Support local database, RADIUS and POP3 authentication
Log and alarm for event and traffic
Log can be saved from web, sent by e-mail or sent to syslog server
Traffic statistic for WAN interface and policies, Graphic display
Dynamic DNS
NTP support
DHCP server
Virtual server
Mapping IP (DMZ)
CS-1000
Applications
Small business, branch offices, and SOHO
CS-1000
CS-1000
Virus Mail\Spam Mail
Virus Mail\Spam Mail
New Mail
New Mail
CS-1000
Virus Mail\
Spam Mail
Firewall
New Mail
Ordering Information
CS-1000
Data Sheet
3
Multi-Homing Security Gateway (2 x WAN, 1 x LAN, 1 x DMZ, 200 VPN tunnels)
PLANET Technology Corporation
11F, No. 96, Min Chuan Road, Hsin Tien, Taipei, Tawian R.O.C.
Tel: 886-2-2219-9518
Fax: 886-2-2219-9528
Email: [email protected]
www.planet.com.tw
VoIP Gateway: vip.planet.com.tw
02-06
C-CS1000-1
PLANET reserves the right to change specifications without prior notice. All brand names and trademarks are property or
their respective owners. Copyright©2006 PLANET Technology Corp. All rights reserved.
Was this manual useful for you? yes no
Thank you for your participation!

* Your assessment is very important for improving the work of artificial intelligence, which forms the content of this project

Download PDF

advertisement