ADTRAN 1202363L2 Manual de usuario Pagina 4

  • Descarga
  • Añadir a mis manuales
  • Imprimir
  • Pagina
    / 7
  • Tabla de contenidos
  • MARCADORES
  • Valorado. / 5. Basado en revisión del cliente
Vista de pagina 3
Firewall security and network
protection
NetVanta 2000 gateways provide a compre-
hensive stateful inspection firewall to protect
your internal network from intruders, Denial of
Service (DoS) attackers, backdoor entries, and
other assaults. The firewall identifies packet
sequences that are out of the norm and blocks
those packets from reaching the corporate
network, without bogging down performance
by examining each packet in-stream.
In addition, NetVanta 2000 gateways mask
the private IP address of user workstations
from the public Internet using Network Address
Translation (NAT). Only a single IP address is
presented to the public Internet.
VPN tunneling
The NetVanta 2000 Series adheres to IPSec stan-
dards and is designed to maintain data integrity,
secure VPN tunneling, and protect the network
from cyber attacks. Supporting both ESP and
AH protocols, NetVanta 2000 gateways provide
secure communication over potentially unse-
cured network components. Independent of the
Internet service used, the NetVanta 2000 Series
gateways reside between the LAN and broadband
modem, connecting a single workstation or an
entire LAN to corporate information resources
.
Data integrity and user authentication
Data being sent out onto the network is
protected using DES, 3DES, or AES encryption
algorithms. The integrity of data being
transported across the public infrastructure
is maintained using MD5 or SHA1.
In addition, every user is authenticated using
Internet Key Exchange (IKE). IKE supports
public/private keys or digital certificates,
assuring that the proper VPN tunnel is estab-
lished, and that the tunnel has not been
redirected or compromised.
Improved network performance
Encryption, especially 3DES, significantly
impacts CPU performance, possibly slowing the
local processes on a computer. Unlike a software-
implemented VPN solution, which depends
on local CPU
and memory performance to
implement encryption, NetVanta 2000 Series
standalone hardware platforms offload the
CPU-intensive encryption process, so that
local computer performance is unaffected.
IP routing
NetVanta 2000 gateways include an internal
router for routing of IP traffic. The internal IP
router supports BGP, OSPF, and RIP, and can
benefit many enterprises and home offices.
Quality of Service (QoS) for VoIP
QoS is also supported for delay sensitive traffic
like VoIP or video. To prioritize mission critical
traffic and control network congestion, the
NetVanta 2000 Series uses Low Latency Queuing,
Weighted Fair Queuing (WFQ), Class-based
WFQ, and DiffServ marking to establish priority
of IP packets routed over the WAN. In combina-
tion with the QoS features, a specialized SIP
Application Layer Gateway (ALG) allows SIP
traffic to traverse NAT-enabled firewalls. For an
enterprise network, this interoperability allows
IP PBXs, phones, and other SIP-based devices
to set up, tear down, and pass voice and call
control messages seamlessly through the inte-
gral NAT-enabled firewall.
Robust management
Remotely deployed NetVanta 2000 devices can
be easily configured and managed using either
a standard web browser or a familiar Command
Line Interface (CLI). All devices are also supported
by
n-Command
, ADTRAN’s enterprise NMS,
that is ideal for managing larger NetVanta
deployments and features a robust configura-
tion management suite to effectively manage a
4 800 615 1176 www.adtran.com/vpn
The NetVanta
®
2000 Series offers secure connectivity
throughout your network.
Versatile, feature-rich security appliances for
remote corporate access.
ADTRAN conducts rigorous,
in-house interoperability tests
between the NetVanta 2000
Series and third-party VPN
products based on IPSec and
IKE standards. For a list of
supported third-party prod-
ucts, visit ww.adtran.com/vpn.
If you have questions
regarding NetVanta 2000
Series interoperability,
contact an ADTRAN network
engineer at
800 615-1176.
Vista de pagina 3
1 2 3 4 5 6 7

Comentarios a estos manuales

Sin comentarios