Nine Application Skills of Neusoft NISG series security gateways

Source: Internet
Author: User

Neusoft's new series of NISG security gateways integrate firewall, VPN, anti-virus, spam filtering, IPS intrusion defense, and WEB application filtering. The product model covers all users in the high school and low end. There are many technical highlights of the NISG series. This article only lists the nine most distinctive application skills that are most popular with users.

Tip 1: more flexible hybrid deployment

Neusoft NISG can be deployed in the network in transparent mode, routing mode, hybrid mode, and virtual hybrid mode to fully meet the deployment requirements of network connections. In addition, the VPN Module can also be deployed in the above modes, VPN extension that enhances network security.

Tip 2: virtual systems meet personalized needs

The administrator can logically divide a firewall into multiple virtual firewalls, each of which can be regarded as a completely independent firewall device, it has independent administrators, security policies, routing policies, and user authentication databases. The security policies of each virtual firewall do not affect each other. For example, if two interfaces belong to different virtual firewalls, the hosts connected to the two interfaces can even use the same IP address.

Tip 3: Support for various dynamic protocols to completely replace traditional routes

Neusoft NISG fully supports various advanced dynamic routing protocols, including r1_1, V2, OSPF, and BGP. The above protocols can achieve complete Protocol configuration and results, and have reached the standard access capability of the Communication Industry, Completely replacing the border router for Ethernet access.

Tip 4: Dual-machine Hot Standby function to meet high availability requirements

Neusoft NISG has a comprehensive HA (high availability) function, deploying dual-firewall in master-slave mode or master-master mode can effectively improve the high availability of security services and achieve load balancing of security services. At the same time, NISG has the advanced connection table synchronization function to synchronize the connection information between two firewalls in real time, so that even if the active/standby firewalls are switched, the service connection will not be interrupted, fully ensures the stable operation of key services.

Tip 5: The Server Load balancer function helps with traffic distribution and improves Business System Reliability

Neusoft NISG provides routing-based load balancing. When multiple redundant access links exist between the Intranet and the Internet, the firewall can distribute traffic from the Intranet to multiple links according to the Administrator's preset policies, make full use of the access link and ensure smooth network access. NAT-Based Server Load balancer is also available. The firewall can direct external access to multiple servers in the enterprise according to the policies set by the Administrator, so as to achieve load sharing between servers and improve the reliability of the business system.

Tip 6: P2P/IM recognition function monitors network traffic and ensures critical bandwidth

Neusoft NISG identifies BitTorrent, DC, eDonkey (eMule), Gnutella, KaZaA, AIM, MSN Messenger, Yahoo! P2P/IM protocols such as Messenger, Skype, ICQ, IRC, and QQ can help network administrators control unnecessary network traffic and save bandwidth for key services. NISG can not only completely disable the use of the above applications, but also throttling these applications as needed.

Tip 7: VPN helps build secure connections

Neusoft NISG supports integrated VPN and provides high-performance VPN encryption processing. Supports deployment in transparent mode, routing mode, and hybrid mode. The transparent mode is particularly suitable for large industry networks, such as finance, power dispatching, and telecommunications. These key industry systems are huge, and business systems cannot be affected by network transformation. The addition of a transparent VPN device is like adding a network cable. You do not need to adjust the original network, including the network configuration of the terminal device. Therefore, the construction and deployment cycle of the VPN solution are greatly shortened.

Tip 8: Content Security Protection protects users' networks from problems

A) comprehensive virus protection

Neusoft NISG's anti-virus function uses a multi-level advanced detection mechanism that combines high-speed feature matching detection and unknown detection of malicious code behavior, able to perform multi-level scanning and high-speed matching detection on more than 10 types of malicious code, such as Trojans, viruses, and worms. It also supports malicious code detection in multiple protocols and malicious behavior detection based on malicious code. In terms of the number of checks, the number of malicious code detected has exceeded millions and continues to increase.

In terms of virus collection and analysis, the front-end consists of a large malicious code capture network consisting of a honeypot, bait mailbox, manual collection, and third-party sample reporting (exchange; A professional virus analysis pipeline is used at the backend to perform comprehensive and systematic analysis and processing of captured samples. The above methods can quickly and accurately respond to various new and old viruses on the Internet. At the same time, the professional team of malicious code engineers at the backend can also ensure high-quality support services for customers.

B) efficient anti-spam Function

Neusoft NISG's anti-spam function includes automatic scanning and manual configuration filtering to fully meet different users' needs. The automatic scanning function uses the overall architecture of the industry-leading server and client. The server collects and analyzes the historical and latest sender reputation data of emails from around the world; the advanced cyclic mode detection technology is used to automatically summarize all sender information from the bird's view, and distinguish valid senders, valid senders, and spam messages in real time. The server can track traffic of more than tens of millions of IP addresses and classify billions of emails in real time every week. The user's device can scan the email with the server to prevent spam in the network to the maximum extent. Compared with the traditional single-host content filtering mode, Neusoft NISG's automatic spam scanning function can achieve more accurate filtering and faster response, truly solving the problem of network spam once and for all. Manual configuration items include creating a blacklist and whitelist for IP addresses, email addresses, and keywords to implement traditional spam filtering.

C) Accurate URL filtering

Neusoft NISG's URL filtering feature uses a unique "Data Cloud" infrastructure. The cloud analyzes billions of data sources on the global network every day to form a "Data Cloud" with timely updates, clear classifications, and massive data volumes ". By working with the cloud, you can allow or block different types of URL addresses by simply configuring the device. In addition, the flexible manual Configuration feature allows you to customize the blacklist and whitelist of arbitrary URLs.

Tip 9: centralized management to reduce maintenance costs and simplify maintenance processes

The powerful and comprehensive device functions require a flexible, simple, and intuitive operation management interface. The Configuration Wizard module greatly reduces the difficulty of device operation and maintenance time. In addition, this product supports multiple update package modes, the visual requirement can be freely upgraded or downgraded. Maintenance personnel can clearly and intuitively understand all aspects of system software and hardware through the dashboard, and have full control over equipment O & M.

Neusoft NISG supports centralized management through a unified SCM management server. With this unified management method, you can perform comprehensive security management for the distributed architecture distributed throughout the business environment. All logs of Neusoft NISG products can be collected and audited in a unified manner on SCM.

The preceding nine application skills help you implement efficient security protection in your network environment. It also made Neusoft NISG stand out among many similar products. At the same time, these application skills are only part of the NISG series of many application skills, Neusoft NISG team also looks forward to help users better use the NISG series.

 

Related Article

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.