245e289b69f8633d9b57fdd930314672.ppt
- Количество слайдов: 29
Hamburg Germany Systo. LAN Industrial Security Appliance Systo. LAN Security Appliance Systola Mühlenhagen 130 Hamburg Germany
Systo. LAN The smallest professionall solution on the market Excelent performance Low price Systo. LAN Security Appliance Systola Mühlenhagen 130 Hamburg Germany
Systo. LAN: Hadware § Based on Systo. LAN Gateway § Embedded computer § Power over PCI § Processor Intel IXP 4 xx 266 / 533 MHz XScale with hardware encryption § 2 x Ethernet (10/100 Mbit/s) § 32 / 64 MB RAM § 16 MB Flash § Auto MDIX Systo. LAN Security Appliance Systola Mühlenhagen 130 Hamburg Germany
Systo. LAN: Firmware § Systola Secure Linux § Protected File System § Firmware consistency check § Hardware watchdog § Optical display § Firewall § § § DHCP server and Client DNS cache NTP Server and client SNMP compliance Dynamic DNS Syslog client § VPN § Modes: Router, PPPo. E, PPTP, Stealth § Browser-based administration Systo. LAN Security Appliance Systola Mühlenhagen 130 Hamburg Germany
Systo. LAN: Firewall § § § § § Stateful inspection NAT DNAT / SNAT Configurable rules Port forwarding SYN-flood protection PING-flood protection Anti-spoofing Firewall in stealth mode Firewall for VPN channels Systo. LAN Security Appliance Systola Mühlenhagen 130 Hamburg Germany
Systo. LAN: VPN § § IPsec VPN (DES, 3 DES, AES 128, 192, 256) L 2 TP server (also for MS Windows clients) Preshared Key or X. 509 -Certificates VPN topology: § net to net § net to host § host to host § § § VPN for dynamic IPs VPN in Stealth-Mode NAT-T Throughput up to 70 Mbit/s (3 DES or AES 256) VPN between overlapping networks Systo. LAN Security Appliance Systola Mühlenhagen 130 Hamburg Germany
Systo. LAN: Antivirus § Kaspersky Labs Scanning engine § Mail and Web traffic protection § Automatic pattern update § Optional component Systo. LAN Security Appliance Systola Mühlenhagen 130 Hamburg Germany
Stealth Mode § Automatic integration in network structures § Automatic configuration § Does not need an IP address § All services continue to run § Firewall § VPN § Antivirus § Impossible to attack Systo. LAN Security Appliance Systola Mühlenhagen 130 Hamburg Germany
Firmware: Online Updates § Updates are available through Internet § Integrity check cares for error-free operation § Electronic signature check § Not sensitive to power failures § Update-management over Web-Browser § Direct updates over Internet Systo. LAN Security Appliance Systola Mühlenhagen 130 Hamburg Germany
Firmware: Offline Updates § Protected file system § Not sensitive to power failures § Electronic signature check Systo. LAN Security Appliance Systola Mühlenhagen 130 Hamburg Germany
Performance for 266 MHz Processor Systo. LAN Security Appliance Systola Mühlenhagen 130 Hamburg Germany
Performance for 533 MHz Processor Systo. LAN Security Appliance Systola Mühlenhagen 130 Hamburg Germany
Competitor Prices Comparison Systo. LAN Security Appliance Systola Mühlenhagen 130 Hamburg Germany
Cisco PIX Prices comparison Comparable to Systo. LAN: – Sonicwall Pro 330 (75 Mbit/s, 3 DES), price 3600 € and Cisco PIX 515 / 525, prices 2800 € and 7380 €, respectively. Systo. LAN Security Appliance Systola Mühlenhagen 130 Hamburg Germany
Systo. LAN, Application Fields § Industrial network components protection § Remote control and support, ex. automation systems § Branch office connections over VPN § Point-to-Point protection in distributed networks § Common network protection in the Internet Systo. LAN Security Appliance Systola Mühlenhagen 130 Hamburg Germany
Application Specials § Security based on an independent hardware system § Specialized hardware solution for special applications § Client-independent § High VPN and Firewall throughput § Automatic configuration in Stealth Mode Systo. LAN Security Appliance Systola Mühlenhagen 130 Hamburg Germany
Hardware Solution Advantages vs. Software Solutions § Does not need to integrate into OS – no version problems § VPN for “exotic“ Systems (MSDOS, OS 2, Windows NT etc. ) § No drivers needed: black-box principle § Optional drivers for Windows and Linux § Security is not bound to a single system § Common security standard also when using different OSes in an Enterprise Systo. LAN Security Appliance Systola Mühlenhagen 130 Hamburg Germany
Typical Fields of Usage § Internet-Providers and Communication-Providers § VPN services § Hosting-Providers § Rack-security § Industry § Area security for separate segments § Commercial and governmental companies § Internal / external or distributed network security § System-Integrators § Remote access for technicians and support § Health-care § Connecting medical practitioners to the clinics § POS, lottery, etc. Systo. LAN Security Appliance Systola Mühlenhagen 130 Hamburg Germany
GSM/GPRS/UMTS Encryption GPRS / UMTS network ATM Leased Line VPN gateway / Firewall Bank Systo. LAN Security Appliance Systola Mühlenhagen 130 Hamburg Germany
WLAN Encryption IPSec VPN tunnles Wi. Fi LAN Internet Systo. LAN Security Appliance Systola Mühlenhagen 130 Hamburg Germany
Security in Industrial Fields § Car industry § Machine building § Suppliers § Printing Companies § etc. Systo. LAN Security Appliance Systola Mühlenhagen 130 Hamburg Germany
POS Terminal will soon be complex multimedia devices with such interfaces as x. DSL, WLAN, etc. POS – Important object with respect to security, often with access to / from a bank. This object needs to be protected. Requirements Systo. LAN solution § Easy integration § Secure data transfer § High encryption standard § Very small § Hardened design § Low cost Systo. LAN Security Appliance Systola Mühlenhagen 130 Hamburg Germany
Systo. LAN: Industrial Firewall Industry uses TCP/IP Problems § Common Standard § Uses Windows CE § Connecting Back Office and Production § Not enough security § Windows-security problem § Viruses, hackers, espionage, etc. Industrial Firewall Requirements Systo. LAN Solution § § § § § Cheap Industrial standards Real-Time processing High security standard Industrial control systems utilization Very small size System-independent High performance SNMP High reliability Systo. LAN Security Appliance Systola Mühlenhagen 130 Hamburg Germany
OEM Solutions § § § Development of special solutions Special function integration Your own corporate design Special Applications Systo. LAN Security Appliance Systola Mühlenhagen 130 Hamburg Germany
Systo. LAN as add-in Module § Integration in other systems § Robots § ATMs § Ecological systems § Machinery § Integration into non-secured systems § WLAN and UMTS – surrounded computers § VPN over GPRS / UMTS: wireless connections for ATMs § Credit Card Terminals Systo. LAN Security Appliance Systola Mühlenhagen 130 Hamburg Germany
Systo. LAN PCI § 2 modes: Power over PCI and Ethernet adapter § Power over PCI § § § In Stealth Mode connects to another Ethernet adapter Automatic configuration OS-independent – PCI is only used for powering Can be used as a router Ethernet Adapter § PCI is used to transfer data § Drivers for MS Windows, Linux § All Systo. LAN functions are accessible Systo. LAN Security Appliance Systola Mühlenhagen 130 Hamburg Germany
Future Peek § New features (in development) § Certificate Management § Radius-Authentication § WLAN and GPRS support § Central management console § Traffic management (Qo. S) § POE (Power over Ethernet), for new Processors Systo. LAN Security Appliance Systola Mühlenhagen 130 Hamburg Germany
Conclusion § External connection security with firewall, VPN, Antivirus § Remote Access via VPN § Certificate-based Authentication § High encryption performance § Compatible with Cisco, Checkpoint, Netscreen etc. § Easy management § Excellent price/performance value § High ROI § Innovative technology § Hardware mobile firewall – power over USB § Stealth Mode § Dynamic DNS support Systo. LAN Security Appliance Systola Mühlenhagen 130 Hamburg Germany
Hamburg Germany Systo. LAN Industrial Security Appliance Systo. LAN Security Appliance Systola Mühlenhagen 130 Hamburg Germany
245e289b69f8633d9b57fdd930314672.ppt