Datasheet

4
Feature Description
PROACTIVE INTRUSION PREVENTION
Based on award-winning TippingPoint Provides peace of mind by preventing business disruption, loss of revenue
Threat Suppression Engine and damage to the organization’s reputation caused by security breaches.
Packet flow inspection for Layer 2 Continuously cleanses Internet and intranet traffic, eradicating threats
through Layer 7 and helping to prevent bandwidth hijacking.
Statistical, protocol and application Safeguards against traffic surges, buffer overflows, unknown attacks and
anomaly protection unknown vulnerabilities (zero-day threats).
Quarantine protection Isolate infected devices from the network without the need for PC software
agents; transparently redirect web requests so users know they are
infected or running applications which do not conform to corporate policies.
Recommended settings supplied Ensures that no “good” traffic is blocked and no “bad” traffic is permitted;
with IPS filters in Digital Vaccine no security expertise or fine-tuning of settings is required.
Digital Vaccine Attack Filter Automatically delivers new security filters that preemptively protect
Update Service against new exploits; offers updated protection and prevention on a
weekly (or more frequent) basis.
Traffic normalization Eliminates malformed or illegal packets and performs TCP reassembly
and IP defragmentation to increase bandwidth and detect evasions.
Elimination of ad hoc patching and Increases IT productivity and saves management costs; continuously
alert responses shields the network from application and infrastructure exploits while
patches are being deployed.
ADVANCED VPN
High-performance, low-latency Allows the Internet to be used as a secure connectivity mechanism for
IPSec VPN site-to-site connections and remote user connectivity.
Ability to apply IPS inside VPN tunnels Offers complete security protection, ensuring that remote VPN clients or
branch offices cannot be used to propagate threats into the LAN.
APPLICATION PRIORITIZATION AND OPTIMIZATION
Single, high-performance, resilient Reduces the number of devices that need to be managed and saves
platform management costs; provides greater flexibility by integrating multiple
functions (e.g., IPS in VPN tunnels).
Policy-based prioritization Ensures QoS for business-critical applications and latency-sensitive
services such as VoIP; makes sure network traffic adheres to policies set
by management; improves users’ productivity.
SIP/H323 application layer gateway Provides ability to identify and prioritize mission-critical VoIP applications.
and stateful traffic shaping
Traffic shaping inside VPN tunnels Prioritizes site-to-site voice traffic across VPN tunnels, saving costs on
long-distance phone calls and leveraging centralized business applications.
Support for PIM-DM multicast routing Enables next-generation applications such as distance-based learning,
between sites over IPSec VPN real-time training and conferencing
ENFORCE ACCEPTABLE INTERNET USAGE
Bl
ock ins
t
ant mes
sages (IM),
Improves employee productivity and preserves bandwidth by restricting
peer-t
o-peer fil
e sharing and
ac
c
ess to unauthorized applications.
s
tr
eaming applic
ations
Web content filtering Reduces legal liability and security threats related to offensive or harmful
Web content; boosts employee productivity by restricting access to non
business content.
Layer 4 through Layer 7 rate limiting Provides the ability to limit the data rate of applications like IM and
streaming video to maximize WAN bandwidth.
FEATURES HIGHLIGHTS
3COM
®
X5 AND X506 UNIFIED SECURITY PLATFORMS