User manual
Introduction
3
It provides central sites the capacity to securely connect hundreds of mobile and remote
employees. The SG710 includes a high-performance, VPNC-certified VPN solution for
securely connecting branch office networks to the corporate hub using IPsec, PPTP,
L2TP, and other industry-standard protocols. Onboard cryptographic acceleration
ensures excellent VPN throughput.
CyberGuard SG PCI Appliances
The CyberGuard SG PCI appliance (SG630, SG635) is a hardware-based firewall and
VPN server embedded in a 10/100 Ethernet PCI network interface card (NIC). It is
installed into the host PC like a regular NIC, providing a transparent firewall to shield the
host PC from malicious Internet traffic, and VPN services to allow secure remote access
to the host PC.
This appliance is recommended for:
• Security conscious businesses that wish to separate firewall and VPN issues from
server/desktop operating systems.
• Businesses that wish to eliminate the "soft center".
• For environments where the integrity of the host server operating environment
cannot be controlled or trusted.
Unlike CyberGuard SG gateway appliances, a single CyberGuard SG PCI appliance it is
not intended as a means for your entire office LAN to be connected to, and shielded from,
the Internet. Installing a CyberGuard SG appliance in each network connected PC gives
it its own independently manageable, enterprise-grade VPN server and firewall, running
in isolation from the host operating system.
This approach offers an increased measure of protection against internal threats as well
as conventional Internet security concerns. You can update, configure and monitor the
firewall and VPN connectivity of a workstation or server from any web browser. In the
event of a breach, you have complete control over individual PCs' access policies
independent of the host PC's operating system, even if the system has been subverted
and is denying normal administrator access.
All network filtering and what can be CPU intensive cryptographic processing is handled
entirely by the CyberGuard SG appliance. This has the advantage over the traditional
approach of a host-based personal software firewall and VPN services of not taxing the
host PC's resources.