Datasheet

Technician
Customer
Unified Threat
Management
Scanning
Other
Desktops
Other
Servers
and
Applications
Corporate LAN
Citrix
XenApp and
Microsoft
Terminal Servers
1
3
3
2
SonicWALL
NSA or TZ
Firewall
Files and
Applications
Intranet
Decrypted
Traffic
User
Desktop
Remote User
Encrypted SSL Traffic
SonicWALL
SRA Appliance
SonicWALL SRA Appliance
Personalized
Web Portal
Inte rnet
Inte rnet
RSA*,
Vasco*,
Active
Directory,
RADIUS,
LDAP
or local
database
Step 2:
When browser is
opened, the user is
redirected to the
appliance and
prompted for
authentication.
LAN
Encrypted Traffic
Firewall
WLAN
DMZ/SSL VPN
Wireless User
AD ServerWorkstations
SonicPoint-N
Wireless Authentication
The SonicWALL appliance
can be configured to
authenticate WLAN users,
granting them access to
internal resources while
keeping the session
secure. The benefit to
this method of acccess
is clientless” access
from the WLAN.
Step 1:
Wireless user
obtains DHCP
lease on the
WLAN
network.
Step 3:
Once authenticated, the user can open a
NetExtender session which will create a
“tunnel all” route from the client’s system
to the appliance. The user will be given a
NetExtender client subnet and can now
access internal and external resources.
SonicWALL
SRA Appliance
SonicWALL
SRA Appliance
NetExtender Client
running SonicWALL Agent
Location 1
Location 5
Location 2
Location 4
Location 3
Local Client
Hub/
Switch
SonicWALL CDP Appliance
Local Area Network
VPN
Router/
Modem
Inte rnet
Inte rnet
4
Technician
Customer
Unified Threat
Management
Scanning
Other
Desktops
Other
Servers
and
Applications
Corporate LAN
Citrix
XenApp and
Microsoft
Terminal Servers
1
3
3
2
SonicWALL
NSA or TZ
Firewall
Files and
Applications
Intranet
Decrypted
Traffic
User
Desktop
Remote User
Encrypted SSL Traffic
SonicWALL
SRA Appliance
SonicWALL SRA Appliance
Personalized
Web Portal
Inte rnet
Inte rnet
RSA*,
Vasco*,
Active
Directory,
RADIUS,
LDAP
or local
database
Step 2:
When browser is
opened, the user is
redirected to the
appliance and
prompted for
authentication.
LAN
Encrypted Traffic
Firewall
WLAN
DMZ/SSL VPN
Wireless User
AD ServerWorkstations
SonicPoint-N
Wireless Authentication
The SonicWALL appliance
can be configured to
authenticate WLAN users,
granting them access to
internal resources while
keeping the session
secure. The benefit to
this method of acccess
is clientless” access
from the WLAN.
Step 1:
Wireless user
obtains DHCP
lease on the
WLAN
network.
Step 3:
Once authenticated, the user can open a
NetExtender session which will create a
“tunnel all” route from the client’s system
to the appliance. The user will be given a
NetExtender client subnet and can now
access internal and external resources.
SonicWALL
SRA Appliance
SonicWALL
SRA Appliance
NetExtender Client
running SonicWALL Agent
Location 1
Location 5
Location 2
Location 4
Location 3
Local Client
Hub/
Switch
SonicWALL CDP Appliance
Local Area Network
VPN
Router/
Modem
Inte rnet
Inte rnet
4
Technician
Customer
Unified Threat
Management
Scanning
Other
Desktops
Other
Servers
and
Applications
Corporate LAN
Citrix
XenApp and
Microsoft
Terminal Servers
1
3
3
2
SonicWALL
NSA or TZ
Firewall
Files and
Applications
Intranet
Decrypted
Traffic
User
Desktop
Remote User
Encrypted SSL Traffic
SonicWALL
SRA Appliance
SonicWALL SRA Appliance
Personalized
Web Portal
Inte rnet
Inte rnet
RSA*,
Vasco*,
Active
Directory,
RADIUS,
LDAP
or local
database
Step 2:
When browser is
opened, the user is
redirected to the
appliance and
prompted for
authentication.
LAN
Encrypted Traffic
Firewall
WLAN
DMZ/SSL VPN
Wireless User
AD ServerWorkstations
SonicPoint-N
Wireless Authentication
The SonicWALL appliance
can be configured to
authenticate WLAN users,
granting them access to
internal resources while
keeping the session
secure. The benefit to
this method of acccess
is clientless” access
from the WLAN.
Step 1:
Wireless user
obtains DHCP
lease on the
WLAN
network.
Step 3:
Once authenticated, the user can open a
NetExtender session which will create a
“tunnel all” route from the client’s system
to the appliance. The user will be given a
NetExtender client subnet and can now
access internal and external resources.
SonicWALL
SRA Appliance
SonicWALL
SRA Appliance
NetExtender Client
running SonicWALL Agent
Location 1
Location 5
Location 2
Location 4
Location 3
Local Client
Hub/
Switch
SonicWALL CDP Appliance
Local Area Network
VPN
Router/
Modem
Inte rnet
Inte rnet
4
Technician
Customer
Unified Threat
Management
Scanning
Other
Desktops
Other
Servers
and
Applications
Corporate LAN
Citrix
XenApp and
Microsoft
Terminal Servers
1
3
3
2
SonicWALL
NSA or TZ
Firewall
Files and
Applications
Intranet
Decrypted
Traffic
User
Desktop
Remote User
Encrypted SSL Traffic
SonicWALL
SRA Appliance
SonicWALL SRA Appliance
Personalized
Web Portal
Inte rnet
Inte rnet
RSA*,
Vasco*,
Active
Directory,
RADIUS,
LDAP
or local
database
Step 2:
When browser is
opened, the user is
redirected to the
appliance and
prompted for
authentication.
LAN
Encrypted Traffic
Firewall
WLAN
DMZ/SSL VPN
Wireless User
AD ServerWorkstations
SonicPoint-N
Wireless Authentication
The SonicWALL appliance
can be configured to
authenticate WLAN users,
granting them access to
internal resources while
keeping the session
secure. The benefit to
this method of acccess
is clientless” access
from the WLAN.
Step 1:
Wireless user
obtains DHCP
lease on the
WLAN
network.
Step 3:
Once authenticated, the user can open a
NetExtender session which will create a
“tunnel all” route from the client’s system
to the appliance. The user will be given a
NetExtender client subnet and can now
access internal and external resources.
SonicWALL
SRA Appliance
SonicWALL
SRA Appliance
NetExtender Client
running SonicWALL Agent
Location 1
Location 5
Location 2
Location 4
Location 3
Local Client
Hub/
Switch
SonicWALL CDP Appliance
Local Area Network
VPN
Router/
Modem
Inte rnet
Inte rnet
4
SonicWALL Secure Remote Access Solutions
Remote Access Solution
With an increasingly mobile workforce and greater threats of
unexpected disruptions, remote access has become a business
necessity. A SonicWALL SRA appliance deployed in one-arm mode
alongside a SonicWALL firewall or virtually any other third-party
firewall enables remote users to access corporate network resources
securely from anywhere outside the LAN.
Remote Support Solution
With more employees working remotely and customers dispersed globally,
it is becoming increasingly important for organizations to provide remote
support for off-site business devices such as laptops and home PCs.
Ineffective support using expensive and cumbersome tools can undermine
IT service level agreements and inhibit remote worker productivity. Using
SonicWALL Virtual Assist on a SRA appliance, a technician can instantly
access a remote device over the Web, transfer files, and chat with the end
user, enabling rapid diagnosis and problem resolution without the need for
a pre-installed “fat” client.
Disaster Recovery Solution
Disaster recovery can be triggered by a catastrophic event such as a
hurricane or epidemic, or by something as simple as a regional power
outage, severe weather, flu outbreaks, or flooding of an office building due
to a burst water pipe. Business disruption can mean lost opportunities,
revenues and reputation. SonicWALL SSL VPN and Continuous Data
Protection (CDP) solution with a subscription to SonicWALL CDP Offsite
Data Backup Service provide employees who are not able to physically get
to the office with access to your corporate resources remotely via a secure
SSL VPN connection. Corporate resources are always accessible as they are
backed up both locally and offsite.
Clean Wireless Solution
More corporations, universities, hospitals and governmental
organizations are implementing wireless networks and using SSL
VPN as a secure and centralized access control solution. SonicWALL
SSL VPNs integrate seamlessly with SonicWALL wireless access
solutions. When deployed alongside a SonicWALL network security
appliance and several SonicPoints, a SonicWALL SSL VPN ensures
that users get access from anywhere on campus and the wireless
connections are encrypted via the SSL protocol. As an added
bonus, remote workers away from campus can connect into
the corporate network via an SSL VPN connection. IT maintains
centralized, granular access control over who can access what
resources from using a single gateway.
Incoming HTTPS traffic is seamlessly forwarded by the SonicWALL NSA or TZ Series firewall network security
appliance to the SonicWALL SRA appliance, which decrypts and authenticates network traffic.
Users are authenticated using the onboard database or through third-party authentication methods
such as RSA*, Vasco, RADIUS, LDAP, Microsoft Active Directory or Windows NT Domain.
A personalized Web portal provides access to only those resources that the user is authorized to view based
on company policies.
Traffic is passed back to the NSA or TZ Series network security appliance where it is fully inspected for viruses, worms, Trojans, spyware and other sophisticated threats by the SonicWALL
Network Security solution.
1
2
3
4