|
|
產品中心
Unified Security Firewall
VigorPro 100 |
|
|
|
|
1.
Anti-Virus
- Scan SMTP, POP3, HTTP, IMAP, FTP
- Automatic virus signature update
- Automatic alert when signature update
service expires
- Real-time e-mail/syslog alert when
virus is detected
|
2. Anti-Intrusion
- Rule-based detection list
- Pass/block/reset when intrusion
is detected
- Automatic intrusion signature update
- Automatic alert when signature update
service expires
- Real-time e-mail/syslog alert when
under attack
|
3.
Virtual Private Network (VPN) Facilities
- Up to 32 VPN tunnels
- Supported protocol : PPTP, IPSec,
L2TP, L2TP over IPSec
- Encryption : MPPE and hardware-based
AES, DES/3DES
- Authentication : MD5. SHA-1
- IKE authentication : pre-shared
key and digital signature (X.509)
- LAN-to-LAN, Teleworker-to-LAN
|
4.
Firewall Facilities
- IM/P2P blocking
- Multi-NAT, DMZ host, port-redirect/open
port
- Rule-based packet filtering
- SPI ( Stateful Packet Inspection
)
- DoS/DDoS protection
- IP address anti-spoofing
- E-mail alert and logging via syslog
|
5.
Flexible Web Filtering
- Block URL ( web-site ) by user-defined
keywords
- Preclude web surfing from using
directly IP address
- Block automatic download of Java
applets and Active X controls
- Block web site cookies and proxy
- Block http downloads of file type
: Executable/Compressed/Multi-media
- Support time schedule to control
the restrictions and regular Internet
access
- Web content filter ( SurfControl
)
|
6.
LAN
- 4-port 10/100 Base-Tx Ethernet switch
- DHCP server for IP assignment (up
to 253 users)
- DNS cache and proxy
- NAT (Network Address translation)
- Virtual server via port redirection
or open port
- VLAN support
|
7.
QoS
- Class-based bandwidth guarantee
by user-defined traffic categories
- Support four priority-levels
- Support DiffServ Codepoint classifying
- Port-based rate throttling capability
|
8.
Router Management
- Web-based user interface ( HTTP
/ HTTPS )
- Quick Start Wizard
- CLI ( Command Line Interface , Telnet
)
- Administration access control
- Configuration backup / restore
- Built-in diagnostic function
- Firmware upgrade via TFTP / FTP
- Syslog
- SNMP management MIB-II
|
|
|
|
VigorPro 100
產品規格表 |
| Hardware
Interface |
WAN |
1-port 10/100
Base-Tx Ethernet switch |
| LAN |
4-port 10/100
Base-Tx Ethernet switch |
| Printer |
1-port USB |
| Anti-Virus
|
Scan SMTP, POP3,
HTTP, IMAP, FTP |
| Automatic virus
signature update |
| Automatic alert
when signature update service expires
|
| Real-time e-mail/syslog
alert when virus is detected |
| Anti-Intrusion |
Rule-based detection
list |
| Pass/block/reset
when intrusion is detected |
| Automatic intrusion
signature update |
| Automatic alert
when signature update service expires
|
| Real-time e-mail/syslog
alert when under attack |
| QoS |
Class-based bandwidth
guarantee by user-defined traffic categories
|
| Support four priority-levels
|
| Support DiffServ
Codepoint classifying |
| Port-based rate
throttling capability |
| VPN |
Up to 32 VPN tunnels
|
| LAN-to-LAN, Teleworker-to-LAN
|
| Protocol |
PPTP |
| IPSec |
| L2TP |
| L2TP over IPSec |
| Encryption |
AES |
| MPPE and hardware-based |
| DES / 3DES |
| Authentication |
MD5 |
| SHA-1 |
| IKE
authentication |
Pre-shared key |
| Digital signature ( X.509
) |
| Firewall
Facilities |
IM/P2P blocking
|
| Multi-NAT, DMZ
host, port-redirect/open port |
| Rule-based packet
filtering |
| SPI ( Stateful Packet
Inspection ) |
| DoS/DDoS protection
|
| IP address anti-spoofing
|
| E-mail alert and
logging via syslog |
| LAN |
4-port 10/100 Base-Tx
Ethernet switch |
| DNS cache and proxy
|
| NAT (Network Address
translation) |
| Virtual server via
port redirection or open port |
| VLAN support |
| Flexible
Web Filtering |
Block URL ( web-site
) by user-defined keywords |
| Preclude web surfing
from using directly IP address |
| Block automatic
download of Java applets and Active X
controls |
| Block web site cookies
and proxy |
| Block http downloads
of file type : Executable/Compressed/Multi-media
|
| Support time schedule
to control the restrictions and regular
Internet access |
| Web content filter
( SurfControl ) |
| Management |
Web-based user interface
( HTTP / HTTPS ) |
| Quick Start Wizard |
| CLI ( Command
Line Interface , Telnet ) |
| Administration access
control |
| Configuration backup
/ restore |
| Build-in diagnostic
function |
| Firmware upgrade
via TFTP / FTP |
| Syslog |
| SNMP management
MIB-II |
| Max. Power |
15 Watt |
| Dimension |
L273 * W166 * H44.6
( mm ) |
| Power |
AC 100~240V, 50/60Hz |
|
|
|
| The conventional firewall is note capable of blocking
so-called "Content-based" network attacks
from viruses, worms and Trojans, because it only inspects
the packet header. The vulnerability results that
complex attacks intrude into business networks via
real-time Internet application such as Web surfing,
e-mail, FT and versatile instant messaging application.
To combat these modern attacks, VigorPro 100, the next
generation unified security firewall, provides a lot
of benefits for SOHO and business application.
|
| All-in-one Unified Security
Firewall |
Conventional firewalls are blind to today's attacks,
and also cannot detect inappropriate mail and web
content. The most common solution is a complex, costly
collection of independent systems to deal with each
of these threats along with network-level intrusions
and attacks. The VigorPro 100 is capable of providing
a complete complement of integrated services including
: Anti-Virus, Intrusion Prevention, Intrusion Detection,
Web Content Filter ( power by SurfControl ), VPN,
Firewall. |
| Hardware-accelerated, Real-time
Response |
The VigorPro 100 employs a unique, hardware-accelerated
architecture the provides the ability to perform real-time
security without slowing critical network applications,
such as Web traffic. Software-based anti-virus systems,
which are designed for scanning non-real-time email
messages, are too slow to be used to scan Web traffic
or other real-time network applications.
|
| Network-level Protection |
Conventional way to protection against virus or
malicious program, it required each host to install
software on the host. To install software on a large
number of hosts is a time consuming process. To evaluate
for vulnerabilities, both scan engine and virus database
needs constant upgrade. It is very costly and annoying
for IT personnel with high maintenance. While VigorPro 100
works as firewall as well as internet gateway, so
by nature VigorPro 100 blocks any attacks at the point
of network entry. Through the user interface, the
security administrator can monitor and instruct the
VigorPro 100 to look for any vulnerability in network-level.
Provide protection of all hosts inside network edge
before threats intrude.
|
| Content-based Inline Inspection |
Conventional firewalls only inspect packets connection
behavior to against any connection-based attack. While
the content-based threats today. such as virus, worms,
Trojans or banned content, which spread faster and
do more damage. Conventional firewalls bypass the
widely spread content-based threat and expose internal
network to outside world. VigorPro 100 deploys DrayTek's
unique MSSI™ ( Multi-stack Stateful Inspection)
mechanism. With MSSI™ , VigorPro 100 inspects
packet streams, compares any suspected content or
behavior with build-in database in real-time, and
provide inline anti-virus and anti-intrusion protection.
|
| Low Total Cost of OWnership |
| It is quite costly to purchase discrete security
solution. A large number of Host-based solution requires
costly maintenance. To maintain complex system. IT
resources needs constant education and training. VigorPro 100
customers do not need to license any operation system,
nor do they incur per-host cost. The all-in-one structure
not only provides required network functionality,
also makes network system maintenance simple and easy. |
| |
|
|