 |
 |
|
|
|
| A-Serie |
GPA 400 Professional Appliance
xUTM-solution for companies (up to 250 co-workers)
The GPA 400 is planned for companies with up to 250 co-workers and as 2U appliance intended for the installation in a rack. The few features of the GPA 250 are VLAN, single Sign on, Bridging, VPN SSL with x.509 certificates + IPSec, anti-Spam with real-time Detection, anti-virus, Intrusion Detection, Web Filtering as well as the process orientated eGUI technology.
|
|
eGUI technology
The new user interface is characterised by its ergonomic orientation at the treatment process. The representation of diverse applications is always consistent and supplies exactly only the information, which the user needs in each case for the current treatment process. Reference points for the quality of the administration concept of gateProtect were afford by the principles of the ergonomics of the people-system-interaction formulated in the international standard ISO 9241, part 110.
Special Features
Extended User Authentication |
|
The majority of today's Firewall systems support a proxy based user-authentication. That means that only the services, which work with proxies e.g. at http or ftp, it can be assigned user specific.The gateProtect Firewall decrees over a rule-based extended user-authentication. Here it is possible to assign as many services as you need individually for a user or a user group. These services can be provided with all well-known additional options like proxy or web-filter.Now, if a user log on a computer at the Firewall, all assigned services for the concerning computer will be activating.
|
Extended VPN Gateway (SSL with X.509 Certificates + IPSec) |
|
gateProtect offers the most usual forms of today's site-to-site and road warrior vpn connections via IPSEC and SSL. The administration and creation is supported by Wizards and the eGUI-technology. Additionally the Firewall provides external configuration files during the creation of vpn connections. These can be used for the creation of single-click-connections and for the import on remote firewalls for site-to-site connections.
In addition gateProtect offers a SSL site-to-site solution with X.509 certificates, which can work optionally also in the bridge-mode. With a normal bridge two or several network interfaces were connected so that they form a logical network. gateProtect allows this not only for network interface, but also for vpn over ssl connections. It is possible to handle computers at other locations exactly the same as if they would be in the local network.
|
HTTPS Scan |
|
Most competitors can’t scan for HTTPS traffic on the firewall. Various harming software is using this fact and attain to the internal network, e.g. Trojan and viruses.
As one of few manufacturers the xUTM appliance of gateProtect shut down this door. So it is possible to scan the traffic for viruses and other harming software scanning also in coded HTTPs connections. For this the Firewall is decoding and analyzing the data stream and if no viruses were foand afterwards coded again and delivered.
|
Bridging |
|
The bridging affords the possibility to include a firewall system in an existing local area network. For this the part of the network which should be protected becomes totally separated and will be merge by a bridge on the firewall again e.g. the servers. There the restrictions of access for the proxy and the virus scan between the physical nets can be prepared. A change at the networks is not necessary.
Additionally to the local network interfaces gateProtect permits to hang up VPN tunnels into a bridge also. With this characteristic the gateProtect firewall permits to distribute a logical net over different locations through the internet.
|
Load Balancing |
|
With its load balancing gateProtect allows to divide the data traffic to the Internet on different internet connections. The firewall takes the decision which internet connection will be used for every connection.
Such segmentation is normally made according to protocols. gateProtect allows to allocate the traffic to several internet connection. In this way the usage of the internet connections detail can be planned and optimized into smallest detail.
|
High availability |
|
The high availability of gateProtect firewall systems is based on an active/passive system. In this configuration a secondary firewall is installed parallel to the primary firewall. The secondary firewall continual synchronizes over dedicated connections with the primary Firewall. So it is able to assume the work of the primary Firewall in case of failures smoothly and without manual interference.
Furthermore the condition of the primary firewall is monitored by different systems. If the monitoring detects any problems within the firewall, the firewall will shutdown by itself. After this the secondary firewall gives free the synchronized configuration and will continue working directly in place of the primary firewall. The down-times will minimize and the occurred problems can be eliminated unhurriedly.
|
| |
|
|
|
GPA 400
Professional Appliance
- 250 User
Performance
throughput |
|
|
|
2.0 Gbps |
|
|
200 Mbps |
|
|
100.000 |
|
|
500.000 |
Features
Firewall
- Layer function
- Single Sign On (xUA)
- Zoom function
- Packet filter
- IDS
- NAT
- DHCP server
- DMZ
- Bridging
Internet
- Failover
- Webblocking
- Mail filter
- Concurrent connections
- Load Balancing
Optional (UTM products)
- Spam filter (Commtouch technology)
- Virus Filter (Kaspersky technology)
- Web filter (IBM technology)
Download
|
|
|
|
| |
|
 |
 |