3Com X5 Скачать руководство пользователя страница 2

PROACTIVE NETWORK SECURITY

The 3Com X5 and X506 devices leverage the best-in-class TippingPoint
IPS Threat Suppression Engine currently used to protect thousands of
enterprise-class networks throughout the world. 

The IPS continually cleanses the network at layers 2-7, checking both
Internet and intranet traffic, eradicating threats and helping to prevent
bandwidth hijacking and malicious traffic—spyware, worms, viruses,
trojans, phishing attempts, VoIP threats and other harmful activities.
Statistical, protocol and application anomaly protection safeguards the
network against traffic surges, buffer overflows and unknown attacks
and vulnerabilities (zero-day threats). 

To provide protection against new and evolving security threats, updated
attack filters are incorporated into Digital Vaccine

®

Attack Filter Update

Services, provided by TippingPoint, which are automatically distributed
to all subscribing 3Com X5 and X506 devices, providing pre-emptive 
protection against new and zero-day vulnerabilities. The Digital Vaccine
service offers this protection and prevention on a weekly (or more 
frequent) basis.

Recommended settings for IPS filters enable preconfigured policies 
that can automatically and accurately block attacks without any tuning,
significantly reducing the time and resources required to protect and
maintain a healthy network. This ensures that no “good” traffic is
blocked and no “bad”’ traffic is permitted, with no security expertise
or fine-tuning of settings required.

ADVANCED VPN CONNECTIONS

While most security implementations do not address security within a
VPN connection, 3Com Unified Security platforms take a uniquely com-
prehensive approach to VPN-based security by providing the ability to
look inside VPN IPSec tunnels for threats. This thorough inspection pre-
vents propagation of exploits and other malware between sites and can
also be used to provide protection from security risks that occur when
laptop users terminate VPN connections while traveling. 

Another unique feature is prioritization of bi-directional traffic inside the
VPN tunnel, enabling high-quality secure VoIP services and optimizing
other site-to-site applications. Threats that once gained access via a VPN
tunnel are now eliminated by this unique approach, offering complete
security protection, ensuring that remote VPN clients or branch offices
cannot be used to propagate threats into the LAN. 

APPLICATION PRIORITIZATION AND OPTIMIZATION

Using a single X5 or X506 device for application prioritization and 
optimization of network traffic, instead of separately managing multiple
switches and routers, reduces complexity and cost while providing
greater flexibility.

To control the amount of bandwidth allotted to applications and deliver
the appropriate quality of service (QoS), 3Com X5 and X506 devices 
can throttle down non-critical applications such as FTP, and throttle 
up business-critical and latency-sensitive ones such as VoIP. Bandwidth
can be allocated in both inbound and outbound directions for maxi-
mum control.

This policy-based traffic-shaping capability helps prevent network
congestion, giving administrators a powerful tool for making sure that
network services meet user expectations and adhere to the policies set
by network managers.

3COM

®

X5 AND X506 UNIFIED SECURITY PLATFORMS

2

KEY BENEFITS

Содержание X5

Страница 1: ... means of management 3Com X5 and X506 Unified Security Platforms deliver unprecedented threat protection for organizations with several branch offices or numerous teleworkers helping prevent business disruptions revenue loss and damage to an organization s reputation caused by security breaches Built on the award winning 3Com TippingPoint Intrusion Protection System IPS architecture the X5 and X50...

Страница 2: ...ress security within a VPN connection 3Com Unified Security platforms take a uniquely com prehensive approach to VPN based security by providing the ability to look inside VPN IPSec tunnels for threats This thorough inspection pre vents propagation of exploits and other malware between sites and can also be used to provide protection from security risks that occur when laptop users terminate VPN c...

Страница 3: ...d networks Traffic between these security zones can then be fully inspected and prioritized using stateful packet inspection for access control and IPS for security control STATEFUL PACKET INSPECTION FIREWALL 3Com X5 and X506 platforms are equipped with a stateful packet inspection firewall which provides access control and also recognizes prioritized packet flows and helps maintain QoS This firew...

Страница 4: ...t to be used as a secure connectivity mechanism for IPSec VPN site to site connections and remote user connectivity Ability to apply IPS inside VPN tunnels Offers complete security protection ensuring that remote VPN clients or branch offices cannot be used to propagate threats into the LAN APPLICATION PRIORITIZATION AND OPTIMIZATION Single high performance resilient Reduces the number of devices ...

Страница 5: ...the risk of hackers MAC address and no changes needed discovering devices on the network to network configuration High speed low latency operation Enables devices to be deployed without impacting performance delivers high quality convergence services Office LAN Clients IP Phones Voice zone Wireless zone Work zone Guest zone DMZ zone PC 3Com X5 3Com 3108 Cordless Phone Server 3Com Wireless 7760 Acc...

Страница 6: ...6 PWR Voice zone Wireless zone Work zone Guest zone DMZ zone 3Com Switch 4500 PWR 3CR17571 91 SuperStack 3 Switch 4500 PWR 26 Port 3Com Wireless LAN Switch WX1200 3CRWX120695A Wireless LAN Switch WX1200 3CRWX440095A Wireless LAN Controller WX4400 PC VPN tunnel VPN tunnel TippingPoint SMS 3Com X5 3Com X5 3Com VCX V6000 V6000 POWER FXO FXS CPU CM 3Com VCX V6000 FXO 3Com VCX V7000 Server 3Com 3108 Co...

Страница 7: ...outer interfaces 6 IP address groups X5 25 X506 200 Static routes X5 100 X506 500 PPPoE L2TP PPTP IP assignment DHCP client IEEE 802 1Q VLAN support Internal multi scope DHCP server DHCP relay over VPN GRE tunneling Dynamic routing RIP v1 and 2 IP multicast routing PIM DM IGMP v1 and 2 SYSTEM AND ADMINISTRATION Dual box high availability Web interface via HTTPS Command line interface via console t...

Страница 8: ...TPX5 U 96 unlimited user license 3Com X506 Unified Security Platform 3CRX506 96 unlimited user license Product Options 3Com X5 Digital Vaccine Gold Attack Filter Update Service 3CTPX5 DVGOLD One year of Digital Vaccine IPS updates web content filtering telephone technical support advance hardware replacement and software updates 3Com X506 Digital Vaccine Gold Attack Filter Update Service 3CX500 DV...

Отзывы: