ISG Series
11Pages

{{requestButtons}}

Catalog excerpts

ISG Series - 1

Data Sheet ISG Series Integrated Security Gateways Product Overview Product Description The ISG Series Integrated Security The Juniper Networks® ISG1000 and ISG2000 Integrated Security Gateways are fully Gateways are ideally suited for integrated firewall/VPN systems that offer multi-gigabit performance, modular architecture securing enterprise, carrier, and and rich virtualization capabilities. They are an ideal security solution for large enterprise, data center environments where data center and service provider networks. advanced applications, such as VoIP and streaming media, The ISG Series Integrated Security Gateways are firewall/VPN-based systems that deliver demand consistent, scalable security features such as intrusion prevention system (IPS), antispam, Web filtering, and Internet Content Adaptation Protocol (ICAP) antivirus redirection support. The advanced system is further expandable with optionally integrated Intrusion Detection and Prevention Integrated Security Gateways are (IDP) or as a General Packet Radio Service (GPRS) firewall/VPN for mobile network service purpose-built security solutions provider environments. that leverage a fourth-generation security ASIC, along with high- The ISG Series modular architecture enables deployment with a wide variety of copper speed microprocessors to deliver and fiber interface options. Highly flexible segmentation and isolation of traffic belonging to different trust levels can be achieved using advanced features such as virtual systems, performance. Integrating best-in- virtual LANs, and security zones. The ISG Series Integrated Security Gateways allow class firewall, VPN, and optional multiple, separate firewall inspection or routing policies to simplify network design. This Intrusion Detection and Prevention, the ISG1000 and ISG2000 enable secure, reliable connectivity along enables the enforcement of security policies to traffic streams—even in highly complex environments—without significant impact on the network itself. with network-and application-level The flexibility and efficiency offered by the ISG Series architecture provides state-of- protection for critical, high-traffic the-art performance and best-in-class functionality as a firewall/VPN or integrated network segments. firewall/VPN/IDP solution with optional security modules. The ISG1000 supports up to two security modules, while the ISG2000 can support up to three security modules. The security modules maintain their own dedicated processing and memory, and incorporate technology designed to accelerate IDP packet processing. This reduces the number of separate security devices and management applications, and simplifies deployment effort and network complexity. The result is higher cost savings. The ISG Series with IDP utilizes the same award-winning software found on Juniper Networks IDP Series Intrusion Detection and Prevention Appliances. The IDP security module supports multi-method detection, combining eight different detection mechanisms—including stateful signatures and protocol anomaly detection. In addition to helping businesses defend against security threats such as worms, trojans, malware, spyware, and hackers, the ISG Series with IDP can provide information on rogue servers as well as types and versions of the applications and operating systems that may have inadvertently been added to the network. Application signatures go a step further by enabling administrators to maintain compliance and enforce corporate business policies with accurate detection of application traffic. Your ideas. Connected.

Open the catalog to page 1
ISG Series - 2

ISG Series Integrated Security Gateways Data Sheet In addition to countering sophisticated threats, denial of service different configurations to protect both the perimeter and internal (DoS) attacks, and malicious users, the ISG Series GPRS firewall/ network resources. When deployed in a mobile operator network, VPN can limit messages, throttle bandwidth-hungry applications the ISG1000 and ISG2000 GPRS solutions are GPRS Tunneling that consume uplink/downlink traffic, and perform 3GPP R6 IE Protocol (GTP) aware and fully support GTP functionality in removal to help retain interoperability...

Open the catalog to page 2
ISG Series - 3

ISG Series Integrated Security Gateways Data Sheet Product Options Option Option Description Applicable Products Integrated antispam Blocks unwanted email from known spammers and phishers, using an annually licensed antispam offering based on Symantec technology. Integrated IPS (Deep Inspection) Prevents application level attacks from flooding the network using a combination of stateful signatures and protocol anomaly detection mechanisms. IPS is annually licensed. Blocks access to malicious Web sites using the annually licensed Web filtering solution based on SurfControl’s market-leading...

Open the catalog to page 3
ISG Series - 4

ISG Series Integrated Security Gateways Data Sheet ScreenOS® version tested Firewall performance (large packets) Firewall performance (small packets) Firewall packets per second (64 byte) Maximum security policies Maximum users supported Interface expansion slots Network attack detection Denial of service (DoS) and distributed denial of service (DDoS) protection TCP reassembly for fragmented packet protection Brute force attack mitigation Malformed packet protection Stateful protocol signatures Attack detection mechanisms Stateful signatures, traffic anomaly detection, protocol anomaly...

Open the catalog to page 4
ISG Series - 5

SG Series Integrated Security Gateways Integrated IPS (Optional Integrated IDP)2'10 (continued) Request and response side attack protection Yes Yes Compound attacks - combines stateful signatures and Yes Yes protocol anomalies Create custom attack signatures Yes Yes Access contexts for customization 500+ 500 + Attack editing (port range, etc.) Yes Yes Stateful protocol signatures Yes Yes Approximate number of attacks covered 6,700* 6,700* Detailed threat descriptions and remediation/patch info Yes Yes Enterprise security profiler Yes Yes Create and enforce appropriate application-usage...

Open the catalog to page 5

All Juniper Networks catalogs and technical brochures

  1. QFX5200 SWITCH

    13 Pages

  2. AP550

    2 Pages

  3. AP250

    2 Pages

  4. AP150W

    2 Pages

  5. AP245X

    2 Pages

  6. PTX1000

    4 Pages

  7. SRX300

    6 Pages

  8. SRX1500

    4 Pages

  9. SRX4000

    5 Pages

  10. JSA7500

    8 Pages

  11. vSRX

    6 Pages

  12. ACX500

    7 Pages

  13. QFX3500 Switch

    12 Pages

  14. QFX3600 Switch

    12 Pages

  15. QFabric System

    12 Pages

  16. DDoS Secure

    4 Pages

  17. 1100018

    6 Pages

  18. 1000195

    6 Pages

  19. 1000300

    4 Pages

  20. backgrounder

    4 Pages

  21. VXA Series

    4 Pages