Catalog excerpts
Data Sheet ISG Series Integrated Security Gateways Product Overview Product Description The ISG Series Integrated Security The Juniper Networks® ISG1000 and ISG2000 Integrated Security Gateways are fully Gateways are ideally suited for integrated firewall/VPN systems that offer multi-gigabit performance, modular architecture securing enterprise, carrier, and and rich virtualization capabilities. They are an ideal security solution for large enterprise, data center environments where data center and service provider networks. advanced applications, such as VoIP and streaming media, The ISG Series Integrated Security Gateways are firewall/VPN-based systems that deliver demand consistent, scalable security features such as intrusion prevention system (IPS), antispam, Web filtering, and Internet Content Adaptation Protocol (ICAP) antivirus redirection support. The advanced system is further expandable with optionally integrated Intrusion Detection and Prevention Integrated Security Gateways are (IDP) or as a General Packet Radio Service (GPRS) firewall/VPN for mobile network service purpose-built security solutions provider environments. that leverage a fourth-generation security ASIC, along with high- The ISG Series modular architecture enables deployment with a wide variety of copper speed microprocessors to deliver and fiber interface options. Highly flexible segmentation and isolation of traffic belonging to different trust levels can be achieved using advanced features such as virtual systems, performance. Integrating best-in- virtual LANs, and security zones. The ISG Series Integrated Security Gateways allow class firewall, VPN, and optional multiple, separate firewall inspection or routing policies to simplify network design. This Intrusion Detection and Prevention, the ISG1000 and ISG2000 enable secure, reliable connectivity along enables the enforcement of security policies to traffic streams—even in highly complex environments—without significant impact on the network itself. with network-and application-level The flexibility and efficiency offered by the ISG Series architecture provides state-of- protection for critical, high-traffic the-art performance and best-in-class functionality as a firewall/VPN or integrated network segments. firewall/VPN/IDP solution with optional security modules. The ISG1000 supports up to two security modules, while the ISG2000 can support up to three security modules. The security modules maintain their own dedicated processing and memory, and incorporate technology designed to accelerate IDP packet processing. This reduces the number of separate security devices and management applications, and simplifies deployment effort and network complexity. The result is higher cost savings. The ISG Series with IDP utilizes the same award-winning software found on Juniper Networks IDP Series Intrusion Detection and Prevention Appliances. The IDP security module supports multi-method detection, combining eight different detection mechanisms—including stateful signatures and protocol anomaly detection. In addition to helping businesses defend against security threats such as worms, trojans, malware, spyware, and hackers, the ISG Series with IDP can provide information on rogue servers as well as types and versions of the applications and operating systems that may have inadvertently been added to the network. Application signatures go a step further by enabling administrators to maintain compliance and enforce corporate business policies with accurate detection of application traffic. Your ideas. Connected.
Open the catalog to page 1ISG Series Integrated Security Gateways Data Sheet In addition to countering sophisticated threats, denial of service different configurations to protect both the perimeter and internal (DoS) attacks, and malicious users, the ISG Series GPRS firewall/ network resources. When deployed in a mobile operator network, VPN can limit messages, throttle bandwidth-hungry applications the ISG1000 and ISG2000 GPRS solutions are GPRS Tunneling that consume uplink/downlink traffic, and perform 3GPP R6 IE Protocol (GTP) aware and fully support GTP functionality in removal to help retain interoperability...
Open the catalog to page 2ISG Series Integrated Security Gateways Data Sheet Product Options Option Option Description Applicable Products Integrated antispam Blocks unwanted email from known spammers and phishers, using an annually licensed antispam offering based on Symantec technology. Integrated IPS (Deep Inspection) Prevents application level attacks from flooding the network using a combination of stateful signatures and protocol anomaly detection mechanisms. IPS is annually licensed. Blocks access to malicious Web sites using the annually licensed Web filtering solution based on SurfControl’s market-leading...
Open the catalog to page 3ISG Series Integrated Security Gateways Data Sheet ScreenOS® version tested Firewall performance (large packets) Firewall performance (small packets) Firewall packets per second (64 byte) Maximum security policies Maximum users supported Interface expansion slots Network attack detection Denial of service (DoS) and distributed denial of service (DDoS) protection TCP reassembly for fragmented packet protection Brute force attack mitigation Malformed packet protection Stateful protocol signatures Attack detection mechanisms Stateful signatures, traffic anomaly detection, protocol anomaly...
Open the catalog to page 4SG Series Integrated Security Gateways Integrated IPS (Optional Integrated IDP)2'10 (continued) Request and response side attack protection Yes Yes Compound attacks - combines stateful signatures and Yes Yes protocol anomalies Create custom attack signatures Yes Yes Access contexts for customization 500+ 500 + Attack editing (port range, etc.) Yes Yes Stateful protocol signatures Yes Yes Approximate number of attacks covered 6,700* 6,700* Detailed threat descriptions and remediation/patch info Yes Yes Enterprise security profiler Yes Yes Create and enforce appropriate application-usage...
Open the catalog to page 5All Juniper Networks catalogs and technical brochures
-
SRX1500 FIREWALL DATASHEET
6 Pages
-
EX2300-C COMPACT ETHERNET SWITCH
10 Pages
-
EX3400 ETHERNET SWITCH
13 Pages
-
EX4300 LINE OF ETHERNET SWITCHES
17 Pages
-
EX4600 ETHERNET SWITCH
13 Pages
-
EX4650 Ethernet Switch
13 Pages
-
EX9200 Ethernet Switch
15 Pages
-
EX9250 Ethernet Switch
12 Pages
-
EX2300 ETHERNET SWITCH
12 Pages
-
QFX5200 SWITCH
13 Pages
-
QFX5210 SWITCH
9 Pages
Archived catalogs
-
AP550
2 Pages
-
AP250
2 Pages
-
AP150W
2 Pages
-
AP245X
2 Pages
-
JSA7500
8 Pages
-
LN1000 Mobile Secure Router
6 Pages
-
JSA Series Secure Analytics
12 Pages
-
EX4550 Ethernet Switch
12 Pages
-
EX4300 Ethernet Switch
12 Pages
-
WLA Series Antenna Matrix
2 Pages
-
QFX3100 QFabric Director
4 Pages
-
EX Series Ethernet Switches
20 Pages
-
QFX3500 Switch
12 Pages
-
QFX3600 Switch
12 Pages
-
QFabric System
12 Pages
-
QFX5100 Ethernet Switch
12 Pages
-
Unified Access Control
12 Pages
-
DDoS Secure
4 Pages
-
LN2600 Rugged Secure Router
6 Pages
-
1100018
6 Pages
-
1000195
6 Pages
-
1000300
4 Pages
-
backgrounder
4 Pages
-
VXA Series
4 Pages
-
SRX1400 Services Gateway
8 Pages
-
Security Services Gateways
8 Pages
-
T Series Core Routers
8 Pages
-
JCS1200 Control System
6 Pages
-
J Series Services Routers
16 Pages
-
BX7000 Multi-Access Gateway
4 Pages