Affordable and Robust Features
Organizations of all sizes rely on their network infrastructure as the primary channel for communication and productivity. Achieving robust security, reliability and efficiency for today’s sophisticated networks calls for a unified approach that protects against all threats traversing both the network and application layer, regardless of whether the threats originate internally or externally. The SonicWALL line of network security appliances for small and mid-sized organizations incorporates multiple security technologies into a single platform that delivers high-speed threat protection, reliable communications, low total cost of ownership and flexible connectivity options.
Deep Packet Inspection Firewall »
Going far beyond simple stateful inspection, SonicWALL’s deep packet inspection engine scans against multiple application types and protocols, ensuring your network is protected from both internal and external attacks and application vulnerabilities. SonicWALL’s deep packet inspection engine scales to protect all users, regardless of file size or the amount of traffic, making SonicWALL solutions second to none. Also, by working at the application layer, SonicWALL’s deep packet inspection protects against hidden application vulnerabilities that may be inadvertently letting attackers in through an unknown back door.
Protection Against Application Vulnerabilities
The development cycle of most commercial software is fast, and no matter how skilled the developers may be, hidden vulnerabilities are bound to appear sooner or later in even the most robust of software packages. And as quickly as the development teams work to find and close these vulnerabilities, hackers are also working just as quickly to find and exploit them.
Deep packet inspection examines all downloaded, e-mailed, and compressed files, and can examine information at the application layer to protect against the more sophisticated (and unfortunately, more prevalent) attacks that target application vulnerabilities.
Protection Against Both Internal and External Attack
The attacks that happen daily against corporate networks don't just come from bad guys in black hats halfway across the world. Many come from within your own organization. Unhappy employees, people with a grudge or an axe to grind, or trusted workers who have more access than they should can all be a threat. In addition, internal threats may appear completely by accident. Honest employees may accidentally open up a back door without even realizing it.
Deep packet inspection scans multiple application types and protocols, including SMTP, POP3, IMAP, FTP, HTTP, NetBIOS and many other protocols and application types. It also scans all network layers. As a result, your network is protected from both internal and external threats.
|
Unified Threat Management »
As a multi-service platform, SonicWALL’s line of firewall/VPN appliances incorporates the broadest level of protection available through Unified Threat Management (UTM). UTM combines multiple security features into a single platform, protecting against attacks, viruses, Trojans, spyware and other malicious threats. Incorporating deep packet inspection and gateway protection, allows SonicWALL’s UTM appliances to deliver superior performance at a reasonable price. Unified Threat Management brings you the best of both worlds—reducing complexity and simplifying management, while delivering multiple layers of protection under a single management console.
Increase Security by Reducing Complexity
SonicWALL firewall appliances increase security by reducing complexity. The cost of deploying multiple, separate devices and software, each with its own interface, management console and login, can quickly become unmanageable. Cobbled-together security platforms, even when assembled from otherwise good products, are still less secure. These sorts of platforms are inherently prone to error, simply because there are so many things to manage--and an improperly managed security platform can be worse than none at all. In addition to enhanced security, SonicWALL's integrated platform of security products, built around our leading firewall appliances, delivers a cost advantage that will save you money over any security system even the most frugal manager could assemble from separate products.
Gateway Anti-Virus/Anti-Spyware/Intrusion Protection
Both the PRO and TZ series extends security from the network core to the perimeter by integrating support for SonicWALL's Gateway Anti-Virus, Anti-Spyware, and Intrusion Protection Service, delivering real-time protection against the latest blended threats, including viruses, spyware, worms, Trojans, software vulnerabilities and other malicious code. This powerful combination protects against application-layer and content-based attacks. This heightened level of gateway protection addresses multiple threat access points and thoroughly scans all network layers.
Deep Packet Inspection
The SonicWALL appliance's deep packet inspection engine delivers threat protection directly on the security gateway, by scanning against multiple application types and protocols, and matching files against an extensive signature database. SonicWALL's unique deep packet inspection approach protects against both internal and external threats against both the application layer and the network layer.
No Performance Hit
Unified Threat Management has become very popular, and several security companies have adopted this approach to provide the necessary security platforms their customers need. However, many of them require file caching and rebooting during the file scan and update processes--and this causes a serious performance problem.
SonicWALL appliances do not require file caching or rebooting, and in fact, is the only one on the market that can handle unlimited file sizes and hundreds of thousands of concurrent downloads. SonicWALL is capable of handling even the fastest growing network with its superior scalability and performance edge.
Without the reboot requirement after signature updates, SonicWALL is able to offer continuous protection, so your productivity is never affected.
|
VPN and Global Security Client »
SonicWALL's virtual private networking (VPN) technology lets you establish a secure and extensive VPN that is easy to manage and administer. SonicWALL® TZ and PRO Series network security appliances feature IPSec VPN capability for secure site-to-site remote access. Optionally, the SonicWALL® SSL VPN Series integrates seamlessly with these appliances or other firewalls to add secure clientless remote access from a broad range of Web-enabled devices. The SonicWALL® Global Security Client combines gateway enforcement, central management, configuration flexibility and software deployment to deliver comprehensive desktop security to mobile workers and corporate networks. Combined, these solutions offer universal reach to key business resources, along with superior gateway content protection services.
Clean VPN Technology
Creating a VPN with SonicWALL technology is easy, efficient and safe. SonicWALL® Clean VPN™ technology addresses the special security needs of the VPN, keeping out attacks that target VPNs while letting your employees in. Clean VPN decontaminates all mobile and branch office connections before they have a chance to threaten the network. The technology scans remote traffic streams for threats, so that any harmful traffic is addressed before it even reaches the network. Clean VPN can send you an alert as soon as threats are identified, so that all potential attacks can be immediately isolated and contained.
SonicWALL SSL VPN Integration
For the greatest layered support for your SSL VPNs, you can easily integrate your SonicWALL SSL VPN appliances with your SonicWALL TZ or PRO Series appliance. SonicWALL network security appliances add enhanced firewall security, gateway anti-virus, anti-spyware and content protection services to your SSL VPN.
Global Security Client
Mobile and remote workers are a key component of today’s corporate growth strategy. The SonicWALL Global Security Client keeps your mobile workforce productive by providing secure access to e-mail, files, intranets, and applications, without compromising network security. Administrators can configure granular policies by IP address or operating system for added flexibility.
|
Wireless LAN Services »
Utilizing continuously updated services, SonicWALL makes your wireless LAN as safe as your wired network. With Unified Threat Management, deep packet inspection and VPN technology, you can implement multiple zones of access (for both wired and wireless users) while maintaining total control over what’s being accessed by whom on your network. SonicWALL wireless appliances deliver the same gateway content protection as wired solutions, with integrated anti-virus, anti-spyware and intrusion prevention.
Secure, Distributed Wireless
SonicWALL's Secure Distributed Wireless Solution integrates 802.11a/b/g wireless with an enterprise class firewall and VPN gateway. The solution consists of TZ 170 or PRO appliances, which manage access points known as SonicPoints. Businesses can deploy SonicPoints throughout the network to establish trusted wireless security.
SonicWALL PRO Wireless Functionality
The SonicWALL can also function as a wireless switch and controller that automatically detects and configures SonicPoints. As SonicWALL wireless access points are added to the network, they are also simultaneously enforcing security policies on all wired and wireless traffic.
SonicWALL TZ Wireless Functionality
SonicWALL also gives you an option for integrated wireless connectivity with the SonicWALL TZ Wireless series. This high-performance appliance delivers the best in enterprise-class wireless security. Bringing together our world-class Unified Threat Management and deep packet inspection firewall with ultra-secure 802.11b/g wireless connectivity, the TZ series also offers the same IPSec VPN technology as the other SonicWALL firewall appliances.
Wireless Security
Wireless connectivity can be just as safe as any other type of connectivity with the right precautions. SonicWALL's TZ Wireless appliances include several advanced features, including enforced VPN encryption on the wireless LAN, and wireless intrusion detection and prevention service. As a result, your wireless network will be just as robust as any wired SonicWALL network, and just as impenetrable.
Multiple Zones of Access
Using the Wireless Guest Services feature, you can protect your network assets by creating multiple zones of access, for both wired and wireless workers, as well as guest wireless users. This provides you with a tremendous level of control over access, ensuring that users on the wireless network are able to access only the zones that you designate--and nothing more.
Gateway anti-virus
Of course, just like the other wired solutions, the SonicWALL wireless appliances also offer integrated, real-time gateway anti-virus, anti-spyware and intrusion prevention, to make sure that you are protected from any and all malicious threats and content.
|
Secure 3G Wireless Broadband Networking »
The SonicWALL TZ 190 Series enables the use of the Internet even in locations where wired broadband access is unavailable or requires time consuming installation and provisioning. By leveraging recent advances in 3G wireless broadband technologies, organizations can rapidly establish high-speed access for seasonal kiosks, mobile point-of-sale stations, portable ATM machines, disaster recovery networks, construction sites, and more as either a backup to a wired line or as a primary Internet connection.
Alternative to Wired Broadband
There are many circumstances where wired connectivity is unavailable. Wireless offers an efficient alternative, but to date, wireless speed has always been an issue. The most common wireless alternatives are dial-up and satellite. While satellite may offer some speed advantages, it tends to be quite costly; dial-up, on the other hand, is inexpensive but notoriously slow. In wireless environments like retail POS applications, where speed is critical, 3G wireless broadband is the only real solution.
Management of your 3G Wireless Network
Your 3G wireless broadband network, as implemented through the SonicWALL TZ 190 Series, can be managed through SonicWALL’s Global Management System (GMS) along with the rest of the network. All nodes on your wireless and wired network can be centrally managed and configured through a convenient, central interface.
Standard Features you Expect
The TZ 190 Series offers all the same features as the standard TZ product family, except that it delivers faster connectivity, has more memory and a larger switch with ten ethernet ports. Like the other TZ appliances and PRO appliances, the TZ 190 and TZ 190 Wireless includes gateway anti-virus, anti-spyware and intrusion protection service, desktop anti-virus, content filtering, and ViewPoint reporting software. Additionally, the TZ 190 Series includes load balancing, and WAN ISP failover features.
Solid Wireless Security
With your TZ 190 wireless broadband connection, you enjoy the same level of security as you would with any other SonicWALL appliance. The TZ 190 Series offers high performance, multi-layered security and a deep packet inspection firewall, which inspects all data packets before they enter the network. Unified Threat Management (UTM) delivers total protection. The TZ 190 Series is tuned to offer the same deep inspection and high level of protection at high speeds, so you will always enjoy a high level of network performance at any load condition.
Broad Support
Easy connection is always ensured. The platform integrates support for several Type II PC Card devices. Additionally, broadband coverage is available almost anywhere in the world, since the TZ 190 Series supports both GSM and CDMA-based 2G and 3G networks.
|
Failover & Failback Technology »
The high-end redundancy features of SonicWALL PRO and TZ Series appliances provide small and mid-size organizations with business continuity and disaster recovery at levels of reliability usually reserved for larger enterprises. Advanced features include active-passive failover for distributing or load sharing outbound WAN traffic, and hardware failover for automatically activating a passive appliance to assume responsibility for forwarding traffic. Failover even extends to the VPN, allowing remote branches to connect to a secondary gateway if the primary gateway is unavailable.
Business Coninuity
Business continuity is ensured through SonicWALL WAN redundancy features, hardware failover and load balancing. The PRO Series is ideally suited for complex networks requiring a higher level of business continuity features, offering six configurable Ethernet interfaces.
WAN ISP Failover and Load Balancing
One of the user-assigned ports can be designated as a secondary WAN port, ensuring highly reliable network connectivity and robust performance. This secondary WAN port can be configured in active-passive failover mode, providing a highly efficient method for distributing or load sharing outbound WAN traffic. Load balancing is available on all the PRO Series and TZ Series appliances (excluding the TZ 150).
Automated Failover and Failback
Integrated into TZ and PRO Series appliances are failover and failback technologies that ensure continuous uptime for IPSec VPN tunnels by automatically failing over to an alternate WAN connection should the broadband connection fail. Once the broadband is re-established, the appliance fails back to the original WAN connection, providing the best connection speed possible.
Hardware Failover
When in hardware failover mode, if the active unit fails, the passive unit will automatically detect and assume responsibility for forwarding traffic, for a greater level of reliability and redundancy.
VPN Gateway Failover
The SonicWALL appliance also provides support for remote/branch offices to seamlessly establish a VPN connection to a secondary gateway at the corporate headquarters, should the connection to the primary gateway be terminated, allowing for continuous uptime.
|
ViewPoint Management & Reporting Software »
Administrators require deep intelligence about network utilization and user activity without having to sift through large amounts of data. SonicWALL ViewPoint reporting software graphically illustrates network activity, such as bandwidth utilization, VPN reporting, threats observed, Web site usage, and more. Keeping compliant with external mandates such as Sarbanes-Oxley and HIPAA using ViewPoint’s customized reporting features is simple. All reports are comprehensive and easy to read, providing insight into usage trends and security events that, can be easily distributed.
Convenient Interface
ViewPoint software comes with a convenient dashboard that is highly customizable to suit your specific needs. With “at-a-glance” reporting that shows multiple summaries on a single page, you can easily drill down for more detail to analyze data across multiple reports.
Graphical Reports
All SonicWALL appliances, over both wired and wireless networks, send information to the ViewPoint software. This information is then transformed into reports that are easy to understand, highly customizable, and available in multiple formats. The configurable reports include information on any firewall attacks, details on bandwidth usage, Web site visits and user activity, all providing greater visibility into both productivity and suspicious activity.
Compliance
ViewPoint reports can assist in preparation for regulatory audits or regular reporting needs. Because the reporting function is highly customizable, it is possible to create reports that fulfill very specific compliance requirements. Reports can be set to run on a scheduled basis, or can be generated ad hoc at any time. Reports can also be saved as templates for future use.
Easy and Secure Access
Multiple users can log in simultaneously, to generate reports that are specific to their own needs and responsibilities. In addition, because ViewPoint is accessed through an ordinary Web browser, administrators can access all of the reporting functions from any location. Of course, access to reports is always secure and based on secure access protocols.
|
Ease of Use »
Small and mid-size organizations want the flexibility to add sophisticated network security features without adding complexity. By integrating advanced yet easy-to-use tools and capabilities directly into SonicWALL® TZ and PRO Series appliances, SonicWALL has engineered the complexity out of high performance secure networking.
Low TCO
By merging complete network protection into a single solution, SonicWALL network security solutions for small and mid-size organizations reduce the time and complexity that come with configuring, deploying and managing security solutions, providing a low total cost of ownership.
Simple To Deploy and Use
SonicWALL network security solutions for small and mid-size organizations are designed to be simple to deploy and use. Administrators of all experience levels will find SonicWALL's approach to configuration and policy creation simple to use and manage. Every TZ and PRO Series appliance features SonicWALL's innovative Web interface which utilizes a comprehensive suite of easy-to-use configuration wizards designed to guide users through the configuration steps for common user network environments or scenarios, making them simple to set up in any network environment.
Easy-To-Manage
Administrators can directly manage and deploy every SonicWALL network security appliance by command line interface, and collect local and remote data using SNMP. For larger multi-site deployments, SonicWALL's award-winning Global Management System provides network administrators with the tools for simplified configuration, enforcement and management of global security policies, VPN and services, all from a central location.
Integrated OS Features
SonicWALL’s powerful operating platform, SonicOS, is engineered to make even the most complex tasks simple. SonicOS includes a robust series of features that enable network administrators to add features such as object-based management and wireless guest services quickly and easily.
|
Centralized Policy Management »
The SonicWALL® Global Management System (GMS) gives administrators and solution providers the control to monitor, configure and report on dozens of SonicWALL appliances from a single intuitive interface. Real-time monitoring features send alerts as soon as an issue is detected. With GMS, administrators can easily view, group, and manage the policies and configurations of SonicWALL appliances on local or distributed networks. Custom GMS reports and policies can help you streamline compliance initiatives.
Intuitive Interface
GMS offers an intuitive, Web-based interface that lets you easily take control of your SonicWALL appliances and simplify configuration and policy management. By reducing the complexity of network management, GMS lowers total cost of ownership.
Policy Management
GMS helps you consolidate, group, and classify your appliances and their security policies with ease. You can customize your security environment to suit your individual policies, and even create different policies for separate user groups or departments.
Reporting
The integrated reporting architecture lets you customize and schedule reports that are individually tailored to the needs of specific managers, customers, and regulatory bodies. Detailed reporting, as well as customizable policy creation, can be used as part of your compliance initiatives for both internal and external regulations.
Device Monitoring and Altering
Real-time alerts with integrated monitoring capabilities lets managers take preventive action, and address problems immediately as they arise.
Object Management
Object-based management allows changes to be propagated across all SonicWALL appliances. An administrator can define an object, such as a user group, network, service, or interface. When a security policy changes, the administrator only has to modify that object, without having to manually redefine the rules for each individual appliance.
|
Security for Small and Mis-Sized Business
Every SonicWALL® TZ and PRO Series appliance can be configured into a customized network security solution, using an expanding array of seamlessly integrated services for gateway anti-virus, anti-spyware, intrusion prevention, enforced desktop anti-virus, content filtering and more. SonicWALL appliances also intelligently enforce and dynamically update each of these services as new updates become available. And with one complete solution from SonicWALL, small and mid-size organizations can avoid the integration and maintenance problems that often result from sourcing, installing, and maintaining security products and services from multiple vendors.
more info »
Solutions for Organizations of Any Size
Networks are under constant attack from a continually evolving array of threats that affect performance, communications and reliability. Point products can provide additional layers of security but are costly, difficult to manage and ineffective against multi-pronged attacks and network resource misuse. SonicWALL TZ and PRO network security appliances solve these issues by combining multiple network and security functions including a deep packet inspection firewall, IPSec VPN, layered anti-virus, anti-spyware, intrusion prevention and Web content filtering capabilities into a single integrated appliance that is easy to manage and deploy. The PRO Series delivers exceptional value and performance for organizations of all sizes, including branch offices, central sites, distributed enterprises and data centers.
more info » |