This solution allows high bandwidth to be used at affordable internet line rates. The structure allows the connection to be maintained even if problems arise in the modem, line, or equipment. Linkages and expansion are also easy because it abides by IPSec standards.
[Line UP]
|
Target |
Product |
Performance |
Chassis |
|
Large |
SECUI NXG 2000V |
2Gbps |
|
|
NXG 2000SE |
2Gbps |
| |
|
Medium |
SECUI NXG 800V |
1.6Gbps |
|
|
SECUI NXG 400V |
1Gbps |
| |
|
NXG 500SE |
300Mbps |
| |
|
Small |
SECUI NXG 200V |
50Mbps |
|
|
SECUI NXG 100V |
10Mbps |
| |
|
NXG 200SE |
180Mbps |
| |
|
NXG 100SE |
100Mbps |
| |
|
NXG 50SE |
10Mbps |
|
equipment unnecessary. Session and tunnel information are synchronized at the kernel level to maintain
and manage the sessions of dispersed packets, and the session is maintained even if a malfunction occurs.
IPSec compliant : Abides by IPSec standards
Fast IKE : Supports active-active dual line VPN organization, the VPN organization allows tunneling
to the desired unit network with only one user certification, and the key exchange function is normal even if
default routing is set to the internal private network
Trust CA : Contains CA server and includes automatic certification issuance mechanism
* Functions *
|
Item |
Function |
Support |
|
Operation Mode |
Layer 2 Mode (Transparent Mode) |
Yes |
|
Layer 3 Mode (Route Mode, NAT Mode) |
Yes | |
|
PAT (Port Address Translation) |
Yes | |
|
HIGH AVAILABILITY |
Active / Stand by |
Yes |
|
Active-Active HA with L3 Switch |
Yes | |
|
Active-Active HA with L2 Switch |
Yes | |
|
Redundant Interfaces |
Yes | |
|
Configuration Synchronization |
Yes | |
|
Session Synchronization for Firewall and VPN |
Yes | |
|
Session Failover for Routing Change |
Yes | |
|
Device Failure Detection |
Yes | |
|
Link Failure Detection |
Yes | |
|
Authentication for New HA Members |
Yes | |
|
LOAD BALANCE & QoS |
Traffic Shaping |
Yes |
|
Load Balancing without L4 Switch |
Yes | |
|
Server Load Balancing |
Yes | |
|
Multiline IPSec Load Balancing by Packet (VPN) |
Yes | |
|
FIREWALL - MAJOR FEATURES |
Stateful Inspection Firewall |
|
|
* Dynamic Rules Settings |
Yes | |
|
* Session Synchronization at Kernel Level |
Yes | |
|
* Classification Algorithm |
Patented Algorithm | |
|
* Providing Secure Channel to Applications Using |
SUN RPC, SQL*NET, TFTP, FTP H.323, Dialpad, PPTP, L2TP, IPSec, PING,Real Player, Window Media Player,MSN | |
|
* Secure Proxy Supported |
HTTP Transparent Proxy, SMTP,POP3 | |
|
* Split DNS (External DNS & Internal DNS) |
Yes | |
|
VPN - USER AUTHENTICATION |
Third Party User Authentication |
RADIUS, LDAP, SecureID, S/Key |
|
XAUTH VPN Authentication |
Yes | |
|
Web-Based Authentication |
Yes | |
|
DEEP INSPECTION |
Deep Inspection Firewall |
|
|
* Web Application Attacks Detected |
Yes | |
|
* Protocol Anomaly |
HTTP, SMTP, POP3 | |
|
* Stateful Protocol Signatures |
Yes | |
|
Intrusion Protection |
||
|
* DoS and DDoS Protection |
SYN Flooding Attack, | |
|
* Packet Dropping |
Yes | |
|
* Protection against Attacks Targeting Vulnerability of TCP/IP Stack |
Land Attack, | |
|
* Protection against Attacks Targeting Web Security Hole |
Yes | |
|
* Detection and Protection of Scanning Attempt |
Yes | |
|
* Session Shaping |
Yes | |
|
VPN - MAJOR FEATURES |
Encryption Algorithm(DES, 3-DES,AES,SEED,etc ) |
Yes |
|
Authentication Algorithm |
SHA-1, HAS-160 | |
|
Key Manipulation |
Manual, IKE, PKI(X.509) | |
|
Perfect Forward Secrecy |
DH Group 1,2,5 | |
|
Prevent Replay Attack |
Yes | |
|
Remote Access VPN |
Yes | |
|
TBB (TCP Bandwidth Bonding) |
Yes | |
|
IPSec NAT Traversal |
Yes | |
|
DPD (Dead Peer Detection) |
Yes | |
|
DLD (Dead Link Detection) |
Yes | |
|
Split Tunneling |
Yes | |
|
Redundant VPN Gateways |
Yes | |
|
Zero Packet Loss SA Rekeying |
Yes | |
|
ROUTING |
Dynamic Routing |
Yes(OSPF) |
|
Static Routing |
Yes | |
|
NETWORKING SUPPORT |
VLAN Trunking(802.1q) |
Yes |
|
VoIP |
Yes | |
|
Port Aggregation(802.3ad) |
Yes | |
|
PKI SUPPORT |
PKI Certificate Request |
PKCS#7, PKCS#10 |
|
Online Certificate Status Protocol (OCSP) |
Yes | |
|
Certificate Authorities Supported |
VeriSign, Entrust | |
|
SYSTEM MANAGEMENT |
Java Based User Interface |
|
|
Command Line Interface |
Console, Telnet, SSH | |
|
All Management via VPN Tunnel on Any Interface |
||
|
SNMP Full Custom MIB |
||
|
MANAGEMENT |
Central Management |
Yes |
|
Root Admin, Admin and Read Only User Levels |
Yes | |
|
Secure Connection with User Authentication |
Yes | |
|
Configuration Rollback |
Yes | |
|
LOGGING & MONITORING |
Syslog (Multiple Servers) |
External, |
|
E-mail (2 Addresses) |
Yes (Unrestriced) | |
|
SNMP (Version 2) |
Yes (ver 1, 2) | |
|
Activity Log & Counter Log |
Yes | |
|
Log File Format |
Binary, CSV, TSV, WELF | |
|
Log Analyzer |
Yes | |
|
Interoperbility with ESM Solutions |
Yes | |
|
Reporting |
Yes (HTML Format) | |
|
IP ADDRESS ASSIGNMENT |
Static IP Address |
Yes |
|
DHCP, PPPoE Client |
Yes | |
|
Internal DHCP Server |
Yes | |
|
DHCP Relay |
Yes | |
|
CERTIFICATION |
Security Certification |
CC |
* Performance *
|
Target |
Product |
Performance |
|
Large |
SECUI NXG 2000V |
Throughput : 2Gbps |
|
NXG 2000SE |
Throughput : 2Gbps | |
|
Medium |
SECUI NXG 800V |
Throughput : 1.6Gbps |
|
SECUI NXG 400V |
Throughput : 1Gbps | |
|
NXG 500SE |
Throughput : 300Mbps | |
|
Small |
SECUI NXG 200V |
Throughput : 50Mbps |
|
SECUI NXG 100V |
Throughput : 10Mbps | |
|
NXG 200SE |
Throughput : 180Mbps | |
|
NXG 100SE |
Throughput : 100Mbps | |
|
NXG 50SE |
Throughput : 10Mbps |
Underconstruction
|
Target |
Product |
CPU |
Memory |
HDD |
Storage |
NIC |
Dimensions |
|
Large |
SECUI NXG |
Intel Xeon 3.2GHz Dual |
2GB |
400GB * 2 (RAID Mirroring ) |
CF 512MB |
1Gbps Fiber * 8, 1Gbps Cooper * 4 |
426*550*88 |
|
NXG 2000SE |
Intel Xeon 2.8GHz Dual |
2GB |
80GB |
- |
1Gbps Fiber * 4, 1Gbps Cooper * 4, 10/100Mbps * 3 |
428*406*88 | |
|
Medium
Scale Network |
SECUI NXG |
Intel Core 2 Duo 1.66GHz |
1GB |
400GB |
CF 512MB |
1Gbps Fiber * 4, 1Gbps Cooper * 6 |
430*420*88 |
|
SECUI NXG |
Intel Core Duo 1.7GHz |
512MB |
250GB |
CF 512MB |
1Gbps Cooper * 8 |
430*415*44 | |
|
NXG 500SE |
PPC 750GX 1GHz |
512MB |
80GB |
NAND 128MB |
1Gbps Fiber * 4, 1Gbps Cooper * 4, 10/100Mbps * 1 |
428*360*88 | |
|
Small |
SECUI NXG |
Intel Celeron 1.2GHz |
512MB |
- |
CF 512MB |
1Gbps Cooper * 4 |
426*270*44 |
|
SECUI NXG |
Intel M-Celeron 600MHz |
512MB |
- |
CF 512MB |
10/100Mbps * 6 |
225*205*50 | |
|
NXG 200SE |
PPC 750FX 800MHz |
512MB |
80GB |
NAND 128MB |
100Mbps * 7 |
440*320*44 | |
|
NXG 100SE |
MPC 8245 300MHz |
128MB |
- |
NAND 128MB |
100Mbps * 6 |
305*225*44 | |
|
NXG 50SE |
MPC 8245 266MHz |
128MB |
- |
NAND 128MB |
100Mbps * 3 |
220*144*44 |










