独自のClassification Algorithmを採用し、超高速パケット処理が可能で、世界トップの試験評価機関であるアメリカTolly Groupのテストにより立証されたポリシーと、セッションの数にかかわらずギガビットレベルのネットワーク性能を維持し、韓国ハイエンド級市場の半分以上を占めているベストセラーファイアウォールです。
世界初のActive-Active High Availabilityとして、安全性向上及び二重化と共にロードバランシングにより、ネットワークを安定的かつ効果的に運営することができます。
[Line UP]
|
Target |
Product |
Performance |
Chassis |
|
Large |
eXshield |
Max 16Gbps |
|
|
SECUI NXG 2000F |
2Gbps |
| |
|
NXG 2000 |
2Gbps |
| |
|
Medium |
SECUI NXG 800F |
1.6Gbps |
|
|
SECUI NXG 400F |
1Gbps |
| |
|
NXG 500 |
400Mbps |
| |
|
Small |
SECUI NXG 200F |
400Mbps |
|
|
SECUI NXG 100F |
100Mbps |
| |
|
NXG 200 |
200Mbps |
| |
|
NXG 100 |
140Mbps |
| |
|
NXG 50 |
70Mbps |
|
通過するパケットの13回比較で、最終ポリシーを適用する「韓国新技術」として認められた Classification Algorithm
High Availability:カーネルレベルでセッション情報を同期化し、分散しているパケットセッションの
メンテナンスを行い、障害が発生してもセッションを維持するのでネットワークを正常に運営
Economical efficiency:サービスプロトコル別に帯域幅を制限することで、限定された帯域幅を有効に使用
Convenience:多様なネットワーク構成可能(Router Mode、Bridge Mode)
* Functions *
|
Item |
Function |
Support |
|
Operation Mode |
Layer 2 Mode (Transparent Mode) |
Yes |
|
Layer 3 Mode (Route Mode, NAT Mode) |
Yes | |
|
PAT (Port Address Translation) |
Yes | |
|
HIGH AVAILABILITY |
Active / Stand by |
Yes |
|
Active-Active HA with L3 Switch |
Yes | |
|
Active-Active HA with L2 Switch |
Yes | |
|
Redundant Interfaces |
Yes | |
|
Configuration Synchronization |
Yes | |
|
Session Synchronization for Firewall and VPN |
Yes | |
|
Session Failover for Routing Change |
Yes | |
|
Device Failure Detection |
Yes | |
|
Link Failure Detection |
Yes | |
|
Authentication for New HA Members |
Yes | |
|
LOAD BALANCE & QoS |
Traffic Shaping |
Yes |
|
Load Balancing without L4 Switch |
Yes | |
|
Server Load Balancing |
Yes | |
|
Multiline IPSec Load Balancing by Packet (VPN) |
Yes | |
|
FIREWALL - MAJOR FEATURES |
Stateful Inspection Firewall |
|
|
* Dynamic Rules Settings |
Yes | |
|
* Session Synchronization at Kernel Level |
Yes | |
|
* Classification Algorithm |
Patented Algorithm | |
|
* Providing Secure Channel to Applications Using |
SUN RPC, SQL*NET, TFTP, FTP H.323, Dialpad, PPTP, L2TP, IPSec, PING,Real Player, Window Media Player,MSN | |
|
* Secure Proxy Supported |
HTTP Transparent Proxy, SMTP,POP3 | |
|
* Split DNS (External DNS & Internal DNS) |
Yes | |
|
FIREWALL - USER AUTHENTICATION |
Third Party User Authentication |
RADIUS, LDAP, SecureID, S/Key |
|
Web-Based Authentication |
Yes | |
|
DEEP INSPECTION |
Deep Inspection Firewall |
|
|
* Web Application Attacks Detected |
Yes | |
|
* Protocol Anomaly |
HTTP, SMTP, POP3 | |
|
* Stateful Protocol Signatures |
Yes | |
|
Intrusion Protection |
||
|
* DoS and DDoS Protection |
SYN Flooding Attack, | |
|
* Packet Dropping |
Yes | |
|
* Protection against Attacks Targeting Vulnerability of TCP/IP Stack |
Land Attack, | |
|
* Protection against Attacks Targeting Web Security Hole |
Yes | |
|
* Detection and Protection of Scanning Attempt |
Yes | |
|
* Session Shaping |
Yes | |
|
IPS - MAJOR FEATURES |
Traffic Analysis Features |
Yes |
|
Scanning Pattern Blocking |
||
|
* Scanning Pattern Detection |
FIN, NULL, XMAX SCAN, etc | |
|
* Blocking Time Control |
Yes | |
|
Session Monitoring & Shaping |
||
|
* Monitoring Area |
All Internet IP & | |
|
* Police Based Threshold Setup |
Yes | |
|
* Auto Configuration |
Yes | |
|
Protocol Analysis Features |
Yes | |
|
Web Application Defense |
HTTP | |
|
* HTTP Header & Body Analysis |
Yes | |
|
* Command Attack Detection Area SQL, LDAP Injection / OS Command Injection / |
Yes | |
|
* Website Cloaking |
Yes | |
|
* Dynamic Profiling |
Yes | |
|
Anti-spam |
SMTP, POP3 | |
|
* Session Connection Based Detection |
Spam Relay, | |
|
* Content Based Detection |
Signature, Keywords | |
|
Denial of Service Attacks Blocks |
||
|
* Protocols & Pattern Detection SYN Flooding, Ping Flooding, UDP Flooding, |
Yes | |
|
* Blocking Methodology |
Dynamic Black Lists | |
|
Client Quarantine |
Yes | |
|
Isolation of Infected Worm and Virus |
Yes | |
|
Block Agent Auto & All Installation |
First Web Traffic Detect | |
|
CONTENTS FILTERING |
Contents Inspection |
|
|
* External Anti-Virus |
||
|
* Embedded Anti-Virus |
Yes | |
|
* Embedded Anti-Spam |
Yes | |
|
* Malicious URL Filtering |
over 300,000 URL's | |
|
* Keyword Filtering |
Yes | |
|
* Fast A/V Card |
Yes | |
|
Signature Filtering |
Yes | |
|
* Signature Pattern List |
2,000 AVE | |
|
* Policy Based Signature Filtering |
Yes | |
|
* Pattern Update |
Push/Pull/Manual | |
|
Keyword Filtering |
||
|
* Pattern String Emergency Input |
Yes | |
|
* Concurrent Pattern String No.(10) |
Yes | |
|
ROUTING |
Dynamic Routing |
Yes(OSPF) |
|
Static Routing |
Yes | |
|
NETWORKING SUPPORT |
VLAN Trunking(802.1q) |
Yes |
|
VoIP |
Yes | |
|
Port Aggregation(802.3ad) |
Yes | |
|
PKI SUPPORT |
PKI Certificate Request |
PKCS#7, PKCS#10 |
|
Online Certificate Status Protocol (OCSP) |
Yes | |
|
Certificate Authorities Supported |
VeriSign, Entrust | |
|
SYSTEM MANAGEMENT |
Java Based User Interface |
|
|
Command Line Interface |
Console, Telnet, SSH | |
|
All Management via VPN Tunnel on Any Interface |
||
|
SNMP Full Custom MIB |
||
|
MANAGEMENT |
Central Management |
Yes |
|
Root Admin, Admin and Read Only User Levels |
Yes | |
|
Secure Connection with User Authentication |
Yes | |
|
Configuration Rollback |
Yes | |
|
LOGGING & MONITORING |
Syslog (Multiple Servers) |
External, |
|
E-mail (2 Addresses) |
Yes (Unrestriced) | |
|
SNMP (Version 2) |
Yes (ver 1, 2) | |
|
Activity Log & Counter Log |
Yes | |
|
Log File Format |
Binary, CSV, TSV, WELF | |
|
Log Analyzer |
Yes | |
|
Interoperbility with ESM Solutions |
Yes | |
|
Reporting |
Yes (HTML Format) | |
|
IP ADDRESS ASSIGNMENT |
Static IP Address |
Yes |
|
DHCP, PPPoE Client |
Yes | |
|
Internal DHCP Server |
Yes | |
|
DHCP Relay |
Yes | |
|
CERTIFICATION |
Security Certification |
CC |
* Performance *
|
Target |
Product |
Performance |
|
Large |
eXshield |
Throughput : Max 16Gbps |
|
SECUI NXG 2000F |
Throughput : 2Gbps | |
|
NXG 2000 |
Throughput : 2Gbps | |
|
Medium |
SECUI NXG 800F |
Throughput : 1.6Gbps |
|
SECUI NXG 400F |
Throughput : 1Gbps | |
|
NXG 500 |
Throughput : 400Mbps | |
|
Small |
SECUI NXG 200F |
Throughput : 400Mbps |
|
SECUI NXG 100F |
Throughput : 100Mbps | |
|
NXG 200 |
Throughput : 200Mbps | |
|
NXG 100 |
Throughput : 140Mbps | |
|
NXG 50 |
Throughput : 70Mbps |

Underconstruction
|
Target |
Product |
CPU |
Memory |
HDD |
Storage |
NIC |
Dimemsions |
|
Large |
eXshield |
XLR 732 1.2GHz |
8GB |
- |
2GB |
1Gbps Fiber * 12, 1Gbps * 12, 10GF * 2 |
424*482*88 |
|
SECUI NXG |
Intel Xeon 3.2GHz Dual |
2GB |
400GB * 2 (RAID Mirroring ) |
CF 512MB |
1Gbps Fiber * 8, 1Gbps Cooper * 4 |
426*550*88 | |
|
NXG 2000 |
Intel Xeon 2.8GHz Dual |
2GB |
80GB |
- |
1Gbps Fiber * 4, 1Gbps Cooper * 4, 10/100Mbps * 3 |
428*406*88 | |
|
Medium
Scale Network |
SECUI NXG |
Intel Core 2 Duo 1.66GHz |
1GB |
400GB |
CF 512MB |
1Gbps Fiber * 4, 1Gbps Cooper * 6 |
430*420*88 |
|
SECUI NXG |
Intel Core Duo 1.7GHz |
512MB |
250GB |
CF 512MB |
1Gbps Cooper * 8 |
430*415*44 | |
|
NXG 500 |
PPC 750GX 1GHz |
512MB |
80GB |
NAND 128MB |
1Gbps Fiber * 4, 1Gbps Cooper * 4, 10/100Mbps * 1 |
428*360*88 | |
|
Small |
SECUI NXG |
Intel Celeron 1.2GHz |
512MB |
- |
CF 512MB |
1Gbps Cooper * 4 |
426*270*44 |
|
SECUI NXG |
Intel M-Celeron 600MHz |
512MB |
- |
CF 512MB |
10/100Mbps * 6 |
225*205*50 | |
|
NXG 200 |
PPC 750FX 800MHz |
512MB |
80GB |
NAND 128MB |
100Mbps * 7 |
440*320*44 | |
|
NXG 100 |
MPC 8245 300MHz |
128MB |
- |
NAND 128MB |
100Mbps * 6 |
305*225*44 | |
|
NXG 50 |
MPC 8245 266MHz |
128MB |
- |
NAND 128MB |
100Mbps * 3 |
220*144*44 |











