[Line UP]
|
Target |
Product |
Performance |
Chassis |
|
Large |
SECUI NXG 2000V |
2Gbps |
|
|
NXG 2000SE |
2Gbps |
| |
|
Medium |
SECUI NXG 800V |
1.6Gbps |
|
|
SECUI NXG 400V |
1Gbps |
| |
|
NXG 500SE |
300Mbps |
| |
|
Small |
SECUI NXG 200V |
50Mbps |
|
|
SECUI NXG 100V |
10Mbps |
| |
|
NXG 200SE |
180Mbps |
| |
|
NXG 100SE |
100Mbps |
| |
|
NXG 50SE |
10Mbps |
|
カーネルレベルでセッション及びトンネル情報を同期化し、分散されているパケットのセッションを維持管理し、
障害が発生してもセッションを維持するのでネットワークを正常に運営
標準 IPSec 使用:IPSec 国際標準遵守
Fast IKE:Active-Active Dual Line VPN構成をサポートし、一度だけのユーザ認証で接続しようとする単位のネットワークまで
TunnelingできるVPN構成、また、Default Routingを内部 Private Networkで指定する場合にも正常にKey交換が可能
Trust CA:CA Server実装及び自動認証書の発行メカニズムを搭載
* Functions *
|
Item |
Function |
Support |
|
Operation Mode |
Layer 2 Mode (Transparent Mode) |
Yes |
|
Layer 3 Mode (Route Mode, NAT Mode) |
Yes | |
|
PAT (Port Address Translation) |
Yes | |
|
HIGH AVAILABILITY |
Active / Stand by |
Yes |
|
Active-Active HA with L3 Switch |
Yes | |
|
Active-Active HA with L2 Switch |
Yes | |
|
Redundant Interfaces |
Yes | |
|
Configuration Synchronization |
Yes | |
|
Session Synchronization for Firewall and VPN |
Yes | |
|
Session Failover for Routing Change |
Yes | |
|
Device Failure Detection |
Yes | |
|
Link Failure Detection |
Yes | |
|
Authentication for New HA Members |
Yes | |
|
LOAD BALANCE & QoS |
Traffic Shaping |
Yes |
|
Load Balancing without L4 Switch |
Yes | |
|
Server Load Balancing |
Yes | |
|
Multiline IPSec Load Balancing by Packet (VPN) |
Yes | |
|
FIREWALL - MAJOR FEATURES |
Stateful Inspection Firewall |
|
|
* Dynamic Rules Settings |
Yes | |
|
* Session Synchronization at Kernel Level |
Yes | |
|
* Classification Algorithm |
Patented Algorithm | |
|
* Providing Secure Channel to Applications Using |
SUN RPC, SQL*NET, TFTP, FTP H.323, Dialpad, PPTP, L2TP, IPSec, PING,Real Player, Window Media Player,MSN | |
|
* Secure Proxy Supported |
HTTP Transparent Proxy, SMTP,POP3 | |
|
* Split DNS (External DNS & Internal DNS) |
Yes | |
|
VPN - USER AUTHENTICATION |
Third Party User Authentication |
RADIUS, LDAP, SecureID, S/Key |
|
XAUTH VPN Authentication |
Yes | |
|
Web-Based Authentication |
Yes | |
|
DEEP INSPECTION |
Deep Inspection Firewall |
|
|
* Web Application Attacks Detected |
Yes | |
|
* Protocol Anomaly |
HTTP, SMTP, POP3 | |
|
* Stateful Protocol Signatures |
Yes | |
|
Intrusion Protection |
||
|
* DoS and DDoS Protection |
SYN Flooding Attack, | |
|
* Packet Dropping |
Yes | |
|
* Protection against Attacks Targeting Vulnerability of TCP/IP Stack |
Land Attack, | |
|
* Protection against Attacks Targeting Web Security Hole |
Yes | |
|
* Detection and Protection of Scanning Attempt |
Yes | |
|
* Session Shaping |
Yes | |
|
VPN - MAJOR FEATURES |
Encryption Algorithm(DES, 3-DES,AES,SEED,etc ) |
Yes |
|
Authentication Algorithm |
SHA-1, HAS-160 | |
|
Key Manipulation |
Manual, IKE, PKI(X.509) | |
|
Perfect Forward Secrecy |
DH Group 1,2,5 | |
|
Prevent Replay Attack |
Yes | |
|
Remote Access VPN |
Yes | |
|
TBB (TCP Bandwidth Bonding) |
Yes | |
|
IPSec NAT Traversal |
Yes | |
|
DPD (Dead Peer Detection) |
Yes | |
|
DLD (Dead Link Detection) |
Yes | |
|
Split Tunneling |
Yes | |
|
Redundant VPN Gateways |
Yes | |
|
Zero Packet Loss SA Rekeying |
Yes | |
|
ROUTING |
Dynamic Routing |
Yes(OSPF) |
|
Static Routing |
Yes | |
|
NETWORKING SUPPORT |
VLAN Trunking(802.1q) |
Yes |
|
VoIP |
Yes | |
|
Port Aggregation(802.3ad) |
Yes | |
|
PKI SUPPORT |
PKI Certificate Request |
PKCS#7, PKCS#10 |
|
Online Certificate Status Protocol (OCSP) |
Yes | |
|
Certificate Authorities Supported |
VeriSign, Entrust | |
|
SYSTEM MANAGEMENT |
Java Based User Interface |
|
|
Command Line Interface |
Console, Telnet, SSH | |
|
All Management via VPN Tunnel on Any Interface |
||
|
SNMP Full Custom MIB |
||
|
MANAGEMENT |
Central Management |
Yes |
|
Root Admin, Admin and Read Only User Levels |
Yes | |
|
Secure Connection with User Authentication |
Yes | |
|
Configuration Rollback |
Yes | |
|
LOGGING & MONITORING |
Syslog (Multiple Servers) |
External, |
|
E-mail (2 Addresses) |
Yes (Unrestriced) | |
|
SNMP (Version 2) |
Yes (ver 1, 2) | |
|
Activity Log & Counter Log |
Yes | |
|
Log File Format |
Binary, CSV, TSV, WELF | |
|
Log Analyzer |
Yes | |
|
Interoperbility with ESM Solutions |
Yes | |
|
Reporting |
Yes (HTML Format) | |
|
IP ADDRESS ASSIGNMENT |
Static IP Address |
Yes |
|
DHCP, PPPoE Client |
Yes | |
|
Internal DHCP Server |
Yes | |
|
DHCP Relay |
Yes | |
|
CERTIFICATION |
Security Certification |
CC |
* Performance *
|
Target |
Product |
Performance |
|
Large |
SECUI NXG 2000V |
Throughput : 2Gbps |
|
NXG 2000SE |
Throughput : 2Gbps | |
|
Medium |
SECUI NXG 800V |
Throughput : 1.6Gbps |
|
SECUI NXG 400V |
Throughput : 1Gbps | |
|
NXG 500SE |
Throughput : 300Mbps | |
|
Small |
SECUI NXG 200V |
Throughput : 50Mbps |
|
SECUI NXG 100V |
Throughput : 10Mbps | |
|
NXG 200SE |
Throughput : 180Mbps | |
|
NXG 100SE |
Throughput : 100Mbps | |
|
NXG 50SE |
Throughput : 10Mbps |
Underconstruction
|
Target |
Product |
CPU |
MEMORY |
HDD |
Storage |
NIC |
Dimensions |
|
Large |
SECUI NXG |
Intel Xeon 3.2GHz Dual |
2GB |
400GB * 2 (RAID Mirroring ) |
CF 512MB |
1Gbps Fiber * 8, 1Gbps Cooper * 4 |
426*550*88 |
|
NXG 2000SE |
Intel Xeon 2.8GHz Dual |
2GB |
80GB |
- |
1Gbps Fiber * 4, 1Gbps Cooper * 4, 10/100Mbps * 3 |
428*406*88 | |
|
Medium
Scale Network |
SECUI NXG |
Intel Core 2 Duo 1.66GHz |
1GB |
400GB |
CF 512MB |
1Gbps Fiber * 4, 1Gbps Cooper * 6 |
430*420*88 |
|
SECUI NXG |
Intel Core Duo 1.7GHz |
512MB |
250GB |
CF 512MB |
1Gbps Cooper * 8 |
430*415*44 | |
|
NXG 500SE |
PPC 750GX 1GHz |
512MB |
80GB |
NAND 128MB |
1Gbps Fiber * 4, 1Gbps Cooper * 4, 10/100Mbps * 1 |
428*360*88 | |
|
Small |
SECUI NXG |
Intel Celeron 1.2GHz |
512MB |
- |
CF 512MB |
1Gbps Cooper * 4 |
426*270*44 |
|
SECUI NXG |
Intel M-Celeron 600MHz |
512MB |
- |
CF 512MB |
10/100Mbps * 6 |
225*205*50 | |
|
NXG 200SE |
PPC 750FX 800MHz |
512MB |
80GB |
NAND 128MB |
100Mbps * 7 |
440*320*44 | |
|
NXG 100SE |
MPC 8245 300MHz |
128MB |
- |
NAND 128MB |
100Mbps * 6 |
305*225*44 | |
|
NXG 50SE |
MPC 8245 266MHz |
128MB |
- |
NAND 128MB |
100Mbps * 3 |
220*144*44 |










