|
JUNIPER NETWORKS ENTERPRISE SECURITY APPLIANCE PRODUCT LINE OVERVIEW
The Juniper Networks Integrated Security Gateways (ISG) are purpose-built, security solutions built around the fourth generation security ASIC, the GigScreen3, along with high-speed microprocessors to deliver unmatched firewall and VPN performance. These appliances are ideally suited for securing enterprise, carrier and data centre environments where advanced applications such as VoIP and streaming media dictate consistent, scalable performance. The ISG series can be upgraded to support integrated Intrusion Detection and Prevention (IDP) to provide robust network and application layer protection against current and emerging threats.
The NetScreen 5000 series is a line of purpose-built network security appliances that combine firewall, Virtual Private Networking (VPN), and traffic management functions designed to deliver high performance capabilities for large enterprise, carrier, and data center networks. Built around Juniper's third-generation security ASIC and distributed system architecture, the NetScreen-5000 series offers excellent scalability and flexibility.
JUNIPER NETWORKS GIGASCREEN ASIC
The GigaScreen security ASIC accelerates the firewall policy lookups and encryption and authentication algorithms in hardware. This is a significantly faster approach than a software only approach that relies solely on the CPU. This security-accelerating ASIC is tightly integrated with Juniper Network' s ScreenOS operating system to eliminate unnecessary software layers and security holes found in other security products built on general-purpose commercial operating systems.
RELIABILITY AND SECURITY OF APPLIANCES
The ease of installation and robust manageability of Juniper Network's all-in-one security appliances is complimented by its superior reliability and security capability. Without the inherent reliability issues associated with hard disk drives, appliances have proven to be the best long-term answer when uptime is important, offering high availability solutions with sub-second fail-over to maintain business continuity. Juniper Network's appliances only require configuration and management of the firewall, VPN, and traffic management features, alleviating the need to configure separate hardware and complex operating systems. This limits the time required to install and maintain the security device and reduces the number of setup steps where security holes are often created.
| JUNIPER NETWORKS ISG SERIES |
 |
The Juniper Networks ISG series includes two enterprise network products:-
the ISG 1000 appliance comes with four fixed 10/100/1000 interfaces and two additional I/O modules
the ISG 2000 appliance allows for up to four I/O modules and three security modules for IDP integration
Together, they are among the most versatile security appliances available today, offering a fully integrated FW/VPN/IDP system with gigabit performance, modular architecture and rich virtualization capabilities. Network segmentation, dynamic routing and multiple deployment modes simplifies network integration and deployment of internal security or multiple security domains making these appliances the ideal choice for enterprise, carrier or data centre environments. |
| JUNIPER NETWORKS NETSCREEN-500, NETSCREEN-5200 and NETSCREEN-5400 |
 |
The Juniper Networks NetScreen 500, 5200 and 5400 are a line of purpose-built, high performance firewall/VPN security systems designed for medium to large enterprises and carriers.
The NetScreen 500 has Virtual System support for logical partitioning of the system into separate firewall and/or VPN domains.
The NetScreen 5200/5400 offer switch fabric for data exchange ad separate multibus channel for control information. Virtualisation capabilties allow multiple customers or enterprie departments to be secured by a single security system. |
| Feature/Capacity |
ISG 1000 |
ISG 2000 |
NetScreen-500 |
Netscreen-5200 |
Netscreen-5400 |
| Number Of interfaces |
4 fixed 10/100/1000 plus up to 8 mini GBIC (SX,LX orTX), up to 8 10/100/1000 or up to 20 10/100 |
Up to 16 mini GBIC (SX, LX or TX), up to 8 10/100/1000 or up to 28 10/100 |
Up to 8 10/100,
or 8 mini GBIC, or 4 GBIC |
8 mini-GBIC (SX, LX or TX) 2 XFP 10 Gig (SR or LR) |
8 mini-GBIC (SX, LX or TX), or 2XFP 10 Gig (SR or LR) |
Maximum Throughput
|
1 Gbps FW
1 Gbps 3DES VPN |
4 Gbps FW
2Gbps 3DES/AES VPN |
700 Mbps FW
250 3DES VPN |
10 Gbps FW
6 Gbps 3DES VPN |
30 Gbps FW
15Gbps 3DES VPN |
| Maximum Number of sessions |
500,000 |
1,000,000 |
25,000 |
1,000,000 |
1,000,000 |
Maximum number of VPN Tunnels |
2,000 |
10,000 |
5,000 site-to-site 10,000 remote access |
25,000 |
25,000 |
| Maximum Number of policies |
10,000 |
30,000 |
20,000 |
40,000 |
40,000 |
Maximum number of
Virtual Systems |
0 default, upgradeable to 50 |
0 default,
upgradeable to 250 |
0 default, upgradeable to 25 |
0 default, upgradeable to 500 |
0 default, upgradeable to 500 |
Maximum number of Virtual LANs |
1000 |
2000 |
100 |
4000 |
4000 |
Maximum number of Security Zones |
20 default upgradeable to 120 |
26 default upgradeable to 526 |
8 default, upto 50 additional |
16 default, upgradeable to 1,016 |
16 default, upgradeable to 1,016 |
Maximum number of Virtual Routers |
3 default, upgradable to 53 |
3 default, upgradable to 253 |
2 default, upto 25 additional |
3 default, upgradeable to 503 |
3 default, upgradeable to 503 |
High-Availability Modes Supported
|
Active/Passive Active/Active Active/Active Full Mesh |
Active/Passive Active/Active Active/Active Full Mesh |
Active/Passive Active/Active Active/Active Full Mesh |
Active/Passive Active/Active Active/Active Full Mesh |
Active/Passive | Active/Active
Active/Active Full Mesh |
| IPS(Integrated IDP) |
Yes - optional upgrade |
Yes -optional upgrade |
N/A |
N/A |
N/A |
| Deep Inspection FW |
Yes |
Yes |
Yes |
Yes |
Yes |
Integrated / Redirect Web
Filtering |
Yes/Yes |
Yes/Yes |
N/A |
No/Yes |
No/Yes |
| A Baseline software license is also available as an entry-level solution for both appliances in the ISG series and the NetScreen-500 |
| XCOMM offers you a complete wrap-around service from design to implementation. Whatever the remote access challenges presented by your environment, we will find the optimum solution. |
 |
|
 |
To request information on these Juniper products or any other product please click the Information Request menu item.
|