X.COMM Home
 
X.COMM Home
Juniper networks enterprise security appliances

JUNIPER NETWORKS ENTERPRISE SECURITY APPLIANCE PRODUCT LINE OVERVIEW

The Juniper Networks Integrated Security Gateways (ISG) are purpose-built, security solutions built around the fourth generation security ASIC, the GigScreen3, along with high-speed microprocessors to deliver unmatched firewall and VPN performance. These appliances are ideally suited for securing enterprise, carrier and data centre environments where advanced applications such as VoIP and streaming media dictate consistent, scalable performance. The ISG series can be upgraded to support integrated Intrusion Detection and Prevention (IDP) to provide robust network and application layer protection against current and emerging threats.

The NetScreen 5000 series is a line of purpose-built network security appliances that combine firewall, Virtual Private Networking (VPN), and traffic management functions designed to deliver high performance capabilities for large enterprise, carrier, and data center networks. Built around Juniper's third-generation security ASIC and distributed system architecture, the NetScreen-5000 series offers excellent scalability and flexibility.

JUNIPER NETWORKS GIGASCREEN ASIC

The GigaScreen security ASIC accelerates the firewall policy lookups and encryption and authentication algorithms in hardware. This is a significantly faster approach than a software only approach that relies solely on the CPU. This security-accelerating ASIC is tightly integrated with Juniper Network' s ScreenOS operating system to eliminate unnecessary software layers and security holes found in other security products built on general-purpose commercial operating systems.

RELIABILITY AND SECURITY OF APPLIANCES

The ease of installation and robust manageability of Juniper Network's all-in-one security appliances is complimented by its superior reliability and security capability. Without the inherent reliability issues associated with hard disk drives, appliances have proven to be the best long-term answer when uptime is important, offering high availability solutions with sub-second fail-over to maintain business continuity. Juniper Network's appliances only require configuration and management of the firewall, VPN, and traffic management features, alleviating the need to configure separate hardware and complex operating systems. This limits the time required to install and maintain the security device and reduces the number of setup steps where security holes are often created.

   JUNIPER NETWORKS ISG SERIES

The Juniper Networks ISG series includes two enterprise network products:-
the ISG 1000 appliance comes with four fixed 10/100/1000 interfaces and two additional I/O modules
the ISG 2000 appliance allows for up to four I/O modules and three security modules for IDP integration
Together, they are among the most versatile security appliances available today, offering a fully integrated FW/VPN/IDP system with gigabit performance, modular architecture and rich virtualization capabilities. Network segmentation, dynamic routing and multiple deployment modes simplifies network integration and deployment of internal security or multiple security domains making these appliances the ideal choice for enterprise, carrier or data centre environments.

   JUNIPER NETWORKS NETSCREEN-500, NETSCREEN-5200 and NETSCREEN-5400

The Juniper Networks NetScreen 500, 5200 and 5400 are a line of purpose-built, high performance firewall/VPN security systems designed for medium to large enterprises and carriers.

The NetScreen 500 has Virtual System support for logical partitioning of the system into separate firewall and/or VPN domains.

The NetScreen 5200/5400 offer switch fabric for data exchange ad separate multibus channel for control information. Virtualisation capabilties allow multiple customers or enterprie departments to be secured by a single security system.

  Feature/Capacity ISG 1000 ISG 2000 NetScreen-500 Netscreen-5200 Netscreen-5400
   Number Of interfaces 4 fixed 10/100/1000 plus
up to 8 mini GBIC
(SX,LX orTX),
up to 8 10/100/1000 or
up to 20 10/100
Up to 16 mini GBIC
(SX, LX or TX),
up to 8 10/100/1000 or
up to 28 10/100
Up to 8 10/100,
or 8 mini GBIC,
or 4 GBIC
8 mini-GBIC (SX, LX or TX)
2 XFP 10 Gig (SR or LR)
8 mini-GBIC (SX, LX or TX),
or 2XFP 10 Gig (SR or LR)
   Maximum Throughput
 
1 Gbps FW
1 Gbps 3DES VPN
4 Gbps FW
2Gbps 3DES/AES VPN
700 Mbps FW
250 3DES VPN
10 Gbps FW
6 Gbps 3DES VPN
30 Gbps FW
15Gbps 3DES VPN
   Maximum Number of sessions 500,000 1,000,000 25,000 1,000,000 1,000,000
   Maximum number of
   VPN Tunnels
2,000 10,000 5,000 site-to-site
10,000 remote access
25,000 25,000
   Maximum Number of policies 10,000 30,000 20,000 40,000 40,000
   Maximum number of
   Virtual Systems
0 default,
upgradeable to 50
0 default,
upgradeable to 250
0 default,
upgradeable to 25
0 default,
upgradeable to 500
0 default,
upgradeable to 500
   Maximum number of
   Virtual LANs
1000 2000 100 4000 4000
   Maximum number of
   Security Zones
20 default
upgradeable to 120
26 default
upgradeable to 526
8 default,
upto 50 additional
16 default,
upgradeable to 1,016
16 default,
upgradeable to 1,016
   Maximum number of
   Virtual Routers
3 default,
upgradable to 53
3 default,
upgradable to 253  
2 default,
upto 25 additional
3 default,
upgradeable to 503
3 default,
upgradeable to 503  
   High-Availability Modes
   Supported
 
Active/Passive
Active/Active
Active/Active Full Mesh
Active/Passive
Active/Active
Active/Active Full Mesh
Active/Passive
Active/Active
Active/Active Full Mesh
Active/Passive
Active/Active
Active/Active Full Mesh
Active/Passive | Active/Active
Active/Active Full Mesh
   IPS(Integrated IDP) Yes - optional upgrade Yes -optional upgrade N/A N/A N/A
   Deep Inspection FW Yes Yes Yes Yes Yes
   Integrated / Redirect Web
   Filtering
Yes/Yes Yes/Yes N/A No/Yes No/Yes

A Baseline software license is also available as an entry-level solution for both appliances in the ISG series and the NetScreen-500

XCOMM offers you a complete wrap-around service from design to implementation. Whatever the remote access challenges presented by your environment, we will find the optimum solution.

 

 


To request information on these Juniper products or any other product please click the Information Request menu item.

Mail to X.COMM - Secure Remote Access
Tel: 01883 730055 Fax: 01883 730057
 
 
web site designed by funkydunk.net