|
|
GateMAN 3506 firewall is a plug and play device and a really transparent (wire level) frame inspector with maximum
throughput. Its installation is as easy as an ordinary Ethernet switch. After
installation, all IP packets with wrong checksums will be dropped. All TCP
connections will be checked, from the checksum to the state transition and
sequence numbers of TCP sessions. If configured, the logs about all fetched
URLs, Email senders/recipients, FTP users and commands, besides hundreds of
statistical information will be sent to the log collector system. Logs of GateMAN 3506 are sent by a special purpose protocol which
will not be saturated by SPAM and/or junk Sync floods. GateMAN 3506 is a 6-ports
, layers 2-7 switch with many advanced features1 including2:
-
Six 10/100 TX Ethernet ports.
-
16x2 characters LCD panel for system information reporting and limited setup.
-
Serial port console with full setup capabilities.
-
19 inches rack mountable chassis with 1U height.
-
Traffic shaping features including:
-
Frames per second limit on in/out frames per port
-
Frame drops per port statistics
-
Bytes dropped per port statistics
-
IP, ARP, Reverse ARP, IPX, PUP, Loop back, and RAW frame type filtering (e.g.
“allow NO IPX frames to come in from port 6” or “allow frames with type 0x805 to
go out from port 43”, etc).
-
Current/Max so far Frames/Bytes per second in/out statistics per port with
capability to reset the statistics
-
Per port queue with statistics on queues (e.g.: “Max number of frames queued on
port number 5 so far”) with capability to reset the values
-
Per port queue length adjustment capability
-
Full layer three, packet filtering with automatic IP checksum control.
-
Tight TCP stateful inspection including:
-
TCP sequence number checking and tracing
-
Sync/Ack/Fin state transition and violation control
-
TCP checksum checking
-
Out of sequence TCP packet alignment
-
Per TCP connection bandwidth limitation
-
DDos attack per destination control and protection
-
Port scan reporting and limitation
-
Application layer protocol monitoring and violation control for Telnet, SMTP,
FTP, and HTTP (e.g.: invalid HTTP requests cause TCP
connection termination).
-
URL filtering with user defined URL databases to filter domains, sub-domains,
directories in sites.
-
White list URL databases.
-
Per entry URL database classification to let administrator classify sites in
more than 64000 classes.
-
Regular expression matching with space for 100 regular expressions to match with
HTTP requests.
-
SMTP session filtering based on entries defined in databases of username, domain
name, user@domain.
-
Plug and play installation as any industry standard Ethernet switch.
-
GUI based setup programs for Windows™ and Linux™.
-
Ultra fast log protocol with additional free software to manage the logs for
months and make reports (requires a computer to collect the logs – not
supplied).
-
IPSec support.
-
NAT/PAT/MAT (MAC Address translation) support.
-
IP/MAC database as source and/or destination in rules.
-
Operation Temperature: 0 ~ 50
-
Color: Dark Blue
-
Dimensions: 431(W)x44(H)x250(D)mm
-
Please Contact your local distributor for complete list of features.
-
The Provided information is subject to change without notice.
-
The Syntax of Firewall Rules is just for demonstration.
|