Celestix MSA 5000 Series Manual do Utilizador

Consulte online ou descarregue Manual do Utilizador para Gateways/controladores Celestix MSA 5000 Series. (ISA) Server 2004 Manual do Utilizador

  • Descarregar
  • Adicionar aos meus manuais
  • Imprimir
  • Página
    / 49
  • Índice
  • MARCADORES
  • Avaliado. / 5. Com base em avaliações de clientes
Vista de página 0
What
What
s New in
s New in
Internet Security &
Internet Security &
Acceleration (ISA)
Acceleration (ISA)
Server 2004
Server 2004
Avinash Lotke
Avinash Lotke
Technology Specialist
Technology Specialist
Microsoft Corporation
Microsoft Corporation
Vista de página 0
1 2 3 4 5 6 ... 48 49

Resumo do Conteúdo

Página 1

WhatWhat’’s New in s New in Internet Security & Internet Security & Acceleration (ISA) Acceleration (ISA) Server 2004Server 2004Avinash LotkeA

Página 2 - Security Issues Today

ISA ServerISA Server’’s View Of A Packets View Of A PacketPacket headers and application content are inspectedPacket headers and application content

Página 3 - Customer Impact

ISA Server 2004 New FeaturesISA Server 2004 New FeaturesNew management tools and user interfaceNew management tools and user interfaceMultiMulti--netw

Página 4 - Traditional Firewalls

Fast, secure accessFast, secure accessEmpowers you to connect users to relevant info. on your networkEmpowers you to connect users to relevant info. o

Página 5 - Perimeter Security Evolution

PolicyPolicyEngineEngineNDISTCP/IP StackISA 2004 ArchitectureISA 2004 ArchitectureFirewall EngineFirewall EngineFirewallFirewallserviceserviceApplicat

Página 6 - Introducing: ISA Server 2004

Enterprise EditionEnterprise EditionDifferences for EE over SEDifferences for EE over SE¾¾Increased scalability and availabilityIncreased scalabilit

Página 7 - You need to

OS Compatibility and OS Compatibility and MigrationMigrationISA 2004 SEISA 2004 SEMicrosoft WindowsMicrosoft Windows®®2000 Server or 2000 Server or

Página 8

ISA Server 2004 Top PartnersISA Server 2004 Top PartnersAntivirusAntivirus¾¾McAfee and GFIMcAfee and GFIURL FilteringURL Filtering¾¾SurfControlSur

Página 9

DemoDemo

Página 10 - Corporate

CelestixCelestixMSA Series Appliance MSA Series Appliance Lee Wei ShunLee Wei ShunProduct ManagerProduct ManagerCelestix Networks Celestix Networks Pt

Página 11 - ISA Server 2004 New Features

Product FeaturesProduct FeaturesTrue APPLIANTIZED version of ISA 2004True APPLIANTIZED version of ISA 2004Optimized appliance form factorOptimized

Página 12

••90% detected security breaches 90% detected security breaches 66••85% detected computer viruses 85% detected computer viruses 66••95% of all breache

Página 14 - Enterprise Edition

Market Segments AddressedMarket Segments AddressedSmall BusinessSmall Business 1-100 users One or two sites No security staff DSL connectionMidMid

Página 15 - Migration

ContactsContactsAsia PacificAsia Pacific+65 6+65 [email protected]@celestix.comNorth AmericaNorth America510510--668668--

Página 16 - ISA Server 2004 Top Partners

Session SummarySession SummaryISA Server 2004 provides many benefitsISA Server 2004 provides many benefits¾¾Advanced application layer firewall Adva

Página 17

Key takeawaysKey takeawaysDownloadable 120Downloadable 120--day day evalevalat at www.microsoft.com/www.microsoft.com/isaserverisaserverProduct av

Página 18 - Celestix

© 2004 Microsoft Corporation. All rights reserved.This presentation is for informational purposes only. Microsoft makes no warranties, express or impl

Página 19 - Product Features

Additional Ref.Additional Ref.

Página 20 - MSA Web UI

Application Layer FilteringApplication Layer FilteringModern threats call for deep Modern threats call for deep inspectioninspection¾¾Protects netwo

Página 21 - Market Segments Addressed

VPN ProtectionVPN ProtectionDetunneledDetunneledtraffic is inspectedtraffic is inspected¾¾Injected back to the stackInjected back to the stack¾¾ISA

Página 22 - Contacts

VPN QuarantineVPN QuarantineVPN Quarantine ensures the security VPN Quarantine ensures the security and configuration of clients connected and confi

Página 23 - Session Summary

Application Layer AttacksApplication Layer AttacksIdentity TheftIdentity TheftWeb Site Web Site DefacementDefacementUnauthorized Unauthorized AccessAc

Página 24 - Key takeaways

Customer example: VPN QuarantineCustomer example: VPN QuarantineConsists of five componentsConsists of five components¾¾Quarantine Policy Service Qu

Página 25

Engine Security EnhancementsEngine Security EnhancementsFloodFlood--DoS protectionDoS protection¾¾SYNSYN--flood protectionflood protection¾¾Client c

Página 26 - Additional Ref

Authentication FrameworkAuthentication FrameworkMulti source authenticationMulti source authentication¾¾Firewall client authenticationFirewall clien

Página 27 - Application Layer Filtering

RADIUS AuthenticationRADIUS AuthenticationFederation through RADIUS proxiesFederation through RADIUS proxiesCan be used for centralized authentica

Página 28 - VPN Protection

ISA 2000 (old) Networking ModelISA 2000 (old) Networking ModelInternalNetworkInternetDMZ 1Static PFFixed zonesFixed zones¾¾““ININ””= LAT= LAT¾¾““OUT

Página 29 - VPN Quarantine

ISA 2004 Networking ModelISA 2004 Networking ModelCorpNet_1CorpNet_1CorpNet_nCorpNet_nNet ANet AInternetVPNVPNISA 2004DMZ_nDMZ_nDMZ_1DMZ_1Local HostLo

Página 30

Network TemplatesNetwork TemplatesObjectiveSimplified network configFeatures• 5 templates• Automatic routing relationships• CustomizableObjectiveSimpl

Página 31 - Engine Security Enhancements

ISA 2004 Policy ModelISA 2004 Policy ModelSingle, ordered rule baseSingle, ordered rule base¾¾More logical and easier to understandMore logical and

Página 32 - Authentication Framework

Rule Structure & Policy MappingRule Structure & Policy Mapping Basic ISA 2004 rules:¾ Protocol rules¾ Site and Content rules¾ Static packet f

Página 33 - RADIUS Authentication

Visual Policy EditorVisual Policy Editor

Página 34 - ISA 2000

Traditional FirewallsTraditional FirewallsWide open to Wide open to advanced attacksadvanced attacksCode Red, Code Red, NimdaNimdaSSLSSL--based at

Página 35 - ISA 2004 Networking Model

DashboardDashboardObjectiveCentralized status viewFeatures•Real time• Aggregated• Easy to spot problemsObjectiveCentralized status viewFeatures•Real t

Página 36 - Network Templates

AlertsAlertsObjectiveOne place for all problemsFeatures• Alerts history• Managing alerts• Severity & categoryObjectiveOne place for all problemsFe

Página 37 - ISA 2004 Policy Model

SessionsSessionsObjectiveActive sessions viewFeatures• Powerful querymechanism• VPN sessions • Disconnect sessionObjectiveActive sessions viewFeatures

Página 38 - Configuration policy

ServicesServicesObjectiveISA and dependent services statusFeatures• Start & stop serviceObjectiveISA and dependent services statusFeatures• Start

Página 39 - Visual Policy Editor

ReportsReportsObjectiveComprehensive set of server activity reportsFeatures• Recurring reports• Report categories• Email notification• Report publishi

Página 40 - Dashboard

ConnectivityConnectivityObjectiveMonitor connectivity to critical network servicesFeatures• Request types• Response time &threshold• GroupingObjec

Página 41 - Features

LoggingLoggingObjectiveView of ISA traffic activitiesFeatures• Real-time mode• Historical view • Powerful querymechanismObjectiveView of ISA traffic a

Página 42 - Sessions

PerformancePerformanceEnhanced ArchitectureEnhanced ArchitectureOptimized for real life usage scenariosOptimized for real life usage scenariosImpr

Página 43 - Services

Updated Firewall ClientUpdated Firewall ClientWhat is the ISA Firewall Client?What is the ISA Firewall Client?¾¾Enables / disables Winsock applicati

Página 44

Migration PlanningMigration PlanningISA 2000 SE > ISA 2004 SEISA 2000 SE > ISA 2004 SE¾¾Policy migration toolPolicy migration tool¾¾Recommend

Página 45 - Connectivity

Perimeter Security EvolutionPerimeter Security EvolutionWide open to Wide open to advanced attacksadvanced attacksApplicationApplication--level protec

Página 46

TheTheadvanced application layer firewall, VPN and Web cacheadvanced application layer firewall, VPN and Web cachesolution that enables customers to m

Página 47 - Performance

Securely make e-mail available to outside employeesSecurely make eSecurely make e--mail mail available to outside available to outside employeesemploy

Página 48 - Updated Firewall Client

ISA Server 2004 New FeaturesISA Server 2004 New FeaturesUpdated security architectureUpdated security architectureAdvanced protectionAdvanced protecti

Página 49 - Migration Planning

Application Layer Application Layer ContentContent????????????????????????????????????????????A Traditional FirewallA Traditional Firewall’’s Views Vi

Comentários a estes Manuais

Sem comentários