|
Key Features
* Dual WAN
* Auto fail-over and load balancing
* Device redundancy for high availability
* Both LAN and WAN Gigabit connectivity
* SSL VPN gateway plus solid router functions
* Clientless connectivity
* Wide range of web browsers supported
* Rich in SSL VPN access connections
* Granular access policy management
* Windows / Linux / Macintosh supported
* Mobile devices supported
* AD / LDAP account import
* Group account setting
* WOL (Wake On LAN)
* Personalized web portal
* Data encryption, user authentication and access control
* End Point Security (EPS) checking
* Host security checking
* IPSec VPN capabilities
* Robust firewall security
* Quality of Service control
Other Options
* BiGuard Site-to-Site SSL VPN
* BillionCare Services
* Feature and Firmware Upgrades
* BiGuard SSL VPN Tunnel Upgrades
* BiGuard Central Management System
Advantages
Great Mobility and Productivity
The BiGuard Dual-WAN SSL VPN Giga SME Appliance Series integrates cutting-edge SSL VPN technology for SMEs to establish private encrypted tunnels, without the need for VPN software pre-installation on client PCs, through the public Internet to securely access corporate resources from any location, such as a branch office, hotel, home, cyber café, or even a public kiosk. It offers corporate-class advanced SSL VPN connections such as Network Extender, Transport Extender, and Application Proxy. Remote users using different kinds of browsers, platforms and operating systems can all access files in the central office. External business partners or business travelers, even using just MS Outlook Web Access (OWA), can be authorized to access the corporate network from a remote site as if they never left the office. A business traveler using a mobile device like a PDA can access the corporate network, the SOHO or a freelancer on a Macintosh can even connect his Mac to customers’ networks to remotely collaborate on a project. Secure remote Intranet access with BiGuard Dual-WAN SSL VPN Giga SME Appliance Series is possible via any device from anywhere any time.
Powerful Gigabit Connectivity
Not only sharing files, checking e-mail, and downloading documents, but also remote access to applications like Enterprise Resources Planning (ERP) applications or remote surveillance; all of which are needed by today’s SMEs and enterprise departments for diverse remote access needs. Billion continues to provide advanced enterprise-class BiGuard SSL VPN appliances. Imbedded with high-performance CPUs, the BiGuard Dual-WAN SSL VPN Giga SME Appliance Series features Gigabit capability for LAN, WAN and DMZ ports, enabling faster transmission speeds, no matter for remote access, internal connections or outbound networking. This design gives small-and-medium sized enterprises an edge in today’s business environments where mobile workers, business partners and traveling employees are increasingly on the road, and for whom connectivity problems and data security should be the last thing on their mind.
Flexibility, Scalability and Resilience
Both SSL VPN and IPSec VPN are remote access solutions and complementary technologies. The BiGuard Dual-WAN SSL VPN Giga SME Appliance Series offers both IPSec VPN and SSL VPN capabilities combined in a single platform. This design provides excellent deployment flexibility to SMEs for meeting the requirements of both remote access and Lan-to-Lan branch office connections. Load balancing and auto fail-over features are integrated to ensure optimal bandwidth sharing for multiple PCs in your office, or provide network redundancy in case one connection should fail. All of these are to keep your business online for mission-critical or important Internet-based applications.
Single Box with Low Cost of Ownership
Billion’s BiGuard Dual-WAN SSL VPN Security Appliance Series integrates SSL VPN, IPSec, firewall and router functions in one single box. Thanks to integrated IPSec VPN access technology, the additional cost for deploying extra platforms for IPSec VPN is eliminated. Aimed at a low total cost of ownership, the BiGuard SSL VPN box is affordable for SMEs. IT administrators no longer need to buy an extra device to manage remote Intranet access, nor install and maintain additional equipment for data security. The integrated router and firewall functions provide administrators with a perfect solution to manage all connections and file sharing of remote access. It is easier to simply integrate these functions into one BiGuard SSL VPN device instead of buying several independent networking devices.
Ease of Management
Managing various groups of remote users for certain access applications and policies and maintaining the user accounts in a SME are a hassle for IT administrators. Group Account Setting featured in the BiGuard Dual-WAN SSL VPN Giga SME Appliance Series address administrators’ concerns. AD/LDAP Account Import makes it easy for IT administrators of enterprises to manage intranets by importing existing accounts from AD/LDAP servers into a BiGuard SSL VPN device. IT administrators configure the gateway to control the resources and applications available to different groups of users. Access policies, authorizations and authentication mechanisms can all be set up as well. After this setting, each user will have an easy-to-manage Personalized Web Portal, which displays the applications according to the user’s access settings.
Comprehensive Security
The security of remote access is even more concerned by IT administrators. The BiGuard Dual-WAN SSL VPN Giga SME Appliance Series supports rich advanced security features. The support of cache cleaner function makes sure that the user’s data will be cleaned up without record after user’s log out from a remote site. The End Point Security (EPS) function enables IT administrators to check the identity of a remote PC and its security policy settings when a user logs in from that device. Granular Access Control makes setting up different users allowed to access different applications possible. One-Time Password enforces the user to input different password every time when log in. Access Policy settings enable administrators to set up different users with different access rules. Strong firewall security provides access protection from hackers and other attacks. Access security with the BiGuard Dual-WAN SSL VPN Giga SME Appliance Series, no matter locally or from remote sites, is assured with these comprehensive security features.
Management Options for Growth
A total SSL VPN solution is made possible by offering optional support: SSL VPN Tunnel Upgrades, BiGuard’s Central Management System, and BiGuard One-Time Password (OTP). In case of a growing need for remote access, just upgrade the BiGuard SSL VPN gateway by adding more SSL VPN tunnels. The Central management System enables administrators in the head office or service providers to centrally manage all the BiGuard SSL devices, which enable remote configuration from a central site to save on maintenance efforts. In addition, the BiGuard OTP, a car-key sized token, is used to create a two-factor authentication by using a dynamically generated 6-digit PIN. Combined with your existing static password this results in a greatly reduced risk of unauthorized access to corporate network resources by intruders. The Feature and Firmware Upgrades and BillionCare services are also available for a certain duration from purchase date and continues optionally after that.
Features & Specifications
SSL VPN
Access Connections
Network Extender
Standalone Network Extender client
Transport Extender (TCP/UDP)
Network Place
Application Proxy
Personalized web portal
Single Sign-On (SSO)
SSL hardware accelerator
Applications & Management
Network File Share (CIFS)
Citrix client
Terminal services (RDP5, RDP6)
File Transfer Protocol (FTP)
Telnet
Supports MS Outlook Web Access (OWA)
Virtual Network Computing (VNC)
Secure Shell (SSH, SSHv2) support
SRDP (Single Remote Desktop Protocol)
Web based data (HTTP, HTTPS)
WOL (Wake On LAN)
AD / LDAP account import
Account membership
Granular user policy management
Supports mobile devices (Microsoft Windows Mobile 5.0/6.0 or compatible)
Supports MS IIS NTLM (NT LAN Management) authentication
SSL event log and monitor
Security
User access control
Web cache cleaner
End Point Security (EPS) checking
Host security checking
Authentication domains: RADIUS, LDAP, Active Directory, NT Domain, Local database
Digital certificate
Self-signed certificate
SSL encryption
Top
Compatible Web Browsers* (Note 1)
Microsoft Internet Explorer 6.0 and newer versions
Netscape 7.0 and newer versions
Opera 9.0 and newer versions
Firefox 1.5 and newer versions
Safari 2.0 and newer versions
Mozilla 1.7 and newer versions
Sun JRE 1.3 and newer versions
Supported Operating Systems* (Note 1)
Microsoft Windows, Linux, and Apple Macintosh
Firewall & Content Filtering
Stateful Packet Inspection (SPI)
Denial of Service (DoS) prevention
Packet filter
Intrusion detection
URL filter
Java Applet/Active X/Cookie blocking
Quality of Service Control
Supports DiffServ approach
Traffic prioritization and bandwidth management based on IP protocol, port number and IP address
Web-based Management
Easy-to-use web based user interface
Group account settings on access applications (CLI for RS-232 port)
Firmware upgrades through web-based
Local and remote management through HTTP and HTTPS
Multi-language web interface
Remote dial-in configuration (RS-232)
Supports BiGuard CMS for centralized interface management
IPSec VPN
30 IPSec VPN tunnels
Internet Key Exchange (IKE) authentication and Key Management
Authentication (MD5 / SHA-1)
DES/3DES encryption
AES 128/192/256 encryption
IP Authentication Header (AH)
IP Encapsulating Security Payload (ESP)
Dynamic VPN (FQDN) support
Supports remote access and office-to-office IPSec connections
Availability and Resilience
Load balancing
- Traffic management
- Protocol binding
Auto fail-over and VPN fail-over
High availability (device redundancy)
Logging and Monitoring
Centralized logs
System log
E-mail alerts and intrusion logs
System status monitoring
Network Protocols and Features
Static IP, PPPoE and DHCP client connection to ISP
NAT, static routing and RIP1/2
Dynamic Domain Name System (DDNS)
Router mode
Virtual server
Hardware DMZ
DHCP server
SNTP
SNMP
Multi-NAT
Transparent bridging
Port-based VLAN
Hardware Specifications
Physical Interface
2 x 10/100/1000Mbps Gigabit WAN ports
8 x 10/100/1000Mbps Gigabit LAN ports
1x RS232 Serial port
2 x USB 2.0 hosts (future extension)
RS232 console port
Power switch
Reset button
Physical Specifications
Rack mountable (19-inch, rack-mount kit included)
Dimension (W x D x H): 390 x 210 x 44mm (15.35" x 8.27" x 1.73')
Power Requirements
Input Voltage (Operation): 90 to 264VAC full range
Input Frequency (Operation): 47 to 63Hz
Input Current: Max. 0.95A @115Vac/60Hz at max
Efficiency: ≧80 % @115Vac/60Hz or 230Vac/50Hz at max. load
Output power: 12V/3.5A (42W)
Power Supply MTBF 100,000 hours
Operating Environment
Operating temperature: 0 to 40°c
Storage temperature: -20 to 70°c
Humidity: 20 to 95% non-condensing
Support and Services* (Note 2)
Hardware Warranty for 1 years
Feature and Firmware Updates for 1 year
|