Vous êtes sur la page 1sur 2

SANGFOR SSL VPN Product Features

User Authentication
Authentication

SSL Account
importing
CA authentication
Account attribution
options

Support authentication with combination of AD, Local


password, LDAP/RADIUS, Certificate/USB key, dynamic
token, hardware ID, SMS.
Support importing user accounts via CSV file.

Remote application
features

Allow import of local/external CA-authenticated certificate.


- Private account for single user.
- Public account that allow access for multiple users.
Account security
On-screen keyboard; CAPTCHA, password security
enhancement policies options, etc.

Security Protection
Host Checker

Man-in-the-middle
Attack Detection
Dedicated SSL VPN
Tunnel
Secure desktop
(local virtualization)

Virtual Secure Portal

Resource path hiding


Cache Cleanup
Account Binding

Endpoint detection and scanning of operating system,


registry file, personal firewall, anti-virus files,
user-customized security rules and other security policies
prior to user login, and during the SSL VPN session.
Detects if the endpoint is suffering Man-in-the-middle
attack before it is connected to the internal network and
send out alert if any attack is detected.
Options to disconnect other Internet connections when the
SSL VPN tunnel created.
Provides secure virtual desktop workspace where all data
and I/O traffics are encrypted, monitored and controlled.
Under secure desktop environment, applications, data and
external devices are restricted according to security
policies. Activities like USB key using, printing, file saving,
file copying, file sharing ... etc can also be controlled.
Support for creating up to 253 independent secure portals,
by which different user groups are able to enjoy different
SSL VPN access addresses, authentication methods,
application resource, administrators, etc.
Support for hiding, masquerading of SSL VPN resource
path to protect resource security.
Secure safety and deletion of sensitive data after session
termination.
Bind users application account and his/her SSL VPN
account together for unified authorization and simplified
account administration.

Rapidity and Access Performance


Byte Cache
Streaming
Compression
Web cache
High-speed Transfer
Protocol (HTP)
Webpage Access
Optimization
Intelligent Link
Selection
Resource Load
Balancer

Cache data at byte level to ensure the SSL VPN data traffic
is de-duplicated, greatly reduces the demanded bandwidth
of remote access.
Conduct LZO, GZIP/ZLIB compression to TCP and Web
applications to decrease the data transmission volume.
Specifically optimizing accesses to web resource by
adopting web cache.
Streamline data packets under high packet loss and
network latency network environment such as such as
wireless, cross-border.
Dynamic reduction of web pages and images sizes
displayed on mobile devices resulting in faster
performance and better user experience.
Automatically choose the healthy and quickest link for
remote access when a network has multiple operators
lines.
If resource is available in multiple servers, SSL VPN
appearance will delivers reliable access and performance
through intelligent balancing of computing resources for
user.

Application Virtualization
Remote application
(application
virtualization
Remote application
features

Delivers the virtual graphical interfaces of applications to


remote users so that users can operate on the applications
simply via a browser, while all the calculations/operations
take place in server-end.
- Enable BYOD: Smart phone and tablet users can access
all kinds of applications freely; PC users do not need to
pre-install application clients before accessing C/S based
applications.
- Options to enable/disable network drives, clipboard,
printers of endpoints

SANGFOR TECHNOLOGIES INC.

info@sangfor.net

- Support virtual printer mapping


- Support local resource invocation
- Various operation optimization policies to mobile devices
including local input methods mapping, virtual mouse,
magnifier, scrolling tool, tab card, etc.
- Support access private resources and public resource on
storage servers
- Built-in load balancer for remote application servers on
basis of number of sessions , CPU, memory , I / O,
integrated performance, etc. Provides secure virtual
desktop workspace where all data and I/O traffic are
encrypted, monitored and controlled. Under secure
desktop environment, applications, data and peripherals
activities are restricted according to security policies.
Controlled activites include USB key, printer, file save, file
copy, file share ... etc.

EasyAPP
EasyApp
EasyApp features

Integrate with your business Apps to enhance security,


manageability and usability by providing SDK package.
- Redirect traffics of business Apps to SSL VPN tunnel for
authentication, transmission, resource authorization and
logging security.
- Support Apps data storage encryption to avoid data
losses in case of mobile device dropping.
- Provide flexible integration mode of APP Direct, APP
Proxy, EC Proxy to meet application deployment needs.

Endpoint usability
SSL VPN System Tray Allow personal SSL VPN setups and activities history check
through the system tray.
Allow user to access the SSL VPN resource without
Single-Sign-On
entering in the usernames/passwords when the user get
authenticated by SSL VPN.

Appliance management
Cross Platform
Support
Resource
Compatibility
Sign-in Page
Customization

- Windows, Linux, Mac OS iOS, and Android OS.


- IE, Opera, Firefox, Safari, Google Chrome and other
browsers that support https.
Web app, TCP app, L3VPN; Full support to all kinds of B/S,
C/S applications.
Fully customizable sign-in page.

Message broadcasting Capable to broadcast corporate notifications to all


connected SSL VPN users.
- Support for setting TCP session limitation based on user.
Bandwidth control
- Support for setting inbound and outbound bandwidth
limitation based on user.
Logging & Reporting - Display real-time status including CPU, link traffic,
network throughput, concurrent sessions, byte cache
status, etc.
- Online user information: access time, authentication
methods, concurrent sessions, traffic flow, IP address, etc.
- Alarm, error, debugging, system management logs; back
up logs can dump and save externally;
- Syslog support.

Stability
Link Stability

Enable tunnel auto switch when used with multiple Internet


link deployments.
Asymmetrical Cluster Supports robust clustering of different hardware models
with the capability of up to 20 nodes.
Enabling of multiple Sangfor SSL VPN devices clustered in
Cluster Cloud
cloud or multi-datacenter environment.
Support HA and the session synchronization.
HA Deployment
Hardware bypass.
Bypass

Network and Deployment


IPsec VPN
PPTP VPN
Firewall
Deployment

Built-in IPsec VPN.


Support PPTP connection from iPhone, iPad, Android
devices, etc.
Built-in Firewall.
Gateway, Bridge.

www.sangfor.net

Tel: +1-408-520-7898

www.sangfor.net

SANGFOR

Rapidity, Security, Virtualization, EasyApp


SANGFOR SSL VPN solution can be a convenient and effective way of landing a large number of
security mechanisms and end-user groups in achieving safe and efficient remote access to
enterprise applications, ensuring application system availability for remote workforce while
preventing business data exposed to risks of Internet attacks directly.

SSL VPN

Rapidity: One of the fastest SSL VPN solutions by virtue of acceleration technologies.
Security: Identity, endpoint, transmission and resource authorization provides security protection
for secure business connectivity.
Virtualization: Do more with less by SANGFOR SSL VPNs remote application module for application virtualization solution.
EasyAPP: Integrate with your business Apps to enhance security, manageability and usability.

VPN

SSL

Product Family
Model

M5000-S-I

M5100-S-I

M5400-S-I

M5500-S-I

M5600-S-I

M5800-S-I

M5900-S-I

Profile

1U

1U

1U

2U

2U

2U

2U

RAM

1G

1G

2G

2G

4G

4G

8G

HD Capacity

N/A

500G

500G

500G

500G

500G

500G

Concurrent Users

100

300

1200

2600

3800

5000

16000

N/A

N/A

N/A

Power and Physical Specifications


Dual Power Supplies
Power [Watt] (Typical)
Temperature

N/A
60W
10~ 50

60W
10~ 50

250W

250W

300W

300W

300W

10~ 50

10~ 50

10~ 50

10~ 50

10~ 50

Relative Humidity

5%~95%
non-condensing

5%~95%
non-condensing

5%~95%
non-condensing

5%~95%
non-condensing

5%~95%
non-condensing

5%~95%
non-condensing

5%~95%
non-condensing

System Dimensions
(WLH mm3)

430x300x44.5

430x300x44.5

430x430x44.5

440x500x89

440x500x89

440x500x89

440x600x89

System Weight

4.25 Kg

4.25 Kg

7.0 Kg

10.9 Kg

18.0Kg

19.0Kg

20.0 Kg

10/100/1000
Base -T(WAN)

10/100/1000
Base -T(LAN)

10/100/1000
Base -T(DMZ)

SFP

N/A

N/A

N/A

Serial Port

RJ451

RJ451

RJ452

RJ452

RJ451

RJ451

RJ451

CE, FCC

CE, FCC

CE, FCC

CE, FCC

CE, FCC

CE, FCC

Network Interfaces

Compliance and certificate


Compliance

CE, FCC

Vous aimerez peut-être aussi