karsof systems ips technical brochure
TRANSCRIPT
THE INNOVATION
KARSOF™ SecureNet System uses advanced protection system that is PATENT PENDING
worldwide and is advanced.
The solution is also future proof and no regular updates are necessary to stop the spread of
unauthorized programs.
The product is first of its kind with complete OSI 7 Layer deep inspection system and provides
flexible configuration by the administrators.
KEY FEATURES
•Filtering based on IP Address, Service Port, Content, Proxying and other network properties
•Supports 802.1q VLAN with zone assignment feature, DHCP Server, NAT and Access Rules Control
•Supports router protocol – Dynamic RIP and OSPF routing
•Supports tarffic management capabilities – QoS, VoIP aware and multimedia streaming aware
•Powerful Content Filtering and Deep Packet Inspection for complete protection to all services.
•Supports NAT, X.509 PKI authentication
•Supports Local CLI, Web GUI (remote management), Syslog, SNMP v2 management
•Bandwidth Utilization report
•Supports IPSEC VPN and WiFi AP aware intrusion prevention system
•Gigabit Port compatible with all networks
•Supports 10 Gigabit/s Throughput
•Onboard and Built-in hardware accelerator for encryption and logical analysis of network and packet status
Cont . . .
PRODUCT INTRODUCTION
KARSOF™ SecureNet System, is an Integrated Intrusion Prevention System (IPS) provides security to network
and has innovative features such as protecting the network from unauthorized programs such as virus, worms and
Trojans without using any patterns.
The system is also first of its kind in the world with complete OSI 7 Layer protection and is fully integrated system
enabling more complex rules to be implemented with ease
Worldwide Patent Pending
All copyrights held by Multimedia Glory Sdn. Bhd.
Karsof™ SecureNet System
• SMTP Open Relay protection, blacklist using Spamhaus and CBL based prevention
• Integration solution in one single hardware with Deep Packet Inspection.
• Content filtering for web, email, file transfer, windows services and DNS
• Application aware NAT such as SIP, H.323 supporting inbound and outbound.
• NAT one-to-one, one-to-many, many-to-many functions
• Fully secured hardened Operating System
• Auto sensing of Bandwidth overload
• Built-in network protocol and application protocol compliance checking and automated
blacklists
• Deep-inspection and analysis and protection of encrypted connections such as SSL, VPN
without performance impact
• Aggregate throughput, Supports 10 Gigabit per second
• Latency less than 100ms under high and full load
• Supports Seamless Single Sign On functions
• Supports protection against Internal and External attacks
• Supports protection from Phishing, Spyware, VoIP threats, DoS, DDoS, Backdoors,
Bandwidth Hijacking
• Support dynamic protection without using the filters to prevent future threats. To support
this feature no additional updates to filter rules or program is required
• Complete IPS solution, network based, host based and PC based integrated into one
solution
• Maximum sessions supporting, 5,000,000 network sessions. Highly scalable and supports
minimum of 25 network segments
• Supports bandwidth Aggregation with the use of multiple Internet Uplinks with
seamless access
First of Its Kind
First of Its Kind
First of Its Kind
First of Its Kind
First of Its Kind
First of Its Kind
First of Its Kind
First of Its Kind
First of Its Kind
First of Its Kind
First of Its Kind
First of Its Kind in the world
in the world
in the world
in the world
in the world
in the world
in the world
in the world
in the world
in the world
in the world
in the world