Managed security service

Sistemul Fortinet Fortigate 3040B IPS/IDS Next-Generation oferă protecție in-line ale datelor și aplicațiilor critice, fără a afecta performanța și productivitatea.

DDoS Detection & Mitigation - system de detectie si mitigare a atacurilor DDOS.

Centru de date Tier-3

Oferim webhosting in cele mai bune conditii, serverele noastre fiind colocate in propriile Rackuri in centru de date Voxility, care ofera peste 99,98% Uptime
- capacitate de upload/download de peste 30 Gbps naţional şi internaţional
- capacitate totală de transfer de până la 600 Gbps
- topologie full mesh 10Gbps Networking, 8Gbps FCOE/6Gbps SAS Storage
- peering privat cu provideri naţionali şi internaţionali
- 2 x conexiuni fizice cu fiecare provider de Internet
- 2 x sesiuni active BGP per provider de Internet
- 2 x echipamente de routare, Cisco 4900M si BNT 8264
- 2 x circuite de alimentare separate şi redundante ,2 x Sentry 3 phasen Managed PDU pe fiecare Rack
- 2 x climă - UPS şi Generator

image
image

Hardware Firewall Fortigate 3040B

Handles up to 40 Gbps ( 60 Mpps ) of firewall throughput and up to 6Gbps full IPS/IDS traffic inspection
Malicious and unwanted traffic is blocked, and clean traffic is returned to the core controller for distribution. In addition, the 3040B supports both IPv6 and IPv4 traffic inspection and load balancing, providing maximum flexibility for heterogeneous networks.
- Antivirus / Antispyware — New filters are continuously fed to the IPS device to keep it up to date against the latest vulnerabilities
- FortiCloud Portal — Easy to use, real time, threat monitoring allows user to optimize their network security
- Intrusion Prevention — IPS technology protects against current and emerging network-level threats
- Application Control — Provides granular application control, identify and Control Over 1,800 Application regardless of Port or Protocol
- Web Filtering — Identifies and protects endpoints, networks and sensitive information against Web-based threats
- Provides Geo-location security tools
- Data Loss Prevention - DLP uses a sophisticated pattern-matching engine to identify and prevent the transfer of sensitive information outside of your network perimeter
- Firewall Policies - 100.000
- Purpose built platform featuring built-in, high-availability features
- Low application latency with FortiASIC NP4, means no degradation of the end user experience
- Virtual Domains — VDOMs enable a single FortiGate system to function as multiple independent virtual FortiGate systems
- VPN - Fortinet VPN technology provides secure communications between multiple networks and hosts, using SSL and IPsec VPN technologies
- Advanced Layer-2/3 routing for data center traffic optimization

- 10 RJ-45 autosensing 10/100/1000 Hardware Accelerated Interfaces (IEEE 802.3 Type 10BASE-T, IEEE 802.3u Type 100BASE-TX, IEEE 802.3ab Type 1000BASE-T)
- Duplex: 10BASE-T/100BASE-TX: half or full; 1000BASE-T: full only
- 8 Hardware Accelerated 10-GbE SFP+ Intefaces
- Duplex: full only
- Latency < 4 µs
- IPS/IDS throughput 6 Gbps*
- Network throughput 40 Gbps / 60 Mpps
- Concurrent Sessions TCP 10 Million
- Antivirus Throughput 4,5 Gbps
- IPSec VPN Through 17 Gbps
- Operating temperature 32°F to 104°F (0°C to 40°C)
- Operating relative humidity 5% to 95%, noncondensing
- Nonoperating/Storage temperature -4°F to 158°F (-20°C to 70°C)
- Nonoperating/Storage relative humidity 5% to 95%, noncondensing
- sigur : In-line,intrusion prevention system (IPS) cu capabilitati layer 2 fallback
- efectiv : Peste 100.000 filtre de securitate si vulnerabilitati de tipul zero-day si IP-reputation
- simplu : Tablou de bord complet personalizabil și consola de management care desfășoară 33% mai repede decât concurența
- rapid : pana la 40Gbps throughput cu o latenta mai mica de 4 microsecunde

FortiAnalyzer

FortiAnalyzer Network Security Logging, Analysis, and Reporting Appliances securely aggregate log data from Fortinet Security Appliances

Echipamente enterprise

Infrastructura noastra este compusa numai din echipamente de top precum IBM BladeCenter:
- Chasiss E 8677
- 4 surse reduntante 2300W
- 2 switch reduntante Cisco - 2 switchuri reduntante FCOE Brocade 4020
- 2 module reduntante de management AMM
- 14 IBM Blade server HS22
si Supermicro 4Node model 2026TT-H6RF , folosite in configuratii dinamice si scalabile oricand pentru nevoile clientului. Storage-uri pe fibra optica HP P2012 G3 /P2024 G3 si 6G SAS Xyratex interconectate cu switch-uri Brocade 4020 si Brocade MP-8008B. Echipamente de retea Cisco de top, cum ar fi modelul 4900M, model ce permite atingerea unei performante maxime de 320Gbps (Gigabits per secunda) si 250Mpps (pachete pe secunda).

Echipamentele sunt stack-ate in rack-uri HP de ultima generatie ce ofera un sistem de management propriu asupra retelei de Internet si a celei ce alimentare cu energie electrica, motiv pentru care sunt prevazute standard nu cu una, ci cu doua linii de backup de current si PDU-uri Sentry de 32A/380V cu management si monitorizare pe fiecare outlet (prize). Pentru interconectarea rack-urilor cu echipamentele Cisco 4900M se folosesc la nivel de rack echipamentele:

- IBM BNT 8264 cu 64 porturi 10Gbps Networking + 4 porturi 40Gbps
- Cisco 4948-10GE cu 2porturi de 10Gbps si 48 porturi de 1Gbps
- IBM BNT 8052 cu 4porturi de 10Gbps si 48 porturi de 1Gbps
- Intelligent 10G Bypass Switch cu 3 module IBS10G

Securitatea retelei o asiguram cu sistemul propriu de protectie DOS/DDOS si Fortinet Fortiguard 3040B.

image
image

DOS/DDOS

Multi-level DDoS Protection Technology Sensor can announce upstream provider(s) through BGP to stop routing traffic towards the attacked destinations.
Sensor can announce the upstream Internet Service Provider (ISP) or a Managed Security Service Provider (MMSP) that offers anti-DDoS services to scrub malicious packets in cloud.
Flow Sensor and Packet Sensor provide in-depth traffic analysis, traffic accounting, bandwidth monitoring, traffic anomaly and DDoS detection.
Filter can scrub and/or rate-limit malicious packets by applying dynamic filtering rules on stateless software firewalls and hardware packet filters. Dedicated filtering servers can be clustered in packet scrubbing farms. It can protect critical services against attacks that do not congest upstream links.
Filter can automatically send notification emails to the ISPs originating non-spoofed attacks.
Filter can apply filtering rules and ACLs on third-party DDoS mitigation appliances, firewalls and routers.

- DDoS Detection & Mitigation - An innovative traffic anomaly detection engine detects DDoS attacks. The malicious traffic is blocked in a granular manner
- Detailed Forensics - View packets and flow records for each attack. Detailed attack reports can be emailed to interested parties
- Full Network Visibility - Supports all major traffic monitoring technologies: packet sniffing at 10 Gbps, Cisco NetFlow, sFlow, IPFIX, NetStream, cflowd and SNMP
- Complex Analytics - Generates complex reports with aggregated data for hosts, IP groups, interfaces, applications, protocols, countries, ASNs and many more
- Flow Analyzer and Collector - Provides a fully-featured NetFlow, sFlow, and IPFIX collector. Flows can be stored, searched, filtered, sorted and exported

image

Toate pachetele includ
urmatoarele optiuni »

Creare
Cont Instant
Setare
foarte rapida
Protectie
Spam
Scalabilitate
facila
Suport
tehnic 24/7

Inca nu te-ai decis ce ti se potriveste? Vezi toate ofertele!

Powered by WHMCompleteSolution