Features / Benefits
Enterprise-class networking techology in small business platforms
SnapGear's configurable firmware is based on embedded Linux and provides a virtually unlimited range of precise tuning options for such elements as QoS (Quality of Service), VPN tunnel topology, routing, and fine-grained firewall rule sets.
Fully supports both business and consumer-grade broadband, ADSL, dedicated circuits from T-1 on up, narrow-band modems, and wireless. Advancednetworking features include support of port & tag based VLAN, OSPF, BGP, RIP, RIPv2, RAS, RADIUS, TACACS+, MS-CHAP V2, and more. Web and DNS caching is also available.
TrustedSource reputation-based global intelligence
In addition to the award winning Sidewinder line of firewalls from Secure Computing, SnapGear too leverages the TrustedSource global intelligence feed to filter through mail messages coming into your network. TrustedSource collects and maintains a reputation ‘score’ of each IP sender and allows SnapGear customers to leverage that knowledge. By defining a threshold score within SnapGear which will identify which mail items to accept and reject, SnapGear will remove volumes of unwanted SPAM or malware.
Whether you are trying to protect against zombies, malware, or even image spam, SnapGear and TrustedSource will greatly enhance your protection barrier. Thousands of sensors worldwide are continually providing feedback to the TrustedSource servers on the actions of specific IP addresses, allowing Secure Computing customers to leverage this reputation database real-time.
Failover and load balancing
To assure uninterrupted connectivity, all SnapGear family products are equipped with a serial port. If the broadband Internet connection is lost, SnapGear products can automatically create a new narrowband connection using an external ISDN or analog modem. The SG560, SG565, SG580, and SG720 appliances support multiple broadband ports to ensure uninterrupted WAN access and maximum bandwidth utilization.
Voice over IP Communications
One of the largest problems with VoIP connections are the interruptions and delays the user experiences with those appliances that don’t have the appropriate quality of service features. In addition to the SIP proxy included within SnapGear, there is also an L7 classifier, which allows for VoIP packets to be prioritized over any other data being pushed through the appliance. This feature ensures that your VoIP calls are as clean as possible.
Fully featured and powerful stateful inspection firewall technology
With ICSA-Certified dynamic firewall technology underpinning all SnapGear models, SnapGear customers are assured of the highest levels of stateful firewall protection. The entire SnapGear line is highly resistant to denial-of-service attacks and intrusion attempts, while actively repelling port scans and other common probes.
Virtual private network (VPN)
Whether connecting site-to-site or with mobile users, SnapGear supports all of the most popular types of VPN technology including PPTP, L2TP, GRE, and IPSec. Even the smallest SnapGear security appliances include a robust IPSec VPN solution for securely inter-connecting multiple offices across the public Internet without investing in a dedicated wide area network. The SnapGear VPN supports 3DES, AES, and other popular commercial encryption algorithms.
VPN Offloading
SnapGear appliances can be used in place of a VPN Concentrator due to the unique capability to offload IPSec VPN processing to dedicated SnapGear appliances. By leveraging multiple SnapGear appliances to gain the cumulative number of VPN tunnels required – an administrator can continue the use of familiar technology and administration skills, instead of adding an additional layer of complexity to the network. Leveraging this capability can lead to significant cost savings as the cost of a concentrator can run more than ten times an additional SnapGear appliance. With numerous configurations possible, one example is shown below where the switching capabilities of the SG580 could be leveraged with a multi-port switch to gain ‘n’ number of VPN tunnels.
- Internet/VPN connection to the central SnapGear appliance where management of all other dedicated VPN offloading SnapGear appliances occurs
- A secure LAN connection
- Leveraging the SnapGear switching to offload VPN tunnels
- Leveraging the SnapGear switching to offload VPN tunnels
- Leveraging the SnapGear switching and an external multi-port switch to add 'n' number of appliances to gain VPN Processing capabilities with SnapGear
Intrusion detection and threat mitigation
All SnapGear security appliances include technology to disrupt conventional scanning and network layer denial of service attacks. The SnapGear SG565, SG580 and SG720 include embedded anti-virus gateway services for SMTP, HTTP, POP3, and FTP. The SnapGear SG565, SG580, SG640, and SG720 models also include an active IDS (Intrusion Detection System) powered by Snort to proactively monitor network events and alert network personnel when there is suspicious activity. The IDS assists with intrusion mitigation by scanning traffic for known viruses and by profiling traffic bi-directionally to help identify compromised systems.
Deploy URL content filtering for employee outbound access
Control and report on how your employees use their Web access. SnapGear appliances include the option for you to affordably subscribe to a simplified application of our leading Webwasher URL filtering solution, providing in-the-cloud filtering with a pre-defined set of reports (subscriptions available on a per appliance basis).
Appliance management (one-to-one and one-to-many)
All SnapGear appliances are easy to securely manage via any Web browser (Internet Explorer, Netscape Navigator and others), and also provide an extensive feature-rich command line interface (SSH security on all models apart from SG300). Optional enterprise-class central management and reporting is available by deploying Global Command Center software on a platform of your choosing. Global Command Center software allows network administrators to manage hundreds of SnapGear appliances easily including the management of upgrades, policy changes, and other configuration tasks with the click of a mouse.
Industry leading SnapGear support offerings
Nobody offers such an outstanding standard support and warranty program as is available with your SnapGear purchase. All SnapGear models automatically include either 1 or 3 years of premium 24x7 hardware and software support bundled right in with the purchase.

Firewall and intrusion mitigation:
ICSA certified stateful firewall
SNORT® IDS/IPS
Anti-virus (SMTP, POP3, HTTP, FTP)
Policy enforcement with NASL (Nessus Attack Scripting Language)
Webwasher URL filtering (optional)
TrustedSource electronic mail filtering
And much more...
VPN specifications:
VPNC-certified IPSec
X.509 certificates
Optional manual keying (up/downloading via browser)
VPNC-certified L2TP (inside of IPSec)
PPTP VPN
GRE tunnels (bridge networks allowing transmission of all traffic)
3DES, AES
NAT traversal
RFC2661 compliant
And much more...
|
|


|