s4000

  • Firewall
  • Load Balancer
  • URL Content Filter
  • VPN
  • Antispam-Antivirus
  • Instrusion Detection
  • Security Scanner

Labris™ Firewall

Firewall software with high security and performance Isolates your network. Enables networks consisting of virtual IP addresses.
Leads the internal and external security policies of the company. Existing for a long time, firewalls have had important technical improvements along with time. While firewalls were doing IP packet filtering with limited number of interfaces at first,
nowadays they work for various aims like stateful packet analysis and network address translation (NAT).
By checking all the sent and received packets, firewall, which is very important for security of any network, maintains the security of your network as well as enabling you to limit your users’ unwanted connections that decrease the efficiency while risk your total security. You may create special zones (DMZ) between internet and local networks for your public applications, and secure the entire network by single or multi level firewalls. Hence, you may control the connections of environments that have more than one local area network. As another use, all outgoing packets for specific target conditions can be channeled to the determined servers, without any client configuration by the firewalls that creates the infrastructure for transparent cache solutions.

  • Stateful packet inspection
  • Rule based access control
  • Rules based on source, target, network addresses, services and port numbers
  • Filtering with respect to IP, user, computer, domain, network and groups
  • Supports MAC based rules, and IP MAC pairs binding, to prevent access violations using IP number changing
  • Time specific dynamic rules
  • Rule based bandwidth and traffic shaping
  • Unlimited rule , profile, user and session with standard licensing
  • Maximum security and control with minimum rules with stateful inspection
  • Data counting
  • Bad packet identification
  • Packet redirection
  • Detecting applications using multiple protocols
  • Access control and permissions: Adjusting rules to users, according to their given permissions, authenticated through a multiplatform client interface.
  • One-to-many (address interval, subnet address), one-to-one network address translation (NAT, PAT)
  • Load balancing of more than one IP with Round-Robin redirection
  • Transparent mode support (stealth bridge)
  • Local or remote logging options
  • SNMP support

Labris™ Load Balancer

Standart Hardware
•2x10/100/1000
•1x10/100
Labris Load Balancer is an appliance to provide load balancing in the application level. It serves for the aims of load balancing, high availability, life checking purposes of a system. System means several number of computers and software for a common purpose.

Components
•Load Balancing Code
•Management Interface Code
For whom?
- Any service provider that has several machines for the same job and need load balancing over these. Such as, web serving, proxy serving etc.
- Any service provider that has several machines and wants high availability in case of a failure in one of them.
For example:
Web Portal Farms, Student Information Systems, Mail Server Farms, Proxy Cache Farms
Labris LB is designed to work over any network that IP works over.

Features
  • TCP/IP load balancing /TCP, UDP etc.)
  • Dynamically adding or removing members from the farm
  • Stateful Redirection for http like protocols (connection persistence)
  • VRRP support for clustering
  • SNMP support for monitoring
  • GUI based management and monitoring
  • Port Mapping
  • Support for several number of farms on the same load balancer device
  • Working modes: NAT(like Cisco), Direct Routing(like IBM NetDispatcher), Tunneling
  • In tunneling mode can redirect to members which are not in the same network
  • Bandwidth management
  • Security functions CP

Labris™ URL/Content Filter

Web filtering product; Blocks the connection to the undesired addresses
Makes url redirection Saves the bandwidth by blocking advertisement downloads
Efficiency... Concept that people aim, seems to increased with the usage of the computers in the offices and the usage of internet. However, the efficiency decreases dramatically, since the employees use the internet for the contents of game, stock market, pornographic content etc. This product should be used in the offices, public institutions, schools and internet service providers (ISPs) integrated with the proxy service to increase the efficiency. According to the surveys, 40% of internet usage is not related to the business. It is possible for the employees to connect to the addresses that decreases the efficiency and increases the load on your connection such as; the entertainment, sports, game pages, illegal addresses, advertisement and music pages etc. which may cause your connection to overload.
On the other hand, another very important factor for the efficient usage of your connection is the “URL direction property”. If a file is downloaded very often, by directing the download requests to a local copy, a way to prevent downloading the same files more than once. (Example: Netscape Communicator 6.2 ~ 26 MB, Internet Explorer 5.0 ~ 50 MB). Little internet images which have advertisement purposes… Also known as “banner”, these animated images, about 100KB, are generally loaded and it is shown in the browser side, although it is not requested intentionally by the user. In every opened page, instead of loading the original images, it is possible to change them with the ones that have no content and small in size.

Features

  • Regular expressions and word based input support.
  • Intelligent filtering for FTP and web content
  • Continuously updated 50 global, 7 Turkish content categories
  • Exceptional URL addresses and contents interface
  • Access control lists (ACL) based inspection
  • Date, hour, day based special automatic filtering configurations
  • Creating groups with respect to the IP addresses, IP address groups, domain names and users and filtering support specific to these
  • Expandable blacklist categorization
  • Active Directory, LDAP integration for user authentication and grouping management
  • Ability to block traffics which are using web ports (8080) or dynamically changing ports like
  • P2P&IM (msn, skype, kazaa, etc)
  • Java Applet, Cookies, ActiveX filtering
  • Rewriting URL and redirection support

 

Labris™ VPN (Virtual Private Network)

Before the internet became nearly-universal, a virtual private network consisted of one or more circuits leased from a communication provider. The privacy afforded by these legacy VPNs was only the communication vendor assures the customer that no one else use he same circuit. But this method was too expensive and open for snooping. As the Internet became more popular and universal, authority’s started to invent new VPN protocols that would allow traffic to be encrypted at the edge of one network, moved over the network like any other data, and decrypted when it reaches the corporate network or a receiving computer. This type of VPN’s are called secure VPN’s. Labris VPN is a secure VPN system that encrypts IP packets. Thus, one a secure tunnel created, all data of various protocols (HTTP, POP3, FTP, etc) are encrypted before traversing it. Labris VPN is completely transparent to users. Once correctly configured,
the users even would not need to know about it. It also offers a easy-to-use interface with which you can set most commonly used parameters. Labris VPN supports systems with static or dynamic ip addresses (RoadWarriors).

Features

  • Easy installation through multi-platform Labris Installer
  • X509 certificate support
  • Shared Secret support
  • Authentication via AH or included as part of  ESP
  • 3DES – much more secure than single DES
  • SHA1, SHA2, MD5 packet integrity
  • Encapsulated Security Payload used as encryption protocol
  • IKE key exchange protocol
  • IPCOMP data compressing
  • Automatic/manual rekeying
  • Optional Perfect Forward Secrecy(PFS) support
  • Windows client support, with easy management interface
  • Mobile VPN clients for windows and Linux operating systems
  • Modem support for Roadwarriors
  • Single CPU allocation for VPN operation

 

Labris™ Antivirus-Antispam Gateway

Labris Antivirus-Antipspam Gateway blocks spasm and virus infected mails and web downloads. It is a complete solution for web and e-mail traffic security against malicious content.

ANTIVIRUS/ANTISPAM(HTTP,FTP,SMTP)

  • Complete virus security for web and mail content traffic
  • Checking mails using RBL, domain name analysis, reputation filters and similar methods before activating antispam engine to ensure maximum efficiency
  • Ability to check files regardless their file extension using file-spoof feature
  • Ability to check encoded archives using compression depth technology
  • Intelligent antispam engine using several algorithms
  • In addition to intelligent antispam engine, extra spam filters for extra security
  • Custom filters for maximum administrator control
  • Spam querying interface and delivery of blocked mails to the recipient on demand
  • Abuse Management screen which is very useful for ISPs.
  • Ability to notify sender, recipients, administrator and quarantine the mail
  • Detailed graphical reporting of traffic and content instantly or periodically
  • User trainable spam engine by marking mails manually as spam or not a spam.
  • Exponentially waiting penalties for malicious local users to slow down harmful abuse activity

Labris™ Intrusion Detection System

Detects the attacks to your computer or your network Helps you to take necessary precautions. The number of the services provided on the Internet has gone through a significant increase with the rapid development of internet by the 90s. However, monitoring the weaknesses on the services or applications that are used, to maintain these services or
controlling the potential future weaknesses continuously, is very hard. At this point, Intrusion Detection Systems (IDS) help you to detect who tries to give damage to your system using the weak points of your system. By this way, it enables you to protect your system. Moreover, it may block the sources according to its properties by cooperating with the firewall software. It may detect the attacks to the computers connected to internet. It allows you to make additions to the rule base to detect the different kinds of attacks.

Features

  • Easy installation through multi-platform Labris Installer
  • Ability to work on more than one CPU platform or operating system
  • Intrusion detection and packet monitoring abilities on the IP Networks
  • Logging in different formats while packet monitoring
  • Protocol analysis, content search and attack detection capabilities
  • Stateful packet tracking
  • Portscan detection
  • Real-time intrusion detection
  • Reporting over different types of applications
  • Automated updates on the rule base
  • Flexibility to add new rules to the rule base
  • Integration with the third party products
  • High achievement

Labris™ Security Scanner / Vulnerability Assessment

Labris Security Scanner; Scans all the computers and machines connected to your network, Reports the potential security problems To detect the weaknesses or the problems on the systems or services that are using internet, is vital for the maintenance of the services, since a problem or a downtime causes a loss of data, prestige and money for the companies. It is possible to check whether the machines using internet have the weaknesses or problems and be foreseen. So, the necessary upgrades are made or the patches are integrated into the part of the system having those weaknesses. By this way, the systems are made more secure.

Features

  • Support of more than one CPU platform and operating system
  • Flexibility to add a security test by the user, using the Plugin support
  • “Easy to add rule” property by its scripting language.
  • Ability of working in the structure of Client-Server
  • Facility to detect the services that are not working on its port by its smart service recognition feature.
  • Ability to test according to the properties of the system in which the security scanning will take place.
  • Ability to test all the SSL services
  • Reporting in different formats
  • Determining the level of risk in reports
  • Continuously updated rule base.
  • Flexibility to make addition to the rule base.
  • Licensing for unlimited number of users and time.
  • Integration with the third party products
  • High achievement

 


Designed by Palyacho