|

Stateful Firewall & IDS / IPS
Stateful Firewall
Stateful Firewall or Stateful Inspection Firewall is an advanced security
feature. The data connection is not only checked on packet filter level (source
IP address, destination IP address and ports) but also checks on the state
of a connection to allow or to block a connection.
NAT
Network Address Translation is used to hide private IP addresses in the
internal LAN behind the external official Internet IP address of the Netsafe
UTM gateway. In addition, Netsafe UTM can handle other types of NAT like
Basic NAT (also known as Static NAT) in which an Internal IP Can be
substituted 1:1 with an external IP and Dynamic NATs like Many-To-One NAT
and Many-To-Many NAT.
PAT
Port Address Translation is used to redirect TCP and UDP ports. Example: an
external request is coming to a mail server on port 25. At the UTM gateway
it can be redirected e.g. to an internal mail server running on port 225.
Full Application Level Gateway
Beyond the checks of the connection state (Stateful Firewall) the Netsafe
UTM firewall has even more advanced protocol and integrity checks. The
integrated application level gateway checks if the communication protocols
are correctly spoken or if somebody tries to compromise a system using
forbidden commands and/or data. Application level checks are done on many
protocols like DNS, FTPSIP, H323, SMTP,IPsec ALGs etc.
Multi ISP: Netsafe Unity supports more than one Internet connection
and you can choose which network subnet to access Internet through which
particular ISP. For example, you can route your private network through
ISP1 and your guest network through ISP2.
|