Products: Corporate Firewall ViPNet OFFICE FIREWALL Small and Medium Business Solution
ViPNet Office Firewall is a software firewall, which secures computers in local area network from unauthorized access while communicating with other local or global networks by IP protocol, for example while working with Internet.
ViPNet Office Firewall software is installed on a gateway server to control all IP traffic coming in/ going out local area network.
ViPNet Office Firewall software allows system administrator to use the following functions: To filter IP packets: to allow or block any traffic passing through each network interface (network adapter) of a firewall. With the help of ViPNet Office Firewall each one of network adapters can be set in one of five security modes. Usually, for the typical problem solution, an external network interface is set in the third mode ("Stealth" mode - it allows all outgoing traffic but blocks all incoming connections unless initiated locally) or in the second mode ("pass only IP traffic which is allowed by network IP traffic filters"), and an internal adapter - in the second ("pass only IP traffic which is allowed by network IP traffic filters"), third ("Stealth") or fourth ("pass all IP traffic") mode;
For each network adapter in the Network Filters window additional filters settings can be made, in case if default settings are not sufficient;
To use reductive mechanism of filters creation according to information about blocked IP packets on each network interface (Blocked IP packets window)
To look through information about incoming and outgoing IP packets processing in Statistics window;
To switch on intruder detection system (IDS) selectively for each network adapter;
To look through results of incoming and outgoing IP traffic processing in the IP packets registration log. For each network adapter its own log is kept. Automatic archiving is supported and data export in html and Excel formats is available;
To create different program configurations and switch between them on-the-fly. Window Configuration serves for this purpose;
To use additional program settings and abilities by entering the program with administrator's rights.
ViPNet Office Firewall Advantages: Software based-product helps to avoid necessity to buy additional equipment;
ViPNet Office Firewall supports unlimited amount of network adapters;
Optimum relationship of price and functionality, it is easy to install and set the product.
Technology: Low-level ViPNet Driver for network protection, it communicates directly with network interface driver and controls all IP traffic of your server.
Monitor program, it fulfills loading of all the parameters necessary for the Driver and keeps log of all the necessary events. You can unload this program, but the Driver will still secure your local network, only the log of the traffic won't be kept.
Optimum mode for LAN protection from the Internet attacks is "Stealth" mode. It allows all outgoing traffic but blocks all incoming connections unless initiated locally. Incoming packets analysis is made by a great number of parameters (address, port, protocol), that is why attacks and unauthorized access to your local network and on gateway server are impossible at this time from any other addresses or by other protocols, even from those Internet computers to which your workstation is connected.
Use cases: The most common case is LAN protection from unauthorized access from the Internet. ViPNet Office Firewall allows protecting LAN from malefactor not just scanning your Gateway Server, but trying to penetrate into your LAN. It is enough to set an external network adapter of the server (connected to Internet) in the Stealth mode to fulfill that.
Accept for protection from the Internet attacks ViPNet Office Firewall also allows to forbid work with Internet for certain workstations in your LAN, users of which don't need such possibility for their official duties. In this case it is enough to set filters for IP addresses of these workstations or a range of IP addresses and to indicate that traffic from these addresses should be blocked.
In case when all or certain workstations need to work only with certain Internet services, for example with mail server, you can set filters to block access to Web-pages, FTP-servers and other Internet resources.
ViPNet Office Firewall supports unlimited amount of network adapters. For each adapter it is possible to set its own mode and its own filters. Because of that it is possible to divide two or three networks, so that for example access would be granted from the first to the second network, but the other way it would be denied (or only certain computers could have an access).
So called Demilitarized Zone (DMZ) can be linked up to one of internal adapters, where servers which should be reached from Internet can be placed. At the same time traffic, outgoing from DMZ to the local network, switched to other internal adapters, can be entirely blocked.
System requirements: Processor Pentium III or higher;
64 MB of RAM;
100 MB free disc space;
Microsoft Windows 2000/XP/2003;
Required amount of modems or network adapters.