Astaro Security Gateway is an award-winning, unique network security solution in an integrated and easy-to-use and manage package. Astaro Security Gateway includes a combination of the following security applications:
- A Firewall with stateful packet inspection and application proxies guards Internet communications traffic in and out of the organization.
- A Virtual Private Network (VPN) gateway assures secure communications with remote offices, �road warriors,� and telecommuters.
- Anti-Virus defends computers from both email and web-bourne viruses.
- Intrusion Protection detects and stops hostile probes and application-based attacks.
- Spam Filtering eliminates the productivity drain of opening and deleting unsolicited emails.
- Surf Protection (Content Filtering) and Spyware Protection improve productivity by blocking inappropriate web activities, provide full protection from user tracking threats and violation of privacy.
Product's homepage
Here are some key features of "Astaro Security Gateway":
· Protects all types of networks: Windows, Linux, Unix and others.
· Delivers comprehensive features at low cost maximizing your ROI (return on investment).
· Highly effective. Has won numerous industry awards. Beat Cisco and Checkpoint in InfoWorld magazine product review, Beat IBM and Computer Associates in Linux World for Best Security Application.
· Integrated management platform features an intuitive browser-based interface and one-step updates for rapid deployment and easy management.
· Can be installed in under 15 minutes or purchased pre-installed on security appliances.
· Can start with firewall, VPN and spam protection and add other security applications as needed, seamlessly.
· Runs as a dedicated application server on top of a hardened operating system, which relieves operating system management headaches.
· Runs on systems ranging from small devices up to large multi-processor systems utilizing gigabytes of memory.
· Redundant systems can be configured to provide high availability and automatic failover in case of hardware or network failures.
· Load balancing improves performance - traffic shaping can set priorities by network, service and protocol.
· Logging, automatic backup, and diagnostic tools support high reliability.
· Free online evaluation workshop to get you started.
Limitations:
· 30 day all feature on trial period
What's New in This Release: [ read full changelog ]
Amazon Machine Images (AMI) for ASG (and ACC):
· As mentioned in our earlier technical preview, you can now launch and run Astaro Security Gateway inside Amazon's Elastic Computing Cloud (EC2). Already we are seeing creative uses of this deployment method with partners using their cloud-based ASG to connect our RED product, and then extending their branches further by adding our Access Points to those devices - all managed centrally from their Amazon ASG. Let us know via a post at our UBB at www.astaro.org how it works for you, and how you are (or plan) to use it for your business - we are always interested in use cases! To locate the ASG AMI's, go to the community AMIs tab and search for "ASG". (A full deployment tutorial will be available at GA)
Amazon Virtual Private Cloud (VPC) Connector:
· The Amazon VPC service allows you to host and run your server infrastructure in a secure, scalable cloud. Our VPC connector gives you a permanent, encrypted connection to your VPC resources right from ASG. The back end for this uses our new BGP routing to redundant Amazon gateways, and is done automatically without you needing to know anything about BGP or the Amazon technical parameters for doing it manually (or with more complex products). A guide will be available at GA release to assist you in connecting to your VPC.
Support for Astaro Wireless AP50:
· Our new Wireless AP50 product is finished production and will be available very soon. You will need to be at ASG V8.300+ to use this product. With 5Ghz and 2.4Ghz bands, dual high-gain antennas, and Gigabit ethernet, this is our biggest and most capable wireless product, perfect for bigger environments or locations where the 2.4Ghz band is cluttered with interference. You can get more information from the Astaro Access Points section on our Website.
Site-to-Site VPN using RED Protocol:
We have added the ability to make tunnels between ASG devices using our much-heralded RED tunnel technology*. This operates similarly to how site-site over SSL works, you setup one ASG as the "Main" office (Server) and connect to them from other ASG sites as the "Client". Some quick steps to begin:
At the Main Site:
· Go to "WebAdmin-->RED Management-->[Server]Client Management Tab"
· Add a RED, enter a name and pick type "ASG". Click Apply.
· Download the .red provisioning file which is created.
On the Remote ASG you wish to connect:
· Go to "WebAdmin-->RED Management-->[Client]Tunnel Management"
· Add a tunnel, create (or select) a definition for the Hostname of the Main ASG and supply the provisioning file you downloaded from the Main ASG
· The tunnel will now be created.
· Now that you have a tunnel, you must to setup things manually. You will find hardware interfaces you can use to create a Network Interface in the ASG's, select IP ranges to be used, and otherwise manually configure the connectivity. This was originally designed for a special use case; you have however surprised us with your interest in this feature. So, we plan to have a more guided setup within WebAdmin for using RED for a site-site VPN with ASG's in a future Up2Date.
· *This will NOT turn your remote ASG into a RED terminal. It will still have a GUI and work like a normal Site-Site VPN does.
BGP4 Routing Support:
· ASG now has the ability to do Border Gateway Protocol Routing (BGP). You will find the configuration for this in WebAdmin at "Interfaces & Routing-->Border Gateway Protocol". A specialized routing protocol with specific applications, you should make use of this feature only if you know what you are doing.
Minor Adjustments:
· The Astaro Authentication Agent (AAA) has by popular request been made available as an MSI package as well as an EXE. You will find both on the Client Authentication section in WebAdmin. Enjoy your mass roll-outs of the AAA!
· Saved Web Reports have been to school and now remember how info was sorted when you saved them
· The printable configuration engine has also been educated on how to properly display big blocks of text without going outside the lines and now looks much better
· You can now see and sort application rules by the groups you create
· Notifications have had "select-all" boxes added, saving you from having to click dozens of times to select what you want
· You can now create Web Security Reports from Pre-8.2 Logs, see Support-->Advanced-->Weblog Import
· The Wireless Access Points Grouping section now has an apply button like the rest of WebAdmin, and no longer resets your selections between clicks as a result.