Transcript Document
Netmind Networking Presents
www.netmindsecurity.net
The SonicWALL TZ 190 Series
Secure 3G Wireless Broadband
in an Instant
Problem: Business Continuity
Organizations today rely heavily on
high-speed Internet access
But, wired connections aren’t always
practical
35% of SMBs have no fixed broadband
option*
Wiring costs can be prohibitive
Plus, broadband failures can be
catastrophic
Example - what if the DSL is out for
2 weeks?
Would this have a business impact?
*Small business survey commissioned by Hughes Networks, September 2005
2
© 2005 SonicWALL, Inc. All Rights Reserved - Confidential
Alternatives to Broadband
Satellite
Expensive, exotic technology
Dial-up
Dial-up is slow; not “always-on,” but highly
available
3G Wireless Broadband
3G is now almost as fast as broadband
Major carriers have high speed coverage in
most urban areas, and many secondary
metro regions as well!
3
© 2005 SonicWALL, Inc. All Rights Reserved - Confidential
Solution: The TZ 190 Series
Modular design provides either Automated failover/failback to
support for 3G or dial-up
3G or analog modem PC cards
Powerful deep packet inspection Optional 802.11b/g WLAN
firewall
PortShield architecture
Integrated gateway anti-virus, Best-in-class GMS
anti-spyware and IPS (optional)
Proven IPSec VPN
4
© 2005 SonicWALL, Inc. All Rights Reserved - Confidential
Management
TZ 190 Series Highlights
Software
Ships with SonicOS Enhanced
Hardware
Cavium Nitrox 200Mhz
128MB RAM
Power
120V – 240V AC
Use 3rd party power inverters for
mobile applications
5
© 2005 SonicWALL, Inc. All Rights Reserved - Confidential
WAN Interfaces
Wireless – Modular Type II PC
Card Slot
Wired - Fast Ethernet
LAN Interfaces
8 Fast Ethernet w/ PortShield
1 Fast Ethernet Opt Zone
Wireless LAN (TZ 190 Wireless)
Integrated 802.11b/g radio
Full 802.11i (WPA2) support
The Complete TZ Series
Feature
TZ 150
Series
TZ 170 SP
Series
TZ 180
Series
TZ 190
Series
Deep Packet Inspection
Firewall
S
S
S
S
Max Site-to-Site VPNs
2
2
10
25
Maximum GVCs
2
2
25
25
802.11b/g WLAN
O
O
O
O
WPA2
-
-
S
S
PortShield
-
-
O
S
WAN Failover
-
O
O
S
Analog Modem
-
S
-
S*
Modular PC Card Slot
-
-
-
S
•*PC Card Analog Modem not included. Support for 3rd party 56k analog modems will be provided in 2H07
6
© 2005 SonicWALL, Inc. All Rights Reserved - Confidential
Unified Threat Management Optimization
Unless you have UTM, your network is not protected!
Unified Threat Management
The TZ 190 Series is SonicWALL’s second generation of Unified Threat Management
appliances
Memory, flash and processor are optimized for faster UTM
2X the UTM performance compared to the TZ 170 Series
Totally Secure, Right Out of the Box!
The TZ 190 series is sold as a COMPLETE service bundle called “TOTALSECURE”
In our price lists and data sheets, look for TotalSecure SKUs
What Is Included In a TotalSecure Solution?
7
Gateway Anti-Virus, Gateway Anti-Spyware, Gateway Intrusion Prevention Service
Content Filtering Service
24 X 7 Dynamic Support Services
ViewPoint Reporting
© 2005 SonicWALL, Inc. All Rights Reserved - Confidential
Gateway Protection
Integrated solution, intelligently
reinforces total protection
Many threats are blended or
multi-variate
Protecting against a virus is great
but if the attack is multi-pronged, it
can still bypass virus protection
Gateway anti-virus, spyware &
intrusion protection work together
as a Total Solution
8
© 2005 SonicWALL, Inc. All Rights Reserved - Confidential
Our Team is Working 24x7 For You
Attacks happen 24x7 so your
protection needs to arrive 24x7
SonicWALL UTM services
automatically update 24 hours
a day!
No manual intervention required
9
© 2005 SonicWALL, Inc. All Rights Reserved - Confidential
Content Filtering Protects You
Many attacks start off as a simple
request to go to a Web site
Phishing sites can be used to
load spyware onto your system
With the TotalSecure Solution,
we protect against both hostile
sites as well as offensive and
unproductive sites
10
© 2005 SonicWALL, Inc. All Rights Reserved - Confidential
ViewPoint Core Features
11
Comprehensive set of graphical reports
“At-A-Glance” Reporting
Compliance reporting
Multi-threat reporting
User-based reporting
Automated report scheduling
Ubiquitous access
New attack intelligence
Multiple concurrent sessions
© 2005 SonicWALL, Inc. All Rights Reserved - Confidential
Technically and Economically Superior UTM
Competitors’ UTM solutions CAN NOT inspect large files or large
numbers of files simultaneously
Instead, they either force you to LET TRAFFIC IN without inspection
UNACCEPTABLE!!!
or
They BLOCK ALL LARGE FILES even if they are vital to a
company’s business
UNACCEPTABLE!!!
SonicWALL is the only company that can inspect any file regardless of
size with a device as small and inexpensive as the TZ 180 and TZ 190
No file is too large
Every packet from every file, from every protocol is inspected
Let your business run productively, but SAFELY
The ONLY RIGHT CHOICE
12
© 2005 SonicWALL, Inc. All Rights Reserved - Confidential
Wireless Broadband Overview
GSM and CDMA are the two predominant systems
Average
Average
13
2.5G
2.75G
GPRS
EDGE
30 to 80
Kbps
256 Kbps
3G
3.5G
3.75G
UMTS
HSDPA
HSUPA
384 Kbps
1.8 Mbps
7.2 Mbps down
5.6 Mbps up
2G
3G
1x RTT
EV-DO (Rev 0)
(CDMA 2000 1x)
(CDMA 2000 1xEV-DO)
144 Kbps
© 2005 SonicWALL, Inc. All Rights Reserved - Confidential
Up: 50-70 Kbps
Dn: 500-900 Kbps
3G
EV-DO (Rev A)
Up: 1.8 Mbps
Dn: 3.1 Mbps
US PC Card Support
3G
Sprint
Novatel Wireless Merlin S72
Novatel Wireless Merlin S620
Sierra Wireless AirCard 595
Cingular
Sierra Wireless AirCard 875 (3.8.0.3e)
Option GT Max 3.6
Option GT Max
Sierra Wireless AirCard 860
Verizon Wireless
Sierra Wireless AirCard 595
Verizon Wireless V620
Dial-up
Zoom Model 3075 PC Card Modem (coming in 2H07)
FOR A REAL-TIME LIST OF CURRENT CARDS SUPPORTED GO TO http://www.sonicwall.com/us/tz190cards.html
14
© 2005 SonicWALL, Inc. All Rights Reserved - Confidential
Solution Examples
How to Deploy the TZ 190 with 3G
1. Select wireless
carrier and
supported PC
card
2. Buy PC card
data service
agreement
4. Unlock,
provision and test
in the offline PC
6. Configure the
TZ 190 for the
carrier
16
© 2005 SonicWALL, Inc. All Rights Reserved - Confidential
3. Load the PC
Card software
onto a PC
5. Insert the PC
card into the TZ
190
7. Test the
Internet
connection
8. Congratulations,
welcome to an
instant broadband
network
The Secure 3G Wireless Network
VPN Head-end
Wireless Client
TZ 190
PoE
The TZ 190 can be remotely
managed via Web GUI or
with SonicWALL’s Global
Management System
PoE
802.11a/b/g
APs
Wired Client
17
© 2005 SonicWALL, Inc. All Rights Reserved - Confidential
The Secure 3G Wireless Network
VPN Head-end
Wireless Client
TZ 190
Wireless
TZ 190
The TZ 190 Wireless allows 802.11b/g WLAN clients to connect directly
to the WWAN!
This is a completely wireless network, from client to Internet!
Interesting applications include mobile hotspots and emergency vehicles.
18
© 2005 SonicWALL, Inc. All Rights Reserved - Confidential
Instant Secure Retail Networks
Enable the upgrade from
dial-up to broadband
Add mobile carts to fixed
locations
In fixed stores, use the 3G
wireless for backup
19
© 2005 SonicWALL, Inc. All Rights Reserved - Confidential
Temporary Networks
Construction sites, trade shows, off-site
meetings, seasonal stores
Key requirements
Portability
3G connectivity
Security and VPN
20
© 2005 SonicWALL, Inc. All Rights Reserved - Confidential
Instant Temporary HotSpots
Use either the TZ 190 Wireless or a
TZ 190 with SonicPoints
TZ 190
PoE
SonicPoint
21
© 2005 SonicWALL, Inc. All Rights Reserved - Confidential
Mobile Networks
Disaster recovery, border control,
emergency response, mobile
hotspot, etc.
Key Requirements
Secure 3G primary connectivity
Enterprise class reliability
Mobile power using 3rd party
power inverters (APC, Tripp
Lite, etc.)
22
© 2005 SonicWALL, Inc. All Rights Reserved - Confidential
Police Car Trunk, showing TZ 190
Kiosks
Remote management and
VPN enable secure
transactions
23
© 2005 SonicWALL, Inc. All Rights Reserved - Confidential
What Makes the TZ 190 Series
Different?
An Unbeatable Combination of
Security and Access
The TZ 190 multiple functions as both:
A UTM network security appliance
with modular 56k analog modem
failover
A 3G router
No other network security appliance
offers 3G wireless
No other 3G router offers the combination of deep security,
VPN and management required for business applications
25
© 2005 SonicWALL, Inc. All Rights Reserved - Confidential
Instant 3G Provisioning
Combine a PC card from your
With the SonicWALL TZ 190
wireless carrier
To create an instant secure broadband
network anywhere
26
© 2005 SonicWALL, Inc. All Rights Reserved - Confidential
Unified Threat Management
Find the malicious
code hidden deep
in the network
27
© 2005 SonicWALL, Inc. All Rights Reserved - Confidential
Remote Management
The TZ 190 Series can be remotely managed
individually or using SonicWALL Global
Management System
Global
Management
System
Retail Store
Car
Dealership
GMS
SERVER
28
© 2005 SonicWALL, Inc. All Rights Reserved - Confidential
Law Firm
PortShield: Secure Switching at Its Simplest
Simple configuration of
advanced networking
Assign physical ports to
the logical PortShield
group
PortShield Wizard
provides full automation
Apply Security Services at
the Zone level
Easily configure granular
NAT and firewall policies
29
© 2005 SonicWALL, Inc. All Rights Reserved - Confidential
Advanced 3G Features
The advanced features on the TZ 170 SP are also valuable on the TZ 190
Dial-on-Data
Failover and Failback
Bandwidth Management
Pre-empt Mode
Plus, the TZ 190 supports new 3G features
Connection Profile Wizard
Signal Strength Indicators- both LED and in GUI
Bandwidth Reporting and Data Usage Limiting
Card Removal Alerting (when used as failover)
Auto-connect (persistent mode) Ensures 3G is Always Up
Our 1st generation 3G features beat other products
that have been on the market longer
30
© 2005 SonicWALL, Inc. All Rights Reserved - Confidential
The SonicWALL TZ 190 Advantage
Allow upgrades from dial-up to broadband
wireless
Instantly create 3G wireless access
Provide peace of mind by
providing 3G or dial
backup
Complete security and
manageability
31
© 2005 SonicWALL, Inc. All Rights Reserved - Confidential
Thank You!