Layer-7 Based Bandwidth Management
Control your bandwidth utilization with the Server Express Bandwidth Manager.
Improve network interactivitiy by setting bandwidth priority and data rate for running applicatios.
Reserve bandwidth for critical applications such as VPN, RDP, Telnet or database connectivity for the ERP system.
The Server Express Gateway Appliance can identify applications using a regularly updated library of application patterns.
Using this technology, bandwidth can be assigned to dynamic-port applications such as peer-to-peer, file sharing, video conferencing and VOIP applications.
Fully Enabled Object-Based Firewall
Use network objects to define your policy. Use objects for hosts, networks, services and object groups to define your rules.
Each rule can contain multiple sources, targets and services, allowing a straight-forward and more secure policy definition.
The Server Express Firewall also suports these other advanced features:
- Initiator Based Definition - Since the firewall is fully SPI enabled, session-based connections are defined by the initiator. No need explicitly allow returning packets
- Per Hour/Per Weekday Configuration - Rules may be enabled on a time of week basis. For example, the support provider may be allowed to connect to the network only during weekdays, at work hours
- Full State Control - Match the state mode on the rule
NAT
NAT is defined with using a user-interface similar to the firewall's. This approach is both easier to understand and supports virutally any possible NAT rule
- Expose the whole LAN using the external IP address (hide)
- Expose the whole LAN using multiple external IP addresses (dynamic NAT)
- Map a single computer to an external address (static-NAT)
- Do not NAT between internal addresses (NO-NAT)
- Use a different external address (for a specific host, group of hosts, or for networks) when accessing (a) specific address(es) (conditional dynamic NAT/hide)
- Map a specific port on the external address to a specific port on an internal address (port forwarding, internal port number may also be modified)
- Map an external address to an internal address (or specific ports), but only for specific external address (conditional inside NAT)
Some combinations of the above are also supported.
Primary Features
Firewall
- Full SPI support
- Defined using objects and groups
- Full NAT support incl. static NAT and port
- forwarding
- Per hour/weekday settings
- Multiple policies
Bandwidth Management
- Layer-7 enabled bandwidth management
- Assymetric bandwidth support
- Support for HTB, CBQ, TBF and SFQ queue disciplines
- Real-Time network monitor
Mail Relay
- POP-3/SMTP server and/or SMTP mail relay
- Hold/Release/Delete from queue
- Mail aliases
- POP-Before-SMTP authentication for remote users
HTTP Proxy Server
- Object-based access controls
- Full logging
- Surf track repotrs
- Transparent Mode
VPN
- VPN Server supports industry-standard
- PPTP and L2TP/IPSEC
- Site-to-Site VPN
- Per-user access permissions
Web Interface
- Full-capable administrative
- HTTPS/SSL encryption
- Supports MSIE 6.0+
Complementary Options*
- Anti Virus
- Anti Spam
- Mail Archive
* Avialable through the Quality Bytes Mail Security product |