Developers: | InfoTEX (Infotecs) |
Last Release Date: | 2021/12/29 |
Technology: | IB - Firewalls |
Content |
Main article: Firewall
PAK ViPNet xFirewall is a security gateway - a firewall that is installed at the border of the network, provides filtering of traffic at all levels, allows you to create a granular security policy based on user accounts and the list of applications.
2022: ViPNet xFirewall 5
Software and Hardware Complex (PAK) ViPNet xFirewall 5 is a development of security gateways ViPNet xFirewall that implement the NGFW paradigm and allow you to create granular security policies based on user accounts and an application list. ViPNet xFirewall provides traffic filtering at all levels, antivirus protection and prevention of bypass of IS policies.
According to January 2022, ViPNet xFirewall 5 provides application layer firewall (DPI). DPI uses various techniques for identifying user application traffic: based on ports and protocols, signature method, heuristic method. These approaches allow you to identify even those applications whose traffic is encrypted or masked.
Use Cases:
- Network perimeter protection.
- Differentiation of access within the network.
- DMZ Organization.
- Control access to Internet resources.
- Comprehensive protection against network threats.
Features
The granular security policy, which is constructed in terms of "User" - "Application" - "Protocol" - to allow/prohibit provides:
- safe use of personal devices for operational purposes with full compliance with company security policies - BYOD (Bring Your Own Device);
- Reduced costs of Internet traffic consumption
- minimization of attack surface;
- integration with the IPS service - detection and neutralization of network intrusions.
The software and hardware complex ViPNet xFirewall 5 is certified by the FSTEC of Russia.
2021: Obtaining the FSTEC of Russia certificate for ViPNet xFirewall 5
On December 29, 2021 the Infotecs company reported that it received sertifikatfstek Russia for the hardware and software system (HSS) of ViPNet xFirewall 5.
Certificate of Conformity No. 4501 from 28.12.2021 confirms that the software and hardware complex ViPNet xFirewall 5 meets the requirements for information security established in the documents:
- "Security requirements that establish information levels of trust technical information protection tools in and" (Security Tools information technology FSTEC, Russia 2020) - by 4 levels of trust.
- "Requirements for firewalls" (FSTEC of Russia, 2016), "Protection profile of firewalls of type A of the fourth protection class. IT.ME.A4.PZ "(FSTEC of Russia, 2016).
- "Requirements for firewalls" (FSTEC of Russia, 2016), "Protection profile of firewalls of type B of the fourth protection class. IT.ME.B4.PZ "(FSTEC of Russia, 2016).
- "Requirements for Intrusion Detection Systems" (FSTEC of Russia, 2011), "Protection Profile of Intrusion Detection Systems of the Network Layer of the Fourth Protection Class. IT.SOV.S4.PZ "(FSTEC of Russia, 2012).
PAK ViPNet xFirewall 5 is a family of security gateways that implement the NGFW paradigm and allow you to create granular security policies based on user accounts and an application list. ViPNet xFirewall 5 provides traffic filtering at all levels, anti-virus protection and prevention of bypass of IS policies.
2020: Compatibility with AVSoft Athena
On February 12, 2020, the companies Infotecs AB Soft announced the successful completion of compatibility testing of their products: a security gateway firewall - ViPNet xFirewall and a detection and analysis system. harmful ON AVSoft Athena
A script was tested for the content of malicious content of files downloaded from the Internet to the ATHENA sandbox through the xFirewall proxy service using ICAP.
The firewall ViPNet xFirewall serves as a gateway between applications running on local network nodes and external network resources accessed by these applications (serving as a proxy server). ViPNet xFirewall inspects and monitors network traffic not only at the port and protocol level, but also covers all 7 layers of the OSI networking model, including the protocol and application functionality layer, which allows you to block the most complex attack methods.
AVSoft Athena v2.0 works on the basis of multi-scanner and sandbox technologies. Each file undergoes multi-level testing using static and dynamic analysis methods using artificial intelligence. The combination of multiscaner and sandbox technologies to investigate files for suspicious content and behavior significantly improves the accuracy of the scan result, allows you to identify zero-day threats, and saves IT infrastructure resources.
The combination of firewall, multiscaner and sandbox technologies allows consumers and information system developers to create a comprehensive IS system that simultaneously provides advanced analysis of network traffic, identifies the work of more than 2,000 network applications and allows you to detect suspicious objects in traffic (files) that are subjected to advanced analysis in the sandbox, thereby protecting the network, mail and web traffic, workstations, servers, and other IT infrastructure objects from modern types of threats.