 | Administrative
Rights Delegation and Scoping
Local network segment
administrators can add rules pertinent to their environment and
business processes, while enterprise-wide network policies can be
set by the enterprise network manager. This stratification enables
different rules for different business segments l without compromising
overall network security.
|
 | Enterprise-Wide
User Authentication
Automatic propagation of
authentication information to all firewall deployments between the
user and the resources. This enables authorized users to access all
their resources with maximum productivity.
|
 | Security
Visualization
eTrust Firewall Includes an
extremely visual and intuitive GUI. This enables network administrators
to visualize network resources and easily perform tasks like
dragging and dropping policies to various resources.
|
 | TCP State
Aware Packet Filter Technology
TCP State aware packet
filtering
offers the most robust protection for complex protocols. By tracking
TCP/IP sessions and filtering IP packets based on the
state of the
session, eTrust Firewall can analyze the packets with
application-level intelligence, while maintaining the efficiency of
a packet filter.
|
 | Centralized
Administration
Multiple firewall engines can be
centrally and securely managed from a single console. Policy modifications
are automatically propagated to the firewall engines, enabling
consistent enterprise-wide security.
|
 | Secured
Interface for Other Applications
An authenticated method for
setting dynamic rules by other applications such as eTrust Intrusion
Detection is provided by eTrust Firewall.
|
 | Network
Address Translation (NAT)
Provides users of private servers
access to outside systems and services without revealing the IP
address of the server. Internal IP addresses can be automatically
translated to valid addresses for Internet use thereby limiting the
number of public IP addresses required.
|
 | Extensive
Alert Mechanism and Reporting
Provides network
traffic and operational visibility centrally from multiple
firewall deployments. Information such as firewall host, vital
status, current connection, routing table and more is available for
observation and monitoring. |