AhnLab TrusGuard DPX
Optimum choice for large-scale, hybrid and advanced DDoS attacks
AhnLab AIPS는 안랩이 보유한 아시아 최고, 최대 규모의 보안 위협 분석 조직 및 인프라를 기반으로, 국내 네트워크 환경에 최적화된 네트워크 공격 대응 시그니처를 제공합니다. AhnLab TrusGuard IPX(Intrusion Prevention eXpress)는 국내 최대 수준인 6000여 개의 정확한 최신 공격 대응 시그니처를 보유한 최고의 IPS(Intrusion Prevention System) 장비입니다.
AhnLab TrusGuard DPX is the most powerful protection solution for Anti-DDoS. No.1 Market share in Korea is AhnLab TrusGuard DPX.
Source: “South Korea Distributed Denial of Service (DDoS) Solution Market, Forecast to 2021” August 2017, Frost & Sullivan
Ahnlab Trusguard Dpx 6000a 45 Acp
Distributed-denial-of-service (DDoS) attacks have become one of the most serious threats against today's Internet-based entities, including e-commerce, infrastructure, and government websites. In a DDoS attack, compromised zombie computers or botnets can take down websites or other Internet services with excessive requests for system resources.
AhnLab TrusGuard DPX is designed to defeat today’s highly complex and sophisticated DDoS attacks with an intelligent defense strategy. It ensures business continuity and resource availability with an all-inclusive security layer that not only detects today’s more complex attacks, but also mitigates their effects.
AhnLab TrusGuard DPX provides all-inclusive features to block these complex attacks, regardless of techniques or methods.
- - Real-time traffic monitoring and automatic self-learning
- - Protection from network to application (HTTP)
- - Source IP based protection and spoofed IP protection including TCP Flooding and others
- - TCP session based protection including TCP Multi-Connection, TCP Established Attack, Low Bandwidth TCP Session Flooding
- - HTTP based protection including HTTP Get Flooding, HTTP Null Page Flooding, HTTP CC Attack, HTTP Redirect Bypass Flooding, SQL Query Based HTTP Attack
- - Protection against new and advanced attacks, like DNS Amplification Attack, RUDY or Slowloris
Multi-Layered Mitigation Filtering
AhnLab TrusGuard DPX employs following multi-layered mitigation filters to stop highly complex attacks: Untrusted traffic block, Ant-spoofing protection, HTTP access authentication, Unauthorized IP block, Threshold-based protection and Signature-based protection.
Flexible Deployment – Inline & Out-of-Path
AhnLab TrusGuard DPX can be deployed inline on a network or as part of an out-of-path topology. By allowing traffic bypasses, TrusGuard DPX provides a safe level of fault tolerance and continues to route traffic, even in the event of a system failure. In addition, TrusGuard DPX ensures fault tolerance and operational stability without affecting the traffic flow when located outside of the network path.
Clustering Capability
The outstanding scalability provided by the clustering capability can simultaneously manage up to 120 Gbps of bandwidth and synchronize a list of trusted IP addresses with all the other devices within the cluster.
1 Appliance – 328 Zones (Multi – Tenancy)
AhnLab TrusGuard DPX can simultaneously configure up to 328 different zones with different protection policies for each zone.
Powerful Monitoring
Monitoring traffic flow and mitigation measures across the network is made simple with color indicators: green means the network is secure, orange requires attention, and red is critical. Mobile devices are also supported.
AhnLab TrusGuard DPX Specifications
TrusGuard DPX 6000A | |
---|---|
Throughput | 10G |
CPU | 6 Core |
RAM | 64GB |
CFast | 8GB |
Console | 1 (RJ-45) |
1GC | 10 (Max 34 ports, Including Mgmt) |
1GF | 2 (Max 16 ports) |
10GF | 0 (Max 16 ports) |
Bypass | Support |
Power | 550W Redundant |
TrusGuard DPX 10000A | |
---|---|
Throughput | 40G |
CPU | 28 Core |
RAM | 64GB |
CFast | 8GB |
Console | 1 (RJ-45) |
1GC | 2 (Max 34 ports Including Mgmt) |
1GF | 0 (Max 16 ports) |
10GF | 4 (Max 16 ports) |
Bypass | Support |
Power | 550W Redundant |
AIPS
Advanced
Intrusion Prevention System
AhnLab AIPS is an Advanced Network Intrusion Prevention solution that protects customer’s business environment in response to changes in cybersecurity threats.
AhnLab AIPS (Advanced IPS) is a powerful network intrusion prevention solution that can respond to rapidly changing cyber security threats caused by digital transformations.
Security threats are rapidly changing with changes in the network environment. As the number of targets to attack increases and the method of attack varies, there are numerous variations. Along with these threats, Intrusion Prevention Solutions are also experiencing a change. Now it’s time to detect a lot of malware and defend against unknown attacks and more diverse attack elements and environments.
Based on AhnLab’s largest security threat analysis organization and infrastructure of Asia, AhnLab AIPS provides optimized network attack response signatures for network environments. While responding to the latest security threats with a variety of sophisticated detection engines and next-generation features, visibility and convenience make it easy and intuitive to identify and analyze threats.
Advanced detection engine and
sophisticated signature-based next-generation
Intrusion Prevention SystemHighly capable of detecting and responding
to threats with a variety of detection filters
and acceleration technologiesHigh-performance packet
processing system
that combines the HW and SW technologyAdopting an Open API
approach for collaboration with
a variety of security solutionsConvenient GUI
for quick and easy
threat visibilityImproved threat analysis
across multiple data and
high degrees of freedom
AhnLab AIPS detects and blocks attacks based on network, OS, web and application vulnerabilities as well as various types of network-based attacks and malwares.
AIPS provides an easy and convenient operational management environment while securely protecting customer’s business against evolving network threats. It also ensures availability of networks and services with superior performance.
- Intelligent Network Threat Detection
- · Responds to security threats across multiple paths by advanced detection engines and next-generation IPS features
- · Responds in advance to complex threats with malware detection and TMS linkage
- Easy and Convenient Operation Management
- · Easy and intuitive to view information with excellent visibility
- · Detailed analysis of threat information with a variety of statistics and flexible Drill Down
- Excellent Performance
- · Enhanced performance of detection with high-performance of HW and acceleration technologies
- · Provides fast and flexible analysis against a variety of threats by Big Data processing engines with high performance
Multiple Detection Engines for Security Threat Response
As the network environment changes, malware-based attacks are increasing along with the existed traffic-based attacks. AhnLab AIPS responds to evolving network security threats by Interworking with advanced detection engines, next-generation IPS features, and other security solutions.
- - High-performance pattern matching
- - Application Control
- - Behavioral detection (Flooding, Scanning. Etc.)
- - Blocks abnormal protocol (HTTP, DNS, SIP)
- - IP/MAC control (abnormal MAC, IP based Blacklist)
- - Encrypted traffic analysis
- - Detects and blocks C&C server access
- - IP/TCP refragmentation and prevents bypassing attacks through XFF features
- - YARA engine and signature (static analysis)
- - Malicious file extraction
- - Precious analysis through TMS
Information Visibility and Convenient GUI
AhnLab AIPS supports advanced information visibility to help users to quickly and easily recognize network conditions and analyze security threats. Custom dashboards and widgets allow administrators to organize dashboards with only the information they want. It scans threat events and generates custom statistics/analysis policies if continuous statistics and analysis are required.
Enhanced Detection/Blocking Performance
AIPS detects and prevents large traffic without service failures or packet leakage through multicore CPU and AhnLab’s optimized programming, architectures for high-speed packet processing, and PCRE acceleration technologies. It provides improved performance with AFNIC (AhnLab FPGA NIC) support.
High-performance Searching and Threat Analysis
AhnLab AIPS applies a high-performance engine focused on Big Data processing to support fast log/event scanning and flexible statistics/analysis of numerous detected events.
Big data Processing-based High-performance Engine Applied
- High-Speed Search
- - Faster than competing products
- - Only for Big Data processing
- Various Analysis
- - Supports accurate analysis of events through flexible search
- - Perfect custom statistics/report
- Resources Efficiency
- - Efficiency of memory resources
- - Storage space optimization
- - Ensures high efficiency of low specification equipment
AIPS 2000 | ||
MAX IPS Throughput (UDP) | 20G | |
CPU | 8 Core | |
RAM | 32GB | |
CFast | 8GB | |
HDD | 2TB | |
NIC Slot (Default/Max) | 2 / 4 | |
Interface | 1GC | 2 |
1GF | 2 (Max 16 ports) | |
10GF | - | |
AFNIC | - | |
Bypass | Support | |
Power | 550W Redundant |
Ahnlab Trusguard Dpx 6000a 38 Special
AIPS 4000 | ||
MAX IPS Throughput (UDP) | 80G | |
CPU | 20 Core | |
RAM | 64GB | |
CFast | 8GB | |
HDD | 2TB | |
NIC Slot (Default/Max) | 4 / 6 | |
Interface | 1GC | 2 |
1GF | 4 (Max 24 ports) | |
10GF | 0 (Max 24 ports) | |
AFNIC | - | |
Bypass | Support | |
Power | 550W Redundant |
AIPS 10000 | ||
MAX IPS Throughput (UDP) | 120G | |
CPU | 28 Core | |
RAM | 64GB | |
CFast | 8GB | |
HDD | 2TB | |
NIC Slot (Default/Max) | 4 / 6 | |
Interface | 1GC | 2 |
1GF | 0 (Max 24 ports) | |
10GF | 2 (Max 24 ports) | |
AFNIC | 0 (Max 2 ports) | |
Bypass | Support | |
Power | 550W Redundant |