OverviewCheck Point VSX Security Appliances enable organizations to consolidate infrastructure in high-performance environments by virtualizing physical network components into one physical device. Benefits
Features
|
Hardware cost savings and comprehensive security via a virtual platform
Simplified management and flexible deployment
High availability and easy scalability
|
Scalable Virtual EnvironmentWith VSX—deployed as VSX Software or VSX-1 turnkey appliances—administrators can create virtualized implementations of conventional physical topologies and designs such as central and remote DMZs. The Virtual System Extension (VSX) platform can create and manage up to 250 fully independent security systems on a single or clustered hardware platform. This delivers scalability while dramatically reducing hardware investment, space requirements and maintenance costs. Flexible Virtual ConnectivityVirtual routers and switches can be used to forward traffic between networks located behind virtual systems, much in the same manner as their physical counterparts. VSX supports a wide range of routing scenarios, enabling flexible network connectivity.
High Performance SecurityHigh bandwidth networks require high-performance gateways in order to support thousands of users and applications. VSX employs Check Point-patented SecureXL™ security acceleration, enabling maximum performance from open servers and appliances. To provide security at wire speed, VSX can be deployed on multiple carrier-class platforms using Check Point high-performance technology, ensuring secure, resilient, multi-gigabit throughput. And to maximize performance, capacity and system scalability, VSX provides the following features and technologies:
Comprehensive Security ServicesBased on FireWall-1 and SmartDefense intrusion prevention technologies, VSX provides comprehensive protection to multiple networks or VLANs within complex infrastructures, securely connecting them to shared resources like the Internet and DMZs. VSX gateways are based on Check Point-patented Stateful Inspection, the de facto standard for Internet security. VSX examines more than 150 predefined applications, services, and protocols out-of-the-box, ensuring that the vast majority of applications used by businesses are free of threats when entering the network. Examples include:
VSX is supported by SmartDefense Services, which maintain the most current preemptive security for the Check Point security infrastructure. VSX also provides flexibility in secure remote access, supporting the most complete range of client access options (IPSec, SSL VPN, mobile access) Proven, Mature Security Management ArchitectureVSX is managed with Check Point's SmartCenter and Multi-Domain Security Management solutions. Both provide powerful tools for centrally configuring, managing, and monitoring multiple VSX security operations platforms, virtual systems, and physical VPN-1 gateways. VSX-1 appliances feature hardware health monitoring capabilities over SNMP. Based on Check Point Security Management Architecture (SMART), these solutions deliver the flexibility of choosing the appropriate management solution based on your network requirements. Check Point One-Click VPN technology also enables virtual systems to be added seamlessly to a VPN community. The new virtual system automatically inherits the appropriate properties and can immediately establish secure sessions with all other VPN community members within the enterprise network. Additional tools such as virtual system creation wizards and templates assist in enforcing server image standardization and further streamline the process of deploying and configuring VSX. Used in conjunction with Multi-Domain Security Management, an enterprise can use VSX to segment different business groups or customers and classify the network either by function or by network segment. Therefore, administrators can maintain separate policies for different network segments and can delegate or divide large rule-bases into several smaller rule-bases for ease-of-management and better control of network security. Service Provider EnablementVSX delivers security service provisioning at the click of a button, enabling service providers to monetize virtual security service offerings at the lowest possible cost. Capabilities now include new URL filtering capability which protects users or restricts access from an array of profiled content. This adds to the best-in-class security services already available. |
VSX-1 Appliance Hardware Specifications
1 With Acceleration Card, available in 2012 VSX/VPN-1 Power VSX Software
VSX/VPN-1 Power VSX Technical Specifications
*Available with Multi-Domain Security Management |
Data Sheets |