Sepehr 3400 series of Firewalls

EN(237KB)

Sepehr 3400 firewall is a plug and play device and a really transparent (wire level) frame inspector for small and medium level enterprises. Its installation is as easy as an ordinary Ethernet switch. After installation, all IP packets with wrong checksums will be dropped. All TCP connections will be checked, from the checksum to the state transition and sequence numbers of TCP sessions. If configured, the logs about all fetched URLs, Email senders/recipients, FTP users and commands, besides hundreds of statistical information will be sent to the log collector system. Logs of Sepehr 3400 are sent by a special purpose protocol which will not be saturated by SPAM and/or junk Sync floods. Sepehr 3400 is a 4-ports, layers 2-7 switch with many advanced features including :

  • Four 10/100 TX Ethernet ports.
  • Serial port console with full setup capabilities.
  • 19 inches rack mountable chassis with 1U height.
  • Traffic shaping features.
  • Full layer three, packet filtering with automatic IP checksum control.
  • Tight TCP stateful inspection.
  • Application layer protocol monitoring and violation control for Telnet, SMTP, FTP, and HTTP (e.g.: invalid HTTP requests cause TCP connection termination).
  • URL filtering with user defined URL databases to filter domains, sub-domains, directories in sites.
  • White list URL databases.
  • Per entry URL database classification to let administrator classify sites in more than 64000 classes.
  • Regular expression matching with space for 100 regular expressions to match with HTTP requests.
  • SMTP session filtering based on entries defined in databases of username, domain name, user@domain.
  • LAN user authentication to allow/disallow users to pass the switch to see/filter the classified site in periods of time, with periodic and total quotas on send, receive, login count, connection duration.
  • Java GUI based setup programs for Windows™.
  • Ultra fast log protocol with additional free software to manage the logs for months and make reports (requires a computer to collect the logs – not supplied).
  • NAT/PAT support.
  • Hardware VPN accelerator
  • IP/MAC database as source and/or destination in rules.
  • Color: Black