The new flagship of Top Layer Networks` family of high-performance security products - the AS 3500 - has been released by Duxbury Networking, the sole distributor of Top Layer products in SA.
The AS 3500 is a software solution that can be implemented and configured to support the requirements of the most complex network configurations. It features a complement of dual fibre gigabit Ethernet and 12 auto-sensing 10Base-T/100Base-TX Ethernet interfaces.
"The AS 3500 is a cost-effective solution that integrates the features and function of several standalone component devices into a single package, all under the control of a homogeneous, policy enforcement and management framework," explains Graham Vorster, chief technology officer at Duxbury Networking.
Optional Premium Pack software modules add integrated services such as Firewall Balancing, DDoS Attack Mitigation and IDS Flow Mirroring to built-in Application Policy Management features such as Secure QoS, Secure Application Balancing, and bandwidth management.
"In security environments where intrusion detection coverage at high link speeds is desired, the AS 3500 can carbon copy flows across multiple IDS systems to achieve full gigabit bandwidth coverage while maintaining session state integrity with or without the use of taps," says Voester.
The AS 3500 can be reliably installed inline or off a SPAN port. The AS 3500 is said to be the first and only Check Point Software, OPSEC Certified DDoS Attack Mitigation device. Coupled with Top Layer`s SecureWatch data acquisition system, the value-added flow detail captured by the AS 3500 is conveyed to the Check Point Management Consol through the ELA interface.
"The combination of Check Point firewall systems behind the AS 3500 DDoS Attack Mitigation service presents a formidable security hurdle to intruders," notes Vorster.
"Implementing this strategy affords customers complete and highly detailed forensic records of the actions leading up to and through network security events. This is a powerful tool for gathering essential network, application, and user detail in a consolidated repository."
Top Layer Networks` AS 3500 is a powerful ally in a high performance network. Throughput of the 2.4Gbs custom chipset fabric supports 256 000 simultaneous flows at up to 15 000 fully classified and qualified connections per second. These traits are important to customers who need not only fast connection set up, but also the ability to track and control security dynamics based upon a variety of extranet parameters.
These parameters may include the qualified User ID, flow source domain, and application attributes even when multiplexed onto non-standard interfaces like Port 80.
In large enterprises and through to carrier class network environments, where client mobility reduces policy constants to only the User ID and Content, the AS 3500 is a product that can draw together the necessary data to assure gigabit speed security enforcement without sacrificing network viability. The AS 3500`s gigabit speed, stateful firewall balancing feature can manage up to eight firewalls in combinations of traffic distribution patterns based upon volume, application types, or other flow attributes. Agnostic with regard to firewall make or model, the AppSafe encourages the implementation of best-of-breed firewall technology to solve the toughest security problems.
The robust platform features of the AS 3500 are included and augmented with a multi-stage threat-level characterization engine within the AS 3500. This feature monitors flow behaviour and automatically adjusts traffic to maintain the balance between security and performance. User definable thresholds for Trusted, Suspicious, and Malicious conduct will automatically invoke defensive responses to the offenders.
Editorial contacts

