
Vital Security Web Appliance NG-6100
Vital Security Web Appliance NG-6100 is Finjan's real-time enterprise web security solution for organizations with high availability requirements. This appliance achieves the highest level of protection against malicious code, securing corporate networks and users from Spyware, Trojans and other types of web-borne threats.
- NG-6100 Datasheet 0.22MB
Featuring Finjan's patented real-time content inspection technology, NG-6100 is the only solution capable of safeguarding corporate assets from targeted attacks and unknown malicious code that bypass signature-based anti-virus, URL filtering and heuristics-based solutions. The NG-6100 appliance utilizes a robust, high availability platform that meets enterprises' stringent reliability and performance requirements.
Deployed at the gateway, NG-6100 protects your valuable information assets in real time, preventing web-borne attacks from reaching desktop computers. NG-6100 can be deployed in a centralized manner at the main office, or can be used as a high availability scanning solution for branch offices of large enterprises in conjunction with the NG-8100 appliance at enterprise headquarters.

Key Benefits
Finjan's NG-6100 appliance lets you enjoy the following business benefits:
- Control what comes into (and goes out of) your network
- Protect valuable information and company reputation
- Increase employees' productivity by enforcing web browsing policies
- Deliver best possible user experience with minimum false positives
- Eliminate malware incidents and consequential downtime
- Reduce administration overhead and accelerate provisioning via centralized management
- Help manage risks associated with data leakage by blocking outbound MS Office documents
- Ensure high availability based on redundant, hot-swappable hardware components
Comprehensive and Integrated Security Solution
Vital Security™ Web Appliance NG-6100 includes the following integrated components:
- Patented real-time behavior-based security engine for detection and blocking of unknown threats
- Vulnerability Anti.dote™ for proactive protection against zero-day exploits and vulnerabilities using virtual patching
- Anti-Spyware engine for blocking Spyware and Adware at the enterprise gateway before they reach corporate PCs
- Integrated SSL Inspection for "in-box" scanning of HTTPS traffic, ensuring end-to-end encryption and consolidated management (optional)
- Choice of industry-leading anti-virus engines (e.g., McAfee®, Sophos®, Kaspersky®) for protection against known viruses (optional)
- Industry-leading URL Filtering engines (e.g., SurfControl®) for full control over your organization's web browsing (optional)
- Secure Web Caching solution for accelerated content delivery and enhanced productivity
Breakthrough Real-Time Content Inspection Technology - The Most Effective Security Solution for Dynamic Web Threats
Finjan's NG-6100 offering utilizes patented real-time content inspection technology to enable proactive detection of known and unknown web threats. This solution also protects users against new and emerging threats, such as targeted attacks, Web 2.0 exploits and dynamically obfuscated code that often bypass traditional reactive security technologies. Finjan's behavior-based security engine scans each and every piece of web content in real-time (regardless of its source), breaking down the code and understanding its potential effects without executing it. In this way, it identifies the true intent of the code and blocks only that content which needs to be blocked in accordance with your organization's security policy. This unique technology sets Finjan apart from both reactive security products which rely on signatures or databases, as well as proactive solutions based on heuristics and pre-emptive updates.
Enhanced Management Features
The system provides powerful management functions via a centralized, web-based console that facilitates efficient configuration, administration and maintenance. Flexible policy management enables administrators to create granular security policies for any single user or group. X-Ray mode is a unique feature that allows an enterprise to test new rules on live traffic before they are actually enforced. Transparency enables companies to integrate the NG-6100 within their networks in a seamless manner, alleviating the administrative burden and ensuring full control over their security infrastructure.
Main Features
Security
- Real-time, comprehensive and multi-layered web security solution
- Integrates Finjan's Real-time behavior-based content inspection, Vulnerability Anti.dote, Anti-Spyware and SSL Inspection engines
- Choice of fully integrated anti-virus and URL filtering engines
- True Type Detection - Active Content, archive files, MS Office macros, packers and more
- Digital Certificates Analysis - analysis of executables and ActiveX to verify that they hold valid digital certificate
- Regulatory compliance - security policy management and tracking help to comply with HIPAA, SOX, GLBA, Basel II, EU Data Protection Directive, Payment Card Industry (PCI) Data Security Standard (DSS), etc.
- Protocols - HTTP, HTTPS, FTP, FTP over HTTP, IM
- IM Blocking - control employees' use of IM applications (AOL/ICQ, Skype, MSN, Yahoo)
Manageability
- Centralized management - efficient configuration, administration and maintenance via intuitive web-based console
- Reporting - over 100 standard and user-defined reports + enhanced management reports
- Logging - powerful logging and tracking of user transactions as required for regulatory compliance
- Intelligent update mechanism - automatic and controlled (per scanner) product and OS upgrades, security updates and 3rd party engine updates
- SNMP Support - "just-in-time" alerts of relevant operational events using SNMP traps, as well as email alerts
- Transparency - supports transparent and non-transparent proxy mode
- NTLM and Secure User Authentication - secure authentication device supporting multiple operating systems and Active Directory (AD) domains without requiring AD server plug-in
- X-Ray Mode - test new policy rules on live traffic without disrupting ongoing business operations
- ICAP Support - interoperability with third party appliances and proxies (e.g., NetCache, Blue Coat)
Performance
- Robust dual-core hardware platform for enterprise-grade throughput performance
- Recommended for up to 10,000 users with multiple appliances
- Full hardware redundancy based on hot-swappable power supplies, cooling systems, disk drives, ethernet controllers and switches
- Active/Standby Policy Server option
- Scalable multi-appliance solution
Hardware Performance Specifications - NG-6100
| CPU | 2 x Intel Xeon dual core |
| Disk | 2 x 72 GB SAS (RAID 1) |
| Memory | 2GB |
| Rack space (2U) | 445 x 698 x 86 mm (WxDxH) |
| Gigabit ethernet NIC | 4 |
| Power supply | Redundant |
| Recommended no. of users per deployment | Up to 10,000 using multiple appliances |
















