Juniper Networks 710008-001 Network Router User Manual


 
FW/IPSec VPN Buyer’s Guide
Copyright © 2004, Juniper Networks, Inc. 9
capabilities
Ability to apply
policies to restrict
traffic between
internal network
segments
Yes, Security Zones
Ability to split network into
completely separate
domains and create security
policies for each one
Completely separate
policies
Completely separate
administrative
controls
Yes, Virtual Systems
Yes
Yes
Certifications:
Common Criteria
ICSA certification
Yes
Yes
VPN Specific
Uses IPSec for secure
communications
Yes
Also enables
interoperability with other
IPSec VPNs
Supports IKE for flexible
encryption negotiations
Yes
An interoperability feature
Strong encryption options:
AES
DES
3DES
Yes
Yes
Yes
Options for strong user
authentication:
Xauth
Web Auth
X.509 certificates
Tokens
User name/Password
Yes
Yes
Yes
Yes
Yes
Options for strong user
verification:
RADIUS
Internal Database
LDAP
SecureID
X.509 certificates
Yes
Yes
Yes
Yes
Yes
Certifications:
FIPS 140-1 or 140-2
ICSA IPSec
Yes
Yes
Integration/System Design
The number of applications
delivered in the solution
FW/VPN/Deep Inspection --
Antivirus also included in
low-end
The source of the
applications are:
Proprietary
Partnerships
OEM relationships
Yes – FW/VPN/Deep
Inspection
Yes, antivirus through
Trend Micro partnership
Yes, Remote client via