리퍼비시 IT장비
ENTERPRISE-CLASS SECURITY
The Cisco PIX 506E Security Appliance provides delivers a multilayered defense for remote office, branch office, and small-to-medium
business network environments through rich, integrated security services including stateful inspection firewall services, advanced application
and protocol inspection, site-to-site and remote access VPN, in-line intrusion prevention, and robust multimedia and voice security—all in a
single, integrated solution.
Cisco PIX Security Appliances incorporate the state-of-the-art Cisco Adaptive Security Algorithm, which provides stateful inspection firewall
services by tracking the state of all authorized network communications and by preventing unauthorized network access. As an additional layer
of security, Cisco PIX Security Appliances integrate over two dozen purpose-built inspection engines that perform in-depth Layers 4–7
inspection of network traffic flows for many of today’s popular applications and protocols. To defend networks from application-layer attacks
and to give businesses more control over applications and protocols in their environments, these inspection engines combine extensive
application and protocol knowledge with security enforcement technologies that range from protocol conformance checking, application and
protocol state tracking, Network Address Translation (NAT) services, and attack detection and mitigation techniques such as protocol field
length checking and URL length checking.
Cisco Systems, Inc.
All contents are Copyright © 1992–2004 Cisco Systems, Inc. All rights reserved. Important Notices and Privacy Statement.
Page 2 of 12
Administrators can easily create custom security policies using the many flexible access control technologies provided by Cisco PIX Security
Appliances including network and service object groups, turbo access control lists (ACLs), user- and group-based policies, and more than 100
predefined applications and protocols. By combining these flexible access control technologies with the powerful stateful inspection firewall
services and advanced application and protocol inspection services that Cisco PIX Security Appliances provide, businesses can easily enforce
their network security policies and protect their networks from attack.
MARKET-LEADING VOIP SECURITY SERVICES PROTECT NEXT-GENERATION CONVERGED NETWORKS
Cisco PIX Security Appliances provide market-leading protection for a wide range of voice-over-IP (VoIP) and multimedia standards, enabling
businesses to securely take advantage of the many benefits that converged data, voice, and video networks deliver. By combining VPN with the
advanced protocol inspection services that Cisco PIX Security Appliances provide for these converged networking standards, businesses can
securely extend voice and multimedia services to remote office environments for lower total cost of ownership, improved productivity, and
increased competitive advantage.
FLEXIBLE VPN SERVICES EXTEND NETWORKS ECONOMICALLY TO REMOTE OFFICES AND MOBILE USERS
Using the full-featured VPN capabilities of the Cisco PIX 506E Security Appliance, businesses can securely extend their networks across lowcost Internet connections to mobile users, business partners, and remote offices worldwide. Solutions supported range from standards-based
site-to-site VPN using the Internet Key Exchange (IKE) and IP Security (IPSec) VPN standards, to the innovative Cisco Easy VPN capabilities
found in Cisco PIX Security Appliances and other Cisco Systems®
security solutions—such as Cisco IOS®
routers and Cisco VPN 3000 Series
Concentrators. Cisco Easy VPN delivers a uniquely scalable, cost-effective, easy-to-manage remote-access VPN architecture that eliminates the
operational costs associated with maintaining the remote-device configurations that are typically required by traditional VPN solutions. Cisco
PIX Security Appliances encrypt data using 56-bit Data Encryption Standard (DES), 168-bit Triple DES (3DES), or up to 256-bit Advanced
Encryption Standard (AES) encryption.
INTEGRATED INTRUSION PREVENTION GUARDS AGAINST POPULAR INTERNET THREATS
The integrated in-line intrusion prevention capabilities of the Cisco PIX 506E Security Appliance can protect remote office, branch office, and
small-to-medium business networks from many popular forms of attacks, including Denial-of-Service (DoS) attacks and malformed packet
attacks. Using a wealth of advanced intrusion-prevention features, including DNSGuard, FloodGuard, FragGuard, MailGuard, IPVerify, and
TCP intercept, in addition to looking for more than 55 different attack “signatures,” Cisco PIX Security Appliances keep a vigilant watch for
attacks, can optionally block them, and can provide real-time notification to administrators.
RICH NETWORK INTEGRATION IMPROVES NETWORK RESILIENCY AND SIMPLIFIES DEPLOYMENT
Cisco PIX Security Appliances include a variety of advanced networking features for smooth integration into today’s diverse enterprise network
environments. Administrators can easily integrate Cisco PIX Security Appliances into switched network environments by taking advantage of
native 802.1q-based VLAN support. Cisco IP phones can benefit from the “zero-touch provisioning” services provided by Cisco PIX Security
Appliances, which help the phones automatically register with the appropriate Cisco CallManager and download any additional configuration
information and software images. Companies can also improve their overall network resiliency by taking advantage of the robust Open Shortest
Path First (OSPF) dynamic routing services provided by Cisco PIX Security Appliances, which can detect network outages within seconds and
route around them.