IP security
 

The “IP security” module provides a complete Unified Threat Management (UTM) system, which protects the enterprise against unauthorised access as well as contributes to limit worker’s access to external networks. It includes a powerful firewall, VPN server (IPSEC and L2TP/IPSEC), application level’s Proxy server, advanced content filtering, certification entity, digital certificates management, antivirus, antispam, Intrusion Detection System (IDS). The acquisition of this “IP security” module needs also the purchase of the “Basic system” pack.


See detailed specifications

IP security specifications
 

COMMS MUNDI provides a complete suite for protecting the system against unauthorised access and use as well as to limit connections from the LAN to Internet or to any other external network. Owing to the number of functions provided and their integration, COMMS MUNDI represents one of the best UTM (Unified Threat Management) solutions currently available on the market.

Firewall. It allows setting the firewall policy (acceptance, rejection or discarding) to either incoming or outgoing or forwarded traffic.

Proxy server. It provides:
  • Cache of contents (under HTTP and FTP)
  • Proxy’s users authentication
  • Access restriction to banned web sites or web pages:

Advanced contents filtering

  • Filtering by full or partial domain names and URLs
  • Filtering of contents based on several restriction criteria:
    • Average of weighted words or phrases
    • Detection of banned words or phrases
    • Predefined modules of banned words and phrases
    • Customisation of modules of banned words and phrases: Introduction of new words and phrases and weights
  • Filtering by time periods

Antivirus. This module provides network traffic analysis for early viruses’ detection. It operates in conjunction with the Proxy server by analysing the traffic that passes through it. Automatic update of the virus database is available.

Antispam. Auto detection of SPAM through the combination of several methods of analysis:

  • Application of rules to content and format of messages.
  • Collaborative spam filtering.
  • Statistical learning (trained Bayesian filter) from received messages
  • Management of black and white domain lists of known spammers' domains.
  • Greylisting of received mesages.

Certificates management. It allows the creation and management of the own certificates. Generation of CSR requests for an external Certification Authority. Certificates revocation.

Virtual Private Network (VPN). Definition of VPNs under IPSec and L2TP / IPSec protocols.

Instruction Detection System (IDS), for detection of unauthorized access.