Kerio WinRoute Firewall sets new
standards in terms of usability, security and user access control. Designed for
corporate networks, it protects the network from external attacks and viruses
and can restrict user access to undesirable material on the Internet.
Stateful Network Firewall
The primary function of any perimeter firewall is to
control outgoing and incoming network traffic based on corporate security
policy. Kerio WinRoute Firewall offers rich yet easily understandable rule
definition to perform stateful inspection of all Internet traffic, enforcing the
security policy. A network rules wizard assists in the rapid setup of the
firewall.Kerio WinRoute Firewall 5 is a robust network
firewall operating at the lowest possible layer of the OS. The stateful
inspection firewall protects the whole local network and also the computer it is
installed on. regardless to whether its built-in NAT technology is utilized or
not, it controls both incoming and outgoing communication on all available
interfaces, thus giving users a comparable level of firewall protection found in
far more expensive solutions.
Kerio WinRoute Firewall 5 brings the revolutionary conception
of traffic rules configuration. This allows configuring the packet filter, NAT,
port mapping and access control rules easily from one comprehensible table. The
built-in configuration wizard will help you to set-up the firewall in minutes
and your network will be connected to the Internet securely in no time at all.
Anti-spoofing
Anti-spoofing is an add-on to WinRoute Pro's
packet filtering, for further protection of the LAN against attacks where the
intruder falsifies source IP addresses.
Firewall Logging
A critical function of any security product is
the ability to record events at all times in a sufficiently detailed fashion.
Kerio WinRoute Firewall 5 offers a variety of different logs that encompass
error reporting, debugging, user defined, status, web browsing, port probes and
so on.
Logging can be set for any rule defined in the unified traffic
rules table so the administrator has complete control over what communication
passes through the firewall.
Antivirus
protection
Kerio WinRoute Firewall provides optional scanning of inbound and outbound HTTP
and FTP traffic for viruses. In addition to integrated McAfee, there are several
other anti-virus vendors to choose from.
Content
and web filtering
In corporate and educational environments, it is often desirable to ban access
to websites with offensive or counterproductive content. Kerio
Winroute Firewall has built-in content classifier with a categorized
database of websites.
VPN
support
Kerio's built-in SSL-based VPN server works in both
client-to-server and server-to-server modes allowing both branch offices and
remote workers to securely connect to the corporate LAN.
Voice
over IP support
Kerio WinRoute Firewall allows VoIP (H.323 and SIP protocols) to run from behind
it,, eliminating the need to publicly expose the VoIP infrastructure to the
Internet.
UPnP
support
Universal Plug and Play (UPnP) in Windows enables applications to communicate
without additional settings at the firewall. Kerio WinRoute Firewall integrates
UPnP technology so that compliant applications such as MSN Messenger can run
instantly without hassle.
Network
administration
The administration console can be installed remotely to allow configuration from
anywhere on the Internet.
Active
Directory support
Introduced in Windows 2000 Server, Active Directory allows administrators to
centrally manage and share information on user accounts and network resources.
Transparent support for Active Directory allows Kerio WinRoute Firewall to
access this user database in real time.IBM Orange Web Filter
Optional component of Kerio WinRoute Firewall for surf protection
For companies and institutions such as schools that do not want their users
and clients to browse questionable Internet sites, Kerio WinRoute Firewall with
integrated IBM Orange Web Filter provides comprehensive web blocking.
IBM Orange Web Filter offers a list of 60 web content categories, such as
shopping, news, pornography, sports, or travel that Kerio WinRoute Firewall can
block.
How it works
Kerio WinRoute Firewall is highly flexible so that different groups of users can
have restricted access to different websites.
Every time a user attempts to visit a website, Kerio WinRoute Firewall instantly
checks the IBM Orange Web Filter database to see if the page is listed in any of
the restricted categories. If the page matches the database, Kerio WinRoute
Firewall automatically denies access to the page. The user can also be prompted
with a warning that their activity has been logged for administrator review.
Comprehensive coverage
Over 4.4 billion web pages have been scanned and analyzed. As a result, IBM
Orange Web Filter now comprises of 60 million URLs categorised in 60 different
content categories.
If a user requests a web page that is not included in the master database, the
URL is submitted to IBM and classified within 24 hours.
IBM Orange Web Filter classifies web pages in 15 languages.
Fast performance
Kerio WinRoute Firewall with IBM Orange Web Filter enabled caches requested URLs
in a local database. The master web content database is referenced only for URLs
never before accessed by users.
The master database is distributed at seven server locations worldwide ensuring
speedy replies.
Detailed statistics
Kerio WinRoute Firewall provides detailed statistics of web traffic per user or
per organisation. Administrators can use these statistics to understand user
behaviour and determine appropriate web use policies.