|
楼主 |
发表于 2009-3-2 20:43:28
|
显示全部楼层
Features(特性)
Security acceleration(安全加速)
Multi-core CPU support(多核CPU支持)
Gateway clustering(网关集群)
Scales as new protections are added(新保护增加)
Security acceleration(安全加速)
SecureXL™, Check Point-patented security acceleration technology, removes latency associated with intense security processing by creating a special device layer that can make security decisions earlier. In both servers and dedicated appliances, performance is affected negatively by memory, system-bus, and CPU speed as traffic passes through a system. By creating a SecureXL device layer, VPN-1 enables security decisions to be made at a lower application level to remove roadblocks associated with poor performance.
SecureXL,Check Point专利安全加速技术,消除了安全进程相关的延迟,创建了一个特殊的设备层,能早期作出安全决策。不论服务器和专注的设备,当流量通过一个系统时,性能受到内存,系统总线和CPU速度的影响。通过创建一个SecureXL设备层,VPN-1能在低应用层次上做安全决策,消除了低性能的瓶颈。
After the start of a transaction, if a packet is examined using traditional security methods and is determined to be safe, the SecureXL device layer takes over responsibility for examining any remaining packets—cutting out latency caused by hardware design. SecureXL can be implemented at both a hardware layer using network processors, as is done on some “Secured by Check Point” appliances from our hardware partners, or at a virtualized software layer on open servers.
在传输开始之后,如果数据包审查使用传统的安全方法和判定它是安全的,SecureXL设备层接管审查剩余的数据包的响应(消除了硬件设计造成的延迟)。SecureXL能使用网络处理器实现在硬件层(Check Point 安全认证的硬件合作伙伴),也能在开放的服务器上实现在虚拟的软件层。
Multi-core CPU support(多核CPU支持)
Multi-core CPUs, which are being used more and more in servers, enable Check Point Security Gateways to share traffic among cores of a single system, providing superior price/performance in one server. The combination of multi-core CPUs and multi-threaded SecureXL security application technology is the foundation for the next generation of security acceleration— application-layer security. By joining a multi-core CPU with SecureXL security acceleration, VPN-1 Power delivers more than 10 Gbps of intrusion prevention.
多核CPUs,在服务器上被越来越多地使用,使Check Point安全网关在一个单一系统的核心之间共享流量,在一个服务器上提高较好的性价比。多核CPU和多线程SecureXL安全设备技术的联合是下一代安全加速的基本原理(即应用层安全)。通过在SecureXL安全加速上加入多核CPU,VPN-1 Power提供了高达10Gbps的入侵预防能力。
Gateway clustering(网关集群)
To provide acceleration as well as enhanced reliability, organizations can use ClusterXL to cluster multiple VPN-1 security gateways to improve performance. ClusterXL combines stateful failover of security functions with the ability to dynamically share traffic loads among multiple gateways. This enables near-linear scalability for large deployments without the cost of separate load-balancing equipment.
为提供加速和增强的可靠性,组织使用CluserXL集群多个VPN-1安全网关去提高性能。CluserXL组合了状态化故障恢复安全功能,提供了在多个网关间动态共享流量负载的能力。这使得大型部署接近线速处理能力,没有增加负载均衡设备的成本。
Scales as new protections are added(新保护的增加)
Because Check Point security gateways are software-based solutions, it is possible for organizations to quickly take advantage of open-system hardware improvements such as multi-core CPUs or improved memory or bus speeds. By avoiding closed architectures—like those found in specialized security hardware that rely on ASICs, which cannot adapt to new threats for performance acceleration—VPN-1 security gateways enable you to maintain security against evolving threats without compromising on performance.
因为Check Point安全网关是基于软件的解决方案,这使得组织能在一个开放系统上增加诸如多核或提高内存或总线速度而获得好处成为可能。通过避免封闭式架构(比如依赖于ASICS的安全硬件)无法适应新威胁的性能加速,VPN-1安全网关使你能维护安全抵御不断演化的威胁,且不造成性能损失。 |
|