Multi-WAN Load Balancing to Ensure Internet Connectivity

Relying on a single WAN link is risky for any company due to the consequences of Internet disconnections. To avoid profit loss, the best tactic is to implement a fault tolerance mechanism for ensuring network continuity. Accordingly, Nusoft Multi-Homing Gateway comes equipped with link failover, load balancing and policy-based routing (PBR) to achieve fault tolerance. It also integrates with firewall, QoS manager, Web filter, AAA server (Authentication, Authorization, and Accounting), application blocker, anomaly traffic detection, full VPN connectivity (SSL / IPSec / PPTP VPN and trunking) and more, presenting you an all-in-one solution to simplify network management cost-effectively.

  • Saves the budget for an IPv6-based gateway simply for IPv4-to-IPv6 address translation.
  • Protects against various security threats by serving as an ICSA-certified SPI firewall.
  • Provides user-definable NIC ports (LAN / WAN / DMZ) and teaming features.
  • Delivers complete fault tolerance solutions, including link failover, VPN trunking, etc. to ensure network continuity.
  • Prevents Internet-based applications (IM, P2P, etc.) or Web browsing (porno, social networking, HR agency, etc.) from non-work related uses.
  • Allows in- / outbound traffic to be routed based on network polices.
  • Offers branch offices and road worriers a reliable and secure VPN access (SSL / IPSec / PPTP) along with VPN trunking feature.
  • Adds flexibility to bandwidth management by providing QoS, individual QoS and P2P QoS.
  • Facilitates network management by using authentication, authorization and accounting (AAA) capabilities.
  • Informs related personnel of a packet-flooding attack for immediate attendance at its initial stage.

Comprehensive Network Traffic Management

Multi-WAN Load Balancing

With the multi-WAN module, outbound traffic are distributed across WAN links by load-balancing algorithms, due to which it delivers bandwidth aggregation and link failover capabilities, making the most of bandwidth, yet with reliable connectivity. Besides, inbound traffic to your company website can be evenly load-balanced across each link to mitigate the load of Web requests, ensuring the accessibility to the website should any link failure occur.

Bandwidth Management

Quality of Service (QoS), individual QoS, P2P QoS, Traffic Quota and Flow Analysis are provided as tools to base bandwidth allocation on network policies, preventing the bandwidth being exhausted by minorities.

Policy-based Routing (PBR)

The network traffic generated from a specific service or user can be routed through a designated WAN link based on the company's network policies.

Custom NIC Ports & Groups

Multiple NIC ports are available for defining as LAN, WAN, DMZ or network groups (isolated from one another).

Sophisticated Network Protection System

SPI / Internal Firewall

Based on ICSA-certified SPI firewall technology, Nusoft Firewall can be deployed at the network perimeter to fully protect against various security threats. Besides, the NIC Teaming feature enables it to physically segment a network, adding advanced controls over LANs by serving as an internal firewall.

Anomaly Traffic Detection & Switch Co-defense

Nusoft Firewall is capable of proactively blocking packet-flooding attacks and notifying related personnel of such an event. A core switch may be incorporated to perform a co-defense against DoS or DDoS attack by disabling the switch port containing the source of the attack.

Total VPN Solution

With the built-in IPSec, PPTP, L2TP, SSL, Open VPN support, NFW-Series provides you a fast, reliable and safe private connection.

It features VPN trunking to deliver link failover and bandwidth aggregation capabilities to VPN tunnels, greatly increasing the speed and stability of your Internet connection. This can be used to reduce the ownership cost of network infrastructure by replacing the expensive leased line with multiple low-cost DSL links, as well as to ensure the continuity of missioncritical services.

In addition, hardware authentication is incorporated into SSL VPN connectivity, which allows user authentication to base on hardware information, such as CPU ID, hard disk serial number, etc. Moreover, it also can effectively boost the security of VPN connectivity using its advanced controls, such as privileges, authentication and QoS.

One-Time Password (OTP)

Nusoft OTP app is an OTP client specially dedicated for Nusoft UTM / MHG Series products. It can generate an unpredictable and unrepeatable password, which can be used as a "two-factor authentication" to protect your online sessions.

Flexible Network Access Management

Application Blocking

The increasing popularity of instant messaging (ICQ, Yahoo, QQ, Skype, etc.) and P2P file sharing (eMule, BitTorrent, WinMX, eDonkey, Foxy, etc.) has raised the risks of trade secret leak and security threats. Accordingly, Nusoft Firewall features Application Blocking to help manage the use of IM messengers (chats and file transfers) and avoid bandwidth being abused by minorities. In addition, the use of multimedia streaming, Web-based email service, online gaming, VPN tunneling and remote controlling can also be effortlessly blocked by their packet signatures. Free signature updates are available around the clock to ensure the reliability of blocking.

內建FQDN管理機制

知道嗎~一般防火牆想輕鬆用網址(URL)方式阻擋像Youtube、Facebook、Yahoo!奇摩股市...這一類的加密網站(HTTPS)是一件不可能的任務。如果改用IP方式阻擋,雖可成功但也是一項十分艱鉅的工作。(目前光Facebook就使用近90個IP)

新軟多功能防火牆內建了FQDN(Fully Qualified Domain Name,完整網域名稱)功能,可自動解析網址所對應之所有IP;您就只要將鍵入網址,即能管理(封鎖、可連線頻寬、指定使用外線...)該加密網站。

Web Access Controls

The HTTP / FTP file transfers, transfers of specific file extensions, browser scripts (ActiveX / Java Applet / pop-up), browser cookies and MIME types can be fully blocked and faithfully logged for subsequent investigation to ensure network security.

Wireless AP Controller

With the AP controlling capability, Nusoft Firewall is able to centrally manage a number of access points, allowing you to perform a unified configuration, view AP status on Google Maps, check wireless client status, detect rogue APs, etc. It also helps prevent traffic from being congested to a specific AP by evenly load balancing wireless connections, effectively avoiding network bottleneck.

Additionally, a dedicated mobile app for monitoring on the go is made available on both iOS and Android. As for wireless client access, network policies can be applied to implement various authentication mechanisms (Captive Portal / RADIUS / LDAP / POP3), filter website categories, limit the user traffic, charge guests for Wi-Fi service, block Internet-based applications and more, fulfilling all your wireless management needs.

Note: The AP controller feature is only applicable for Nusoft APs.