Collax Multi-Level Firewall
Collax Multi-Level Firewall Icon

The Collax Multi-Level Firewall takes firewalling to a completely new level.

This firewall uses a unique method of authorising and securing networks, their traffic and the applications therein.

Like standard firewalls it can identify/authorise protocols and source/destination IP address, but unlike other firewalls it can also identify/authorise the actual user, the application that is working with the traffic and the operating system that is being used.

For example a rule can be created that says only allow “Mike”, using “Oracle Application”, on “Windows XP” from the internal LAN to access the “Oracle Server” that is on the protected network.

If you need extremely sophisticated security, clear and easily maintainable security policies at a small business price then this is the module you need.
 

 

Traditional Firewalls authorise traffic based on three criteria: Source/Destination IP Address and the Port that is used. The Port number is meant to indicate the protocol or application that is using/generating the traffic. For example Internet surfing traffic (HTTP) uses port 80, while email traffic (SMTP) uses port 25. Unfortunately, although this is just a widely used recommendation it is not a fixed rule. Often ports like 80 are not exclusively used for HTTP, but also by other applications that need an open port and of cause malicious purposes too.

 

The Collax Multi-Level Firewall takes firewalls to a new level and eliminates these and other issues by expanding the authorisation criteria. The Collax Multi-Level Firewall examines the Source/Destination IP Address, the Port and also the User ID, Operating System and also the Type of Application used. In this way it no longer replies on this arbitrary port number, but now knows what the actual application is.

 

Another issue resolved by the Collax Multi-Level Firewall is the use of unauthorised or harmful software. Traditionally this was very hard to achieve as lists of banned software had to be maintained. With the Collax Multi-Level Firewall a Whitelist principle can be used: Block all applications and then authorise them on a need to use basis. In this way you are not reliant on such malicious applications lists and you can guarantee the blocking of harmful traffic. With the user identification feature can also be employed on a user group basis too giving you centralised control over your environment.

 

The Collax Multi-Level Firewall consists of a set of rules on the Firewall and client software on the client machines. The Client software conveys information about users, used applications and operating system to the Collax Multi-Level Firewall. This means administrators can block unwanted programs central or for defined user groups without the need to translate IP addresses or Ports. This means that the rules pertain to users and not their physical machine. The result is staff can change machines (desktops in the office, laptops on the road) without having to change or write complex rules in the Firewall.


At a Glance:
 

Key Features Optional/Included Related Products

High security application & stateful firewall, Rules include: User, Protocol, application, OS and network

Optional:

Collax Platform Server

Collax Business Server

Included:

Collax Security Gateway

Collax Gatekeeper

Collax Mail Security

Collax Web Security

Collax Advanced Networking

Collax SSL-VPN

Collax Avira Antivir

Collax Virus Protection

Collax Surf Protection

 

Network
 

  • Fully Flexible
  • Iproute2
  • Masquerading, S and D-NAT, S and D-Netmap
  • Proxy-ARP
  • Port Forwarding
  • Bridging
  • Bonding
  • Tagged VLAN
  • In-depth statistics and reporting

 

Security
 

  • Firewall
  • Stateful Inspection Technology
  • Application Firewalling
  • Firewall Matrix
  • Services (Ports)
  • Freely configurable Networks and hosts
  • DMZ Support
  • Layer-7 protocol support (SIP, FTP, IRC, PPTP)
  • ICMP-Filter
  • Packet defragmentation
  • Spoof Protection
  • Intrusion Detection and Prevention System (IDP; 4.000 Rules in 46 Categories)
  • Host-based or network-based IDS/IPS

To use the Collax Multi-Level Firewall you will need the following:
 

  • Installed Collax Platform Server or
  • Installed Collax Business Server
  • Installed Module Collax Multi-Level Firewall
  • Two Network Interfaces

 

Note that the Collax Multi-Level Firewall is a built-in module in the Collax Security Gateway

Datasheet

Partner Finder

If you would like to purchase a Collax product, or talk to a qualified Collax IT expert, please use the following to find a Collax partner near you.

Enter your town or complete postcode and we will find a partner close to you.
(Incomplete postcodes may generate inaccurate results)
 

Search (Town/Zip):
Country:

 

Collax Distributors

  Italy Omnis Systems Tel.: +39 (0) 522 1710285 E-Mail: sales@omnis-systems.com
  Switzerland Informica GmbH Tel.: +41 (0) 71 944 44 33 E-Mail: info@informica.ch
  UK Omnis Systems Tel.: TBA E-Mail: sales@omnis-systems.com
  Germany Rombus IT Distribution GmbH Tel.: 49 (0) 2951 606-0 E-Mail: info@rombus.de

 

Headquarters

Collax GmbH
Gutenbergstr. 1
85737 Ismaning

Phone: +49 (0) 89-990157-0
Fax: +49 (0) 89-990157-11
Email: sales[at]collax.com
 

No partner found?
Click here to contact Collax:  Contact Collax