|
The Brocade ServerIron solution offers a reliable last line of defense in front of server farms through a high-performance security feature suite that includes the industry’s only multigigabit wire-speed DoS and DDoS protection. It provides Layer 2-7 protection against most common network- and application-level threats. |
Pervasive network connectivity brings the benefits of increased productivity, profits and cost savings. It offers internal and external users access to applications and services instantaneously anytime and anywhere in the world over the network. With the great benefits of always-on network connectivity, however, comes the security threat from malicious and unauthorized users trying to cripple the network and the applications. DoS attacks are still the most common security threat to applications, and are the most difficult to defeat. Even today's advanced firewall technology may not be sufficient to protect server farms and applications from high-speed DoS attacks, and in many service provider environments, firewalls are not an option.
The Brocade intelligent ServerIron Layer 4-7 switches are industry leaders in security and performance, and meet the security needs of the most demanding organizations in the world. The switches support a wide variety of intelligent security features, and combine these security features with high-end performance to act as a reliable last-line-of-defense for the server farms in financial networks.
The SYN-Guard feature helps defeat most Denial of Service (DoS) and Distributed DoS (DDoS) attacks that take advantage of the TCP connection handshake mechanisms. The switches shield "real" servers completely from any TCP connection requests until the connection is successfully completed with the three-way handshake. The Layer 4-7 switch forwards the connections to the real servers only after the connection is legitimately established. The servers never see any partially established connections, which are timed-out by the Layer 4-7 switch. SYN-Guard also avoids the use of session table for pending connections and conserves the resources to support legitimate clients.
The ServerIron security solution also features a comprehensive suite of application rate controls on the user and server side to prevent abuse and attacks using legitimate connections and application transactions. The switches act as traffic cops and limit the load from individual users and to individual servers to prevent overloading servers and slowing application performance. Highly-intelligent layer 7 inspection and filtering capabilities embedded in the ServerIron TrafficWorks OS help network and application managers prevent sensitive data and information theft while protecting against service downtime.
Browse a complete listing of all Brocade resources. View All Resources
Abstract:
The combination of Brocade ServerIron Application Delivery Controllers (ADC) and Nominum Caching/Authoritative Name Servers (CNS/ANS) provides the solution of choice for highly resilient and scalable DNS service infrastructures used by the largest service providers.
Abstract:
Brocade® ServerIron® ADX delivers EMC RSA Key Manager scalability and resiliancy, ensuring high availability of key management services for data encryption applications.
Abstract:
Provides best-practice guidance for mission-critical enterprise application delivery, showing how to improve network access performance for WAN deployments of Microsoft SharePoint 2010 using Brocade ServerIron and Blue Coat ProxySG.