350 likes | 773 Views
Cisco Small Business ISA500 Series Integrated Security Appliances. Challenges Facing SMBs. Need to Minimize Business Disruption Need to embrace the internet and web applications as a critical business tool. Need to Safely Increase Productivity
E N D
Cisco Small Business ISA500 Series Integrated Security Appliances
Challenges Facing SMBs Need to Minimize Business Disruption Need to embrace the internet and web applications as a critical business tool Need to Safely Increase Productivity Need network resilience and flexibility to control what applications employees can use and where they can use them Need to Minimize Expenses Need to minimize IT expenses so they can focus on their core business
Why the Cisco Small Business ISA500 Is the Right Solution to Address These Challenges
Challenges Facing SMBs Need to Minimize Business Disruption Need to embrace the internet and web applications as a critical business tool Need to Safely Increase Productivity Need network resilience and flexibility to control what applications employees can use and where they can use them Need to Minimize Expenses Need to minimize IT expenses so they can focus on their core business
Why the Cisco Small Business ISA500 Is the Right Solution to Address These Challenges 73%of SMBs have been the victim of cyber attacks$188,242is the average cost of these attacks
Risky Web Application Use Is the Norm and Increases the Risk of Business Disruption
All-in-One Internet Access and Security—Protects Businesses on All Fronts Small Business Premise Remote Office Finance and App. Servers Public Servers IT Services Spying Spoofing Mobile Worker Internet Threats (Hacker, Malware) Infected PC SB Networks Desk/Office Anywhere Conf. Room SOHO Contractor Visitor Staff Remote Internet Intranet ISA500 • Secure Remote Access • Prevent Internet Threats • Manage Internal Threats and Access Control • Site-to-site VPN • Remote access VPN • Cisco VPN client • Cisco AnyConnect client • Teleworker VPN client mode • SPI Firewall, DMZ • Intrusion Prevention System (IPS) with hardware acceleration • Network Reputation Filter • Web threat protection • Spam filter for email protection • Gateway Anti-Virus (AV) • Web URL filtering • Application control • Zone-based Firewall • Secure WLAN • Rogue AP detection • Guest access management • Port based authentication access with 802.1x • IPS/AV for internal traffic Yellow = New in ISA500
As Attacks Evolve, Protection Needs to Go Beyond Just a Traditional Firewall • Network reputation filter – blocks all traffic from malicious hosts (ones with bad reputations); prevents persistent attempts to discover and exploit vulnerability and initiate attacks • Intrusion Prevention (IPS) – provides deep packet inspection to identify and stop malicious activities that are typically hidden within legitimate Internet traffic Individual hacking Cisco ISA500 Application vulnerability Malicious Hacker Exploits vulnerabilities Protocol vulnerability Black list Organized Cybercrime OS vulnerability ISA500 increases the possibility of identifying and preventing intrusions and attacks
Content Security Reduces Risk of Disruption From Internet Threats • Web reputation filter –Reputation-based web blocking prevents users from accessing dangerous websites known to have malware, phishing exploits, etc • Spam reputation filter – reputation-based spam blocking stops spam at networks • Gateway Anti-virus – detects malware, such as worms, Trojans, exploits, virusesand root kits, that are the most widespread and active; delivers “first layer defense” to efficiently handle malware outbreaks Up-to-date security threat intelligence Malicious Websites http://dangerous-website.com Conduct Market research over Internet Email with infected file attached Communicate with customers using email Cisco ISA500 File Server with Infected files Collaborate with partners by sharing files ISA500 helps make the content flowing into businesses clean and safe
Cloud-based, Up-to-Date Threat Protection Minimizes Disruptions 2 Superior and up-to-date security threat intelligence • Web URL Filtering • Web Threat protection • Spam filtering • Network reputation filtering • IPS • Anti-virus 1 Constant threat and vulnerability data collection and analysis by Cisco SIO Real-time query and periodic downloads of security data feeds 3 Dynamic, New Internet Threats Business ISA500 Clean Traffic Seamless Up-to-Date Protection
SensorBase Cisco SIO Unparalleled Global Threat Intelligence More Visibility 1.6 MGlobally Deployed Devices 35%worldwide email traffic Product Linkages 13 Bweb requests More Methods 75 TBdata received per day More Data
Challenges Facing SMBs Need to Minimize Business Disruption Need to embrace the internet and web applications as a critical business tool Need to Safely Increase Productivity Need network resilience and flexibility to control what applications employees can use and where they can use them Need to Minimize Expenses Need to minimize IT expenses so they can focus on their core business
Flexibility Is Helping Small Business Productivity, but Security Needs to Be a Priority 5.4 26% 71% • Small Business Employees Work from Home 3+ Days a Week • Average Hours Wasted per Week from Lack of Access to Office Resources • Small Businesses Are Mobile Work-From-Anywhere Businesses Security Must Be Top of Mind
Low Cost and Convenience Driving Mobile and Cloud Adoption…Are They Secure Enough? Cloud Mobility HRM CRM Backup Storage Financial Collaboration SMB Adoption 72% 2011 ►98% 2015 The Number of Mobile-Connected Devices Will Exceed the World’s Population in 2012 • Increase in Mobile Device Use Driving Demand for More Security • Low Cost and Convenience Are Driving Cloud Adoption Whether It’s Secure or Not
Need to Ensure the Internet is Used as a Valuable Business Tool…Not a Distraction GO
Cisco ISA500 Web Filtering and Application Control Support Business Policy and Productivity GO
Improve Mobile and Remote Employee Productivity with ISA500 Flexible VPN Solutions Remote office • Site-to-site VPN: secure sensitive business data and voice communication between offices • Remote user VPN: enable mobile employees with secure remote Internet access at airport, customer sites or at home • TeleworkerVPN: empower employees and increase their productively by enabling them to securely work from home or at unexpected events ISA500 Mobile worker ISP1 Cisco AnyConnect (or Cisco VPN client) ISP2 WAN Redundancy ISA500 SOHO Employee work from home
WAN Redundancy Maximizes Uptime and Preserves Productivity Business ISP1 ISA500 ISP2 • WAN Redundancy • Failover • Load balancing • Policy based routing (PBR) • Keeps businesses running when internet failures occur
ISA500 Traffic Control Safeguards the Most Critical Functions, Preserves Productivity • Optimize business and voice applications with QoS traffic management • Block improper web site access with zone-based web URL filtering • Block email spam with email reputation filtering Voice zone UC320 • Voice Staff zone • Voice • Voice Hulu web site • Pandora • Gartner • FTP Salesforec.com • Web Browsing Others Executive zone • Youtube spam All spam
Challenges Facing SMBs Need to Minimize Business Disruption Need to embrace the internet and web applications as a critical business tool Need to Safely Increase Productivity Need network resilience and flexibility to control what applications employees can use and where they can use them Need to Minimize Expenses Need to minimize IT expenses so they can focus on their core business
Designed Specifically for Small Businesses with Simplicity and Ease-of-Use in Mind • Browser based device GUI • Step-by-step configuration wizards • Simplified configuration flow with default settings • Onbox Reporting Minimize setup Helpful reports
Integrated Routing and Switching Simplifies Inserting Security into Networks, Minimizes Installation Cost • Dual GE WAN • DHCP client, PPPoE, static IP • DDNS • NAT—static, dynamic, policy • Port Forwarding/Triggering • RIP, Static route, PBR • VRRP • Routing Network Integration • Switching Network Integration • Up to nine GE LAN ports • 802.1Q Trunking • VLAN • STP support • DHCP server, reservation • Port Mirroring • Wireless Network Integration • Voice Network Integration • 802.11b/g/n • Virtual AP • Wireless QoS • Wireless Zone • Wi-Fi Certification including WPS, WMM • QoS—queuing, policing, marking • SIP ALG • Voice Zone • SSLVPN server for SPA525G • Interoperability testing with Cisco UC500, UC300
Mobile Worker Cisco ISA500 - SMART Design Tested Tested with Cisco Small Business Products to Ensure Fast Turn-up Internet Remote Office AP 541N Main Office Switch Cisco 500 ISA 500 AP 541N Wireless Access Point V ISA 500 (Stacked) Aggregation Switch Cisco 500 Provide highly secure connectivityto users in Remote offices Access Switches Cisco 500 Home Office Provide highly secure connectivityto users in Rome offices The Small Business Network Foundation is simplified and capable choice functional for Small Business opportunities.It addresses immediate needs and allows ample room for future growth. Wireless Hot Spot Enables a fully connected office withFast Ethernet and Gigabit Ethernet connections. Supports advanced network capabilities for the more demanding small business environment. PC with VPN client Extend the reach of the network to anyone, anywhere, at any time
A Single License for Cisco ISA500 Comprehensive Security Services • Contains seven security services • Managed through one Cisco ISA500 comprehensive security license OneLicense *Cisco AnyConnect mobile client support is included as part of the license but no renewal needed
Easy-to-Use, Cloud Management Capability With Cisco OnPlus OnPlusAdv. Security Services Security Reports Network Usage Reports System Status Reports • Easy to start • Cisco hosted • Easy to manage • single interface • for all technologies OnPlus Baseline OnPlus • Dashboard View • Device Discovery & Topology etc. • Support contract status • Cfg Back-up and Restore • Firmware Upgrade • Event Monitoring • etc. Device GUI over https Customer B Customer A ISA500 Site 1 Site 2 Connected devices: Switch, Router, Security Appliance, NAS, Printer, iPad, Iphone, etc.
Cisco ISA500 Overview *UTM performance is measured by http traffic. Actual performance may vary depending on network traffic, conditions, and services enabled.
Cisco ISA500 Supports a Wide Range of Use Cases Multi-department Multi-site Teleworker Mobile
ISA500 Product SKUs At A Glance • All SKUs are bundled SKUs • Bundle SKUs include hardware and comprehensive security subscription service suite Renewal SKUs for the Comprehensive Security subscription service suite will also be available
Cisco Small Business Support Small Business Support Service Partner Rapid Response Option* Small Business Support Center Partner Engagement Small Business Support Community Warranty • With the Partner Rapid Response option some partners can deliver 4 hour hardware replacement (where available) and 24x7 Small Business Support Center (English only) support. • To check if Cisco Small Business Support Service is available in your country, go to:Service and Support by Country • Learn more about Cisco Small Business product warranty
Cisco ISA500 Helps SMBs Conquer Challenges Cisco ISA500 Minimizes Business Disruption Allows small businesses to safely embrace the internet and web applications as a critical business tool Cisco ISA500 Safely Increases Productivity Network resilience and the flexibility to control what applications people can use and where Cisco ISA500 Minimizes ExpensesMinimizes IT expenses so small businesses can focus on their core business
Cisco Small Business ISA500 Series ResourcesTo purchase the Cisco ISA500, please contact a Cisco partner. A list of Cisco partners can be found at http://tools.cisco.com/WWChannels/LOCATR/openBasicSearch.do?smb=YFor more information about Cisco ISA500 visit www.cisco.com/go/isa500resourcesFor More information about Cisco OnPlus visit www.cisco.com/en/US/products/ps11792/index.htmlFor more information about Cisco Small Business Support Service, visit www.cisco.com/go/isa500resources