Allied Telesis AT-AR4050s

Allied Telesis AT-AR4050S

HIGH PERFORMANCE NEXT-GENERATION FIREWALL

The Allied Telesis AR4050S Next-Generation Firewall consolidates threat protection, application and web control capabilities into a single device — ensuring the security of business communications. Together with its advanced routing and switching, this makes the high-performance AT-AR4050S integrated security platform the ideal choice for Enterprise gateway applications. 

The Allied Telesis AT-AR4050S quad-core processor delivers powerful performance, significantly increasing throughput and enabling simultaneous packet inspection. It is optimized for single-pass low-latency performance. Security engines and threat signature databases from the industry’s leading vendors, with regular updates, provide up-to-the-minute protection against malware, viruses and other cyber-attacks.

The Deep Packet Inspection (DPI) firewall provides real-time classification of network traffic, accurately identifying in-use applications such as social networking, instant messaging, and file sharing. This allows very concise, fine-grained control, with rules able to govern not only which applications are allowed, but under what circumstances, and by whom. With Allied Telesis web control managing Internet traffic for productivity, legal and security purposes, the AT-AR4050S is a comprehensive solution for securing online business interests.

Remote workers can utilize comprehensive VPN functionality for secure remote access to digital business resources when away from company premises, making the AT-AR4050S the ideal integrated security platform for Enterprise business activities.

Features

• AlliedWare Plus™ feature-rich operating system

• Active Fiber Monitoring

• Next-Generation DPI Firewall

• Application and web control

• Intrusion Detection / Prevention System (IDS/IPS)

• IP Reputation services

• Malware protection

 • Antivirus

 

• Secure remote VPN access

• Site-to-site VPN connectivity

• Advanced routing capabilities

• Traffic shaping and prioritization

• Strong authentication

• Flexible licensing options

• AMF compatible for easy installation and management

• Multi-core hardware for high performance

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 

High performance

High performance is guaranteed by harnessing the power of multi-core processors and application acceleration engines, dramatically increasing throughput and enabling sustained low latency traffic inspection.

“Best of breed” security

Allied Telesis integrated security platforms utilize “best of breed” security providers, for the ultimate in up-to-the-minute protection — from all known threats. Powerful features like Malware ptotection, Web control and Antivirus ensure the safety of business data.

Advanced feature licenses

Flexible subscription licensing options make it easy to choose the right combination of security features to best meet your business needs. The NGFW license includes App Control and Web Control, and the Advanced Threat Protection (ATP) license includes IP Reputation, Malware Protection and Antivirus.* All other features are included in the base feature set.

Deep Packet Inspection (DPI) Firewall

The Allied Telesis firewall is a next-generation, Deep Packet Inspection (DPI) engine that provides real-time, Layer 7 classification of network traffic. Rather than being limited to filtering packets based on protocols and ports, the firewall can determine the application associated with the packet. This allows Enterprises to differentiate business-critical from non-critical applications, and enforce security and acceptable use policies in ways that make sense for the business.

Intrusion Detection and Prevention Systems (IDS/IPS)

IDS/IPS is an intrusion detection and prevention system that protects your network from malicious traffic. IDS/IPS monitors inbound and outbound traffic, and identifies threats which may not be detected by the firewall alone.

IP Reputation

IP Reputation is becoming increasingly popular as a method of improving the success of Intrusion Prevention by reducing false positives. IP Reputation provides an extra variable to the prevention decision, which allows drop rules to be actioned only if the reputation of the web site exceeds a chosen threshold.

Secure Remote Virtual Private Networks (VPN)

Allied Telesis NGFWs support IPSec site-to-site VPN connectivity to connect one or more branch offices to a central office, providing employees company wide with consistent access to the corporate network.

Remote workers can utilize an SSL VPN connection to encrypt their business data over the Internet, allowing them to utilize all their business resources when working from home, travelling, or otherwise away from the company premises.

Easy to manage

The NGFWs run the advanced AlliedWare Plus™ fully featured operating system, with an industry standard CLI. The Graphical User Interface (GUI) provides a dashboard for monitoring and visual quick-start configuration. Dashboard widgets show status, traffic and system information at a glance. Graphical configuration of security zones, networks and hosts, as well as firewall rules to control traffic, and management of advanced threat protection features, provides a consistent approach to policy management.

Full support for Allied Telesis Management Framework (AMF) allows Allied Telesis firewalls to integrate with Allied Telesis switching products to from a network able to be managed as a single virtual entity. A full suite of automated tools ensures that the firewall configuration is backed up, and able to be recovered with no user intervention, maximizing the availability of online services.

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 

Integrated protection and secure remote access

Allied Telesis NGFWs are the ideal integrated security platform for modern businesses. The powerful combination of next-generation firewall and threat protection, along with secure remote access, and routing and switching, provides a single platform able to connect and protect corporate data.

This solution shows a NGFW providing site-to-site IPSec VPN connectivity between corporate offices, while also allowing secure SSL VPN access for remote workers, so they enjoy full access to digital company resources when away from the office.

As well as securing remote connectivity, the NGFW will simultaneously ensure the security of inbound and outbound business data, with advanced threat protection features like IP reputation, Malware protection and Antivirus. Full application control allows this organization to control the applications their people use, and how they use them, so security and acceptable use policies can be enforced in ways that makew sense for the business. 

The powerful combination of features make Allied Telesis NGFWs the one-stop integrated security platform for protecting today’s online business activity. 

Automated network management

In addition to protecting and connecting modern networks, the NGFWs are fully supported by the Allied Telesis Management Framework (AMF).

AMF is a sophisticated suite of management tools that automate and simplify many day-to-day network administration tasks. Powerful features like centralized management, auto-backup, auto-upgrade, autoprovisioning and auto-recovery ensure streamlined networking. Growing the network can be accomplished with plug-and-play simplicity, and network node recovery is fully zero-touch.

The AT-AR4050S can operate as the AMF network master, storing firmware and configuration backups for up to 20 other network nodes. 

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 

Allied Telesis AT-AR4050s Specifications

Security processor1.5GHz quad-core
Memory (RAM)2GB
Memory (Flash)4GB
Firewall throughput (Raw) 1,900 Mbps
Firewall throughput (App Control) 1,800 Mbps
Concurrent sessions100,000
New sessions per second12,000
IPS throughput 750 Mbps
IP Reputation throughput 1,000 Mbps
Malware protection throughput1,300 Mbps
VPN throughput800 Mbps
Input Power90 to 260V AC (auto-ranging), 47 to 63Hz
Max power consumption27W
LAN ports8 x 10/100/1000T RJ-45
WAN ports 2 x 1000X SFP / 2 x 10/100/1000T RJ-45 combo
High Availability bypass ports2 x 10/100/1000T RJ-45
Other ports1 x USB, 1 x RJ-45 console, 1 x SDHC slot
Product dimensions (H x W x D)42.5mm (1.67 in) x 210mm (8.26 in) x 220mm (8.66 in)
Product weight1.7 kg unpackaged, 2.6 kg packaged
Typical / Max noise28.4 dBA / 35.1 dBA