10.07.2015 Views

Provider-1/SiteManager-1 - Check Point

Provider-1/SiteManager-1 - Check Point

Provider-1/SiteManager-1 - Check Point

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Basic Elementsenvironments. <strong>Provider</strong>-1/<strong>SiteManager</strong>-1 meets the needs of both the enterprise and ofservice providers serving the enterprise market. This solution dramatically reduce theadministrative cost of managing large security deployments.The basic three-tier security architecture of the VPN-1 Pro system, consisting ofenforcement points, a management console, and a GUI, delivers a robust mechanism forcreating firewall security policies and automatically distributing them to multipleenforcement points. <strong>Provider</strong>-1/<strong>SiteManager</strong>-1 supports central management for manydistinct security policies simultaneously.Companies envision horizontal growth throughout an industry, to implementeconomies of scale through incorporation of partner-companies and vendors.Enterprises want to manage vertical growth through product differentiation. Securitymanagement achieves a new level of customization and flexibility with<strong>Provider</strong>-1/<strong>SiteManager</strong>-With <strong>Provider</strong>-1/<strong>SiteManager</strong>-1 security policies can be customized. Enterprises can,for example, tailor a security policy to enable vendor applications which tie intocorporate financial networks to communicate safely and securely, yet without havingaccess to confidential corporate data. Or a security policy can enable franchisecompanies to communicate with regional and international headquarters, yet safeguardthe franchise internal network integrity.An administrator can create policies for groups of customer firewalls, and/or createhigh-level global policies that manage all customer polices at once. The ability to setpolicy at every level, including both the customer and global level, delivers exceptionalscalability by eliminating the need to recreate policies and policy changes, potentially tothousands of devices.Basic ElementsThe <strong>Provider</strong>-1/<strong>SiteManager</strong>-1 system is designed to manage many widely distributedenforcement points, for networks that may belong to different customers, differentcompanies, or different corporate branches.The primary element of a security system is the enforcement point, the VPN-1 Progateway. Administrators decide how this firewall is to be managed and apply a securitypolicy, with rules that determine how communication is handled by the firewall.A Customer Management Add-On (CMA) is a virtual customer management. TheCMA manages Customer’s enforcement points, that is their firewalls. Through theCMA, an administrator creates policies for Customer gateways.Chapter 1 Introduction 15

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!