• No results found

Next Generation. VoIP Application Firewall.

N/A
N/A
Protected

Academic year: 2021

Share "Next Generation. VoIP Application Firewall."

Copied!
8
0
0

Loading.... (view fulltext now)

Full text

(1)

Next Generation

(2)

Are you aware that you are vulnerable to all threats on the Internet?

With increasing voice and video transmission over IP and emerging new technologies such as 4G LTE and 5G, data vulnerabilities and insecurity of standard protocols are the main concerns due to the nature of IP infrastructure systems. Reports show that most of the attacks occur in the application layer. Therefore focusing on the application layer security is the most important aim of a secure IP communication. Discover vulnerabilities, detect and prevent attacks, enable secure media communication with our solution.

Be aware of your vulnerabilities and protect your network with the radiance of NOVA!

Create and operate a secure VoIP infrastructure beginning with VoIP Vulnerability Scanning and Analysis Tool, NOVA V-SPY. V-SPY is an automated, enriched VoIP penetration test suite including rich variety of VoIP attack modules, detailed reports of security measures via expert system.

Detect and prevent VoIP threats using VoIP Application Firewall, NOVA V-GATE.

V-GATE is ready to accomplish your security by performing deep packet inspection, statistical and behavioral analysis, detecting anomalies and preventing VoIP attacks, VoIP monitoring and operational management.

Make a secure multimedia communication via Media Security Platform, NOVA MSP.

MSP can achieve secure media transfer enriched with various security methods and flexible crypto algorithm usage, enabling secure voice and video communication, file transfer, message transfer and whiteboard usage.

Maintain a secure operation in Unified Communications network, VoIP and Web applications with Security Services and Consultancy, NOVA PENTEST. Pentest Services test the applications, infrastructure and devices themselves to ensure they are protected from VoIP, WEB and Unified Communications-related attacks.

(3)

Netas provides innovative end-to-end value added systems integration and technology services in the fields of information and communications technologies. Its customers range from telco providers to public and private enterprises in domestic and international markets.

Netas is one of the top ten global VoIP multimedia labs in the world and holds a track-record of 43 years in R&D. The company continues its foray on VoIP and Unified Communications via delivering ultimate cyber security solutions under the Nova brand. Netas charters its vision to become Turkey’s and Region’s #1 systems integrator working as per global standards.

The company provides a wide array of services to enterprises functioning in various vertical segments, particularly telco providers, finance, general industry and defense. Netas also nurtures strategic partnerships with global technology giants to provide its customers an insight helps them keep pace with the latest developments in the field of Information and Communications Technology and adopt them more efficiently, and continues to develop software solutions for more than 200 global operators.

(4)

Detailed Info /NetasTR /NetasTR /NetasTR /company/netas blog.netas.com.tr E: [email protected] T: +90 216 522 20 00 F: +90 216 522 23 62

NETAS TELEKOMUNIKASYON A.S.

(5)

Next Generation VoIP Application Firewall

Most attacks targeting the VoIP infrastructure make use of the signaling technologies. SIP is the most common signaling protocol used for VoIP communications. Therefore, an application level firewall is required to protect the VoIP system. NOVA V-GATE VoIP Application Firewall was designed in order to fulfill this requirement.

NOVA V-GATE VoIP Application Firewall not only detects anomalies and prevents attacks, but also detects and prevents VoIP frauds such as toll fraud, premium rate services. Some of the highlights of our solution:

Real time packet monitoring, deep inspection and control management Detection and prevention systems against attacks such as

DoS/DDoS, Toll Fraud, Brute Force, Call Tear Down, Fuzzing Operational Management via Policy Rule Editor

Anomaly detection by critical system parameters instantaneous statistical data analysis

Intrusion Prevention System (IPS) and Intrusion Detection System (IDS)

Automatic failure diagnosis system and recovery process

SIP Server Memory Status SERVER SIP Packets Blocked by V-GATE V-GATE Packets Recieved on SIP Server SERVER ALL

(6)

Internet Service

Providers IP Firewall ApplicationVoIP Firewall

SBC / SIP Server Call Tear Down

Toll/Traffic Fraud Fuzzing SIP DoS/DDoS Voice Quality Disruption

Password Cracking

...

Reference Topology

Packet and Message Sequence/State-Event Control Call and User Behaviour Analysis

Positive and Negative Security Models Predictive Analytics for VoIP

(7)

Operational Features Supported

SNMP V1, V2, V3 Syslog

Events via Email

By Pass Support

Max Packet Delay Assurance Multi-Tenant Architecture Automatic Failure Diagnosis

and Recovery Process

Threat Protection

DoS and DDoS Attacks Group Based DDoS Attacks Buffer Overflow Attacks

User Enumeration Attacks Malformed Message and Fuzzing Attacks

Block Reconnaissance Brute Force Attacks

Teardown Attacks Block Anomalous Behaviour

Firewall / Operational Functionalities

Stateful Inspection SIP Packet Filtering Access Control List

Signaling Control (SIP only) Management/Configuration via Web GUI

VoIP Traffic Classification Rules Security Rules and Profiles

Dynamic Whitelist/Blacklist Policy Rule Editor

(8)

IDS/IPS (Intrusion Detection and Prevention System)

Packet based IDS/IPS Call based IDS/IPS Call Theft and

Toll Fraud Protection

Behavioral Learning - Anomaly Detection

System Modelling - Critical Parameter Control

VoIP Monitoring

Monitoring SIP Signaling Ports

Security, Attacks and Events Reporting

Call Detail Record Based Reporting

IDS Reporting

Network Performance Reporting Call Performance Reporting Sample Monitoring Parameters

Call Setup/Answer Duration Call Duration

Call Count Call Status Server CPU Usage

Server Memory Usage

V-GATE Processes CPU Usage V-GATE Processes Memory Usage Packet Delay

Packet Count and Size

4.5G LTE

References

Related documents

While you may exercise the rights licensed immediately upon issuance of the license at the end of the licensing process for the transaction, provided that you have

On the other hand, if the IP telephony protocol uses UDP for its call signaling protocol, the same problems as the ones that af- fect the voice media protocol will occur (Figure

We argued that group goals are insufficient to increase such conditional cooperation when the collective goals and the individual goals are in conflict (i.e., in a social

(c) Assuming laminar flow through the bed, we apply only the laminar component of the Ergun equation.. Check Reynolds number for use of laminar flow in packed bed. Hence the

Zona daya hambat muncul sebagai akibat dari terdifusinya isolat K dan antibiotik ke dalam medium MHA yang telah dikultur dengan bakteri. Reaksi dengan isolat K

  IP address and port   Component ID   Foundation   Transport Protocol   Priority   Type   Related Address.   Username fragment

tlrat he hia given us, too much immersed in t}em to give-much thou,ght to tf,e Enneagrama. Actudly I did not understand it at all. And since Mr. Ouspensky's