Castleforce IT Security Team

Aruba Networks provide Secure wireless LAN products

Aruba Controllers

Aruba's family of controllers are purpose-built network infrastructure devices designed to address a wide range of wireless and wired network mobility, security, and remote networking requirements for enterprises of any size.

Running the ArubaOS operating system, the controllers support a number of different software applications - including policy enforcement firewall, VPN termination, and wireless intrusion prevention - for which competing suppliers require dedicated appliances. Controllers can secure wired networks using the same identity-based, high security scheme used for the wireless LAN, delivering a seamless user experience regardless of the medium used.

Aruba Controller Matrix

All controllers feature multi-processor architectures with separate control, network, and encryption processors.

Enquire about this product

X VirusnX SpywarenX SpamnX Web/IMn5 IPS/Patch Mgmtn5 Data/System Mgmtn

Aruba 6000 controller

ArubaOS Operating Software

Provides integrated services to power Aruba controllers and access points, ArubaOS is a comprehensive suite of system software that integrates security, mobility, application-awareness, management, and RF spectrum optimization together to deliver secure, reliable, and convenient enterprise network access.

Included with every controller, ArubaOS enables Aruba's unique adaptive wireless LANs, identity-based security, and remote networking services. ArubaOS is offered as a base set of capabilities with a series of optional add-on modules that provide advanced features.

To extend the base capabilities of ArubaOS, a number of licensed software modules unlock additional functionality, including:

Policy Enforement Firewall

Enforces user-based network access and application priority policies. Policies can be centrally defined and enforced on a per-user basis based on user role and authorization levels. These policies follow users as they move throughout the enterprise network.

ArubaOS Policy Enforcement Firewall Module Datasheet

Wireless Intrusion Prevention

Identifies and protects against malicious attacks on wireless networks, as well as vulnerabilities caused by unauthorized access points and client devices.

ArubaOS Wireless Intrusion Protection (WIP) Datasheet

Secure Outdoor Enterprise Mesh

Allows outdoor enterprise environments to be networked without any wires - and with the security and reliability of wired LAN.

Aruba Secure Enterprise Mesh Module Datasheet

Voice Services

Delivers standards-based voice over Wi-Fi plus voice control and management innovations enabled by Aruba's application-aware architecture. VSM supports large-scale voice deployments and provides a foundation for fixed mobile convergence (FMC).

ArubaOS Voice Services Module (VSM) Datasheet

Remote Access Point

Extends the enterprise network to any remote location by enabling seamless wired or wireless data and voice wherever a user finds an Internet-connected Ethernet port or cellular connection. Ideally suited for small remote offices, home offices, telecommuters, mobile executives, and for business continuity applications.

ArubaOS Remote AP Module (RAP) Datasheet

VPN Server

Extends the mobile enterprise network to large branch offices and individual users over the public Internet, eliminating the need for separate external VPN equipment.

ArubaOS VPN Server Module Datasheet

Xsec

Provides wired and wireless Federal Information Processing Standard (FIPS) 140-2 validated encryption technology designed for high-security government networks.

ArubaOS xSec Module Datasheet

Contact Aruba Networks Partner

Compliance Standards

Castleforce can help you reach PCI DSS

Requirement 1: Install and maintain a firewall configuration to protect cardholder data 

Requirement 2 Do not use vendor-supplied defaults for system passwords and other security parameters

(See 2.1.1)  For wireless environments connected to the cardholder data environment or transmitting cardholder data, change wireless vendor defaults, including but not limited to default wireless encryption keys, passwords, and SNMP community strings. Ensure wireless device security settings are enabled for strong encryption technology for authentication and transmission.

Requirement 4 Encrypt transmission of cardholder data across open, public networks 

4.1.1 Ensure wireless networks transmitting cardholder data or connected to the cardholder data environment, use industry best practices (e.g., IEEE 802.11i) to implement strong encryption for authentication and transmission.

  • For new wireless implementations, it is prohibited to implement WEP after March 31, 2009.
  • For current wireless implementations, it is prohibited to use WEP after June 30, 2010.

Requirement 9 Restrict physical access to cardholder data

9.1.3 Restrict physical access to wireless access points, gateways, and handheld devices.

Requirement 11 Regularly test security systems and processes

11.1 Test for the presence of wireless access points by using a wireless analyzer at least quarterly or deploying a wireless IDS/IPS to identify all wireless devices in use

Castleforce can help you reach GCSx CoCo

GCSX No 9 Intrusion Detection 

GCSX No 11 Wireless Networks  

Aruba Networks Controller Product Summary