Castleforce IT Security Team

Juniper-Networks-Performance-Networking-Security

SSL VPN Appliances SA Series

Juniper Networks market-leading SA Series SSL VPN Appliances ensure that remote and mobile employees, customers, and partners have anytime, anywhere access to corporate resources and applications.

Juniper Networks SA Series SSL VPN Appliances Lead the Market with Secure Remote Access Solutions That Meet the Needs of Organizations of Every Size

The world’s IT leaders choose the Juniper Networks SA Series appliances more often thanks to the affordable, full-featured flexibility these solutions provide. The product family includes models sized to meet the needs of small businesses with limited IT experience all the way up to high-capacity products for large enterprises requiring the utmost authentication, authorization, and auditing (AAA) capabilities for employee, partner (extranet) and customer access.

Juniper SA2000

Juniper SA Series Secure Access Appliances offer:

  • Market-leading, single SSL VPN security platform to serve all remote access needs
  • Clientless access to enterprise applications and resources
  • Best-in-class endpoint security, granular access control, and threat prevention
  • Scalable appliances for remote and extranet access for companies of all sizes
  • Highly available and scalable appliances for service providers

Key Features

Uses SSL Secure remote access with no client software deployment, no maintenance, and no changes to existing servers.

Cross-platform support Provides flexibility in allowing users to access corporate resources from any type of device using any type of operating system.

Host checker Scans endpoints to ensure compliance with corporate security policies both before and during the session.

Single Sign-On (SSO) Capabilities Alleviates the need for end users to enter and maintain multiple sets of credentials for access.

Resource Authorization Allows administrators to tailor security policies to specific groups, providing access only to essential data.

UAC-SA Federation Provides users – whether remote or local – seamless access with a single login to corporate resources that are protected by access control policies from UAC or the SA Series. Simplifies end user experience.

End-to-End Security with Juniper Networks SA Series SSL-VPN Appliances Datasheet

All models use secure sockets layer (SSL) transport, the secure access protocol built into every standard Web browser. SSL sessions enable any Web-enabled device such as a corporate laptop, PDA, smartphone, or kiosk to be able to securely access an organization’s resources without the cost and complexity of installing, configuring, and maintaining any client software on the device of each user. The temporary VPN connections that SSL browsers establish also eliminate the firewall and network address translation (NAT) issues of traditional IPsec VPN products.

While almost any endpoint device is capable of accessing resources via SSL VPN, the SA Series SSL VPN Appliances can be set to insist upon a number of preconditions when necessary. For example, even before a login is allowed, the appliance can be set to check the requesting device’s network and device settings, including scanning for malware such as keystroke loggers and verifying operation of endpoint security software such as antivirus applications and personal firewalls. The requestor’s IP address, browser type, and digital certificates can also be examined before login is allowed, and the results can be used to grant or deny access based on corporate security policies.

The SA Series provide security for all enterprise tasks with options for increasingly stringent levels of access control to protect the most sensitive applications and data.

Security, Performance, Reliability, and Management

Juniper Networks products provide best-in-class security, performance, reliability, and ease-of-management. These hardware-accelerated platforms are performance leaders in every class, with cluster options for high availability and scalability. They feature a user interface that guides administrators to implement sweeping yet granular control over the users and groups authorized to access multiple levels of protected assets.

Enable Reliable Secure Access for Mobile Users with Juniper Networks SSL-VPN Datasheet

Appliances with Capacities and Capabilities for Every Organization

SA Series SSL VPN Appliances span a wider range of appliances that provide small, mid-size, and large enterprises as well as service providers with remote access plus sophisticated partner and customer extranet features. These products enable organizations to deploy differentiated access to resources based on user roles and groups. They are available with a baseline software feature set or an advanced feature set that includes options for more complex deployments.

In-Case Of Emergency (ICE) License

SSL VPNs can help keep organizations and businesses functional by connecting people—even during the most unpredictable circumstances. When hurricanes, terrorist attacks, transportation strikes, pandemics, virus outbreaks or other potentially catastrophic events occur, they can result in the quarantine or isolation of entire regions or groups of people for an extended period of time.

Effectively balancing risk and cost, the new Juniper Networks® SA Series SSL VPN Appliances with the ICE license option ensures business continuity by helping organizations instantly address a dramatic peak in demand for remote access in cases of emergency by using ICE licenses for a large number of additional users on an SA Series SSL VPN appliance. 

In Case Of Emergency ICE License Option for SA Series SSL-VPN Appliances Datasheet

Business Continutiy with Juniper SA Series and SkyRecon

SkyRecon’s StormShield™ is the industry’s first integrated endpoint security product to provide single-agent protection for endpoint operating systems, applications and sensitive data. StormShield protects your business from the real threats of data leakage, data theft, system misuse, network compromise and zero-day attacks by integrating with your Juniper Networks SA Series SSL VPN Appliances. 

The Juniper Networks SkyRecon Security Solution Datasheet

Enable Reliable Secure Access for Mobile Users with Juniper Networks SSL-VPN

Users can no longer be tied to office environments for access to the corporate network.  Just about any type of access that can be done while sitting in an office must be
available while at home, at a hotel, at a customer’s site, on the road, or even roaming around within the office.

Organizations must also take into account that each device may have a different operating system (Windows, Mac OS, Linux, Symbian OS or Windows Mobile). Companies must be able to offer ubiquitous access to mobile users, at the same time making sure that access is adjusted dynamically based on the device being used, whether the device is compliant with corporate security policy, and who the user is (employee, contractor, partner, customer). 

Enable Reliable Secure Access for Mobile Users with Juniper Networks SSL-VPN Datasheet

Juniper Instant Virtual System

Juniper Networks® Instant Virtual System (IVS) enables complete customer separation and provides segregation of traffic between multiple customers using granular role-based VLAN (802.1Q) tagging. This enables the secure segregation of end users’ traffic, even if two customers have overlapping IP addresses, and enables provisioning of specific VLANs for different user constituencies, such as remote employees and partners of customers. Domain Name System (DNS)/Windows Internet Name Service (WINS), Authentication, Authorization and Accounting (AAA), log/accounting servers and application servers such as Web mail, file shares, etc. can reside either in the respective customers’ intranets or in the SP network. SPs can provision an overall concurrent number of users on a per customer basis with the flexibility to distribute further amongst different user audiences such as remote employees, contractors, partners, etc.

Like all products built on the Instant Virtual Extranet (IVE) platform, IVS is based on the use of SSL available in all Web browsers as a means of secure transport. This enables the SP to offer customers a means of remote access for their mobile employees and contractors without deploying any client software on devices, as well secure extranet or intranet access with no DMZ buildout, server hardening, Web agent deployments, or ongoing maintenance. 

Juniper Instant Virtual System for SA Series SSL-VPN Appliances Datasheet

Contact us for more details on Juniper Networks


Compliance Standards

Castleforce can help you reach GCSx CoCo

GCSX No 6 Access Control

GCSX No 10 Mobile / Home Working

Castleforce can help you reach PCI DSS

PCI DSS 2.3 Encrypt all non-console administrative access 

Requirement 4: Encrypt transmission of cardholder data across open, public networks

Castleforce can help you reach ISO27001

A.11.7 Mobile computing and teleworking

Juniper Networks

SA Series SSL-VPN Models

Juniper Networks SA Series SSL-VPN Datasheet

SA700

Juniper Networks SA700 SSL VPN Appliance provides small to medium-sized enterprises a secure, cost-effective way to deploy remote access to the corporate network. Juniper Networks SA700

Juniper SA700 SSL VPN Datasheet

SA2000

Juniper Networks SA2000 SSL VPN Appliance enables small to medium-sized companies to deploy cost-effective remote and extranet access, as well as intranet security. Juniper Networks SA2000

SA2500

Juniper Networks SA2500 SSL VPN Appliance enables small to medium-sized companies to deploy cost-effective remote and extranet access, as well as intranet security. Juniper Networks SA2500

SA4000

Juniper Networks SA4000 SSL VPN Appliance enables medium-sized to large organizations to provide cost-effective remote and extranet access from any standard Web browser. Juniper Networks SA4000

SA4500

Juniper Networks SA4500 SSL VPN Appliance enables medium-sized to large organizations to provide cost-effective remote and extranet access from any standard Web browser. Juniper Networks SA4500

Juniper SA2500-SA4500-SA6500 Datasheet

SA6000

Juniper Networks SA6000 SSL VPN Appliance, designed for large enterprises, features best-in-class performance, scalability, and redundancy for organizations requiring high-volume secure access and authorization. Juniper Networks SA6000

SA6000SP

Juniper Networks SA6000 SP SSL VPN Appliance is the industry's first SSL VPN with comprehensive virtualization, enabling service providers to deliver network-based SSL VPN services to multiple enterprises from a single appliance/cluster. Juniper Networks SA6000 SP

SA6500

Juniper Networks SA6500 SSL VPN Appliance is specifically designed for large enterprises and service providers. It features best-in-class performance, scalability, and redundancy for organizations requiring high-volume secure access and authorization. Juniper Networks SA6500

Juniper SA4500 FIPS and SA6500 FIPS SSL-VPN Appliances Datasheet


SSL-VPN or IPSEC VPN?

Examining the Criteria for Deciding Whether IPsec or SSL VPN Best Fits Your Business Need 

Juniper Networks VPN Decision Guide Datasheet


Coordinated-Threat-Control Datasheet