Aventail SSL VPN
Easy, Secure and Clientless Remote Access for the Enterprise
IT is now mandated with providing secure remote access that is easy for users and cost-effective to implement. Client-based VPNs can be cumbersome to use and manage. Sonicwall Aventail E-Class Secure Remote Access (SRA) solutions deliver a complete remote access control solution, without escalating infrastructure costs or complexity. Sonicwall Aventail E-Class SRA provides complete application access with full security, control of the endpoint and unified policy management. This easy-to-use, easy-to-control solution increases productivity by providing employees and extranet business partners with secure, clientless access to the resources they need from any device, anywhere, with the unmatched security of SSL VPN.
SonicWall Aventail SRA Series Datasheet
Benefits
- Broadest application access from the most endpoints. Sonicwall Aventail E-Class Secure Remote Access appliances deliver intelligent access to Web-based, client/ server, server-based, host-based and back-connect applications such as VoIP. Sonicwall Aventail SRAs work seamlessly across Windows, Windows Vista, Windows Mobile, Linux or Macintosh platforms, from desktops, laptops, kiosks, PDAs and smart phones, as well as application-to-application.
SonicWall Aventail Advanced End Point Control
- Clientless Web-based access or full “in-office” experience. Sonicwall Aventail E-Class Secure Remote Access appliances offer both clientless browser-based access and full access to client/server and legacy applications from Windows, Windows Vista, Windows Mobile, Macintosh and Linux environments. Sonicwall Aventail Workplace delivers a policy-driven, device optimised Web portal that provides easy access to Web-based and client/server applications from desktops, laptops, PDAs, smart phones, even from wireless hotspots and kiosks. Users can define shortcuts to frequently used resources. Workplace can be customized with different logos and colour schemes for partners and employees. Sonicwall Aventail Work Place access is well-suited for devices not managed by your organization. Sonicwall Aventail Connect access delivers an “in-office” experience for Windows, Windows Vista, Windows Mobile, Macintosh and Linux users, enabling full access to client/server and Web-based applications and all other network resources. Enabled through a lightweight, Web-deployable agent, or through an easily-provisioned standard MSI installation, Sonicwall Aventail Connect is ideal for full access from IT-managed devices that require strong desktop security, split-tunnelling control and personal firewall detection. Sonicwall Aventail Smart Tunnelling offers a Layer 3 technology that supports UDP, TCP and IP protocols, and back-connect applications like VoIP. In NAT mode, no set-up of IP address pools is required.
SonicWall Aventail Connect Tunnel
- A solution customised to your users’ needs. The optional Sonicwall Aventail Native Access Modules offer additional native access to Windows Terminal Services, as well as native support for load-balanced Citrix farm environments via the Workplace Portal as an alternative to expensive Citrix nFuse implementations.
SonicWall Aventail native Access Module
Sonicwall Aventail Host Access Modules directly integrate industry-leading Attachmate WRQ terminal emulation with the Sonicwall Aventail E-Class SRA to access a wide range of host-based applications in IBM, UNIX and OpenVMS environments.
SonicWall Aventail Host Access Module
- Most complete access solution for mobile devices. Sonicwall Aventail Secure Remote Access appliances offers Web- and client-based access to critical network resources from any wireless network environment with complete security and control, including Windows Mobile-powered devices, Symbian smart phones, DoCoMo iMode devices and WAP-enabled devices. Sonicwall Aventail SRA solutions provide centralised management of all devices with granular access control and the ability to prohibit access from the device if it’s lost or stolen. And with Session Persistence, mobile users can have the flexibility to retain a current session as they switch between networks—on the go between office, commute, home and hotel—without needing to re-authenticate.
- Reliable high availability and flexibility. For added reliability, Sonicwall Aventail E-Class Secure Remote Access appliances offer active/active high availability (HA) with integrated load balancing and active/active stateful failover on the SRA EX7000 and EX6000, eliminating the added cost of a third-party load balancer. And with an optional Aventail Spike License Pack (see below), you can temporarily and cost-effectively increase your remote user count to the maximum capacity of those Sonicwall Aventail appliances for disaster recovery or planned business cycle peaks, whether it’s a few dozen or a few thousand additional users.
- Achieve Remote Access Compliance. Sonicwall’s best-of-breed technology gives you flexible access options for disaster recovery and supports easy audits to help you comply with Governement Code of Connection, Sarbanes- Oxley, HIPAA, Basel 2 and other regulatory requirements, even during unexpected business disruptions. And Sonicwall Aventail E-Class SRA appliances make an ideal replacement strategy for IPSec VPNs.
Protect your enterprise resources with ease
- Streamlined policy management. With its context-sensitive help and Setup Wizard, a Sonicwall Aventail E-Class Secure Remote Access appliance is easy to set-up and deploy. The extensible, object-based Sonicwall Aventail Unified Policy model consolidates control of all Web resources, file shares and client-server resources in a single location, so that policy management can take only minutes. Groups can be populated dynamically based on RADIUS, ACE, LDAP or Active Directory authentication repositories, including nested groups. Sonicwall Aventail SRAs support Single Sign-On (SSO) and forms-based Web applications. And users can easily update their own passwords without IT assistance. Also, Sonicwall Aventail Policy Replication lets IT easily replicate policy across multiple appliance nodes, either in the same cluster or in a geographically-distributed fashion. One-Time Password (OTP) support provides a built-in method to generate and distribute secondary factors, for easy and cost-effective two-factor authentication. Administrators can associate OTPs by Realm for greater flexibility in authentication control.
- Intuitive management and reporting. The Sonicwall Aventail Management Console provides a rich, centralised set of monitoring capabilities for auditing, compliance, management and resource planning. Optional Aventail Advanced Reporting audits who accessed what enterprise resources, at what time, from which remote location, using standard or custom reports that can be accessed from any Web browser. Visual tools provide real-time information on system state and direct, intuitive options for managing system objects. Enhanced user monitoring features streamline auditing and troubleshooting of current and historical user activity. Administrators can easily view or filter activity by user, time, throughput, realm, community, zone, agents or IP address.
SonicWall Aventail Advanced Reporting
Spike License
A Spike license allows an organisation to instantly increase their capacity for Secure Remote Access, though the license will only need to be deployed in times of emergency.
The SonicWALL Aventail® Spike License Pack (Temporary Capacity Upgrade) is an add-on license that allows enterprise-class and distributed network administrators to immediately increase their remote user count in the event of a disaster or other disruption, enabling seamless business continuity. This works like an insurance policy toward any future planned or unplanned event when remote access traffi c threatens to spike from current user counts to hundreds or even thousands of additional users.
SonicWall Aventail Spike License
Spike licenses are only available in 30 day or 90 day increments. Licenses can not be broken into smaller amounts. Once the Spike (Temporary Capacity Upgrade) license is requested and applied, it becomes an active license until the 30 day or 90 day expiration date is met. At that point the original license shipped with the appliance can be reapplied.
The Spike License Pack includes SonicWALL Support, providing global 24x7 service and support for the duration of the spike period.
Compliance Standards
GCSX No 6 Access Control
GCSX No 10 Mobile / Home Working
PCI DSS 2.3 Encrypt all non-console administrative access
Requirement 4: Encrypt transmission of cardholder data across open, public networks
A.11.7 Mobile computing and teleworking
Key Features
- Increases productivity. SonicWALL Aventail E-Class SRA works in more places, including home PCs, kiosks, PDAs and unmanaged devices over wired and wireless networks. SonicWALL Aventail SRA makes your users more productive by providing easy access to more applications from more environments—including Windows, Linux, Macintosh and mobile devices than any other secure access solution.
- Lowers IT overhead and total cost of ownership. SonicWALL Aventail E-Class SRA lowers IT costs by enabling network managers to easily deploy and manage a single secure access gateway that extends remote access via SSL VPN for both internal and external users to all network resources—including Web-based, client/server and host-based applications. SonicWALL Aventail SRAs are clientless or use lightweight Web-delivered clients, reducing management overhead and support calls.
- Easy-to-use from any endpoint. SonicWALL Aventail E-Class SRA technology provides transparent access to network resources from any network environment or device. A SonicWALL Aventail SSL VPN provides a single gateway for all access and a common user experience across all platforms—including Windows, Windows Vista, Windows Mobile, Linux and Macintosh—from managed or unmanaged devices. An award-winning anti-spam engine coupled with end-to-end attack monitoring ensures the most eff ective and current protection from spam attacks.
- Robust mobile solution. Provides the most robust secure access solutions for mobile PDAs and smartphones, featuring Session Persistence across offi ce, home or mobile IP addresses without re-authentication.
- Access to all application platforms. Aventail Smart Tunneling delivers fast and easy access to all applications—whether they are Web-based, client / server, server-based or host-based—over a unique architecture that combines the application layer control of SSL with the reach of a Layer 3 tunnel.
- Supports VoIP and remote help desk. SonicWALL Aventail Smart Tunneling provides granular, bidirectional access control for back-connect applications like VoIP and remote help desk.
- Eliminates routing conflicts. Adaptive addressing and routing dynamically adapts to networks, eliminating addressing and routing confl icts common with other solutions.
- Single access gateway. Administrators have even greater control over portal access, content and design with the newly-enhanced SonicWALL WorkPlace Portal.
- Rapid set-up and deployment. All SonicWALL Aventail E-Class SRAs are easily set-up and deployed in just minutes.
- Easy-to-control with Unifi ed Policy Management. SonicWALL Aventail Unified Policy offers easy object based policy management of all users, groups, resources and devices, while enforcing granular control based on both user authentication and end point interrogation. Policy Zones can ensure unauthorised access is denied, or quarantined for remediation.
Remote Access Imperative in Disaster Recovery Whitepaper
Aventail E-Class SRA Models
E-Class SRA EX-750
An ideal solution for a user base of up to 50 concurrent users.
- Processor: Intel P4 2.4 GHz CPU, 533 MHz FSB, 512 MB DDR RAM
- Network: Two 10/100Base-T Ethernet
Concurrent User License Options
E-Class SRA EX6000
Support for up to 250 concurrent users per node or HA pair
- Processor: Intel Celeron 2.0 GHz 1 GB DDR533
- Network: 6 Stacked PCIe GB
Concurrent User License Options
- 25
- 50
- 100
- 250
- Lab Box User License *
E-Class SRA EX7000
Support for up to 2,000 concurrent users per load-balanced node or HA pair
- Processor: Intel Core2 Duo 2.1 GHz 2 GB DDR533
- Network: 6 Stacked PCIe GB
Concurrent User License Options
- 50
- 100
- 250
- 500
- 1000
- 2000
- Lab Box User License *
* Includes appliance add-ons