News
-
Palo Alto Networks and Aruba Networks cooperation
Aruba Networks and Palo Alto Networks have partnered to provide best of class content security for guest and employee owned mobile devices that are now commonplace on enterprise networks. více >> -
Fortinet named fastest firewall in the world
Fortinet has again capitalized on its foundation of speed, performance, security and protection, and has passed numerous tests to be declared „The Fastest Firewall in the World“! více >> -
Extreme Networks a Champion in Data Center Products for Cloud Networks
INFO-TECH Names Extreme Networks a Champion in Data Center Products for Cloud Networks.
více >>
Aruba
About company Aruba Networks
The idea of „mobile edge„ - the conception of mobile wireless interface that would move with user was connected with the birth of Aruba Networks. This idea was completely different from the situation in the field of network technology at that time when wireless network was firmly fixed to the enterprise and enabled only local extension of enterprise
network. The main objective was to create safe, practical, and economical way of mobile user connection to the network devices. Top-tier venture capital firms Matrix Partners and Sequoia Capital found the idea compelling enough to invest in Aruba in February 2002.
Since then, Aruba has established a leadership position in a wireless technology market, successfully deploying its products in thousands of top enterprises worldwide including some of the largest wireless LAN enterprise networks in the world. Aruba is now recognized by industry experts as having the top solution for secure, scalable, enterprise mobility.
Aruba differs from other competitive solutions especially in access to wireless network security:
Entire wireless network is managed centrally
Single access points are very simple in principle. They provide only two basic functions: Wireless communication with end-users and creation of IPSec tunnel among AP and Central controller. All user data are sent from single APs through IPSec tunnel to the central controller which includes all logics and manages all security functions.
This method is also called “thin AP”. AP central management simplifies and automates the problematic configuration of RF parameters of wireless network. Single APs “hear” each other; the controller evaluates the ascertained parameters periodically and uses them for automated correction of broadcast performance, setting the most suitable channel and further parameters.
The network is created as “user-centric”
Depending on the type of user are all data coming from single AP charged into independent categories. In the entire network can exist many different groups with various access rights and
restrictions within the scope of only one SSID. Particular groups are not assigned according to geographic location or specific SSID but on the base of identity of user who accesses the network. Therefore the user has always the same rights and restrictions wherever he connects – from any office, home or hotel. Thanks to advanced L2 I L3 roaming the user retains the same IP address regardless changing the geographic location.
Security has been the priority since the company foundation, therefore; it is comprehensive and multileveled. The first check is being processed already at the level of the wireless access (detection and elimination of false AP, wireless IPS, spectral analysis). Among secure components on-line and network layer belong except of encryption also authentication, VLAN allocation according to AAA and user quarantine. On the application level are the security components replenished with options of state firewall IPS, VPN, or operation abnormality check.
Unique wireless network thanks to the combination of unique features:
Exact identity check of users accessing the network
Comprehensive information on identity of users who are connecting to the internal network is available at every moment (who accesses the network, from what geographic location, what HW is used and what sources are available). All user data are also processed by firewall and IPS system.
Seamless and fast roaming
The user can connect to any AP; his data are being processed by the central controller. The user retains the same IP address all time, which in addition to smooth cooperation among single APs enables seamless use of VOIP technology in large enterprises and complexes of buildings.
Easy remote access
Except of standard remote access methods Aruba offers one more interesting remote access method. User can use small portable AP, which will after connection to the Internet at any place link automatically IPSec tunnel to the controller and user gets access to his home wireless network at any place (same SSID, same encrypting method and same IP address allocated by the same DHCP server..)
Encrypted communication
All communication among access points and controller is protected by IPSec or GRE tunnel. Possible attacker is not able to gain the access to non-encrypted user data.Link-up in high availability mode
Both central controllers and single access points can be linked-up in high availability mode. The network also continuously checks its own coverage (with help of access points and also special devices –so-called air monitors) and single APs condition, which in combination with RF automated control enables replacement of non functional AP etc..
For more information on Aruba products or partner program please contact us at: aruba@skyvera.cz