Network security issues are becoming increasingly obvious as a result of the development of information, which not only seriously hinders the social information process, but also further affects the entire national security and economic development. In face of the grim situation of network security, how to build high-quality, high-stability and high-reliability security network becomes an important issue facing the telecommunications industry and the whole social development. The complexity and variability of network environment, and the vulnerability, openness and vulnerability of information systems, decides the objective existence of security threats. While people enjoy various conveniences in life and communication, network security issues have become increasingly prominent, and the situation is increasingly serious. Fast-growing network attacks, viruses spread, spasm, using Internet to conduct theft, fraud, extortion, and theft of secrets, all these seriously affect the normal order of the network. The security and reliability of network system is becoming a focus of common concern by all countries in the world.
Once considered as pronoun for network and application security, firewall has gradually been unable to meet the development of application and threat means. In order to resolve these risks, enterprises begin to deploy security systems which include firewalls, virtual private network (VPN), Intrusion Detection System (IDS)/Intrusion Prevention System (IPS) and Web content security tools. These different security means work with each other in a stacking way, which not only greatly increases the probability of failure, but also can not avoid the lowered performance because of restrictions on security function. At the same time, too much devices run in accordance with their own way of working, bringing enormous burden to network design, maintenance and management. And this stacking-type solution brings the biggest problem, that is, each device works independently. Therefore, we need integrated security products to apply the above-mentioned security means into the network through simple manner.
The security of system can not be obtained through sacrificing the performance and availability of the system. In particular, firewall and IPS are deployed in the data path, which may affect the network performance and scalability, and also may form single failure point that reduces the availability of network. Although most firewall/IPS can be deployed through hot backup, but so far, there is no one solution that can support more than one firewall/IPS to work at the same time. Therefore, users must purchase and configure a second firewall/IPS and high-availability software, and then watch them stay idle, and waits the failure to activate them. How to achieve the simultaneous functions of multiple firewalls/IPS is a problem that the users are much concerned about.
Wafer recommends application security solutions based on Nokia’s IP security gateway, and Radware's DefensePro + SecureFlow, in order to achieve network and application security.