တॠޤັ᜔֧ხ ᄂࣕͦଟბັဨࠦ Palo Alto Networks ັʹ֧ͪᒑ ཱིжф٩Ьᕓ Ɣ ௌ҆ޣၾޟඁӇٱ ȶཱིжф٩Ьᕓ - Next-Generation FirewallȷΙຠȂᓍ Gartner Inc. ӵ 2009 ԑඪюϞࡣȂۖю౪ӵӨᆍၥԊႢၾΰȂӨড়ኅ୦ િિՌᆎڏ೩ര࣏ȶཱིжф٩ЬᕓȷȄณՄȂ࿋ۖຟեᇄกၐ ೩രϞࡣȂ܁܁σѶܚఖȂІՄᄇȶཱིжф٩ЬᕓȷԤΟᝒ१ޟ ᇲ၌Ȅ ࣏٘ȶཱིжф٩ЬᕓȷޟሴᏲࠢถȂPalo Alto Networks ໌Ι؏ࡾ юȂઍғޟȶཱིжф٩Ьᕓȷ҆ԤήӖޟђᇄ੫ܒȈ ᔖҢแԒޟᜋտ ฒ፣ٺҢӈդ TCP/UDP PortȂࣥՍฒࣨᘲ។ (Ultrasurf)ȃՌҥ ߞ (Freegate) ้ڎԤೣᗗ࣏ޟᔖҢȂғጂᜋտᇄߢȄ ٺҢ٘ޱϷޟᜋտ Gartner Inc. ( ϴѧ ) ӵ 2009 ԑ࣏ၥ ϚᆓҢИٺҢӈդ IP ՝֭ȂആႆᐌӫٺҢޱၥਟ৲ ( ཌ ଉԊӒ٩៖ሴȂήΟΙᗻᎪᐂኆȄ࣏ ADȃႫυӇழИ้ )ȂғጂฒᇲޟጂᇯҢИ٘ϷȄ ΟୢϷᇄȶ༈ಛ٩Ьᕓȷ৯ȂGartner Inc. ඪюΟȶNext-Generation Firewall - ၥԊࢇ๊ӣਢоᔖҢแԒᇄٺҢ٘ޱϷୈ࣏ᆓనӇ ཱིжф٩ЬᕓȷএᄉཱིӪຠȄ ሆᚬޟୈٷڗᐃഋߞЅٺҢ٘ޱϷȂϠϚӣޟᆩၯٺҢ᠌३Ȃׇ ޟᆓᆩၯٺҢ࣏Ȅ ઍғཱིޟжф٩Ьᕓᔖ၎ڎര ήӖ੫ՓȈ ᔖҢแԒᜋտΨ ٺҢ٘ޱϷᜋտΨ ᐌӫΣ߭กفಛ , ࣥՍ ںӒࡄޟ٩៖Ψ ᐌӫΣ߭ก٩ᑕȃࢳ٩៖ᇄඌཎแԒᆓ้ђȂџоᄇܚԤ ᆩၯࢺ໔Ȃ໌ၥԊࡄޟกᇄߢᔬȄӣਢȂᗴᙠӵᔖҢ แԒϱޟඌཎࡄȂғጂޟёоߢȂୈڗശᝒޟၥԊ٩៖Ȅ ٩ࢳᕓђ ၥԊٱӇޟᜰᖒԒϷݙΨȄ ၥԊٱӇޟᜰᖒԒϷݙΨ ցҢᜰᖒԒϷݙЕᔝȂџоٞഀޟӨၥԊٱӇȂᐌ౩ԝᔧ఼࣏ ཿޟၥԊٱӇϷݙൢ֙Ȃ݂ጂࡾюၥԊٱӇޟȶᄢौఄक़ȃᔞޱȃ Palo Alto Network ׇӒಒӫ Gartner Inc. ᄇཱིжф٩ЬᕓޟӨ ᆍ੫ՓौؑȄ ڧޱȷ้ၥଉȂёפ၌ؚ୰ᚠޟഀ࡙Ȅ ᓺޟਝߒ౪ ༈ಛ٩ЬᕓശᡱΡѶఖޟӴПȂ൷ӵంҢΣ߭กȃࢳ٩៖้ ђࡣȂਝོ૾ுۉ৯ฒШȂலலѫ഻ήনԤਝޟΪϷϞ ΙϚڗȄཱིжф٩Ьᕓ҆ڎԤᓺάᛧۡޟਝȂϗᅖٗᄂሬ ᔖҢޟሯؑȄ 1 ᆓ౩ Web 2.0 Ɣ ௌ֏ཐڗ ΨϚЖ ٩Ϛഽ٩ཱིޟᑹᔖҢᇄࡄ ӵӨᆍᆩၯᔖҢϚᘞ௰ങюཱིޟלήȂཕپཕӻޟ ޥတᆩၯȃጣΰኇॱ݈Ѕ P2P ༈ᒯ้ᔖҢȂϐင ԙ࣏ശкौޟᆩၯٺҢ࣏Ȅ ޟᔖ Ң ݈ Ȃ σ ӻ ኵ ց Ң ܚᒝ ޟTCP 80/443 Port ୈ࣏༈ᒯᆓၾȂՄ༈ಛ٩Ьᕓᄇܻᆍ༈ ᒯᆓၾȂׇӒЙฒ๊ȂѫܹӈҢИٺҢȄտᇳȂ ᄇܻᔖҢܚॊҡޟၥԊࡄȂਲ਼ҏؠԤߢΨȄ ᠒ޟࡐ࢜ח٩៖ೣგ ༈ಛ٩Ьᕓ௴ҢȶޑᄘᔮกԒ - Stateful Inspectionȷپᆓᆩၯ࣏Ȃϐင୰ж຺ႆ ΪϤԑΟȄӵंีޟԑфȂؠٮԤܚᒝޥޟတᆩၯȃጣΰኇॱ݈Ѕ P2P ༈ᒯ้ᔖҢȂ։ٺ ᡱΡཐ֨ᘙޟȶऎᕓᡝ - ฒࣨᘲ។ȃՌҥߞȃTorȷ้݈Ȃζശߖඁԑϗۖӵᆩၯΰ౾ȄӰԪȂ ༈ಛ٩ЬᕓฒݲᆓཱིᑹᔖҢ݈Ȃϐငಀٱޟޣ໊ܚᄂȄ ӻኵ IT ഋߞ࣏Οպ݈༈ಛ٩Ьᕓޟ౭ᓛȂѫԁ௴ᗊڏтၥԊ೩രȂȈΣ߭ก٩ᑕ (IPS)ȃ٩ࢳᕓ (AV) Ѕᓜቶᆓ౩Ꮲ (QoS) ้Ȃהఖ၌ؚಁࠉޟᆓ౩ᜲᚠȄ ณՄٱᇄႂޟݷȂ௴ҢӻᆍၥԊ೩രࡣȂϚ༉ฒݲԤਝ၌ؚ୰ᚠȂІՄഅԙӻ֨ޟᘙȄ ߆າσ๋ߜᓀӵ௴ᗊᇄᆰ៖೩രȄ Σσ໔ਢᏰಬᐇհᇄᆓ౩ӻᆍኅถ೩രȄ Өᆍ೩രޟၥԊРᇬ (Log) ਿԒϚΙȂϚܾ၌Ȅ ؠԤᐗөᜰᖒԒϷݙΨȂഅԙາσ໔ਢӵ௶ଶၥԊࡄȄ 2 ௴Ң Palo Alto Networks ཱིжф٩Ьᕓ Ɣ Ԫ ଽฒ Palo Alto Networks ღȂړΟ၌ڗ༈ಛ٩ЬᕓᇄڏтၥԊ೩രޟ౭ᓛȂंีюᄉཱིޟᡝҁѮ ЅგਢфޟԊӒ٩៖ཱིࡦᆰȂᡱௌᕕுࠉܚҐَޟᆩၯ࣏ᆓΨȄᙤҥᐿ؏Ӓ౨ ޟApp-IDȃUser-ID Ѕ Content-ID Ȃёΰ๘ޟٹኆܒշဍΨЅхΡᢚნޟᜰᖒԒϷݙЕᔝȂϚ༉ׇӒಒӫ Gartner Inc. ᄇܻȶཱིжф٩ЬᕓȷޟौؑȂᕕுޣӪ ޟNSS Lab ࡾӪ௰ᙨȄ ɆPalo Alto Networks generated the most ¿rewall inquiries among Gartner customers.ɇ Greg Young, Research VP, Gartner Inc. "NSS Labs commends Palo Alto Networks for taking the steps to protect their customers," "We are impressed with Palo Alto Networks' responsiveness and collaboration during the retesting process and are happy to recommend them." Vik Phatak, CTO, NSS Labs. ϴѧᙏϭ Palo Alto Networks Ιড়ᆩၯԊӒϴѧȂӵ 2005 ԑҥഺᒲΡ Nir Zuk ԙҳܻछёԎȄѺཱིޟжф٩ ЬᕓٺྱٷҢ٘ޱϷᆓՄߨѫ IP ՝֭Ȃ࣏ᔖҢแԒڷϱৠඪܚࠉټҐԤޟџຜڷܒϷ᠌३ᆓȂ ౩ਝശଽџႀ 20GbpsȄPalo Alto Networks ཱིжф٩Ьᕓо App-ID ࣏அᙃȂғጂᒱᜋڷ ᆓڙᔖҢแԒȂϚڧஃȃۡڞȃೣᗗЅ SSL ё३ڙȂٮи௭ජϱৠоߢᘞࡄڷႱ٩ၥਟѴࣉȄ ᡱௌॶ࡙ஊܹЖܲ Web 2.0ȂάᆰࡻׇᐌޟџຜܒᇄڙȂӣਢᡗ६ճᐌᡝԤԙҏȄ 3 ᐿ؏Ӓ౨ޟΨ ӒП՝ޟᔖҢแԒᜋտ (App-ID) ᐿড়ޟᔖҢแԒᜋտȂџоྥጂӴϷݙюҢИޟᆩၯ࣏Ȃᡱௌӵᆓ౩ΰᆩ࣏ਢுЖᔖЙȄ ғጂޟᜋտᇄᆓᔖҢแԒȂӻႀ 1,300 ᎷᆍȂᔖԤᅾԤȄ ߢฒࣨᘲ។ (Ultrasurf)ȃՌҥߞ (Freegate)ȃTor ้ೣᗗ࣏ޟᔖҢȂӔЙϚႆȄ ໊ཱིؐቨᔖҢแԒᜋտΨȂЅࢋཱིԤޟᔖҢแԒ੫ጆȂԁᗙौԁȄ ޣၾձ።ٺޟҢޱᜋտ (User-ID) ΙԩȂௌџоሆᚬޟၭӨᆍٺҢޱၥਟ৲ ( ԃȈཌ AD ழဴȃႫυӇழဴ ) ᆧᐌӫȂ։ਢޟ IP ՝֭ᇄٺҢޱၥଉ໌๖Ȅ ҢИ٘ϷΙ఼ΠཿȂฒ֏ݲᇯȄ ྱٷҢИ٘ϷᇄഋߞȂϠϚӣٺޟҢ᠌Ȃᡱௌདࡩቄᆓ౩ȃ൷ࡩቄᆓ౩Ȅ IP ՝֭ᇄ MAC ՝֭ٮϚுޣઍғҢИ٘ϷȄ ฒܚႊޟלϱৠᜋտ (Content-ID) Ԥȶ։ਢࡄ٩ᑕȷȃȶϚيᆩમႆᘮȷЅȶ༈ᒯᔬਰᜋտȷ้ΨȂᡱௌϚࢳڧȃඌཎᡝᇄ ᓧࡊΣ߭ޟϓᘙȂџоࢋԊЖάடЖޟώհȄ NSS Lab ࡾӪ௰ᙨޟΣ߭٩ᑕΨȂ൷ᆗԤᓧࡊᔞȂௌζϚҢᐊЖȄ ։ٺዖӅӵᆩॲȃPDF МӇЅᔆᕻᔬਰ၇ࢳޟȂΙኺ࣏ௌනюپȂ٩៖ฒܚϚӵȄ ᔓօௌᝒਿᆓڙᔬਰѴࣉޟᆓၾȂᡱௌޟᐠၥਟ߳៖ёׇȄ 4 Ϛџࡦដޟਝᇄᛧۡܒ ҥܻᡝᇄհཾفಛ PAN-OSȂ Palo Alto Networks ೩ॎ҈അȄܚоȂѺڎԤଽഀޟਝᇄᄂޟᛧۡܒȂᡱ ܚԤޟΙϸᄱάׇछ֕ޟ౪Ȅ PAN-OS ཾࣨശӑ໌ޟհཾفಛ PAN-OS Palo Alto Networks ཱི ж ф ٩ Ь ᕓ ޟհ ཾ ف ಛȂڎԤᙏܾҢޟϭ७ȃ๘ޟٹђ੫ՓоЅᄂޟᛧ ۡܒȂ։ڏٺтᄇЙғၐଡሂȂPAN-OS ϱ࡚ޟᇄ ђȂϫᡱѺልልሴӑᝯތᄇЙȄ ௌ֏ෆငདႆӣਢԤȈΟ၌ҢИ࣏ЅᕕுΣ߭กȃࢳᇄඌཎᡝ٩៖ȂࠓάᐊЖܴ࠳ਝȄԤΟ PAN-OS ᐿ੫ޟၾ౩Ψ (Single Pass)Ȃᆍݷ൷ϚོีҡȄ хΡᐭ፬ޟշဍΨ ᡱௌӣਢᕕுȈਠԒȃആԒЅၯҥԒ้շဍΨȂϚሯϸസюຎᔣ٩ЬᕓȂϚོഅԙѴ॒ޟᐊȂ ΙᐠӻҢȂ൷ቄᙏȄ ਠԒ (TAP ModeȃSPAN Mode) ௌџоᓍਢᄇีҡ୰ᚠޟᆩၯ໌ᅿ᠙Ȃΰ൷ޣၾีҡϧቄ୰ᚠȂ࢈ራ௶ଶӇٱȂԪϚӔௌޟඌჲȄ ആԒ (Transparent Mode) ଶΟலَ ޟL2 Transparent ആԒϞѴȂᗙԤ໌ ޟގȶVirtual Wire ԒȷȂᡱௌϚҢওӈդ౪Ԥ೩ രޟ೩ۡȂζϚҢᡐᆩၯ࢜ᄺȂ൷ሆᚬׇԙշဍȄ ၯҥԒ (Route ModeȃNAT Mode) ցҢၯҥᇄᙽ้֭ώհԒȂᡱௌ Palo Alto Networks ཱིжф٩Ьᕓհ࣏ᄇѴޟԊӒႢၾȂඪټϱഋᆩၯ ശׇޟ٩៖Ȅ 5 ᙏዓޢឈٺޟҢငᡛ ࿋ௌΙԩٺҢ Palo Alto Networks ཱིжф٩ЬᕓਢȂௌ࡞פ൷ᏰོԃդٺҢѺȄӰ࣏ PAN-OS ޟ೩ॎ۠ԟ൷ौளௌശޟȶཱིжф٩ЬᕓȷٺҢငᡛȂฒ፣೩ۡၥԊࢇ๊ȃࢥײၥԊࡄีޟҡ ྛȃܖҡሯौޟൢߒȂؐӇٱᡐுᙏޢឈȂᡱௌᡙϚϐȄ ᙏޟၥԊࢇ๊ᆓ౩ ೩ۡၥԊࢇ๊ശፒᚕޟӴПȂ൷҆७ᄇΙஂᜲо౩၌ ޟIP ՝֭ȂՄиᗙौஊྱٷഋߞᇄҢИȂ ϠϚӣٺޟҢ᠌३Ȃӎौୈڗٲ൷ϐငᡱΡࠓ؏ȄդݷᗙԤᆍᆍޟၥԊࡄȂζ҆ઽΣՃ໔Ȅ Palo Alto Networks ཱིжф٩ЬᕓԤޟᆩॲᆓ౩ϭ७ȂᡱௌפഀӴዣொᐇհᇄᆓ౩ȂሆᚬׇޟԙၥԊ ࢇ๊ޟ೩ۡȄฒ፣ҢИ᠌ޟ३ȃᆩၯ࣏ޟᆓȃᓧࡊΣ߭ȃࢳȃᒘᡝޟ٩៖Ȃӵ೩ۡॲ७ ϛȂኆࡾཤۡȄ ๖ӫٺҢޱၥਟ৲ȂџоሆᚬྱٷޟҢИ٘ϷᇄഋߞտȂୈڗ৯Ͻ᠌ޟ३ᆓȄȈϰ೨ཾ ᇄഋߞٺҢ FacebookȂՄོॎᇄݲഋߞϚٺҢȄ ܢ๘ᔖҢแԒٺޟҢȄٽԃȈPeer-to-Peer(P2P) ܖऎᕓᡝ ( ฒࣨᘲ។ȃՌҥߞ้ )Ȅ ΣᔖҢแԒϛȂᔮࢥ֏ԤࢳȃᒘᡝڷџೝΣ߭ޟ৵ᘈȄٽԃȈҢИᘲ។ᆩॲਢϚབᘲ ។ڗඌཎᆩॲȂՄೝේΣУแԒȃなࡏࢳ้ᒘᡝȂೝ Palo Alto Networks ཱིжф٩ Ьᕓกٮڗиҳ։ߢ᐀Ȅ ߳៖ௌޟএၥᇄᐠᔬਰȄցҢᆩၯџоሆܾޟᔬਰѴࣉȂȈջາӇ݈ȃջາᆩၯ ᆅȃ։ਢଉ༈ᔬЅ P2P ༈ᒯȂٲഊ৷܁܁ೝ܇ՄؠԤёоᆓڙȄPalo Alto Networks ཱིж ф٩ЬᕓࡌᚇٲᆓၾȂٮиή࣏ᓃȂᡱௌ߳៖ᐠၥਟฒΙѶȄ ყלϽޟᐇհϭ७ȂᡱௌሆᚬٷᐃٺҢޱЅᔖҢแԒȂۡڙᆓПԒ 6 хΡᢚნޟᜰᖒԒϷݙΨ Palo Alto Networks Ӓཱི҈അޟ८ܒڼϷݙЕᔝ (ACC – Application Command Center)Ȃᡱௌฒ፣དौ Ο၌ᐌᡝᆩၯ࣏ܖफ़ϸޟौ௶ଶၥԊࡄȂឈுਿѴሆᚬȂӰ࣏ፒᚕޟϷݙώհȂҥ ACC ϷݙЕᔝ࣏ௌׇԙȂٮиԃڏϷ֕ޟ౪ௌȄ དޣၾȶ።ȷӵٺҢȶYahoo-MailȷϧቄȶᔬਰѴࣉȷ༝ȉ౪ӵȂௌџоցҢ ACC ϷݙЕᔝሆᚬײ юپȂϚາ֚ԸϞΨȄ ።ӵٺҢ ? ೝΙనၥԊࢇ๊ี౪ ? ӵࣉᅓϧቄᔬਰ ? 7 ளࡄٲپ ? ໌ܚޣюࢺޟ໔Ӵყ ᆠЖ೩ॎࢺޟ໔Ӵყ (Traf¿c Map)ȂٺҢശޢឈޟПԒܚԤࢺ໔֕౪ӵжࣨӴყΰȂᡱௌ఼ཿඡණϱ ഋҢИ֏Ԥᇄڏтড়ҺࢺȄौདХҢИ๖ڗ੫ۡড়ȂѫሯौӵၥԊࢇ๊ϛȂ೩ۡড়տޟԆ ڥᆓᐠڙȂ൷ሆᚬཤۡȂϚҢЙтΡȄ ࢺ໔ӴყᡱܚԤᆩၯ࣏Ȃ៚ณყΰȂΙϸ఼џَȄ དΟ၌๖ڗএտড়ޟ࣏Ȃ༉ሯᘈᔞࢺ໔Ӵყϛ၎ড়ޟ༫Ȃ൷ོᡗҰюᔖҢแԒӪᆎȃٺҢޱӪ ᆎЅ༈ᒯ໔้ၥଉȂ႞ಠ᜵ᒸȄ 8 ܾܻᐇհޟРᇬᔮຜ དࢥϧቄȂΰࢥڗϧቄȄӵ Palo Alto Networks ཱིжф٩ЬᕓϛौࢥײӨᆍفಛРᇬȂ൷ቄৠܾȄ ѫौӵௌདᑢᒵួޟ՝ΰᘈΙήȂ҆ौਢওौᑢᒵޟᜰᗤԅȂ൷೩ۡԁᑢᒵనӇȂ൷Ռଢ଼ᑢᒵ ԁޟРᇬ֕౪ձȂԃԪᙏȃΙᘈζϚᜲȄ ϚሯौእቸፒᚕࡾхȂ൷ሆᚬ໌ၥਟޟᑢᒵᇄཪ൶ȂՄиҳ։఼ཿ֕౪Ȅ хΡ༊Жޟӻኺൢߒ ൷ᆗௌҐញႆ Palo Alto Networks ཱིжф٩ЬᕓȂѫौၐႆΙԩȂ൷ΙོۡೝѺᙴ൲ޟൢߒܚཐଢ଼Ȅ ϱ࡚ӻႀ 30 ᎷᆍޟൢߒȂϐငٗоᔖпӨᆍώհΰޟሯؑȄϚ༉ԃԪȂѺᗙඪׇټޟՌۡൢߒђȂ ᡱௌᇧհӻޟடཾൢߒȂࠓϚҢӔӻ߆ΙЩᓀȄ σޟൢߒώڎȂᡱௌޟᆓ౩ൢ֙ਿѴᓺȂՄиڎᇳ݈ΨȄ 9 ᐣᐣӵҬޟ೩ۡᔬގҏᆓ౩ ၥԊࢇ๊ᓍᄂሬሯؑȂওওȂӔғலϚႆȄծȂٺҢΙࢲਢࡣܖԤΡষҺਢȂौ఼יཿ ٲϚӣގҏ๊ࢇޟȂওΟٲӴПȂ൷ᡐԙхΡ֨ᘙٱޟȄ Palo Alto Networks ཱིжф٩ЬᕓȂོՌଢ଼ᔓௌᓽԆܚԤޟ೩ۡᔬȂᡱௌᓍਢඡණϚӣގҏޟ৯Ȃ ᜲџິޟȂѺᗙᡱௌ೩ۡᔬӱඈڗௌࡾۡގޟҏȄኺΙپȂ൷ᆗ೩ۡᒿᇲζϚᐊЖȂӰ࣏ௌ ޣၾՌϏџоᓍਢᓞپႆȄ ቨёΟϧቄȃওΟϧቄȂ൷ቄ఼ཿ݂ҩȄ ሴӑတগޟၥਟϛЖ٩៖ ߝδоپȂၥਟϛЖٷᎬ༈ಛ٩Ьᕓ߳پ៖ȂࡣپȂ࣏ΟӰᔖቹюϚጏޟၥԊࡄȂϗ໌ՄᗊӨ ޟ٩៖೩രȄؠਟདޟڗȂኺޟೣგȂІՄഅԙӻޟ୰ᚠȂȈᔖҢแԒᜋտΨ৯ȃؠԤҢ И᠌३ᆓΨȃࡄ٩៖ਝϚٗȃ༈ᒯ۽ᒶޟቨёȄᡱၥਟϛЖޟԊӒ٩៖ȂΙޢശሯौϽޟΙᕗȄ Palo Alto Networks ӑඪюȶཱིжфၥਟϛЖȷԊӒ٩៖ཱིࡦᆰȂएક௴ޟܒҢӨᆍхΡᡙნޟᆓᐠ ڙȂၥਟϛЖޟԊӒȂඪ݇ՍࠉܚҐَޟЫҁȄ ᅎЫϚᅓࢺޟ໔ᆓ ໌юၥਟϛЖޟ࣏Ȃ҆ၥਟϛЖܚඪ݈ޟټ ȂڏтϚ݂ࢺޟ໔Ȃོೝߢ᐀Ȃ൷ Palo Alto Networks ॶഺޟғөᆓᐠڙȄኺȂџоσൽ ЍඌཎᔖҢ݈ޟϓᘙȄ ҢИ٘Ϸ᠌ޟ३ᆓ౩ ؠԤ᠌३ޟҢИȂ։ٺԆڥӫݲᔖҢ݈Ȃζོೝܢ๘ӵѴȄ൷ӨᆍၥԊೣጒᝒਿौؑޟȂϚӣޟ ҢИȂϠϚӣ᠌ޟ३ȂΙϸԃڏϷȄ ७७ࡄޟڗ٩ᑕ ؐ࿋ԤᗴᙠӵᔖҢ݈ϛޟԊӒࡄю౪ȂܖԤඌཎᔞ࣏ีҡਢȂPalo Alto Networks ཱིжф٩Ь ᕓོ߯ҳړӱᔖȂ࣏ௌߢࡄٲȂӣਢՌଢ଼சଚ֙ឌӇௌȄ 10 ੫Փᇄਝઉ ੫Փ ਝઉ Ɣ ғጂᜋտᇄᆓ຺ႆ 1,300 ᆍоΰᔖҢแԒȄ ᔖҢแԒᜋտ Ɣ ໊ཱིؐۡቨᇄཱིᔖҢแԒᜋտΨȄ Ɣ ٺҢޱՌۡဎᔖҢแԒᜋտΨȄ ԤΟӒП՝ޟᔖҢแԒᜋտΨȂᆓ౩Ө ᆍཱིᑹ݈ȂᡐுฒШᙏȄᗙցҢՌ ۡဎᔖҢแԒᜋտђȂୈڗᄇՌี ᔖҢ݈ޟᆓȂΙϸᅾӵඡණϞϛȄ Ɣ Ԫᘛಳ IP ՝֭ᇄ MAC ՝֭ȂጂᇯҢИ ٺҢޱᜋտ Ɣ џоၭலَٺޟҢޱၥਟ৲ᆧᐌӫȄ ȞMS-AD , LDAP , RADIUSȟ ٘Ϸ࣏ᙏȄ Ɣ ௌџоޢӵၥԊࢇ๊ϛȂցҢٺҢޱழ ИЅတಢ໌پᆓڙȂᡱௌޟԊӒᆓ ёںӒȄ Ɣ ڎരӻႀ 100 ๋оΰࢳ੫ጆȄ Ɣ ଽႀ 6,100 ӻ๋ IPS ੫ጆȄ ࡄ٩ᑕ ( ѓࢂȈ3,800 Ꮇ๋ Vulnerability ᅓࢾᔞ੫ ᔮกᇄ 2,300 Ꮇ๋ Spyware ඌཎแԒᔮก ) Ɣ ໊ؐۡีշ੫ጆཱིȄ Ɣ NSS Lab ࡾӪ௰ᙨȂԤᓺܻᓃၷ݂ޟ٩ ៖ਝȄᄇܻ NSS Lab กၐޟӨᆍೣᗗ ࣏ (Evasion)ȂஊׇӒกᇄߢ᐀Ȅ Ɣ ंـღӻԩкଢ଼ี౪ Microsoft Windows فಛ१σᅓࢾȂΨരۡڧȄ Ɣ ᗴᙠӵᔖҢ݈ϛࢳޟȃឆᙫȃᒘแԒȂ ΙኺయϚາΨޟනюپȂᡱௌϚӔᐇЖȄ Ɣ ᐌӫ Bright Cloud ၥਟ৲Ȅ ඌཎᆩ֭ႆᘮ Ɣ ӔζϚҢᐊЖҢИᘲ។Փȃ፰ി้ᆩॲȄ Ɣ ඪټӻႀ 76 ᆍоΰޟᆩॲտЅ຺ႆ 2,000 Ɣ ջଶҢИϚငཎᘲ។ඌཎᆩમܚҡޟၥ ๋ޟᆩમӪȄ ԊॳᓎȂ٩ҐณȄ Ɣ ᙤҥᆓջາӇ݈ Web mailȃջາᆅ ᔬਰ༈ᒯᆓ ުȃIM ༈ᔬЅ P2P ༈ᔬ้࣏Ȃёΰϱ ᔖҢแԒᆓᇄᔬਰ༈ᒯᆓȂࣺሄࣺԙȂ ࡚ᔬਰᜋտΨȂџሆܾ߳៖ᐠᔬਰ ᡱௌᅾٴᆩၯ߯ޟցȂάϚ҆ᐊЖᐠѴࣉȄ ϚѴࢺȄ ᗴᙠӵҐࢺޣ໔ϛޟඌཎጣȂȈなࡏ ዖӵॳᓎϷݙ Ɣ ବᄇҐࢺޟޣ໔ȂџоցҢȶ࣏Ϸݙ ಢȷȂΟ၌֏ԤዖӵޟၥԊࡄȄ ᆩၯࢳ (Botnet) ้ȂலശᜲоกЅ ߢȄᙤҥᐿޟڗ࣏ϷݙಢȂᡱௌሆ ܾඡණѺȂϚӔᓞฮϚϐȄ ҆ၥਟϛЖඪ݈ޟټȂϗܹ၎݈ޟ ၥਟϛЖ٩៖ Ɣ ցҢॶഺޟȶғөᆓᐠڙȷȂඪټ१ौк ᐠശᝒ߳ޟ៖Ȅ ጣ࣏ȂٽԃȈཌ ExchangeȄኺޟғ өᆓᐠڙȂџоܚԤϚࣺϓࢺޟ໔ёо ߢ᐀ȂᔓௌᝒਿװᜰȂၥଉԊӒᑸׇछȄ 11 ੫Փ ਝઉ ӻኺϽޟώհԒԤօܻௌᔖҢӵӨᆍᕗცȂ ώհԒ Ɣ ӣਢշဍਠȃആȃၯҥȃᙽ้֭ώհԒȄ ȈᄇѴԊӒႢၾȃၥਟϛЖЅᔮกᆩၯ ୰ᚠȂΙѮཤۡȄ ܚԤРᇬ၏ᄂᓃӨᆍၥଉȂٽԃȈҢИ فಛРᇬ Ɣ ඪټၥਟࢺȃࡄٱӇȃᆩॲᘲ។ȃᔬਰ ༈ᒯЅ೩ۡᔬᡐ้РᇬᓃȄ ழဴӪᆎȃIP ՝֭ȃРᇄਢȃᔖҢแԒ Ӫᆎȃᘲ។ޟᆩ֭ȃᔬਰӪᆎ้Ȃጂ߳ܚԤ ࣏ԤၬџඉȄ Ɣ ցҢᜰᖒԒϷݙЕᔝᐌ౩࣏ኵᛁσفޟಛ РᇬࡣȂᡱௌӵΙห७ࣼܚڗԤᔖҢแ ԒӪᆎȃॳᓎ้ȃ༈ᒯၥਟ໔Ѕ Session ኵ໔Ȅ ᜰᖒԒϷݙ Ɣ ׇޟᜰᖒԒϷݙΨȂџоҳ։ϷܚݙԤ РᇬၥਟȂפഀײю୰ᚠีҡনӰȄ Ɣ སࡄ٩ᑕђȂᗙᡗҰܚԤࢳࡄ ȃᅓࢾᔞᇄඌཎแԒᔞ้ၥଉȄџ о݂ጂࡾюΙএ IP ՝֭ܖΙএҢИȂ Ӱ࣏ҢΟΙএᔖҢแԒȂཐΟΙএ ࢳᇄඌཎแԒȄҢИ७ᖝޟၥԊࡄȂ ௌϚོᒸᅓΙ๛ΙయȄ ࢺ໔Ӵყ ൢߒفಛ ೩ۡᔬጋਯ Ɣ ӵжࣨӴყΰȂ఼ཿᡗҰ໌южࣨӨޟ ᆩၯ༈ᒯ໔ᇄॳᓎ้Ȅ Ɣ ϱ࡚ 30 ᆍоΰޟᙴ൲ൢߒȂᗙԤׇޟ ՌۡൢߒΨȄ Ɣ џоᓃ຺ႆ 100 Ӌޟ೩ۡᔬȂᗙ֕ ౪ؐএގҏޟϚӣȄ དޣၾᆩၯࢺ໔ўΟ၇ȂϚӔЈσޟ ᜲᚠȄѫौྤჃΙࡸȂܚԤড়ࢺޟ໔ᅾӵ ௌಁࠉȂԃԪሆՄܾᖞȄ ᡱௌϚӔ࣏ΟᇧհൢߒՄԔுฐᓞេȂց ҢᔖԤᅾԤޟൢߒᇧհђȂ֕౪ശடཾޟ МӇȂՄиȂջາȄ ၥԊࢇ๊ୈႆٲওȂԪϚӔయฒᓞᆱȂ γႆ҆ή౷ၬȂϗಒӫၥԊጋਯᇄԊ ӒೣጒޟौؑȄ ႆӻޟၥԊࢇ๊Ȃலலᡱௌདւଶάڧܐ༌ ၥԊࢇ๊ጋਯ Ɣ ᡗҰ೩രᐠࡣؠԤஈႆޟၥԊࢇ๊Ȅ ȄຮЖޟጋਯђȂօௌΙᖗϞΨȂᡱௌ ԤᏵԤᐃޟււȄ IPv6 ђ Ɣ ٺҢ IPv6 ֭ۡޟᆩၯࢺ໔ȂΙኺԤᇄ IPv4 ׇӒࣺӣޟᆓЅ٩៖ΨȄ ᄇܻӨᆍ IPv6 ֭ۡޟᔖҢ࣏ᇄၥԊࡄȂ ΙኺџоׇᐌޟᆓȂԊӒؠԤᒸᅓȄ 12 ೣਿ ဴ PA-500 ᆩၯϭ७ 8 x10/100/1000 PA-2020 PA-2050 12 x10/100/1000+2 x 1000- SFP (PA-2020) 16 x10/100/1000+4 x 1000- SFP (PA-2050) PA-4020 PA-4050 16 x10/100/1000 8 x 1000- SFP PA-4060 PA-5020 4 x 1000-SFP 4 x 10G-XFP 12 x10/100/1000 8 x 1000- SFP PA-5050 PA-5060 12 x 10/100/1000 8 x 1000-SFP 4 x 10G-SFP+ Firewall ਝ (Layer 7) 250 Mbps 500 Mbps 1 Gbps 2 Gbps 10 Gbps 10 Gbps 5 Gbps 10 Gbps 20 Gbps Threat Prevention ਝ (AV, IPS, Spyware) 100 Mbps 200 Mbps 500 Mbps 2 Gbps 5 Gbps 5 Gbps 2 Gbps 5 Gbps 10 Gbps VPN ਝ 50 Mbps 200 Mbps 300 Mbps 1 Gbps 2 Gbps 2 Gbps 2 Gbps 4 Gbps 4 Gbps 250 1,000 2,000 2,000 4,000 4,000 2,000 4,000 8,000 New Sessions / Second 7,500 15,000 15,000 60,000 60,000 60,000 120,000 120,000 120,000 MAX Concurrent Session (Layer 7) 64,000 125,000 250000 500,000 2,000,000 2,000,000 1,000,000 2,000,000 4,000,000 Security Policies 1,000 2,500 5,000 10,000 20,000 20,000 10,000 20,000 40,000 Security Zones 20 40 40 80 500 500 80 500 900 Virtual Routers 3 10 10 20 125 125 20 125 225 Virtual Systems (Base/Max) N/A 1/6 1/6 10 / 20 25 / 125 25 / 125 10 / 20 25 / 125 25 /225 High Availability Y Y Y Y Y Y Y Y Y VPN Tunnels 13 ॏᗊၥଉ ࠢဴ ࠢఄक़ PAN-PA-500 Palo Alto Networks PA-500 PAN-PA-2020 Palo Alto Networks PA-2020 PAN-PA-2050 Palo Alto Networks PA-2050 PAN-PA-4020 Palo Alto Networks PA-4020 PAN-PA-4050 Palo Alto Networks PA-4050 PAN-PA-4060 Palo Alto Networks PA-4060 PAN-PA-5020 Palo Alto Networks PA-5020 PAN-PA-5050 Palo Alto Networks PA-5050 PAN-PA-5060 Palo Alto Networks PA-5060 Threat Prevention ٺҢ௲᠌ ( ֤ Anti-VirusȃIPSȃAnti-Spyware) PAN-PA-500-TP Threat prevention subscription year 1, PA-500 PAN-PA-2020-TP Threat prevention subscription year 1, PA-2020 PAN-PA-2050-TP Threat prevention subscription year 1, PA-2050 PAN-PA-4020-TP Threat prevention subscription year 1, PA-4020 PAN-PA-4050-TP Threat prevention subscription year 1, PA-4050 PAN-PA-4060-TP Threat prevention subscription year 1, PA-4060 PAN-PA-5020-TP Threat prevention subscription year 1, PA-5020 PAN-PA-5050-TP Threat prevention subscription year 1, PA-5050 PAN-PA-5060-TP Threat prevention subscription year 1, PA-5060 URL filtering ٺҢ௲᠌ PAN-PA-500-URL2 URL filtering subscription year 1, PA-500 PAN-PA-2020-URL2 URL filtering subscription year 1, PA-2020 PAN-PA-2050-URL2 URL filtering subscription year 1, PA-2050 PAN-PA-4020-URL2 URL filtering subscription year 1, PA-4020 PAN-PA-4050-URL2 URL filtering subscription year 1, PA-4050 PAN-PA-4060-URL2 URL filtering subscription year 1, PA-4060 PAN-PA-5020-URL2 URL filtering subscription year 1, PA-5020 PAN-PA-5050-URL2 URL filtering subscription year 1, PA-5050 PAN-PA-5060-URL2 URL filtering subscription year 1, PA-5060 Panorama ϛѵᆓ౩فಛ PAN-PRA-25 Panorama central management software, 25 devices PAN-PRA-100 Panorama central management software, 100 devices PAN-PRA-UPG-100 Panorama upgrade, 25 to 100 devices ശுௌ߬ᒦޟ Ѯᢊф౩୦ င୦ ⟬ၥଉӋԤ३ϴѧ eTruServe Co., Ltd. ġġ ݈டጣȈıijġĴĴĺĴĮĹķķĴ ŸŸŸįŦŕųŶŔŦųŷŦįŤŰŮįŵŸ 14
© Copyright 2026 Paperzz