3com X506 Unified Security Platform & 3CX500 Digital Vaccine Subscription Gold 3CRX506-96+3CX500-DVGOLD Data Sheet

Product codes
3CRX506-96+3CX500-DVGOLD
Page of 8
PROACTIVE NETWORK SECURITY
The 3Com X5 and X506 devices leverage the best-in-class TippingPoint
IPS Threat Suppression Engine currently used to protect thousands of
enterprise-class networks throughout the world. 
The IPS continually cleanses the network at layers 2-7, checking both
Internet and intranet traffic, eradicating threats and helping to prevent
bandwidth hijacking and malicious traffic—spyware, worms, viruses,
trojans, phishing attempts, VoIP threats and other harmful activities.
Statistical, protocol and application anomaly protection safeguards the
network against traffic surges, buffer overflows and unknown attacks
and vulnerabilities (zero-day threats). 
To provide protection against new and evolving security threats, updated
attack filters are incorporated into Digital Vaccine
®
Attack Filter Update
Services, provided by TippingPoint, which are automatically distributed
to all subscribing 3Com X5 and X506 devices, providing pre-emptive 
protection against new and zero-day vulnerabilities. The Digital Vaccine
service offers this protection and prevention on a weekly (or more 
frequent) basis.
Recommended settings for IPS filters enable preconfigured policies 
that can automatically and accurately block attacks without any tuning,
significantly reducing the time and resources required to protect and
maintain a healthy network. This ensures that no “good” traffic is
blocked and no “bad”’ traffic is permitted, with no security expertise
or fine-tuning of settings required.
ADVANCED VPN CONNECTIONS
While most security implementations do not address security within a
VPN connection, 3Com Unified Security platforms take a uniquely com-
prehensive approach to VPN-based security by providing the ability to
look inside VPN IPSec tunnels for threats. This thorough inspection pre-
vents propagation of exploits and other malware between sites and can
also be used to provide protection from security risks that occur when
laptop users terminate VPN connections while traveling. 
Another unique feature is prioritization of bi-directional traffic inside the
VPN tunnel, enabling high-quality secure VoIP services and optimizing
other site-to-site applications. Threats that once gained access via a VPN
tunnel are now eliminated by this unique approach, offering complete
security protection, ensuring that remote VPN clients or branch offices
cannot be used to propagate threats into the LAN. 
APPLICATION PRIORITIZATION AND OPTIMIZATION
Using a single X5 or X506 device for application prioritization and 
optimization of network traffic, instead of separately managing multiple
switches and routers, reduces complexity and cost while providing
greater flexibility.
To control the amount of bandwidth allotted to applications and deliver
the appropriate quality of service (QoS), 3Com X5 and X506 devices 
can throttle down non-critical applications such as FTP, and throttle 
up business-critical and latency-sensitive ones such as VoIP. Bandwidth
can be allocated in both inbound and outbound directions for maxi-
mum control.
This policy-based traffic-shaping capability helps prevent network
congestion, giving administrators a powerful tool for making sure that
network services meet user expectations and adhere to the policies set
by network managers.
3COM
®
X5 AND X506 UNIFIED SECURITY PLATFORMS
2
KEY BENEFITS