SonicWALL SRA 4200 01-SSC-5980 Manuale Utente

Codici prodotto
01-SSC-5980
Pagina di 4
Technician
Customer
Unified Threat
Management
Scanning
Other 
Desktops
Other 
Servers
and 
Applications
Corporate LAN
Citrix 
XenApp and 
Microsoft 
Terminal Servers
1
3
3
2
SonicWALL NSA or 
TZ Security Appliances
Files and 
Applications
Intranet
Decrypted 
Traffic
User
Desktop
Remote User
SSL Encrypted 
Traffic
SonicWALL
SRA Appliance
SonicWALL SRA Appliance
Personalized
Web Portal
Internet
Internet
RSA*, 
Vasco*, 
Active 
Directory, 
RADIUS, 
LDAP 
or local 
database
Step 2:
When browser is 
opened, the user is 
redirected to the 
appliance and 
prompted for 
authentication.
LAN
Encrypted Traffic
Firewall
WLAN
DMZ/SSLVPN
Wireless User
AD Server
Workstations
SonicPoint N
Wireless Authentication
The SonicWALL appliance 
can be configured to 
authenticate WLAN users, 
granting these users 
access to internal 
resources while keeping 
the session secure. The 
benefit to this method 
of acccess is “clientless” 
access from the WLAN.
Step 1:
Wireless user 
obtains DHCP 
lease on the 
WLAN 
network.
Step 3:
Once authenticated, the user can open a 
NetExtender session which will create a 
“tunnel all” route from the client’s system 
to the appliance. The user will be given a 
NetExtender client subnet and can now 
access internal and external resources.
 
SonicWALL 
SRA Appliance
SonicWALL 
SRA Appliance
NetExtender Client 
running SonicWALL Agent
Location 1
Location 5
Location 2
Location 4
Location 3
Local Client
Hub/
Switch
SonicWALL CDP Appliance
Local Area Network
VPN
Router/
Modem
Internet
Internet
4
Technician
Customer
Unified Threat
Management
Scanning
Other 
Desktops
Other 
Servers
and 
Applications
Corporate LAN
Citrix 
XenApp and 
Microsoft 
Terminal Servers
1
3
3
2
SonicWALL NSA or 
TZ Security Appliances
Files and 
Applications
Intranet
Decrypted 
Traffic
User
Desktop
Remote User
SSL Encrypted 
Traffic
SonicWALL
SRA Appliance
SonicWALL SRA Appliance
Personalized
Web Portal
Internet
Internet
RSA*, 
Vasco*, 
Active 
Directory, 
RADIUS, 
LDAP 
or local 
database
Step 2:
When browser is 
opened, the user is 
redirected to the 
appliance and 
prompted for 
authentication.
LAN
Encrypted Traffic
Firewall
WLAN
DMZ/SSLVPN
Wireless User
AD Server
Workstations
SonicPoint N
Wireless Authentication
The SonicWALL appliance 
can be configured to 
authenticate WLAN users, 
granting these users 
access to internal 
resources while keeping 
the session secure. The 
benefit to this method 
of acccess is “clientless” 
access from the WLAN.
Step 1:
Wireless user 
obtains DHCP 
lease on the 
WLAN 
network.
Step 3:
Once authenticated, the user can open a 
NetExtender session which will create a 
“tunnel all” route from the client’s system 
to the appliance. The user will be given a 
NetExtender client subnet and can now 
access internal and external resources.
 
SonicWALL 
SRA Appliance
SonicWALL 
SRA Appliance
NetExtender Client 
running SonicWALL Agent
Location 1
Location 5
Location 2
Location 4
Location 3
Local Client
Hub/
Switch
SonicWALL CDP Appliance
Local Area Network
VPN
Router/
Modem
Internet
Internet
4
Technician
Customer
Unified Threat
Management
Scanning
Other 
Desktops
Other 
Servers
and 
Applications
Corporate LAN
Citrix 
XenApp and 
Microsoft 
Terminal Servers
1
3
3
2
SonicWALL NSA or 
TZ Security Appliances
Files and 
Applications
Intranet
Decrypted 
Traffic
User
Desktop
Remote User
SSL Encrypted 
Traffic
SonicWALL
SRA Appliance
SonicWALL SRA Appliance
Personalized
Web Portal
Internet
Internet
RSA*, 
Vasco*, 
Active 
Directory, 
RADIUS, 
LDAP 
or local 
database
Step 2:
When browser is 
opened, the user is 
redirected to the 
appliance and 
prompted for 
authentication.
LAN
Encrypted Traffic
Firewall
WLAN
DMZ/SSLVPN
Wireless User
AD Server
Workstations
SonicPoint N
Wireless Authentication
The SonicWALL appliance 
can be configured to 
authenticate WLAN users, 
granting these users 
access to internal 
resources while keeping 
the session secure. The 
benefit to this method 
of acccess is “clientless” 
access from the WLAN.
Step 1:
Wireless user 
obtains DHCP 
lease on the 
WLAN 
network.
Step 3:
Once authenticated, the user can open a 
NetExtender session which will create a 
“tunnel all” route from the client’s system 
to the appliance. The user will be given a 
NetExtender client subnet and can now 
access internal and external resources.
 
SonicWALL 
SRA Appliance
SonicWALL 
SRA Appliance
NetExtender Client 
running SonicWALL Agent
Location 1
Location 5
Location 2
Location 4
Location 3
Local Client
Hub/
Switch
SonicWALL CDP Appliance
Local Area Network
VPN
Router/
Modem
Internet
Internet
4
Technician
Customer
Unified Threat
Management
Scanning
Other 
Desktops
Other 
Servers
and 
Applications
Corporate LAN
Citrix 
XenApp and 
Microsoft 
Terminal Servers
1
3
3
2
SonicWALL NSA or 
TZ Security Appliances
Files and 
Applications
Intranet
Decrypted 
Traffic
User
Desktop
Remote User
SSL Encrypted 
Traffic
SonicWALL
SRA Appliance
SonicWALL SRA Appliance
Personalized
Web Portal
Internet
Internet
RSA*, 
Vasco*, 
Active 
Directory, 
RADIUS, 
LDAP 
or local 
database
Step 2:
When browser is 
opened, the user is 
redirected to the 
appliance and 
prompted for 
authentication.
LAN
Encrypted Traffic
Firewall
WLAN
DMZ/SSLVPN
Wireless User
AD Server
Workstations
SonicPoint N
Wireless Authentication
The SonicWALL appliance 
can be configured to 
authenticate WLAN users, 
granting these users 
access to internal 
resources while keeping 
the session secure. The 
benefit to this method 
of acccess is “clientless” 
access from the WLAN.
Step 1:
Wireless user 
obtains DHCP 
lease on the 
WLAN 
network.
Step 3:
Once authenticated, the user can open a 
NetExtender session which will create a 
“tunnel all” route from the client’s system 
to the appliance. The user will be given a 
NetExtender client subnet and can now 
access internal and external resources.
 
SonicWALL 
SRA Appliance
SonicWALL 
SRA Appliance
NetExtender Client 
running SonicWALL Agent
Location 1
Location 5
Location 2
Location 4
Location 3
Local Client
Hub/
Switch
SonicWALL CDP Appliance
Local Area Network
VPN
Router/
Modem
Internet
Internet
4
SonicWALL Secure Remote Access Solutions for SMB
Remote Access Solution
With an increasingly mobile workforce and greater threats of 
unexpected disruptions, remote access has become a business 
necessity. A SonicWALL SRA appliances for the SMB product deployed 
in one-arm mode alongside a SonicWALL UTM product or virtually 
any other third party firewall enables remote users to securely access 
corporate network resources from anywhere outside the LAN.
Remote Support Solution
With more employees working remotely and customers dispersed globally, 
it is becoming increasingly important for organizations to provide remote 
support for off-site business devices such as laptops or home PCs. Ineffective 
support using expensive and cumbersome tools can undermine IT service 
level agreements and inhibit remote worker productivity. Using a SonicWALL 
Virtual Assist on an SSL-VPN 4000 or SRA 4200 appliance, a Technician can 
instantly access a remote device over the Web, transfer files, and chat with 
the end user, enabling rapid diagnosis and problem resolution, without the 
need for pre-installed “fat” client.
Disaster Recovery Solution
Disaster recovery can be triggered by a catastrophic event like a hurricane 
or epidemic, or by something as simple as a regional power outage, severe 
weather, flu outbreaks, or flooding of an office building because of a burst 
water pipe. Business disruption can mean lost opportunities, revenues, or 
reputation. SonicWALL SSL VPN and CDP products with a subscription to 
SonicWALL CDP Offsite Data Backup Service enable employees that are 
not able to physically get to the corporate office, access your corporate 
resources remotely via a secure SSL VPN connection. Corporate resources 
are always accessible as they are backed up both locally and offsite.
Clean Wireless Solution
More corporations, universities, hospitals and governmental 
organizations are implementing wireless networks and using SSL 
VPN as a secure and centralized access control solution. SonicWALL 
SSL VPNs integrate seamlessly with SonicWALL wireless access 
solutions. A SonicWALL SSL VPN deployed alongside a SonicWALL 
UTM firewall and several SonicPoints ensure that users get access 
from anywhere on campus and the wireless connections are 
encrypted via the SSL protocol. As an added bonus, remote workers 
away from campus can connect into the corporate network via an 
SSL VPN connection. IT maintains centralized, granular access control 
over who can access what resources from using a single gateway.
*Available only on the SSL-VPN 4000 and SRA 4200
Incoming HTTPS traffic is seamlessly forwarded by the SonicWALL NSA or TZ Series network security 
appliance to the SonicWALL SSL VPN appliance, which decrypts and authenticates network traffic.
Users are authenticated using the onboard database or through third-party authentication methods 
such as RSA*, Vasco, RADIUS, LDAP, Microsoft Active Directory or Windows NT Domain.
A personalized Web portal provides access to only those resources that the user is authorized to view based  
on company policies.
Traffic is passed back to the NSA or TZ Series network security appliance where it is fully inspected for viruses, worms, Trojans, spyware and other sophisticated threats by the SonicWALL  
Unified Threat Management solution.
1
2
3
4
*
*Available only on the SRA 4200 and SSL-VPN 4000