Home Page | Skip to Navigation | Skip to Content | Skip to Search | Skip to Footer

OPSEC Partners

Foundry Networks

Product Version Certified:
Foundry FastIron 4802 (07.7.01dT51 switch code)
with Integrity 5.0

Foundry FastIron Edge 2402 (01.1.00b1Tc1 switch code)
with Integrity Server 5.1

Foundry IronPoint 200 (01.3.0.21Tw8 AP code)
with Integrity Server 5.1

Product Description:
The FastIron 4802 is the first in a new class of products that delivers industry leading port density, performance and features in a highly-compact 1.5U form factor.

The FastIron Edge Switch (FES) family (including the 2402) establishes the next benchmark in edge connectivity by delivering the most adaptable feature set combined with the highest 10/100Base-TX and Gigabit Ethernet port densities.

Foundry's IronPoint 200 access points are a new breed of enterprise-class wireless access point. Starting out as the next generation AP, it sports a powerful central processor with ample memory, dual radios, and a modular design to make it fully field upgradeable.

 
Key Features and Benefits
OPSEC Integration
Clear Foundry
 

Company Description: Foundry Networks is a leader in high performance end-to-end switching and routing solutions including Internet routers, Layer 3 switches and Layer 4-7 Internet traffic and content management switches

 
Key Features and Benefits
FastIron 4802
FastIron 4802 delivers the highest available switching performance in the industry's smallest 48-port 10/100 footprint, providing the richest feature set available in a fixed configuration switch product.
  • Based on Foundry's 3rd generation JetCore ASIC chipsets
  • 48 10/100 ports and two optional Gigabit Ethernet uplink ports in a 1.5U stackable switch
  • Comprehensive Layer 2/3 feature set including embedded support for Bandwidth Provisioning, rich QoS and IP Billing and Accounting.
  • Superior Availability and Serviceability
  • Wire-Speed Granular Bandwidth Management
  • Easy-To-Use, Simple Network Management

FastIron Edge 2402
The FastIron Edge Switch series establishes a high performance platform on which to build flexible and converged voice, video, and data services that can easily adapt to changes and the introduction of future technologies. Features include:

  • JetScope which uses the built-in capability of the FES ASICs to collect and aggregate details on traffic flows from Layer 2 through Layer 7 and automatically delivers that information to the IronView Network Management station
  • The FES supports Dual-Mode operation -- the ability to identify both 802.1Q tagged and untagged data streams -- and places these into their appropriately assigned VLANs.
  • Increasing Network Reliability with Load-Balanced and Redundant Power
  • Enhancing Network Resilience with Redundant Uplink Options
  • The FES2402, FES4802, FES9604, and FES12G all support wire-speed Layer 2 switching and Basic Layer 3 functionality upgradeable to full multiprotocol Layer 3 routing.

IronPoint 200
IronPoint 200 APs inherit new features and sophistication through software upgrades -- allowing your hardware investment to be protected while wireless standards and features continue to evolve and mature. Other features include:

  • Dual band access point with support for 128 simultaneous users for high-performance access.
  • Support for 802.11a 5GHz 54-Mbps,802.11a Turbo 5GHz 108-Mbps, 802.11b 2.4GHz 11-Mbps,802.11g 2.4 GHz 54-Mbps.
  • Support for 802.1X authentication, Preshared Key authentication, MAC Address authentication, WPA (TKIP & AES-CCM), Dynamic WEP, Static WEP. Support for EAP-TLS, EAP-TTLS, PEAP, EAP-MD5.
  • Advanced Enterprise Features -- Automatic channel selection, five levels of power control, 802.3af Power-over-Ethernet support.
  • Rapid handoff with IAPP IEEE 802.11f for seamless Layer 2 roaming.
  • One VLAN per SSID with separate Management VLAN for managing the AP.
  • Wi-Fi compatibility ensures interoperability with all Wi-Fi compatible laptops, handhelds, PDAs, and other mobile wireless devices.

OPSEC Integration

Network devices that support the 802.1X specification (RFC 3580) can integrate with Check Point Integrity to analyze and act upon an endpoint's current security stature. The Foundry Network switches communicate with Check Point Integrity to verify endpoint compliance with corporate security policy prior to enabling full access to the network. Non-compliant endpoints are automatically placed in a 'quarantine' VLAN where network access is limited to remediation tools. Once the endpoint has been brought into a compliant state, it can be moved to the 'compliant' network segment where it gains appropriate access to network resources. This process ensures insecure or compromised systems are shielded from the production network until they have been properly cleaned and protected.