Home Page | Skip to Navigation | Skip to Content | Skip to Search | Skip to Footer

OPSEC Partners

SmartFilter for Check Point VPN-1/FireWall-1

Product Version Certified: 3.2.1
Certified for use with:
Check Point Next Generation

 

Product Description: SmartFilter for VPN-1/FireWall-1 enables organizations to easily manage access to Web sites deemed potentially inappropriate. Using SmartFilter helps increase employee productivity, improve network bandwidth, and decrease legal liability risk.

 
Key Features and Benefits
OPSEC Integration
 
  Download SmartFilter for Windows
  Download SmartFilter for Solaris
  Download the SmartFilter Documentation
 
Company Description: Secure Computing (Nasdaq: SCUR) has been protecting the most important networks in the world for over 20 years. With broad expertise in security technology, we develop network security products that help our customers create a trusted environment both inside and outside of their organizations. Our global customers and partners include the majority of the Dow Jones Global 50 Titans and the most prominent organizations in banking, financial services, healthcare, telecommunications, manufacturing, public utilities, and federal and local governments. The company is headquartered in San Jose, Calif., and has sales offices worldwide.   Secure Computing
   
Key Features and Benefits

Key Benefits of Integration with OPSEC: Tightly integrated with VPN-1/FireWall-1, SmartFilter helps organizations implement and enforce their Internet access policies. The ability to manage Internet access policies allows companies to:

  • Increase employee productivity
  • Optimize network bandwidth utilization
  • Reduce exposure to legal liability

The SmartFilter / VPN-1/FireWall-1 solution provides numerous advantages and capabilities:

  • Comprehensive, up-to-date Control List: URL filtering is based on a Control List that contains millions of URL entries categorized into 30 content categories, such as hate speech, drugs, sex, gambling, sports, and so on.
  • Multilingual support: The SmartFilter Control List currently covers URLs in more than 60 languages. And is continuously updated by our team of multi-lingual Control List Technicians.
  • Daily Control List download: Ensures the SmartFilter Control List is always kept current through automatic HTTP or FTP downloads.
  • Flexible filtering: Organizations can filter by time of day and day of week, ensuring work-related traffic is prioritized during work hours.
  • Support for groups: Companies can create unique policies for different groups of users based on IP address ranges and subnets.
  • Filters domain name and IP based URL addresses: Allows for both transparent and non-transparent filtering.
  • File extension filtering: The ability to filter by file extensions, such as MP3, GIF, and JPEG, to help optimize bandwidth and protect against the download of malicious content.
  • Granular filtering: Pattern matching is a powerful, real-time filtering option used to create unique policy enforcement rules. These rules incorporate almost any element or multiple elements within the user request data, including the port, domain, path, file name, file extension and CGI parameters.
    • List customization: Administrators can locally define their own lists of "exempt" and "restricted" sites, allowing organizations to customize and fine tune the Control List.
    • Browser redirection: Administrators can redirect user attempts to access Web sites identified as inappropriate to a different location for example to display the organization's policy guidelines.
  • Automated installation: Use of Check Point CPRA facilities simplifies the installation process.
  • Central Administration: Supports the ability to manage any number of SmartFilter installations within an enterprise from one centralized administration console.
  • Application monitoring with Check Point AMON API: With this interface, SmartFilter can export application status to the Check Point System Status Viewer. This provides a unified, up-to-date status of the security infrastructure to the security administrator.
  • Comprehensive reporting: Bundled with SmartFilter, Cyfin® Reporter lets organizations create a wide variety of HTML-based reports showing detailed, outbound Web usage activities, trends and savings from lowered bandwidth consumption.
OPSEC Integration
SmartFilter runs on Solaris and Windows 2000 platforms and can be hosted on the same server as VPN-1/FireWall-1 or on a server behind the firewall. It communicates with VPN-1/FireWall-1 using Check Point's URL filtering protocol (UFP). SmartFilter assists VPN-1/FireWall-1 by identifying URLs that belong to a category the organization has identified as inappropriate. SmartFilter does this by querying its internal Control List and returning to VPN-1/FireWall-1 a mask listing categories that apply to each URL. VPN-1/FireWall-1 can then take the appropriate action of blocking the access or simply monitoring it.