Sangfor Secure SD-WAN
Sangfor Secure SD-WAN
As businesses grow, managing WAN across multiple sites becomes increasingly complex and costly with traditional solutions like MPLS. SD-WAN addresses these challenges by decoupling control functions from physical networks, simplifying management and reducing costs. Sangfor Secure SD-WAN builds on this foundation by providing safe, efficient, and reliable connectivity between locations. The Athena NGFW device acts as the edge gatekeeper, allowing only authorized traffic and protecting data confidentiality, integrity, and availability.
Challenges at Network Edges
Resilience
- Link failover leads to business interruption;
- Poor link quality affects core business operations;
- Limited bandwidth in WAN link for business;
- High cost when expanding MPLS or using multiple links
Security
- Gaming and streaming media while at work;
- Malicious files spread internally via the network or USB drives;
- Botnet detection and prevention;
- Zero-day exploits originating from branches;
- Ransomware/APT Attack
Management
- Onsite deployment and troubleshooting by engineers;
- Complex configuration;
- No awareness of branch business activities
What Solution Do You Need
Resilience
- Automatic link failover;
- Dynamic path selection;
- Internet link with IPSec VPN to provide a better experience at a lower cost
Security
- Application/URL filtering & Bandwidth Management to block unwanted access;
- Stop known & unknown threats with Sangfor Engine Zero, Neural-X, and Athena EPP;
- IPS & Web Application Firewall to protect clients and core systems
Management
- Lower link and management costs;
- Zero-touch deployment;
- Unified policy management;
- Centralized traffic visibility;
- Centralized security visibility;
- Simplified security operation
Sangfor Secure SD-WAN High-Level Architecture
Secure SD-WAN Key Values
-
The Secure SD-WAN solution not only ensures safe connections but also enhances network security with features like IPS, Application Control, URL Filtering, APT Prevention, and Malware Inspection. The SOC Lite module continuously monitors for potential attacks and vulnerabilities, ensuring comprehensive protection against various threats.
-
Athena NGFW’s SOFAST engine sends redundant packets based on bandwidth availability and application needs to minimize packet loss and uses the FEC algorithm to rebuild lost packets. This reduces packet loss at the application level, ensuring an optimal access experience.
-
Integrating Athena NGFW with Athena EPP allows for the correlation of network and endpoint data, thereby improving the detection of security threats and attacks. Verified incidents can easily be mitigated with one click on the Athena NGFW console.
-
Centralized policy and report management simplifies the process of setting and overseeing network rules and generates easy-to-understand reports about network performance and security incidents, ensuring consistent and effective security measures across the network.
-
Seamlessly integrates with hybrid WAN architectures, allowing businesses to leverage multiple network connections, including MPLS, broadband, and LTE, to create a resilient and cost-effective network infrastructure.
-
The solution offers a cost-effective alternative to traditional WAN solutions by optimizing bandwidth usage and reducing reliance on expensive MPLS links. By consolidating network and security functions into a single platform, organizations can achieve significant cost savings while improving network performance and security.