GajShield Knowledge Base

All the documents you require to help you configure and manage GajShield firewalls.

How GajShield Unified Performance and Threat Management Appliances benifit Stock Broking Customers

Security needs of Stock Broking Customers are as follows :
  • They will have multiple ISP’s and hence they will want to do ISP fail-over and Load Balancing and optimally utilise them.
  • They will want non critical usage such as browsing to be sent through less costlier ISP and critical services through the better ISP
  • They would have multiple branch offices connected to the H.O through MPLS VPN link. This link would be utilised for ODIN application, messaging, browsing etc. This would create a problem as lot of the bandwidth would be used by messaging and browsing and hence providing very less bandwidth to ODIN application which results in business loss.
  • Provide more bandwidth for Broking application like ODIN
  • They would like to do multicast forwarding with and without VPN.
  • Have complete protection from viruses, spywares, adwares, intrusions.
  • Stop the internet misuse by employees by visiting non-business related sites, downloading non-business related attachments.
  • Reduce bandwidth clogging and utilization by disallowing services like P2P, video files, kaaza etc.
  • Need complete visibility of which user is utilizing bandwidth, whether it is for business purpose and which services are consuming the maximum bandwidth.
  • Need proactive information illustrating how isolated events are impacting performance of their network by correlating isolated events.
  • Need network optimization allowing them to control bandwidth for mission-critical data based on application and user.
 What value proposition can we offer to them
  • They can provide Policy based ISP failover and Load Balancing for critical services in their network.
  • Set up a distributed architechture and move messaging and browsing from the MPLS Link to a broad band connect improving performance of ODIN application.
  • Set up site-to-site VPN links with branch offices and sub-brokers for whom they do cannot afford to give MPLS VPN.
  • Users would be blocked from accessing objectionable web-sites.
  • Stop the mis-utilisation of bandwidth for non-business activities
  • Stop the propagations of P2P traffic and regulate Instant Messaging traffic
  • Know how much bandwidth is being used, which user is using it and is it for business  purpose.
  • Lower TCO
 Competition : will be from Sonicwall, Fortigate, Watchguard, Cisco ASA.
 
Comparison Table
GajShield
 
Sonicwall
 
Fortigate
Watchguard
Cisco ASA
Policy based ISP Failover
Yes
No
No
No
No
Policy based Load Balancing
Yes
No
No
No
No
Network Behavior Analysis
Yes
No
No
No
No
Performance Management
Yes
No
No
No
No
Correlated Analysis
Yes
No
No
No
No
Complete Virus scanning
Yes
Wild List only
Wild List only
Yes
Yes $$
URL Filtering
Yes
$$
$$
$$
$$
Management Software
Inclusive
$$
$$
Inclusive
Inclusive
Multicast forwarding
Yes
Not all models
Yes
Not all models
Yes
WAN interfaces
Unlimited
2
2
4
2
DMZ
Custom configuration
Custom configuration with enhanced OS
Custom configuration
Custom configuration with enhanced OS
Custom configuration
Antispam
No
Yes
Yes
Yes
Yes