Chinese  
 
www.victory-idea.com About us Products Contact us Partnership Certificates  
 

    Location>Mainpage> ViGap300
    
ViGap300
     

Summary

Following the correct introduction by government, the information industry in China has a rapid development in these ten years. E-Government application and government daily work has a closer combination. With the popularization of the informational application, the important of information security is aware by more and more people. Being the same as global information security, Chinese information security is facing a stronger challenge. The vicious actions like computer virus, network attack, information stealing become threatens to the national information security and the normal financial, social life.

One important target of the E-Government and E-Business is to break ¡°information isolated island¡±, realize the information sharing that crosses departments and areas, build an efficient and apparent public service system. Facing more and more serious information security threat, how to realize a controllable information sharing and exchange becomes a kernel problem in solving the E-Government and E-Business application security. Series problems like E-bank, on-line fax declaration, government affair examination and authorization, data collection, remote security visiting are troubled by the security problem mentioned above.

Victory Idea information security ViGap security separation and information exchange system adopts international exclusive GAP hardware separate reflection technology, realizes a controlled information exchange in the network separation circumstance. Aiming at the weak security protection on the application level of the traditional security separation and information exchange system, ViGap adopts the application level protection system which bases on network separation security basic platform. It provides an integrated security separation and information exchange solution for the information exchange between typical operation disposal system and public network of many enterprises like government, army, financial enterprise, telecom, research studio and enterprises. ViGap can be widely used in every level department which develops informational construction and pays attention to secret data security.

Victory Idea information security ViGap security separation and information exchange system adopts the world leading high speed hardware electric separation switch technology basing on ASIC chip, realizes the physical separation between protected network and untrusted network (public network like Internet and special network). It also realizes a data exchange on application level through the data ferry system. ASIC chip is not programmable and has a totally private communication method, which removes the potential threat from the traditional attack. All exchanged data are strictly checked by ViGap, the private network and public network which are protected by ViGap don't have direct physical network connection at any time, so the private network is protected from being attacked by any known or unknown external network attack.

Product Characteristics

•  ViGap300 is a kind of security isolation system especially for huge network. It provides real-time isolation protection to private network or server of key departments like Government, Army, Bank, Telecom, research organization and enterprise. And it can realize controllable real-time (proper) information exchange between private network or server and public.

•  It adopts an exclusive ¡°2+1¡± security structure. Through a special isolation switch system which bases on ASIC chip technology, it realizes a physical isolation between key networks, service system and public, which is a complete isolation between link layer and network layer.

•  It adopts a complete new hardware isolation structure. This new structure bases on the ASIC chips with high performance and multi-pipeline design, has a capability of full speed isolated exchange, can satisfy the large amount users and little delay requirement of huge network. The kernel GAP switch isolation chip has a FPGA hardware foundation including TRUE LVDS function. This chip contains 5,000,000 circuits and multiline Giga bit channel, can support as many as 1060 hardware I/Os channels, which enable the switch have the abilities of high-speed data exchange and concurrent processing.

•  Adopt Load Balancing technology and QoS control technology to avoid one-spot defect and realize the high availability and dependability of the network service.

•  Adopt none-protocol ¡°GAP Reflective¡±, which realizes the separation and combination according to the communication protocol of the public network.

•  Widely support every kind of currency protocol (HTTP, FTP, SMTP, DNS, SQL, etc.), including special application agent or customer protocol like video meeting, stream media and VPN, without any re-development or additional module purchase.

•  Especially aiming at widely used services like WEB, EMAIL and FTP, ViGap300 realizes wide security protection to application layer, which can prevent every kind of security risk such as WEB vulnerability, Unicode vulnerability, Inject attack, Cookie Virus, hostile JavaScript, ActiveX control, even CGI script.

•  Intelligent identity and filtration of attack. ViGap300 adopts advanced application layer protocol analysis technology to intelligently identify and filtrate mass attacks. ViGap300 provides the most abundant protocol analysis modules in the market. It can prevent every kind of application system security risks, including: HTTP, FTP, SMTP, POP3, IMAP and DNS.

•  Production Specification

•  Hardware Specification

•  Size: standard 2U shelf

•  Weight: 15KG

•  Voltage: 100 £­ 240V £¬ 47 £­ 63HZ

•  Power: 300W

•  Operation environment: £­ 5¡æ £­ 50¡æ

•  Environment humidity: 5 £¥£­ 95 £¥

•  System Interface

•  Network interface: 4 10/100Mbps RJ45 Ethernet interface, 2 1000M optical fiber module interface ( ViGap300D)

•  System control: DB9 Pin RS232 COM

•  System display: embedded LCD, 2 network connection LED indicator lights

•  Security and Electromagnetism Standard:

•  CB to IEC 60950:1999, 3rd edition

•  TUV GS mark toEN60950: 2000

•  TUV C-US to UL60950: 2000

•  CAN/CSA-C22.2 £» No 60950: 2000

•  FCC Class B, VCCI Class B, CE class B

Typical Application:

As one of the first professional information security technology companies of developing and producing security separation and information exchange system, Victory Idea produces security separation and information exchange productions that have been widely used in hundreds of different area enterprises and are received well. Victory Idea net separate production won several tenders in some important biddings of government ministries and commissions and f

App1: ¡°reception in public network, disposal in private network¡± mode used in E-Government.

For example: In typical E-Government application, Web service sites are usually built in the internet. Clients can conveniently search information, download tables, declare material and transact relative procedure through the internet. The information is disposed in service disposal system, which is safely disposed in the government private network. Security separation and information exchange must be realized between these two networks.

Detail is shown in the following picture:

App2: The application of E-Government and financial ¡°data concentration¡±.

For example: Some certain management/finance department has province, city, county three-level network, which is responsible for each operation management in the precinct. To build high performance decision-making system, these departments must gather the real-time data from county to city, city to province. To ensure the effective visiting control and information exchange between province, city and county network, ¡°net security separation and database synchronization¡± mode (also called files exchange and data exchange mode) is adopted.

As it is showed in the following picture:

App3: ¡°Private network user safely get through the Internet¡± in E-Government/enterprises application mode.

For example: A private network user in some certain department need to visit website. It can be used to protect the security separation between private network user and Internet.

As it is showed in the following picture:

App4: External service system application like WEB and EMAIL protection in E-Government, finance and enterprise.

For example: One important informational application is supplying information service platform through Internet. The website is a representation of external visualize and operation area of the government/finance enterprise. Because being published, it is always attacked by hacker like script attacking, DOS attacking. WEB intelligent protection driver, which is adopted in ViGap security separation and information exchange system, can be used to realize the totally protection of the website OS and application system in the government.

As it is showed in the following picture:


¡¡