HomeProducts & SolutionsTechnical SupportCareersAbout Huawei
Network Security
          
Based on the Huawei carrier-class hardware platform and software platform Versatile Routing Platform (VRP), Eudemon series products implement excellent performance and functions in anti-attack, Virtual Private Network (VPN), Network Address Translation (NAT), and P2P inspection. The Eudemon series products are ideal security defense devices in the fields of telecommunication, government, finance, education, energy, and army. The Eudemon series can also provide consistent protection in the scenario where applications of multimedia such as VoIP are required. The Huawei Eudemon series can cooperate with a variety of network security devices, such as Intrusion Detection System (IDS), terminal security management software, and the Service Inspection Gateway (SIG), and can provide complete and effective security solutions.
To meet the requirements of large traffic security services, Huawei develops the Eudemon1000E product series that are new security gateways with multiple functions. The Eudemon1000E product series can be widely applied to networks of carriers, governments, and financial, energetic, and educational organizations. The Eudemon1000E product series provide advanced solutions with high performance, high reliability, high scalability, and high maintainability for users. The new multi-core hardware architecture design, mature and reliable VRP software platform, and hardware and software reliability supports protect the user network against service interruption. The open system architecture supports the extension of various physical interfaces and software functions. This ensures initial investment of users and increases product values for users continuously. The Eudemon1000E product series provide various management and maintenance methods for users to easily manage devices and quickly locate faults. This also makes the maintenance work easier for users. In addition, the Eudemon1000E product series integrate the security and protection functions of the GPRS Tunneling Protocol (GTP) into products in the form of modules. Therefore, the Eudemon1000E product series can solve the security risk in the transmission using GTP and provide effective GTP security and protection solutions for carriers.
With the emergence of the triple play, Web 2.0, P2P video, and High Definition broadband, requirements for network bandwidth are growing rapidly. Gigabit and 10-Gigabit bandwidths are no longer new concepts. Many switches and routers have 10-Gigabit high-capacity interfaces. Large-scale enterprises, such as telecom carriers, are facing services integration and network expansions. Traditional firewalls inevitably becomes the bottleneck, because they are not applicable to high-speed networks.
With the rapid development and popularization of the Internet, informatization of enterprise intranets is increasingly improved and intranets have to meet the ever-growing demands for remote access. How to realize the security access to the Intranet IT information system becomes a critical problem for enterprise IT departments to further improve the IT efficiency. For example, the enterprise branches, personnel on business trip, Small Office Home Office (SOHO) personnel, partners, and customers need to obtain important information in time.
It has become a trend for communications networks to be integrated with IP networks. The controllability of communications networks, however, goes into deep conflict with the open nature of IP networks. As a result, traditional communications networks have to bear the brunt of IP networks.
The Service Inspection Gateway (SIG) is mainly used to identify, analyze, and control application layer services of the network. The network administrator can analyze and control application layer data of the network according to service requirements.
Faced with increasingly serious network threats and dramatically increased network traffic, operators' backbone networks, large-scale enterprises' egresses, and Internet Data Centers (IDCs) propose higher requirements of security measures on network boundaries. Traditional firewalls cannot provide qualified security measures required by high-end customers.