iApplianceWeb.com

EE Times Network


News Flash Appliance Insights Appliance Directory Standards in IA Webcasts


Innominate mGuard Miniature VPN/Firewall/Security Appliance

by Bernard Cole

In a package molded to fit easily in your hand and no larger than the computer mouse used on your desktop computer, Berlin-based Innominate Security Technologies AG's mGuard has packed with about as much Virtual Private Network, firewall, and security capabilities a small business or SOHO user would need.

mGuard

Or, for that matter, as much as anyone using a portable computer would need, since it installs easily between the network connection and the computer and is small enough to carry in your pocket. Nor does it require a separate power supply, operating off the 5 volts it receives through connection to an Ethernet interface or USB serial interface.

Via a Web browsing  interface stored in the device's nonvolatile flash memory, a configuration menu pops up automatically on  the host PC or laptopeb browser on the system to which  the mGuard is attached externally. Using it, non-technical users can set up the mGuard within minutes. The device can also be moved from machine to machine without software reinstallation (as required in a software-based solution) or reconfiguration (as required in a router or other traditional hardware-based solution).

For mobile users, the mGuard is small and light enough to plug into a laptop with no discernible difference in weight. In addition, through its use of open source software, including the Linux operating system, it can be plugged into any computer, providing essential security even on a system other than one's own (such as might be available in an airport business center or hotel).

Key to its high power and small footprint is Innominate's use of three Intel networking components: the IXP425 network processor, the 28F128J3 Strata Flash memory and the low power LXT973 10/100Mbps Ethernet PHY transceiver. This combination allows Innominate to offer a minimum of 10 Mbps throughput, sufficient for most small business needs.It is also more than enough  processing and memory overhead to support a comprehensive array of security security features. These are contained in hardware form on the 266 MHz IXP425 and in the device's 32 Mbytes of Synchronous DRAM and 8 Mbytes of nonvolatile flash memory. It supports two Ethernet interfaces and a standard RS232 serial connection to allow implementation into almost any network environment without requiring additional components.

All security functions in both mGuard products - including authentication, multipoint VPN, IPSec, Triple DES encryption (168-bit), RSA (up to 4096- key), MD5, L2TP, Internet Key Exchange, Perfect Forward Secrecy, and anti-spoofing - are performed automatically and without user interaction. Moreover, in contrast to most software-based security solutions, the mGuard  provides these capabilities without consuming the CPU cycles or memory of the host machine. Hardware and software integrity checks, copy-protected file system and other measures prevent manipulation of the device.

For users and system integrators who want a more traditional board level solution, the company is offering a similarly sized board the mGuard Core which can be inserted into any system with an industry standard plug and play hardware/software interface. It features a faster 533 MHz IXP435 NPU and more memory, up to 64Mbytes of SDRAM and up to 16Mbytes of flash memory.

Pricing and Availability

Innominate is expected to start shipping the mGuard and mGuard Core by the end of April. While the company will not be offering this in retail outlets initially and will first target large corporations and OEM reseller partners, it can be purchased directly from Innomiate on line. mGuard pricing will be $429 with two VPN tunnels and five users and $599 with 10 tunnels and 25 users. 

(For access to more than 4,500 other hands-on product reviews on all variety of wired and wireless appliance and consumer devices, go to the iAppliance Web Portal Page. )

Manufacturer Innominate Security Technologies AB
Product Name mGuard/mGuard Core
Dimensions 0.8 x 2.4 x 4 inch (20 x 56 x 95 mm)
Weight 6 oz. (230 g)
LAN (2) Ethernet RJ45 10/100Mbps
Input/Output (1) RS232
USB
Memory 32MB SDRAM (8MB Flash)/32-64MB SDRAM (8-16MB Flash)
Operating System Innominate Hardened Embedded Linux OS
VPN Functionality Authetication by pre-shared secret key or by X.509 v3 Certificate
Multiport VPN
IPsec Triple DEC Encryption (168 bit)
Hardware Encryption Support
Tunnel and transport mode IPSec
RSA (up to 4096 bit key)
MD5 128 bit, SHA-1 160 bit check sum
LPTP support
Main and Quick Internet Key Exchanage Procedure
Perfect Forward Security
Net-to-Net, Net-to-Host, Host-to-Host support
Firewall Functionality Automated Self Configuration
Stealth Firewall
Configuration Firewall Rules
Anti-spoofing
Optional Virus Protection Scanning incoming and outgoing emails in real time
Scanning Attachements
Automated Pattern Update
Hardware Intel 266/533 MHz IXP425
Intel 28F128J3StrataFlash
Intel LXT973 10/100Mbps Ethernet PHY transceiver
Power Supply 5V, 500mA or external 110-230 V or 5V DC@0.5A
Other Features Watchdog and optical indication
Optional Browser Adminstration
Transparent Bridging
Copy protected file system
Hardware/Software Integrity Checks
Optional User Authentication
Plug And Play Configuration

Table » Archive »



Copyright © 2004 Appliance-Lab
Terms and Conditions
Privacy Statement