Cyberoam CR750ia

 

Product Information

Vendor:Cyberoam
Price:From £5,589 for appliance, with 8/5 support (exc VAT)

Product Rating

Features star star star star star
Ease of Use star star star star
Performance star star star star star
Documentation star star star star
Support star star star star star
Value for Money star star star star star
Overall Rating star star star star star
For:Sophisticated identity-based security, easy deployment, good hardware specification, classy reporting tools, no user count restrictions
Against:Nothing of any significance that we found
Verdict:A feature-packed and powerful UTM appliance well suited to larger businesses looking for good value and strong identity-based security measures

Cyberoam's UTM appliances have a keen focus on identity-based security and its latest CR750ia brings this technology to mid-sized businesses. Many competing vendors offer this particular feature - where security policies can be applied to specific users - but Cyberoam goes that extra mile with a more sophisticated range of controls.

The CR750ia, supplied for this review by e92plus, is a compact 1U rack appliance. This is one of six models in Cyberoam's new Accelerator Series, which all come with multi-core processors.

The CR750ia is well specified, as it sports a fast 2.66GHz Q9400 Core 2 Quad processor partnered by 2GB of DDR2 memory. Internal storage/quarantining is looked after by a single 160GB SATA hard disk and the appliance has dual redundant hot-plug power supplies. Connection options are very good: 14 Gigabit ports to play with and all support LAN, WAN or DMZ duties.

Installation is handled well and we had the appliance up and running in the lab in a few minutes. A quick-start wizard offers a choice of routed and bridged modes and we opted for the former. You can also start the appliance in a passive monitoring mode, or apply one of two default security policies to all traffic.

First contact with the web interface reveals a fresh design, as it now shows the status of all subscriptions and updates, along with detected threats such as spyware, web and mail viruses and IPS alerts. The previous interface was cluttered and provided too much information about web-browsing activity and surfing patterns.

Identity-based security starts with authentication and the CR750ia offers a local user and group database, or you can use AD, NT Domain, LDAP and Radius servers.

Single IP addresses and pools can also be used in security policies to stop users logging in from undefined groups of systems or individual workstations.

Users are placed in one of three groups that determine authentication requirements. 'Normal users' have the Cyberoam Corporate Client utility installed on their system, which will log them in to the appliance.

Those using an external directory server do not require local agents, as they will be automatically logged in to the appliance once authenticated.

Clientless users do not authenticate with the appliance, but you cannot apply surfing and data transfer quotas or internet access time restrictions to them.

Once your users have been declared, you can apply a range of controls, including web filtering, internet access and bandwidth usage policies. Transfer limitations on uploads and downloads can be enforced, based on daily, weekly, monthly and even yearly usage.

For IM app controls, most UTM appliances can only apply blanket block-or-allow actions to these protocols. The CR750ia is more sophisticated, as it can use IM contact groups and rules to control the login process and block or allow text chats, file transfer and webcam sharing.

The basic appliance provides an SPI firewall and you can configure security at the port level by grouping them into zones. Firewall rules contain the standard mix of source and destination ports or zones, services, block-or-allow actions for specific traffic types and time schedules.

Using the advanced firewall rules, you can enable AV and anti-spam, add policies for IPS, limit internet access and apply global bandwidth restrictions. Application filters can also be applied in firewall policies and used to restrict the use of games, VoIP, P2P apps and so on.

Cyberoam offers a number of low-cost options, with a one-year value subscription to AV, IPS and content filtering costing £3,158. The total value subscription is worth getting, as it adds anti-spam, but only increases costs to £3,509. There are no user licence restrictions on any of the features.

All too many vendors still charge extra for HTTPS web content filtering, but Cyberoam includes this as standard. A useful feature is the ability to apply different actions to a specific URL category, so for some you could deny HTTP connections and only allow secure HTTPS access.

Anti-spam is handled by Commtouch, which we've always found delivers excellent detection rates with minimal false positives. You can start with a global anti-spam policy for all users and then add custom policies for finer control. Depending on the score applied to each message, you can tag, quarantine, drop or reject SMTP messages and for POP3 mail you can accept a suspect message or tag it.

Cyberoam scores highly for its new iView reporting service, as this is capable of providing a wealth of information about all security activities. For its smaller appliances, iView runs as a separate Syslog server, but this is integrated into the CR750ia and is accessible directly from the web console.

It opens with a dashboard view providing graphical summaries of allowed and denied traffic; clicking on a bar graph or pie chart allows you to drill down deeper for more information. Cyberoam provides heaps of predefined reports, so you can quickly view detailed information on protocol spreads, firewall activity and detected viruses and spam, plus web browsing and FTP activities for individual users.

The CR750ia delivers an impressive range of security measures and subscriptions to the optional features are affordable. Deployment is simple, the new iView reporting tool impressive and Cyberoam stands out for its extensive identity-based security.

Cyberoam CR750ia is available to buy from e92plus. For more information visit www.e92plus.com

Dave Mitchell

 
 
 

SC Featured Webcast

Employee file sharing: the good, the bad and the ugly

Streaming live on 4th June 2013 at 3pm GMT

In a recent SC survey of information security professionals 99 per cent of those asked said it was 'important' that their organisation has secure file sharing, but 50 per cent said they had 'no real visibility' of how data is being sent within and outside the company. Tune in live to hear our experts discuss these and the other quite surprising results. To secure your free place, please click here.

SC Webcasts

Security beyond the (fire)wall

Streaming live on 6th June at 3pm BST

This webcast addresses the technological challenges of maintaining full control of your most sensitive information - even once it goes beyond the firewall - while maintaining the freedom and flexibility necessary to allow your staff and other stakeholders to work as efficiently as possible. Tune in for free to hear from our regular and popular guest speaker, Bola Rotibi from (ISC)2 application security advisory board. To secure your place, please click here.


2013's invisible network threats: Identify and respond

Streaming live on 11th June at 3pm BST

In a recent SC survey, when asked 'Do you think your current network is secure?' 43 per cent of IS professionals said they were not sure. Technology developments such as multi-point cloud solutions, consumerisation, BYOD uptake and even Windows 8 are a major headache in network security for IT leaders. So what can be done? SC's latest webcast shares practical advice from leading industry experts with examples of proven results in overcoming invisible threats. To secure your free place, please click here.

SC Whitepapers

DDoS and downtime: Considerations for risk management

The purpose of this paper is to start a conversation about the often overlooked risk of downtime caused by DDoS attacks and to provide sufficient content for risk managers to account for the DDoS threat as they evaluate risks to their day-to-day operations and long-term mission. To read the paper in full, please download it for free here.


Ponemon 2012 Global Encryption Trends Study

In Ponemon's recent Global Encryption Study, the organisation surveyed 4,205 information security professionals across seven countries to examine how encryption has evolved over the last eight years. The study focused on data protection priorities, budgeted expenditures for encryption and the types of encryption technologies involved, with the findings revealing some interesting insight into the relationship between encryption and its impact on the security position of organisations. To read the full report for free, please download it here.


Advanced spear phishing: The rise of industrial phishing attacks

With phishing still the most common form of attack, hackers are now engaging in industrial-scale phishing attacks that leverage sophisticated customisation and delivery techniques. Borrowing tactics from cloud computing and database marketing, this study looks at longline phishing - an advanced form of spear phishing, which has higher clickthrough and penetration rates than traditional attacks, potentially causing a higher risk to IT security departments across the world. To read the study for free, please click here.


SC Survey

Data on the move - How do you share your information?

Securing confidential information sent electronically can be a huge headache. With remote working on a sharp upward curve as cloud platforms and mobile devices rewrite the way in which people do business; do you know what's happening to your data amidst all this commotion? Take part now to be in with a chance of winning the latest Microsoft Surface Tablet, plus the full list of the survey responses.

Home | News | Products | Whitepapers | Jobs | Subscribe | Contact Us | About Us | Advertising | Sitemap | Editorial | Subscribe to our RSS feeds RSS

This material may not be published, broadcast, rewritten or redistributed in any form without prior authorization.

Your use of this website constitutes acceptance of Haymarket Media's Privacy Policy and Terms & Conditions