Netgear ProSecure UTM25

 

Product Information

Vendor:Netgear
Price:£562 (exc VAT) for appliance plus all services and maintenance for one year

Product Rating

Features star star star star star
Ease of Use star star star star
Performance star star star star star
Documentation star star star star
Support star star star star
Value for Money star star star star star
Overall Rating star star star star star
For:A complete SMB gateway security package that offers simple deployment, top value, very good anti-spam and web filtering performance
Against:IM and P2P app controls are fairly basic
Verdict:Small businesses requiring a low-cost UTM solution that's easy to manage will find Netgear's ProSecure UTM25 delivers on all counts

Netgear has always had a keen focus on network security for smaller businesses and its ProSecure UTM range of appliances delivers plug-and-play protection at a low price.

The appliances provide the full gamut of security services and include an SPI firewall, IPS, anti-virus, anti-spam, URL category filtering, IM and P2P controls - plus support for IPsec and SSL VPNs. The top-of-the-range UTM25 on review also provides dual WAN ports for failover.

The model name refers to the suggested number of supported users, with Netgear stating that the UTM25 is good for up to 30. The UTM appliances have no restrictions on the maximum number of users.

The UTM25 offers four Gigabit LAN ports, with the fourth also providing DMZ duties if required. The pair of WAN ports supports a wide range of address assignments, allowing you to mix different internet connection types and use both in a load balanced team or to keep the second back for failover.

The appliance functions as a transparent gateway, so deployment is a piece of cake.

The web interface is basic but intuitive and offers a quick-start wizard to help with LAN, WAN and security services configuration. You can add up to 800 of your own custom rules and apply QoS and bandwidth restriction profiles.

Netgear's security guest list has some big names on it, with Sophos stepping up for AV, Commtouch handling web filtering and Mailshell looking after anti-spam. Netgear's unique stream-scanning technology is also implemented. This scans and analyses traffic as it starts entering the network and uses a multi-threaded approach to provide close to real-time scanning.

AV scanning can be applied to SMTP, POP3 and IMAP protocols and all signature and database updates are automated, with checks as often as every 15 minutes. Along with HTTP and FTP traffic, the appliance also scans HTTPS as standard, making the UTM25 even better value.

For anti-spam, you have black and white lists, RBLs and Mailshell's spam analysis. For SMTP, you can tag, block or log spam messages. Infected mail attachments can be stripped out.

Anti-spam is particularly good. We left the appliance scanning live email for a week and saw a 97 per cent success rate, with only 12 false positives.

Web content filtering is equally tough and to test this we blocked games and gambling categories. The appliance prevented access to every one of the 50 sites visited.

The UTM25 also barred access to sites such as Facebook and Twitter. A handy lookup tool lets you enter a URL and find the category it has been placed in. IM and P2P app controls are basic, but we were able to stop users logging in with Windows Messenger and Live. BitTorrent apps were also stopped from working - the Vuze app twiddled its thumbs, unable to log on.

The appliance provides a good selection of monitoring tools, with a dashboard keeping you posted on all suspicious activities, detected spam and blocked websites, along with top threats and the most blocked sites. Generation is very slow, but the appliance can store up to five reports for selected periods.

SSL VPN support adds even more value, but this is the only service that requires an extra licence if you want more than two tunnels. The UTM25 can handle up to 13 SSL VPN tunnels and offers a range of authentication, including a local user database and Radius, LDAP and AD support.

A wizard helps set up custom SSL VPN portals and users, but it's worth getting your LAN service objects set up first, as you'll need these when it comes to declaring what resources remote users can access. For each connection you can select port forwarding or Netgear's virtual adapter. When the session is closed, a cache cleaner pops in to clear out any traces of access on the remote system.

For the price, Netgear is offering small businesses a bumper bundle of essential network security services. The UTM25 is very simple to install, offers a powerful partnership of AV, anti-spam and web filtering and delivers in the performance stakes.
Dave Mitchell

 
 
 

SC Featured Webcast

Employee file sharing: the good, the bad and the ugly

Streaming live on 4th June 2013 at 3pm GMT

This new webcast is set to unveil the full results from the latest data security survey, where it was revealed that 50 per cent of the information security professionals asked said that they had 'no real visibility' of how data is being sent within and outside the company. Guest speakers include the director of information security from Monster.co.uk and the ISO from Atos. To secure your free place, please click here.

SC Webcasts

Security beyond the (fire)wall

Streaming live on 6th June at 3pm BST

This webcast addresses the technological challenges of maintaining full control of your most sensitive information - even once it goes beyond the firewall - while maintaining the freedom and flexibility necessary to allow your staff and other stakeholders to work as efficiently as possible. Tune in for free to hear from our regular and popular guest speaker, Bola Rotibi from (ISC)2 application security advisory board. To secure your place, please click here.


2013's invisible network threats: Identify and respond

Streaming live on 11th June at 3pm BST

In a recent SC survey, when asked 'Do you think your current network is secure?' 43 per cent of IS professionals said they were not sure. Technology developments such as multi-point cloud solutions, consumerisation, BYOD uptake and even Windows 8 are a major headache in network security for IT leaders. So what can be done? SC's latest webcast shares practical advice from industry experts. To secure your free place, please click here.

SC Whitepapers

Java security: Balancing existing testing platforms with open source solutions

In a rush to get new products out to market quickly, companies expose themselves to the risk of software failure. Java developers often turn to open source solutions to help protect themselves from risk. This new whitepaper explains how you can use your existing testing platforms alongside open source solutions to fix those issues related to both security and quality within your Java code. To download the paper for free, please click here.


DDoS and downtime: Considerations for risk management

The purpose of this paper is to start a conversation about the often overlooked risk of downtime caused by DDoS attacks and to provide sufficient content for risk managers to account for the DDoS threat as they evaluate risks to their day-to-day operations and long-term mission. To read the paper in full, please download it for free here.


Ponemon 2012 Global Encryption Trends Study

In Ponemon's recent Global Encryption Study, the organisation surveyed 4,205 information security professionals across seven countries to examine how encryption has evolved over the last eight years. The study focused on data protection priorities, budgeted expenditures for encryption and the types of encryption technologies involved, with the findings revealing some interesting insight into the relationship between encryption and its impact on the security position of organisations. To read the full report for free, please download it here.


Advanced spear phishing: The rise of industrial phishing attacks

With phishing still the most common form of attack, hackers are now engaging in industrial-scale phishing attacks that leverage sophisticated customisation and delivery techniques. Borrowing tactics from cloud computing and database marketing, this study looks at longline phishing - an advanced form of spear phishing, which has higher clickthrough and penetration rates than traditional attacks, potentially causing a higher risk to IT security departments across the world. To read the study for free, please click here.


Home | News | Products | Whitepapers | Jobs | Subscribe | Contact Us | About Us | Advertising | Sitemap | Editorial | Subscribe to our RSS feeds RSS

This material may not be published, broadcast, rewritten or redistributed in any form without prior authorization.

Your use of this website constitutes acceptance of Haymarket Media's Privacy Policy and Terms & Conditions