Security » WinfraSoft  » VPN-Q

VPN-Q

VPN-Q 2009 helps secure your VPN connections by checking the health state of remote endpoint client PC's while they are isolated in a quarantine network. Threats from viruses, worms, hackers and malicious users are everywhere, by ensuring that remote PC's connecting to your network have up-to-date anti virus software, a personal firewall enabled and patches installed (to name a few features) these threats can be significantly reduced.

Included in VPN-Q is a new quarantine service which removes the dependency on the microsoft rqs service. The new Winfrasoft VPN-Q management service allows for many new features which were not previously possible due to restrictions of the legacy microsoft rqs service. Because the services are totally separate, migration from 2006 to 2009 is made easy as they can both co-exist on the same ISA server, making it easy to gradually upgrade your VPN clients.

This means that unmanaged & non-domain joined PC's must also now conform to your VPN security policy. You can still make use of AD group policy if you wish, but any setting explicitly set on the VPN server will take priority.

  • AD computer groups can also be used to restrict which PC's are allowed to be used for VPN access - not just users.
  • Simply create an AD group containing computer accounts and tell VPN-Q which group to use.
  • If a VPN connection is not made from a PC in that group they will not be able to clear quarantine regardless of their health state.
  • Manual computer objects can also be created in AD for non-domain joined PC's by specifying the PC's hardware.

 

Security Check \ Edition   Enterprise Edition
Anti-Virus Scanner status and up to date check   Yes
Minimum operating system and service pack level   Yes
AD Computer group membership   Yes
Automatic Updates status (Patch settings)   Yes
Security Update status (Missing patches)   Yes
Windows IP Routing status   Yes
Screen Saver Security settings   Yes
Windows Firewall status   Yes
3rd Party Personal Firewall status   Yes
Windows Firewall F&P Sharing exception status   Yes
Internet Connection Sharing status   Yes
Custom security checks via signed script   Yes

 

 

Other Feature \ Edition Enterprise Edition
Built on Microsoft .NET 2.0 managed code Yes
Authenticode signed binaries Yes
Support for 32-bit and 64-bit Windows XP and Vista Yes
Multiple VPN endpoints from a single dialer Yes
Native Smart Card, RSA SecurID, Aladdin, Gemalto Protiva, SecurEnvoy SecureAccess and Vasco VACMAN authentication Yes
Restrict specific AV / Firewall product Yes
Custom VPN client branding Yes
Flexible VPN client configuration and customisation Yes
Easier licensing implementation and models Yes
Faster client side security checking Yes
Run patch scan always, weekly or monthly Yes