Kerio Control karakteristike
Firewall and Router
- ICSA Labs Certified Corporate Firewall
- Deep Packet Inspection
- Protocol Inspection
- Stateful Packet Inspection (SPI)
- DHCP Server
- DNS Forwarding
- NAT Mapping
- MAC Filtering
- Anti-Spoofing
- Guest network with captive portal (new in 8.4)
- 802.1Q VLAN Support
- Traffic Rules Configuration Wizard
- Time Based Rules
- HTTPS inspection (new in 8.4)
- Rule Exemption Capability
- Connection Limits
- Multiple IP Addresses on a Single Network Interface (multi-homing)
- Dynamic DNS
- Customizable Routing Table
- Reverse proxy
- Simultaneous IPv4 and IPv6 Support
- IPv6 Network Prefix Translation (new in 8.4)
- IPv6 Router Advertisements
VPN
- Split tunneling or forced tunneling option
- Multiple/simultaneous site to site tunnels
- Kerio VPN client-to-site/site-to-site
- IPsec client-to-site/site-to-site
- Kerio VPN clients for Windows, Mac & Linux
- Optional persistent connection
- Multiple stored VPN connections
- Strong SSL encryption
- VPN tunnel failover
- NAT support
- User authentication via AD,OD or local directory
- L2TP over IPsec mobile device connections
- Automatic or custom routing
Reporting & Monitoring
- Kerio Control Statistics reporting module
- Detailed usage reports: Web site, protocols, bandwidth
- Filter reports by individual user, group, or entire network
- Automated daily/weekly/monthly email reports
- Top visited websites & top users per web category
- Hourly traffic by user
- Google search keywords
- Kerio Control Web Filter reports
- External logging to syslog
- SNMP monitoring
- System Health Monitor
- Traffic Charts
- Administrative Dashboard
- Traffic categorization (multimedia, messaging, large file transfers…)
- Real-time host activity monitoring
Load Balancing and QoS
- Link-load balancing
- Distribute traffic across multiple connections
- Automatic active/active & active/passive connection failover
- User-based and group-based traffic rules
- User data transfer quotas
- Custom bandwidth quota & speed limits
- Guarantee bandwidth for high priority traffic (Quality of Service)
- Restrict bandwidth for low priority traffic
- Rules by time interval, traffic type, users, service, DSCP
- Distribute traffic across multiple connections
- Monitor bandwidth with real-time charts
- Real-time interface bandwidth usage monitoring
- Apply policies to VPN tunnels
Administration
- Remote web-based administration with Administration Dashboard
- Variable level administrative rights
- One-click software/firmware updates
- Web-based debugging tools
- Configuration export/import
- Backup configuration to Samepage.io or FTP server
- Active Directory, Open Directory, local directory user authentication
- Domain template for default user configuration
- Auto logout after timeout
- Configurable time ranges for groups
- Multi-Language Support
Content Filtering
- Time interval restriction
- P2P (peer to peer traffic) Eliminator
- URL categories (Kerio Control Web Filtering)
- Custom denial page
- Administrative alerts
- Custom URLs
- Support for regular expressions in URL rules
- Forbidden words
- FTP policy
- Proxy Server
- URL White-listing
- Sophos Antivirus
- File Types
User Authentication
- Active Directory/Open Directory integration
- Proxy server authentication (for Terminal services)
- Kerberos/NTLM Authentication
- RADIUS server (new in 8.4)
- Password guessing protection
- NT Domain
- Web Login
Administration
- Snort-based packet analyzer
- Emerging Threats rules database
- IP blacklist database
- Three security levels
- False positives exception handling
- Applied to IPv4 and IPv6 traffic