Hey all, I need some recommendations on proxy servers for enterprise environments. Our current product can't handle the load & is no longer being supported by the vendor. The devices need to handle at least 1000+ concurrent connections at about 20 Mbit/s. Websites, Streaming, etc, etc Not sure if there's one product that does what I'm looking for: 1. Appliance based (preferred, but not required) 2. Clusterable/VRRP Setup or can be used behind a load balancer 3. Web/FTP virus checking 4. Caching 5. Web content filtering (include ability to add manually to a deny list) 6. Logging and user auditing (via name or client IP address) 7. Real-time traffic monitoring 8. Grant/Deny access to particular websites from individual/grouped client IP addresses Thanks --------------------------------- Yahoo! Messenger with Voice. PC-to-Phone calls for ridiculously low rates.
Hey all,
I need some recommendations on proxy servers for enterprise environments. Our current product can't handle the load & is no longer being supported by the vendor. The devices need to handle at least 1000+ concurrent connections at about 20 Mbit/s. Websites, Streaming, etc, etc
Not sure if there's one product that does what I'm looking for:
1. Appliance based (preferred, but not required) 2. Clusterable/VRRP Setup or can be used behind a load balancer 3. Web/FTP virus checking 4. Caching 5. Web content filtering (include ability to add manually to a deny list) 6. Logging and user auditing (via name or client IP address) 7. Real-time traffic monitoring 8. Grant/Deny access to particular websites from individual/grouped client IP addresses Thanks
This is always a touch subject caching customers content. :) Look at the bluecoat products.http://www.bluecoat.com/resources/technology/proxycaching.html
squid <http://www.squid-cache.org/> Symantec Enterprise Firewall [formerly Raptor], if they're still selling it <http://www.symantec.com/Products/enterprise?c=prodinfo&refId=853> Sidewinder G2 <http://www.securecomputing.com/index.cfm?skey=232> (The G2 stands for what parts of NAI Gauntlet they included. NAI Gauntlet was formerly a good product from Trusted Information Systems. TIS Labs is still owned by NAI.) The aforementioned Blue Coat Proxy server. -- Joe Yao ----------------------------------------------------------------------- This message is not an official statement of OSIS Center policies.
Hummm.... squid. With a touch of haproxy... (Or for those with money.... ServerIron's) Joseph S D Yao wrote:
squid <http://www.squid-cache.org/>
Symantec Enterprise Firewall [formerly Raptor], if they're still selling it <http://www.symantec.com/Products/enterprise?c=prodinfo&refId=853>
Sidewinder G2 <http://www.securecomputing.com/index.cfm?skey=232> (The G2 stands for what parts of NAI Gauntlet they included. NAI Gauntlet was formerly a good product from Trusted Information Systems. TIS Labs is still owned by NAI.)
The aforementioned Blue Coat Proxy server.
-- Alain Hebert ahebert@pubnix.net PubNIX Inc. P.O. Box 175 Beaconsfield, Quebec H9W 5T7 tel 514-990-5911 http://www.pubnix.net fax 514-990-9443
On Thu, Apr 06, 2006 at 04:41:26PM -0400, Alain Hebert wrote:
Hummm.... squid.
With a touch of haproxy... (Or for those with money.... ServerIron's) ...
Do Foundry ServerIrons proxy and cache, or just switch? -- Joe Yao ----------------------------------------------------------------------- This message is not an official statement of OSIS Center policies.
On 7-Apr-2006, at 12:06, Joseph S D Yao wrote:
On Thu, Apr 06, 2006 at 04:41:26PM -0400, Alain Hebert wrote:
Hummm.... squid.
With a touch of haproxy... (Or for those with money.... ServerIron's) ...
Do Foundry ServerIrons proxy and cache, or just switch?
ServerIrons don't cache. They can be used for transparent redirection of requests to a cache (I think), and to support multiple caches in a load-sharing configuration (for sure). Other vendors of similar products are cisco (formerly Arrowpoint) and Nortel (formerly Alteon). If you're looking for this kind of fanciness in your switches, you should also check out products by f5 networks. I have never used their switches, but I heard some impressive stories about what you can do with them the other week in Wellington. Joe
Just switch but 2 (of more) of them makes for a good frontend to a farm of squid. With both incoming and outgoing resilience. Joseph S D Yao wrote:
On Thu, Apr 06, 2006 at 04:41:26PM -0400, Alain Hebert wrote:
Hummm.... squid.
With a touch of haproxy... (Or for those with money.... ServerIron's)
...
Do Foundry ServerIrons proxy and cache, or just switch?
-- Alain Hebert ahebert@pubnix.net PubNIX Inc. P.O. Box 175 Beaconsfield, Quebec H9W 5T7 tel 514-990-5911 http://www.pubnix.net fax 514-990-9443
participants (5)
-
Alain Hebert
-
Elijah Savage
-
Joe Abley
-
Jon Lyons
-
Joseph S D Yao