How can I help you? Start Chat

US Phone: 1-866-488-6691
International Phone: +44-2036087492

  • E-Mail
  • Facebook
  • LinkedIn
  • Twitter

vSEC VE Virtual Next Generation Firewall

Check Point vSEC Virtual Edition (VE) next generation firewalls protect dynamic virtualized environments from internal and external threats by securing virtual machines (VMs) and applications with industry-leading advanced threat prevention security. vSEC VE virtual firewalls seamlessly integrate with leading  hypervisors such as VMware ESX, Microsoft Hyper-V and KVM.

 

 

Benefits

Secure virtual environments

  • Multi-layered security protections for virtual environments including next-generation virtual firewall and advanced threat prevention
  • Inspect all traffic—from inter-VM to perimeter—in the virtual network
  • Permit secure access to remote systems and networks

Unified management of virtual and physical environments

  • Consistent security policy and uniform security management across both physical and virtual infrastructures
  • Visibility into virtualization configuration and security changes
  • Separation of duties between virtualization and security teams
  • Licensing is based on virtual cores used and supports dynamic allocation ideal for elastic workloads

Thanks to Check Point vSEC Virtual Edition (VE), we have a virtual security solution that fully integrates into our dynamic virtualized environment with all the performance, security and functionality we’ve expected from our physical Check Point gateways for years.

Luc Steens

Team Leader Security Managed Services

Getronics


more

Features

Advanced Threat Prevention Security

Check Point vSEC VE provides comprehensive security to safeguard virtualized environments. Fully integrated protections include:

  • FirewallIPSAntivirus, and Anti-Bot protect services in the public cloud from unauthorized access and attacks.
  • Application Controlhelps prevent application layer denial of service attacks and protects your cloud services.
  • IPsec VPN allows secure communication into cloud resources.
  • Mobile Accessallows mobile users to connect to the cloud using an SSL encrypted connection with two factor authentication and device pairing.
  • Data Loss Preventionprotects sensitive data from theft or unintentional loss.
  • SandBlast Zero-Day Protection provides the most comprehensive defense against malware and zero-day attacks.

Consolidated logs and reporting for hybrid cloud environments

Get visibility and threat analysis across virtual infrastructures using Check Point Next-Generation SmartEvent. Simplify compliance and audits with unified logs and reporting.


Centralized management for virtual and physical infrastructures

Manage vSEC VE using existing on-premises Check Point Unified Security Management Solution. Enforce a consistent security policy for corporate assets across both virtual and physical infrastructures from a single console.


Learn More

Specifications

Supported HypervisorsSupported Hypervisor releasesMemory and system requirements
VMware ESXivSphere 5, vSphere 5.1, vSphere 5.5, vSphere 632GB HDD

2GB RAM
Microsoft Hyper-V2012 R2 Windows Server32GB HDD

2GB RAM
KVMCentOS 7

RHEL 7
32GB HDD

2GB RAM
Note: For supported Check Point releases, refer to the support matrix in the HCL

Performance

Test case2 Virtual Cores4 Virtual Cores6 Virtual Cores
Security Power300620850
Firewall Only2700 Mbps4900 Mbps5100 Mbps
Firewall + IPS860 Mbps1700 Mbps2630 Mbps
Firewall + IPS + Application Control820 Mbps1300 Mbps1900 Mbps
Firewall + Anti-Virus + IPS690 Mbps940 Mbps1670 Mbps
Max concurrent connections5.4 million
(12GB RAM )
1.1million ( 2GB RAM )
5.4 million
(12GB RAM )
1.1million ( 2GB RAM )
5.4 million
(12GB RAM )
1.1million ( 2GB RAM )
Test EnvironmentvSEC Virtual Edition Gateway R77.30 for VMWare ESXi 5.5
Using Check Point real world traffic blend, an optimized environment, dedicated virtual cores on Intel E5-2637 v3 and vmxnet3 NIC
Note : VE gateway performance is dependent on the number of virtual CPU cores allocated, CPU type, RAM, traffic blend as well hypervisor release and configuration