This site uses cookies and other tracking technologies to assist with navigation and your ability to provide feedback, analyse your use of our site and services and assist with our promotional and marketing efforts. You can read more about this in our Privacy Policy.
HPE Aruba Networking EdgeConnect Orchestrator-GEC-FRA-CORE Setup License E-LTU
- HPE Aruba Networking EdgeConnect Orchestrator-GEC-FRA-CORE Setup License E-LTU
| SKU | JM485AAE |
|---|---|
| Manufacturer | HPE |
| Availability | Out of Stock |
Networking
Business intent overlays: Multiple overlays may be defined to abstract the underlying physical transport services from the virtual overlays, each supporting different Quality of Service (QoS), transport, failover, and security policies.
Path conditioning: This feature provides private-line-like performance over the public internet. It includes techniques to overcome the adverse effects of dropped and out‑of-order packets that are common with broadband internet and MPLS connections, thus improving application performance.
High availability: Protects from hardware, software and transport failures. High availability (HA) is achieved by providing fault tolerance on both the network side (WAN) and on the equipment side using HA links.
AppExpress: Optimizes user experience for up to 50 business-critical private and software-as-a-service (SaaS) applications. AppExpress exploits SD-WAN path diversity by automatically selecting the best path for each application.
First-packet iQ: Identifies applications on the first packet to deliver trusted SaaS and web traffic directly to the internet while directing unknown or suspicious traffic to the data center firewall, enabling secure internet breakout.
Security
Next-generation firewall: Provides advanced security features such as micro-segmentation and distributed denial-of-service (DDoS) defense, as well as application and user identity awareness. It blocks malware from entering the network based on application, identity and context.
Role-based segmentation: Assigns roles to users and devices and creates role-based policies to micro-segment the network. IT teams can also define zone-based policies by creating secure zones. Moreover, HPE Aruba Networking ClearPass Policy Manager integration provides additional identity context.
DDoS defense: Detects and prevents protocol attacks such as ICMP floods and SYN floods. Using firewall protection profiles, the solution helps strict state handling and limits the number of malicious requests with actions such as rapid aging, drop excess and block source.
Automated orchestration to SSE: Automated orchestration using a drag-and-drop interface to HPE Aruba Networking SSE and third-party security service edge (SSE) solutions to create a seamless secure access service edge (SASE) architecture.
SWG service: HPE Aruba Networking EdgeConnect SD-WAN protects all network devices, including IoT, from web-based threats without the need for an SSE agent. Device traffic is routed to HPE Aruba Networking SSE through a dedicated 10 Mbps SWG bandwidth tunnel.
Advanced security features
IDS/IPS: Integrates a rule-based Intrusion Detection and Prevention System (IDS/IPS). The system can operate either in inline mode or performant mode. Threat events can be sent to an external SIEM such as Splunk to monitor real-time threats.
Adaptive DDoS: Automatically adjust DoS thresholds. Auto rate-limiting regularly calculates a new baseline for DoS thresholds based on network statistics and patterns. Smart Burst automatically allocates unused flow capacity ensuring business continuity during a DDoS attack.
DDoS analytics: Includes a comprehensive set of reports for DoS defense such as threshold violations, flow drops, denied hosts and packet counts, top talkers, and alarms such as exceeded DoS thresholds.
Smart SYN cookie: Adds intelligence to the traditional SYN cookie mechanism, optimizing performance where cookie generation can be resource intensive.
Secure web services: Web classification and reputation (also known as URL filtering) helps organizations block access to harmful, inappropriate, or illegal websites. IP reputation service provides real-time threat intelligence and global visibility into malicious IPs.
WAN Optimization (Optional)
Latency mitigation: TCP and other protocol acceleration techniques are applied to all traffic, reducing effects of latency on application performance and significantly improving application response times across the WAN.
Data reduction: Data compression and deduplication mitigates the repetitive transmission of duplicate data.
