Business Objective and Benefits: To provide resilient and secure access to shared services in the UK for international users who are compliant with the company security policy.
Products and Services used: Check Point Firewall1/VPN1, Check Point Integrity Server, Check Point Integrity SecureClient, 2 x Nokia IP260 security appliances, Check Point SecurePlatform OS and Presence professional services.
This company is internationally renowned as one of the driving forces in the horse racing and bloodstock industry. The company has a number of important business partners at home and abroad and wanted to provide secure access to specific applications based within the U.K. headquarters for these partners.
Our solution based on the company’s needs was focused around 2 products.
As the company are already Check Point and Nokia users, we advised that they should continue down that path. The solution involved implementing two Nokia IP260 devices utilising VRRP failover for high availability, running Check Point Express NGX. Remote users are now able to access the company’s systems securely using Check Point’s SecureClient VPN software. The solution is managed by a Check Point Management server running on Check Points own operating system, SecurePlatform.
The second part of the solution was Check Point’s endpoint security and network access control software, Integrity. This was configured to firstly check the anti-virus software to make sure it was running and up to date. If either of these checks fails, Integrity will not allow access to the SecureClient VPN tunnel. Integrity is also configured as a managed software firewall so that upon connection to the VPN tunnel, nothing else may use the internet connection on that PC, incoming or outgoing.
The total solution offers a fully scalable, secure and resilient structure for what is a critical system for the company and its customers. Since its installation, the company has added features to the Integrity product so that not only is it checking for AV, it is now scanning for Spy/Malware as well as incoming and outgoing threats using Check Points SmartDefence services to provide extra layers of security.