These firewalls deliver rich functionality and exceptional performance across the entire product line, as all models run the same operating system, H/OS.
High performanceDon't allow the firewall to be the network's bottleneck. With VLAN and increased segmentation, a gigabit firewall has become a necessity. Enjoy wire-speed throughput and hardware-accelerated AES IPSec VPN. |
![]() |
High availabilityWith layer-2 hardware failover, multiple internet connection failover, probing policy routing, BGP routing and asymmetric server-health-aware layer-5 load balancing you've got the best possible tools fighting down-time. |
![]() |
Supports your servicesDeploy IP-telephony like a charm with a firewall that filters SIP and has a source-port aware NAT. Ensure that bandwidth requirements are met with dynamic RED and ECN-supporting quality of service. |
![]() |
Flexible and scalableGet predictable prices without per-user/host/address feeds. Cluster multiple appliances with configuration synchronization. Mix transparent, NAT and route mode within the same appliance. |
![]() |
Enterprise features
-
Awarded: In addition to being praised by it's users for performance and technical support, the firewalls have received stunning reviews in media.
- IPv6: Jump-start deployment of future technologies using an IPv6-compliant firewall.
- Authenticated policies: The web authentication service allows administrators to configure firewall policies that only applies for users that are authenticated, either against users in the configuration, or RADIUS. It may be used to tighten remote access policies, or implement voucher-based WLAN access.
- Clustering: Master-slave scheme clustering using a shared configuration with per-appliance modifications.
- Management: As the web administration is in fact a command-line interface front end, the entire product can be fully controlled and monitored using the CLI over SSH or RS-232, and SNMP is available in addition to syslog. Scheduled commands allows for time-based reconfiguration. The human-readable configuration is fully compliant between models, and features backup and restore of revisions.
- VPN: H/OS offers enterprise-class IPSec VPN, both ISAKMP (IKE) and using manual keys (ideal for reliable multi-uplink and hardware failover IPSec) up to AES 256. Remote user VPN is offered using aggressive mode IPSec and multi-service PPTP with RADIUS authentication and accounting support.
- Transparency: The terminology and administration philosophy of H/OS is excessively inspired by standard networking concepts, making it transparent and debuggable for the administrator. We realize the importance of being able to understand the inner workings of the firewall in order to successfully deploy secure networks.
- Application proxies: Many application-level proxies are included, for protocols such as HTTP, FTP and PPTP providing filtering capabilities, NAT traversal and protocol sanity checking.
- H/OS: The time-proven security-hardended operating system from Halon Security is found in security gateways, firewalls and mail gateways all around the world. Running on a bare-bone FreeBSD kernel are the asynchronous services that enables H/OS to handle immense amounts of connections.





