site to site VPN (SSL)
site to site VPN - Publish resources in a granular fashion

Array SiteDirect with Extranet Resource Publishing is the world’s first site-to-site SSL VPN implementation. SiteDirect goes beyond private connectivity offered by traditional solutions to provide the granular access control, deployment flexibility and simplified management offered by SSL VPN and required by Extranet environments.
 

The Smarter, Faster Site-to-Site Extranet

SiteDirect with Extranet Resource Publishing is an exciting new technology focused on providing long-term VPN Extranet connectivity for partners, customers and other third-party access scenarios. While SiteDirect may be used for internal branch connectivity, its primary focus is on providing controlled access to resources in a secure, fexible and easy-to-deploy manner.

Array Networks’ new patent-pending SiteDirect Extranet Resource Publishing technology is a direct extension of current security trends that call for network exposure to be kept to a minimum. As opposed to IPSec and other traditional site-to-site access solutions, Resource Publishing does not focus on L2/3 LAN-to-LAN connectivity (which turns two remote networks into one), but rather allows the exposure of specific resources (subnets, servers and applications). The topology of  internal networks are not exposed and administrators have fine-grained control over the resources to be published. Instead of bringing remote users onto the internal network, the required applications are published to the remote network on a white-list basis.

Faster, Smarter site to site vpn than traditional VPN


SiteDirect also addresses one of the biggest challenges with traditional site-to-site solutions: administration and installation. Because Array’s technology does not force two independent networks to merge, it mitigates issues such as duplicate IP spaces and routing conflicts.


Conflict-Free Connectivity

Because all traffic is tunneled over SSL (typically TCP port 443), SiteDirect with Extranet Resource Publishing avoids firewall traversal and tunnel NAT traversal issues.

Another key advantage is that each end-point can be configured without any information about the internal topology of the network on the other side. By integrating with existing DHCP and DNS infrastructure, Array’s Extranet Resource Publishing provisions resources to or from remote networks and avoids IP conflicts without the need to exchange IP address information or configure NAT rules.

This makes SiteDirect especially well suited for organizations with frequently evolving partner, supplier or customer network environments. Once engagements are over, the administrator simply removes the published resources from availability and network exposure is no longer an issue. Connections can be established as either persistent connections or can be provided on demand – opened and closed upon request, reducing network exposure time even further.


Ease of Use & Deployment

SiteDirect’s conflict-free nature is also useful during mergers and acquisitions. Once the base network is set up, bringing new companies into the environment is trivial. Resource Publishing eliminates the need to set up complex double-NATing rules on firewalls and routers, greatly simplifying operations. It is easy to get up and running by sharing select applications, hosts or sets of subnets that are necessary for integration.

Configuration of SiteDirect peers and resources is performed via the Array SPX WebUI in a series of carefully designed and simple steps.

SiteDirect is available as a dedicated solution or in conjunction with remote access offerings on Array’s SPX1800, SPX2800, SPX4800 and SPX5800, SPX6800 platforms. On a system configured for both remote access and SiteDirect, remote users can log into the nearest Array system and leverage a range of resources from multiple networks made available through Extranet Resource Publishing. 

  Download SiteDirect FAQs
  Download SiteDirect Datasheet
  SiteDirect Network Computing Review
  SiteDirect White Paper: A Simpler, Faster, More Secure Approach to VPNs

SiteDirect Highlights
  • Ideal for Extranet partner, supplier or customer connectivity, mergers and acquisitions and organizations with dynamic site-to-site access environments

  • White-list resource publishing of subnets, hosts, and applications for access control and limited network exposure

  • Eliminates duplicate IP spaces, routing conflicts, firewall and NAT traversal issues and hides network topologies on both sides of connections

  • Site-to-site connectivity on demand for individual resources with any mix of established or dynamic connections

  • Hub and spoke or mesh deployments

  • Performance, encryption and network level connectivity equivalent to IPSec VPN

  • Rapid configuration of peers and resources via WebUI in a series of carefully designed and simple steps

  • Enables secure site-to-site and remote access VPN to be configured and implemented on a common architecture

 

Platform Options

  SPX 1800
site to site VPN spx 1800
SPX 2800
site to site VPN spx 2800
SPX 4800
site to site VPN spx 4800
SPX 5800
site to site VPN spx 5800
SPX 6800
site to site VPN spx 6800
SSL HW HW HW HW HW
Ports 4 Gig E 4 Gig E 4 Gig E
4 Gig E
Optional 2 Fiber
4 Gig E
Optional 2 Fiber
Optional 2x10 Gig Fiber
Min. Peers 1 1 1 1 1
Max. Peers 1 5 50 250 250
SSL/Sec 800 800 2200 10,000 10,000
Throughput 100 Mbps 200 Mbps 400 Mbps 850 Mbps 850 Mbps
Compression SW SW SW SW or HW SW or HW
Form Factor 1RU 1RU 1RU 2RU 2RU
Power Supply Single Single Single Dual Dual