SG UTM
Suggest, discuss, and vote on new ideas for SG UTM. The ultimate network security package.
-
Backup: Partial Backup/Restore
Allow a user to create and restore backup files that contain only parts of the configuration.. users would be able to selectivly make use of various parts of the configuration in other firewalls, allowing for easier rollout of multi-site locations. As well, they can restore only parts of a backup file that are required, thus allowing for faster recovery and without affecting all areas of the box.
68 votesThis feature was implemented in XG Firewall
-
MailSecurity: Automatically Add Domains
With mail hosting MSP's and others that make use of multiple domains (hundreds even thousands) on their ASG or AMG, it would be nice if they could just input a nameserver which would then resolve the configured domains and add them to the SMTP proxy vs having to enter them each time.. Allows for easier adoption and addition of many email domains, for those customers in this space.
2 votes -
Email Encryption: PGP Delivery Options
It should be possible to deliver the PGP public key for a user via either a send-key button, download it from the portal, or otherwise make possible to distribute a users key once it is created, in some sort of automated, self-serve fashion.. Eases PGP encryption adoption.
7 votes -
Authentication: Improved LDAP browser
Implement a LDAP browser, that can be used to configure eDirectory, Active Directory and LDAP. Since V7 Astaro includes an LDAP browser for eDirectory. As more and more users use AD we should create a generic LDAP browser to show the complete AD tree and enable the admin to browse and select users/groups using drag'n'drop similar or identical to eDir.. The admin of an AD gets the same benefit as eDir users by massivly improve the timeconsuming and error-prone writing of LDAP DN to specify users and groups
3 votes -
Authentication: Email address to LDAP Query
When using openldap (such as against lotus) add the ability to have astaro retrieve the mail address correctly, currently it is not retrieved.. More integration options with non-windows/exchange environments.
11 votes -
SMTP: Multiple Hostnames/Interfaces Support
With the SMTP proxy able to handle mail for many domains, allow the proxy to be configured so that an admin can assign a hostname per profile, or have the proxy report different hostnames per outgoing interface. (and the ability to specify which domains/profiles go out which interface). Allows for easier management and adoption of many smtp domains on a single asg appliance.
394 votes -
Reporting: Customizable Executive Report Sections
The admin should be able to select the type of information which should be included in this report, such as removing various areas or sections.. Ensures only the desired information is sent out.
16 votes -
Definitions: Show Unused Objects
Provide a method to filter or display only objects which are currently unused in configuration.. Allows for administrators to easily parse their configurations of needless objects.
99 votes -
MailSecurity: support SMIME Domain Certificates for encryption
Being able to encrypt all emails of a specific domain with only a single certificate. This makes message based email encryption an lot easier and astaro more compatible with other email encryption players
140 votes -
Networking: DHCP Relay over VPN tunnel
Customers uses more and more central DHCP servers therefore we need to extend the DHCP-Relay option to also support forwarding the relay requests via an established Site-to-Site tunnel. Support a centralzied DHCP configuration scenario
90 votes -
Reporting: Configuration Adjustments via Reports
Provide the administrator with the ability to make changes to the security policy by interacting with a report. Popular example would be to allow white & blacklisting of site URL's and email addresses by indicating entries on a report, and selecting an "action".. As most reporting is viewed to determine usage and activity, followed by adjustments to the configuration as needed, by embedding some of this functionality in the reports it saves the need to write down or print information and then manually add to the necessary sites.
3 votes -
Network Security: Create firewall rule(s) directly from Live Log
In order to make fine tuning of our product packet filter configuration easier, we should add a way to create packet filter rules with a small wizard so that if i see any packet that i want to explicitly drop or allow i can start a mini-wizard that helps to create a matching packet filter rule by either selecting existing definition objects or offering an easy way to create new definition objects, which later than get used in the pf rule..
124 votes -
Network Security: Drag'n'Drop sort of packet filter rules
Improve the GUI to support a drag'n'drop sort of the packetfilter ruleset or also potentially other sortable list elements..
64 votesThis feature was implemented in XG Firewall
-
MailSecurity: Spam Action Forward
The Mail Manager should have the ability to forward a message in the quarantine to a specified address. This could be used to correct invalid recipients, and/or "send back" messages to the sender in a sort of crafted bounce.. Provide administrators with more choice in managing mail and messages.
31 votesThis feature was slated for UTM 9.0 but will be pushed back slightly to a future Up2Date.
-
Reporting: Authentication Reports
Provide a detailed report for Authentication Events to show who authenticated, when, and against what system part.
4 votes
- Don't see your idea?