ValarContact

Products / Business

Valar 2

Valar 2 is designed for the typical mid-sized company. Office network, production and guests can be separated into their own zones. Two units can run as a pair, so the failure of one unit does not interrupt operations.

Request a quoteCompare
Valar 2

Overview

Valar 2 at a glance.

Valar 2 is the typical appliance for companies with a few dozen to around a hundred workstations. It fits into any 19-inch rack and has enough performance to inspect all traffic, including encrypted connections.

Because a firewall failure can bring the whole business to a halt, Valar 2 can run as a pair. Both units continuously synchronise configuration and connections. If one fails, the other takes over and existing connections are kept.

Key facts

Suited forMid-sized companies with one or a few sites
Usersup to approx. 100 workstations
Inspection throughputup to 5 Gbit/s
Form factor1U, 19-inch rack
HighlightHigh-availability pair

Preliminary figures from the pilot program. Binding data sheets are available on request.

Use cases

Typical use.

  1. 01

    Separating office and production networks

    Machines and controllers only reach the systems they need. An attack in the office network cannot simply jump over to production.

  2. 02

    Replacing older firewalls

    Existing rules are carried over and cleaned up along the way. The switch can be prepared and carried out in a short maintenance window.

  3. 03

    Connecting remote sites

    Branches, warehouses and home offices are connected via VPN, with the same rules as at headquarters.

Valar 2

Data sheet

Valar 2 Technical data.

Performance and use
ClassBusiness
Suited forMid-sized companies with one or a few sites
Usersup to approx. 100 workstations
Inspection throughputup to 5 Gbit/s
Hardware
Form factor1U, 19-inch rack
High availabilityPair (active/passive)
HighlightHigh-availability pair
Ports, dimensions, power consumptionin the full data sheet, on request
Firewall and network
Firewallstateful, rules by network, service, user
NATport forwarding, 1:1, outbound
NetworksVLAN (802.1Q), IPv4 and IPv6
Country rulesGeoIP, address groups
Multiple internet linesload balancing and failover
Prioritisationtraffic shaping (QoS)
VPN
Site-to-siteIPsec
Mobile staffWireGuard, OpenVPN
Authenticationcertificate, user account, one-time password (2FA)
Protection
Intrusion preventioninline IPS, rule sets with automatic updates
SSL inspectionconfigurable per zone
Web filtercategories and block lists, including transparent mode
Behaviour detectionNeoI
Guest accesscaptive portal with vouchers
Management
Interfaceweb interface, API
Multiple appliancescentral management
UsersActive Directory, LDAP, RADIUS
Analysisreports, NetFlow, packet capture
Configurationchange history with rollback, encrypted backup
Network servicesDHCP, DNS (including encrypted), dynamic DNS
Licence
Scopeall features included, no add-on modules
Termas agreed
During the termupdates, security updates, detection data

Preliminary figures from the pilot program. Binding data sheets are available on request.

Included

The same features as every Valar.

Zone-based firewall

Rules by network segment, application and user. Office, production, guests and servers stay separate.

Intrusion prevention (IPS)

Known attacks are detected in network traffic and blocked before they reach systems on the network.

SSL inspection

Encrypted traffic can be inspected. For each zone you decide where this makes sense and where it does not.

VPN

Sites and mobile staff are connected over encrypted links, for example via IPsec.

Web filter

Access to malicious or unwanted websites is blocked by category.

NeoI

neonotu’s own AI detects unusual behaviour even where no signature exists yet.

All features in detail

Operations

Easy to run.

01

Central management

Several units and sites are managed in one place. Rules apply consistently, deviations stand out.

02

High availability

From Valar 2 upwards, two units work as a pair. If one fails, the other takes over. Valar 4 can be extended into a cluster.

03

One licence

The licence depends on the model and the term. There are no features that have to be bought separately later.

Questions

Frequently asked questions.

Do we need two appliances?

Not necessarily. A pair is worth it if a firewall failure would stop your operations, for example in production or for services that must be available around the clock.

Can we carry over our existing rules?

Usually, yes. We review the current configuration and transfer the rules that are still needed.

What is included in the licence?

All protection features: firewall, intrusion prevention, SSL inspection, VPN, web filter and NeoI. The licence depends only on the model and the term; there are no add-on modules.

What happens when we grow?

You move to the next model. Because all models run the same software, rules and settings are carried over.

Who sets up the appliance?

Your IT service provider or one of our partners. On request, neonotu can also run the firewall for you as a managed service.

Is this the right model for your network?

Tell us briefly how many users and sites you have. We will recommend the right model and prepare a quote.

Ask for advice