Traffic Inspector Next Generation
Register of Domestic Software
• Included in the Russian Software Register.
Support for Russian Cryptographic Algorithms
• GOST R 34.12-2015 implemented in the gateway’s VPN server.
• Ability to establish secure tunnels using cryptography compliant with FSB and FSTEC requirements.
Flexible Network Perimeter Protection
• Deep Packet Inspection (DPI) with filtering by:
• URLs, domains, IP addresses;
• content types (video, social networks, torrents);
• applications (messengers, VoIP, SaaS).
• Attack prevention.
• Policy-based access control (user roles, work schedules).
Built-in Proxy Server and Load Balancing
• Based on Nginx with support for:
• traffic caching and optimization;
• HTTP header rewriting;
• TCP/UDP traffic routing.
• Load balancing between servers to ensure fault tolerance.
Monitoring and Reporting
• Detailed statistics by user, device, and application.
• Ready-to-use report templates (including compliance with Federal Law 152-FZ).
• Flexible integration with SIEM systems for security event correlation.
Virtualization and Cloud Support
• Deployment in Yandex Cloud and other platforms.
• Support for virtual machines (KVM, VMware).
User-Friendly Management
• Unified web interface in Russian.
• API for integration with external systems.
• Automatic threat signature updates.
Other Features
• High traffic throughput handled by the operating system.
• High system stability.
Instructions for Creating and Configuring the TING Virtual Machine (VM)
-
Preparing SSH Keys
• If you don’t already have an SSH key pair, generate one. If you do, use your existing key pair. -
Creating the Virtual Machine
Open the VM creation interface.
In the “Image/Boot Disk Selection” section:
Go to the Cloud Marketplace tab.
Select the TING image.
Enable serial console access in the VM settings.
- Network Configuration
• For the first network interface:
A public IP address must be assigned.
Leave the default settings unless you know what you’re doing.
The public IP will be used to access the VM from external networks.
- Access Configuration
In the “Access” section:
• In the “Login” field, enter the username to be granted administrator rights.
You can use root, but it’s not recommended (only for advanced users).
• In the “SSH key” field, paste the contents of your public SSH key file.
• Save the public IP address of the VM.
-
Finalizing VM Creation
• Click the “Create VM” button.
• Wait until the status changes to “Running” in your VM list.
• Connect to the serial console and wait for the login prompt. -
Connecting to the Web Interface
• Open your browser and go to:
https://<Public IP address of the VM>
• Use the following credentials:
Login: The username you specified when creating the VM.
Password: The VM identifier (shown in the “Overview” section of the VM management interface).
- Important Note
• Go to System > Settings > Administration:
The setting “Disable HTTP_REFERER enforcement check” must remain enabled.
Disabling it will result in loss of access to the web interface!
- Next Steps
• Perform additional configuration according to the User Manual.
ПРИМЕРЫ ИСПОЛЬЗОВАНИЯ
- Безопасность виртуальной ИТ-инфраструктуры:
- Межсетевой экран для защиты облачной ИТ-инфраструктуры.
- Система обнаружения и предотвращения вторжений (СОВ, IDS/IPS).
- TCP/UDP прокси-сервер общего назначения на базе Nginx:
- Балансировка нагрузки.
- Переопределение заголовков веб-сервера.
- Обработка TCP и UDP-трафика.
ТЕХНИЧЕСКАЯ ПОДДЕРЖКА
Компания Smart-Soft (разработчик Traffic Inspector Next Generation) оказывает техническую поддержку пользователям продукта в Yandex Cloud. Способы связи:
- Электронная почта: support@smart-soft.ru
- Общие вопросы можно задать в Telegram-чате.