Overview

Product video
The CacheGuard Gateway is a network security and traffic-optimization appliance that can be deployed quickly and easily within your organization. When you deploy a CacheGuard Gateway, you gain access to multiple features in a single device, which you can activate according to your requirements. All CacheGuard Gateway features are integrated into a core product called CacheGuard-OS. Once installed on a machine, CacheGuard-OS transforms it into a powerful network appliance. The CacheGuard Gateway on AWS is a ready-to-use virtual machine powered by CacheGuard-OS.
You can use the CacheGuard Gateway either as a forwarding proxy to secure web browsing or as a reverse proxy to protect your web applications in the cloud. As a forwarding proxy, the CacheGuard Gateway filters unwanted websites and blocks malware before it can enter your network. As a reverse proxy, it functions as a Web Application Firewall (WAF), allowing you to safeguard your applications against content-based attacks. In addition, the CacheGuard Gateway includes a VPN server, web application load balancer, firewall, web caching system, traffic shaping and QoS capabilities, a mini PKI, and much more. The CacheGuard Gateway provides the power to manage all these functions as easily as possible.
All CacheGuard appliances run on an appliance-oriented operating system called CacheGuard-OS. CacheGuard-OS has been open source and free since version UF-2.4.1, with charges applying only for optional support. Please note that if you deploy a CacheGuard Gateway on AWS in its BYOL form with a version prior to UF-2.4.1, you are strongly advised to upgrade it as soon as possible to the latest version. The latest version is announced at https://www.cacheguard.net/doc/guide/changelogs.html .
CacheGuard-OS has been rigorously and securely built from scratch around a Linux kernel, embedding only the programs that are strictly necessary. While over 100,000 lines of open-source code were developed specifically for CacheGuard-OS, the operating system also incorporates well-known open-source technologies provided by the wider open-source community. CacheGuard-OS represents a coherent integration of multiple technologies, delivering a powerful, robust, and easy-to-manage solution.
If you are a system administrator seeking a powerful yet easy-to-manage solution to secure and/or optimise your networks, the CacheGuard Gateway is ideal for you. The CacheGuard Gateway can be configured and managed using a CLI (Command Line Interface) and/or a web GUI (Graphical User Interface). CacheGuard products are supplied with comprehensive online and offline documentation.
Our active and responsive technical forum, https://help.cacheguard.net/ allows you to find answers to your questions quickly. Learn more at https://www.cacheguard.com/ .
You can manage your CacheGuard Gateway via its web GUI at or via SSH. By default, the CacheGuard Gateway on AWS uses two distinct public IP addresses: one external IP for outgoing internet traffic and one internal IP for incoming connections to its embedded web proxy on TCP port 8080. If you manage and use your CacheGuard Gateway from the same local public IP address (as a web proxy), it will be accessible only via its internal public IP from that local IP.
The CacheGuard Gateway is supplied with comprehensive online and offline documentation, including a User's Guide and a Command Line Manual. You can access the CacheGuard documentation through the administration interfaces (console, SSH, or HTTPS) or online.
You can monitor the health of a CacheGuard Gateway either by reviewing the reports available through its web GUI or by using the "system report" command in the CLI. Additionally, the CacheGuard Gateway supports SNMP and the syslog protocol.
Caution : The CacheGuard Gateway used as a remote web proxy on AWS is intended for evaluation or temporary use only and is not designed for long-term deployment, as data transfer above a specified monthly limit is charged by AWS.
Highlights
- Quick & Easy to Handle
- Mature & Powerful but at a Fair Price
- All in One UTM (Unified Threat Management)
Details
Introducing multi-product solutions
You can now purchase comprehensive solutions tailored to use cases and industries.
Features and programs
Financing for AWS Marketplace purchases
Pricing
Vendor refund policy
Terminate your CacheGuard Gateway EC2 instance or delete your CacheGuard Gateway CloudFormation Stack to stop paying your AWS resources consumption for CacheGuard Gateway. The BYOL license type is sold as a service on a monthly or yearly subscription basis. You have the possibility to cancel your subscription at any time without any extra charges. However any started subscription period should be paid in advance and no refund can be made.
How can we make this page better?
Legal
Vendor terms and conditions
Content disclaimer
Delivery details
Gateway 100 Users
The CacheGuard Gateway application is based on a CacheGuard Gateway appliance. The CFT (Cloud Formation Template) allows you to properly deploy the BeVyPN application on AWS cloud. It is important to note that without the right CFT, CacheGuard Gateway would not work.
To work, a CacheGuard Gateway requires at least 2 NIC (Network Interface Card). The two NIC are the internal and the external NIC. Protected users and Web applications should be placed behind the internal NIC (trusted zone) while the external NIC allows the Gateway to communicate with the insecure internet. The CFT creates the two required NIC, connect them to two distinct sub networks and assigns to each NIC a private and a public IP address. The internal public IP address can be freed if end-users of the CacheGuard Web proxy do not need to directly connect to the Gateway via the internet (but connect using CacheGuard VPN).
All AWS resources are created in a dedicated VPC by default. The created EC2 instance on which CacheGuard Gateway run can then be moved to other VPC and/or networks according to your infrastructure architecture on AWS.
CloudFormation Template (CFT)
AWS CloudFormation templates are JSON or YAML-formatted text files that simplify provisioning and management on AWS. The templates describe the service or application architecture you want to deploy, and AWS CloudFormation uses those templates to provision and configure the required services (such as Amazon EC2 instances or Amazon RDS DB instances). The deployed application and associated resources are called a "stack."
Version release notes
The complete change logs can be found at https://cacheguard.net/doc/guide/changelogs.html
Additional details
Usage instructions
The application collects your name and email address and automatically send them in a secure way to CacheGuard Technologies Ltd. Your information is securely stored and will only be used to contact you in regards to the CacheGuard Gateway application.
You can manage your CacheGuard Gateway via its Web GUI at https://<cacheguard-public-ip>:8090 or via SSH. By default, CacheGuard Gateway on AWS uses two distinct public IP addresses: one external public IP used for outgoing traffic to the internet and one internal public IP used for incoming connections to its embedded Web proxy on the TCP port 8080. If from the same local public IP address you manage AND use your CacheGuard Gateway (as a Web proxy), your CacheGuard Gateway will be accessible only on its internal public IP address from that local public IP address.
To administrate your CacheGuard Gateway, login as the "admin" username and the specified password during the deployment. Please note that the application uses a self signed certificate, and it is therefore normal that you get a warning in your Web browser the first time you connect to the application.
Resources
Vendor resources
Support
Vendor support
With the BYOL license you can purchase different levels of support. The Basic Support level allows you to find answers to your technical questions via a collaborative help portal. The Standard and Premium Support levels give you the possibility to have direct access to CacheGuard experts in order to resolve any issues you may have with a CacheGuard product.
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.