Athena NGFW (Next-Generation Firewall)

Athena NGFW (previously known as Network Secure) provides comprehensive protection for every network perimeter, ensuring the safety of your valuable assets, data, and users from emerging threats.
{{ $t('productDocDetail.guideClickSwitch') }}
{{ $t('productDocDetail.know') }}
{{ $t('productDocDetail.dontRemind') }}
8.0.106
{{sendMatomoQuery("Athena NGFW (Next-Generation Firewall)","New Features")}}

New Features

{{ $t('productDocDetail.updateTime') }}: 2026-01-04

1. [New] Added the product integration feature. Supports integration with cloud and local products through a unified interface, which reduces delivery costs for XaaS services.

(1) Provides a unified interface for integration with cloud and local products. Platform-X can be connected in minutes.

(2) Supports integrating with cloud platforms such as SaaS XDR, SaaS Endpoint Secure, Cyber Guardian, and Access Secure after the connection with Platform-X.

(3) Supports automatic detection of integration with other platforms to facilitate troubleshooting.

2. [Optimized] Fixed critical issues in the delivery of Threat Intelligence Gateway.

(1) Enhanced the adaptability of Threat Intelligence Gateway across scenarios.

A) Supports the deployment of Threat Intelligence Gateway in mirror mode or active-active mode across a layer 2 network, as well as in scenarios where a VLAN interface or subinterface is configured as an outbound interface.

B) Supports the deployment of Threat Intelligence Gateway in scenarios where DNS Proxy or DNS Transparent Proxy is enabled and internal or private network protection is required.

C) Added the adaptive adjustment feature to RT protocol to prevent network latency or disconnection caused by network egress or carrier equipment restrictions during traffic forwarding. The adaptive adjustment feature enables the transfer protocol to be automatically adjusted by monitoring network conditions such as bandwidth, latency, and packet loss.

(2) Simplified the deployment process of Threat Intelligence Gateway. You can quickly deploy it in one minute. Supports more self-service troubleshooting solutions during deployment, which enables you to fix issues by following prompts.

(3) Enhanced the detection capability of Threat Intelligence Gateway, achieving realtime detection for malicious files.

(4) Enhanced the quality of the Threat Intelligence Gateway module by supporting high-reliability PoPs, fixing the elephant flow issue caused by Threat Intelligence Gateway, and enhancing the stability of the module.

3. [New] Added the GPT-based Phishing Email Protection feature, improving AI-powered phishing detection capabilities.

(1) Supports connecting with Platform-X to detect phishing emails in real time using Anti-Phishing GPT.

(2) Supports efficient analysis of phishing emails using GPT, eliminating the need for human evaluation.

(3) Provides flexible and closed-loop remediation options, such as sending email alerts, actively blocking malicious links, and coordinating the deletion of associated attachments.

4. Fixed critical quality issues.

(1) [Optimized] Optimized the performance of URL Filter to increase the first-packet blocking rate. Added a third-party Webroot query API to improve URL categorization accuracy.

(2) [New] Added a cost-effective model (NSF-1060A-I Desktop).

5. [New] Fixed elephant flow issues in data center scenarios using DPU NICs.

(1) Identifies elephant flows through multi-dimensional analysis, focusing on metrics such as instantaneous bandwidth (bps), packets per second (pps), and total throughput per flow.

(2) Supports elephant flow control and offloading to DPU NICs.

(3) Devices compatible with DPU NICs include NSF-1100A-I, NSF-3100A-I, NSF-3400A-I, NSF-7100A-I, NSF-7200A-I, NSF-7300A-I, M6000-F-I, and NSF-7500A-I.

6. [Optimized] Optimized product quality.

  1. Fixed multiple known issues, and optimized HA usability and IPsec VPN stability.