
McAfee Network Security Platform
2
Data Sheet
Through integration with McAfee ePO software
and McAfee Enterprise Security Manager,
McAfee Network Security Platform gets an
accurate view of threats as they relate to
devices and users and which ones present the
greatest risk to the organization. The solution
incorporates device details, user information,
endpoint security posture, vulnerability assess-
ments, and other rich information to help
organizations understand threat severity and
business risk factors.
Performance and scalability
Get the best of both worlds—security and
high performance. McAfee Network Security
Platform combines a single-pass, protocol-
based inspection architecture with purpose-
built, carrier-class hardware to achieve real-
world inspection of more than 20 Gbps in a
single device. Its ultra-ecient architecture
preserves performance regardless of security
settings, while other IPS solutions can
experience up to 50% reduction in throughput
with “security over performance” policies.
Visibility and control
Make informed decisions about the applications
and protocols on your network. McAfee
Network Security Platform is the rst and
only IPS solution to combine advanced threat
prevention and application awareness into a
single security decision engine. We correlate
threat activity with application usage, including
layer 7 visibility of more than 1,500 applications
and protocols, to allow you to make more
informed decisions about which applications
you allow on your network. In addition to
application identication, McAfee Network
Security Platform provides user and device
visibility. It prioritizes risky hosts and users,
including active botnets, through the identica-
tion of anomalous network behavior.
Intelligent security management
Make the most of your security investment
through intelligent network security manage-
ment. McAfee Network Security Manager oers
scalable web-based management from two to
several hundred network security appliances. It
oers intuitive progressive disclosure workows
that guide administrators to relevant alerts as
well as easy-to-use security dashboards that
automatically prioritize events based on alert
severity and relevancy. McAfee Network Security
Platform integrates with McAfee ePO software
to give your organization a consolidated view of
risk and compliance across the entire enterprise,
including up-to-the-minute assessments of at-risk
infrastructure based on system vulnerabilities,
network defenses, and endpoint security levels.
Additional features
Advanced intrusion prevention
■
IP defragmentation and TCP stream
reassembly.
■
Anomaly detection.
■
McAfee, user-dened, and open-source
signatures.
■
Host quarantine.
■
Advanced evasion protection.
■
Inspection of virtual environments.
Botnet protection
■
Heuristic bot detection.
■
Multi-attack correlation.
■
Command and control database.
DoS and DDoS prevention
■
Threshold and heuristic-based
detection.
■
Host-based connection limiting.
■
Self-learning prole-based detection.
McAfee GTI
■
File reputation.
■
IP reputation.
■
Geo-location.
High availability
■
Active-active with stateful failover.
■
External fail-open (active).
■
Built-in fail-open (for copper ports only).
Protocol tunneling support
■
IPv6.
■
V4-in-V4, V4-in-V6, V6-in-V4, and
V6-in-V6 tunnels.
■
MPLS.
■
GRE.
■
Q-in-Q Double VLAN.
McAfee Network Security Manager
■
Tiered management, up to 1,000 sensors.
■
User authentication (Radius, LDAP,
and TACACS).
■
Automated failover and fail-back.
■
Disaster recovery of critical
conguration data.
■
Centralized, hierarchical policy
management.
McAfee Network Security
Platform Helps You:
Close security holes
■
Block malicious network
activity.
■
Prevent stealthy attacks.
■
Detect advanced malware.
Reduce management
headache
■
Automatically prioritize
events.
■
Streamline investigative
workows.
■
Eliminate unnecessary
tuning.
Adapt to the network
■
1 GigE, 10 GigE
connectivity.
■
Scale to 80 Gbps.
■
Active-active high
availability.
Kommentare zu diesen Handbüchern