Innovative Security Platform Delivers Performance and Efficacy
IronPort S-Series appliances combine secure application proxies for
Web traffic, a Layer 4 (L4) Traffic Monitor, and the IronPort
Dynamic Vectoring and Streaming (DVS) engine - a sophisticated
scanning and vectoring engine that has been designed from the ground
up to address the unique challenges posed by scanning Web
transactions and objects. This provides a powerful Web security
platform, optimized for performance and efficacy.
A fast Web Proxy
provides control over all Web traffic and allows for deep content
analysis, which is critical to accurately detect devious and rapidly
mutating Web-based malware. The industry's first implementation of
reputation-based caching enables rapid delivery of safe objects and
content to the end-user. Powered by AsyncOS™, IronPort's proprietary
operating system, the Web proxy easily scales up to 100,000
simultaneous inbound and outbound TCP connections, ensuring high
performance and throughput for the largest enterprise networks.
An integrated Layer 4 (L4) Traffic Monitor
scans all ports at wire speed, detecting and blocking spyware
"phone-home" activity. By tracking all 65,535 network ports, the L4
Traffic Monitor effectively stops malware that attempts to bypass
Port 80 and also prevents rogue P2P and IRC related activity.
IronPort's DVS Engine
employs sophisticated object parsing and vectoring techniques, along
with stream scanning and verdict caching, resulting in up to a 10x
scanning throughput increase over first-generation solutions.
A fast, full application proxy
allows deep content analysis, which is critical for accurately
detecting devious and rapidly mutating Web-based malware. Powered by
AsyncOS™, IronPort's proprietary operating system, the proxy easily
scales up to 100,000 simultaneous inbound and outbound TCP
connections, ensuring high performance and throughput for the
largest enterprise networks.
Multi-Layer, Multi-Vendor Defense In Depth
The industry's first Web Reputation Filters
provide a powerful outer layer of defense. Leveraging SenderBaseŽ,
IronPort Web Reputation Filters™ analyze over 40 different Web
traffic and network-related parameters to accurately evaluate the
trustworthiness of a given URL. Sophisticated security modeling
techniques are used to individually weigh each parameter and
generate a single score on a scale of -10 to +10. Administrator
configured policies are dynamically applied based on reputation
scores when filtering user requests. Web reputation data is also a
key input for the DVS engine, driving object vectoring and verdict
caching decisions.
Industry-leading IronPort Malware System™
leverages the DVS engine and multiple verdict engines, the first
from Webroot, to provide best of breed protection against the widest
variety of Web-based threats. These threats can range from adware,
browser hijackers, phishing and pharming attacks to more malicious
threats such as Trojans, system monitors and keyloggers.
IronPort built the DVS engine
to provide an integrated single-appliance solution matching against
multiple signature types from different vendors. The first set comes
from Webroot, an industry-leading anti-malware company. Webroot's
Threat Research team is backed by Phileas, the industry's first
automated spyware detection system, which identifies existing and
new threats by intelligently scanning millions of sites daily.
IronPort S-Series appliances are the first to include Webroot's
award-winning technology at the gateway perimeter to keep these
threats from entering the network.
Integrated multi-vendor verdict engines, powered by DVS
deliver the most complete and accurate anti-malware defense.
Customers have the option of selecting one or more signature vendors
to meet their efficacy requirements. The high throughput and low
latency of the DVS engine makes multi-vendor scanning feasible for
the first time on HTTP gateways. |