Find White Papers
Home
About Us
List Your Papers
    
> NitroSecurity > Protecting the Inside Edge of the Network: NitroSecurity's Active Network Response

Protecting the Inside Edge of the Network: NitroSecurity's Active Network Response

White Paper Published By: NitroSecurity

NitroSecurity's Active Network Response is a new security model that delivers network protection closer to the users at the network edge - stopping attacks before they can propagate throughout the network. 



Tags : 
network security, intrusion prevention, hackers, hacker detection, ips, anr, nitro security, nitrosecurity

NitroSecurity
Published:  Aug 21, 2009
Type:  White Paper
Length:  3 pages

fkqolar`qflkToday 's enterprise network faces increasingly diverse A more recent countermeasure for preventing internalthreats. The new reality is that these threats now come attacks to the network is to restrict vulnerablefrom desktops inside the network more often than computers from accessing the network. This "accessfrom the outside world. With the growth of VPN control" method is accomplished by proactivelyconnections, extranets, and partner/guest connectivity, verifying computer compliance before permittingthe enterprise network has many more entry points access. It also requires loading a security agent on than just the Internet. every computer and combining it with networ kauthentication to control network access. In the event To date, the enterprise security strategy has primarily of a non-compliant desktop, this measure involves somefocused on protecting the network from the "outside form of quarantine, such as isolating vulnerableworld". Organizations have installed firewalls between machines in a quarantine VLAN.themselves and the Internet, established VPN access,and are filtering web traffic and e-mail at the gateway. The "security agent" method is a good proactiveHowever, networks continue to be affected by ever measure, but has some significant weak points. First, increasing and more complex worms, viruses, and it puts all the security control on the client, which isspy ware/malware that are able to attack vulnerable not always reliable. Most viruses first action aftercomputers in multiple ways - including attacking gaining access to the computer is to disable all securitydevices connected to desktops themselves. The sheer and anti-virus software. More importantly, not allnumber of entry points (i.e. ports on the inside of the computers in the new expanded enterprise network arenetwork) to the network makes it difficult to apply under the management of the IT department. Thiscontemporary perimeter technologies to solve the leaves unmanaged workstations as a large threat. Finally,problem of internal attacks. not all desktops are "desktops". More and more deviceson the network are not personal computers, but PDAs,VOIP phones, and IP video hardware, medical devices,and even printers/copiers. These devices often run ongenerally available operating systems, such as MicrosoftWindows XP, but cannot easily have protection softwareloaded and are not able to authenticate themselves.
^qq^`hpcoljqebfkpfablrqToday 's network security architecture creates twopoints of protection: the perimeter defenses forprotecting the enterprise from the Internet and agentsoftware that keeps some non-compliant computers offthe network. While both are important, they do notaddress the increasing larger problem - what isprotecting the network from the attacks that comefrom within the enterprise?
Analysts agree that in a number of years switchesthemselves may eventually incorporate increasedsecurity intelligence. However, there are very largeinvestments already made today in traditional switchingtechnology that is non-security aware.
káíêçpÉÅìêáíóI=fåÅK=«=OMMRm~ÖÉ=NWith ANR, NitroSecurity complements its existingIPS products with the ability to locate and remediatethe root cause of attacks. The NitroSecurityEnterprise Security System (ESS) takes theinformation from any security event and identifiesthe exact physical port from where the eventoriginated. Then, based on the functionality of thelocal switch, it takes action to disable or reroute theend station to a quarantine state. As a result, thesecurity administrator is able to gain visibility intoand control of the incident and can rapidly respondwith an appropriate action. The power of theNitroSecurity architecture is that it does not requireany reconfiguration of the network or end stations.It also does not require software agents, so it canhelp minimize the affect of guest or unmanagedworkstations that may be the biggest security eventculprits. It overlays the existing infrastructure andinstantly starts providing a greater level ofenterprise-wide security - from the perimeter down to the port level.One of the greatest problems today is how to securemany switch ports, diverse user communities, and acomplex mix of endpoint hard ware. In contrast to afew WAN connections, an enterprise LAN may havethousands of ports. These could be distributed overmultiple buildings, campuses, states, or countries.Preventing the misuse of, or access to, every port is adifficu... [download for more]

Browse Technology Topics

Data Center

Virtualization, Cloud Computing, Infrastructure, Design and Facilities, Power and Cooling, Green Computing  
    

Data Management

Application Integration, Analytical Applications, Business Intelligence, Configuration Management, Database Development, Data Integration, Data Mining, Data Protection, Data Quality, Data Replication, Database Security, EDI, SOAP, Service Oriented Architecture, Web Service Management, Data Warehousing  
    

Enterprise Applications

Application Integration, Application Performance Management, Best Practices, Business Activity Monitoring, Business Analytics, Business Integration, Business Intelligence, Business Management, Business Metrics, Business Process Automation, Business Process Management, Call Center Management, Call Center Software, Change Management, Corporate Governance, Customer Interaction Service, Customer Relationship Management, Customer Satisfaction, Customer Service, EBusiness, Enterprise Resource Planning, Enterprise Software, EProcurement, Extranets, Groupware Workflow, HIPAA Compliance, IP Faxing, IT Spending, Marketing Automation, Performance Testing, Product Lifecycle Management, Project Management, Return On Investment, Risk Management, Sales & Marketing Software, Sales Automation, Server Virtualization, Simulation Software, Supply Chain Management, System Management Software, Total Cost of Ownership, Video Conferencing, Voice Recognition, Voice Over IP, Workforce Management, Incentive Compensation, Spend Management, Manufacturing Execution Systems, International Computing  

Human Resource Technology

Human Resources Services, Payroll Software, Time and Attendance Software, Workforce Management Software, Financial Management, Employee Monitoring Software, Employee Training Software, Recruiting Software/Services, Employee Performance Management, ELearning, Benefits Management, Expense Management  
    

IT Career Advancement

Cisco Certification, Microsoft Certification, Linux Certification, Network Security Certification, Software Development Certification  

IT Management

Employee Performance, ITIL, Productivity, Project Management, Software Compliance, Sarbanes Oxley Compliance, Service Management, Desktop Management  
    

Knowledge Management

Collaboration, Collaborative Commerce, Contact Management, Content Delivery, Content Integration, Content Management System, Corporate Portals, Customer Experience Management, Document Management, Information Management, Intranets, Messaging, Records Management, Search And Retrieval, Search Engines, Secure Content Management, SLA  

Networking

Active Directory, Bandwidth Management, Convergence, Distributed Computing, Ethernet Networking, Fibre Channel, Gigabit Networking, Governance, Grid Computing, Infrastructure, Internetworking Hardware, Interoperability, IP Networks, IP Telephony, Local Area Networking, Load Balancing, Migration, Monitoring, Network Architecture, Network Management, Network Performance, Network Performance Management, Network Provisioning, Network Security, OLAP, Optical Networking, Quality Of Service, Remote Access, Remote Network Management, Server Hardware, Servers, Small Business Networks, TCP/IP Protocol, Test And Measurement, Traffic Management, Tunneling, Utility Computing, VPN, Wide Area Networks, Green Computing, Cloud Computing, Power and Cooling, Data Center Design and Management, Colocation and Web Hosting  
    

Platforms

AS/400, Domino, Linux, Microsoft Exchange, Oracle, PeopleSoft, SAP, Siebel, Solaris, Tivoli, Unix, Web Sphere, Windows, Windows Server  

Security

Access Control, Anti Spam, Anti Spyware, Anti Virus, Application Security, Auditing, Authentication, Biometrics, Business Continuity, Compliance, DDoS, Disaster Recovery, Email Security, Encryption, Firewalls, Hacker Detection, High Availability, Identity Management, Internet Security, Intrusion Detection, Intrusion Prevention, IPSec, Network Security Appliance, Password Management, Patch Management, Phishing, PKI, Policy Based Management, Security Management, Security Policies, Single Sign On, SSL, Secure Instant Messaging, Web Service Security, PCI Compliance, Vulnerability Management  
    

Software Development

.NET, C++, Database Development, Java, Middleware, Open Source, Software Outsourcing, Quality Assurance, Scripting, SOAP, Software Testing, Visual Basic, Web Development, Web Services, Web Service Security, XML  

Storage

Backup And Recovery, Blade Servers, Clustering, IP Storage, ISCSI, Network Attached Storage, RAID, Storage Area Networks, Storage Management, Storage Virtualization, Email Archiving, Data Deduplication  
    

Wireless

802.11, Bluetooth, CDMA, GPS, Mobile Computing, Mobile Data Systems, Mobile Workers, PDA, RFID, Smart Phones, WiFi, Wireless Application Software, Wireless Communications, Wireless Hardware, Wireless Infrastructure, Wireless Messaging, Wireless Phones, Wireless Security, Wireless Service Providers, WLAN  
Search