FEATURED VIDEO

Sponsored By:


SLIDE SHOWS
The two-pound starter laptop, unveiled Monday, runs on Intel's Atom processor.
With these seven new devices added to its roster, the open source mobility consortium, the LiMo Foundation is hoping to take Linux mobile to a whole new level and rival Google Android and the Symbian Foundation.
From Gary McKinnon, a UK hacker who just lost his extradition hearing, to Terry Childs, the San Francisco network administrator accused of holding the city's network hostage, the tech world is a sketchy place. Here are some recent examples of alleged crimes involving technology or the people that work in the industry.
INSIDE CHANNELWEB
techcareers logo Search Jobs:


  

Post Resume|Employers

Recent Post:


Sr. Analog Designer
Silicon Labs seeking Sr. Analog Designer in Austin, TX
spacer

Sourcefire Targets Enterprise Threats


CRN logo By Kevin McLaughlin, ChannelWeb
3:33 PM EDT Mon. Apr. 16, 2007
Sourcefire on Monday took the wraps off a new enterprise strategy that blends multiple security functions under one management umbrella.

At the heart of strategy is Defense Center, a turnkey appliance that manages Sourcefire's intrusion prevention, network access control (NAC), network behavior analysis (NBA) and vulnerability assessment technology, said Michele Perry, chief marketing officer at the Columbia, Md.-based security vendor.

Sourcefire also is rolling out Master Defense Center, an uber-management platform that aggregates security and policy information from up to 10 Defense Centers.

After organizations set up network security policies, Defense Center scans network traffic for violations using NAC, NBA, and embedded Nessus and NMap vulnerability scanners. The combination of technologies gives organizations visibility into the state of the network before, during and after an attack, Perry said.

"We're focusing on enterprise customers that are building policy response rules for compliance monitoring and getting fed up with trying to make these products work together," she said.

From a government perspective, agencies have traditionally had difficulty managing at the enterprise level, said Steve Charles, co-founder of immixGroup, a McLean, Va.-based integrator.

"Now that government auditors are checking for compliance with FISMA [Federal Information Security Management Act], organizations are looking harder every year for solutions that provide management and visibility across an enterprise," Charles said.

Sourcefire's Realtime Network Awareness (RNA) product, which performs flow analysis, provides the NBA piece that's needed to detect anomalous behavior, according to Perry. "If RNA detects that devices are doing something funny, it can call for a surgical scan of those devices and pull that data," she said.

Sourcefire is also tweaking conventional NAC with an offering it calls network usage control (NUC). NUC is the post-connect aspect that determines what users can do on the network once they've connected, and it can be used for ongoing compliance monitoring.

"We don't believe that pre-connect NAC is what customers are looking for. What they're really trying to control is policy-based usage across the network," Perry said.

Mike Rothman, president of Security Incite, an Atlanta-based consulting firm, said Sourcefire's strategy is strong from a standpoint of addressing the growing enterprise market demand for integrated solutions.

"They've got the basis for a network security platform. They just have to fill it out," Rothman said. "For example, not having a firewall/VPN integrated into the solution is a pretty big hole."


RATE THIS ARTICLE Worse 1 2 3 4 5 Better
CHANNELWEB MARKETSPACE >> (Sponsored Links)
RELATED BLOG >>
Photo
Kaminsky revealed details of a critical DNS flaw, which he withheld from the public until the Black Hat USA conference in order to allow time for patches to be developed and installed--despite a storm of criticism from fellow researchers contending that the flaw should be open to the public.
ADVERTISEMENT




CHANNEL SERVICES >>