 |
Perimeter Security
The perimeter, the boundary between the company network and the outside world, is still the first and most important line of defense. The performance of security solutions on the Internet and VPN gateways decides whether external attacks mounted by hackers and malicious codes are successful in penetrating the network – or whether they are blocked at the outset. Uncompromising perimeter security therefore forms the basis for comprehensive protection of the critical resources and processes of a company. |
Content Security
A large amount of undesired content enters companies via emails and the Internet. Spam and frivolous Internet offers are at best irritating. However, in a worst-case scenario, they constitute a serious threat to critical data and processes. Attackers specialize in gaining access to sensitive data through manipulated emails and Web pages. The growing flood of undesired content also compromises employee productivity and network performance. Companies react to this situation with solutions for content security and block spam and dubious Web offers, before they penetrate the internal network. |
Secure Connectivity
Successful integration of geographically distributed branches within the existing network infrastructure and seamless access to all critical business applications and data are essential for corporate success. |
Internal Security
Most attacks mounted today are within the network. A single remote access link with an unsecured external PC or laptop is often sufficient to allow hackers and malicious codes to open a back door into the company. There are also additional hazards that arise as a result of intentional or unintentional misconduct by some employees. This threat cannot be mastered with perimeter protection alone, because attackers are already behind the network limits. Internal security solutions are therefore required. These monitor the company network and permit fast reaction to risks. |
Endpoint Security
Traditionally, firewalls, central virus scanners and other intrusion detection or intrusion prevention devices were held responsible for securing an end-point. However with the SSLVPN, the intrusion prevention systems in the perimeter become ineffective as SSLVPN can be controlled at the two end points one being the desktop and the other outside the user control in the internet space.
End point security places the onus of security on the device itself. Real-life examples of this happening can be best seen with Broadband users' increasing use of desktop firewalls, spam and antivirus software. |
Industrial Security
Security appliance specially designed to meet the requirements of rugged environments while offering maximum communication reliability and state-of-the-art UTM protection. |
The need for continual remote access to IT infrastructure located inside industrial environments alongside with the adoption of the IP protocol and standard operating systems for control terminals attached to machine equipment has rendered these environments vulnerable to network based attacks. Affected systems comprise internal machine compounds as well as off-site machine equipment in remote locations to which maintenance access is required. What makes these industrial environments so special is that the equipment at stake is typically highly valuable and may pose a significant environmental hazard when maliciously compromised.
netfence industrial has been designed to combine top grade UTM protection on the network and application level with strong WAN optimization capabilities for optimum remote access availability. |
Management
Security-conscious companies and managed security providers are having to deal with a rapidly increasing number of gateways in their networks. These gateways have to be rolled out, configured and monitored on a permanent basis. It doesn't matter how convenient the installation and ongoing updating of an individual gateway is – administering hundreds or thousands of systems individually is undoubtedly cost-intensive and requires enormous input from qualified personnel. |
| At the same time, a company-wide security policy has to be constantly updated to all gateways. This increasingly restricts the configuration of individual systems with each other. A simple site-to-site VPN tunnel assumes that at least two gateways are synchronized with each other. In large environments with hundreds of such installations, this results in costs for configuration and operation that don't rise proportionately but increase exponentially with the number of systems. |
Unified Threat Management
As the complexity and number of threats grow, so does the need for a comprehensive security solution. With many solutions consisting of firewall appliances, intrusion prevention/detection, anti-spam, anti-virus, anti-spyware and content protection, organisations are often faced with the daunting task of integrating the numerous individual components into one homogenous and centrally manageable system. |
| Ideally, the solution should offer effective protection against attackers at the same time as providing those responsible with an overview of the company’s current security status. However, this can often only be realised with high personnel expenditure and the resulting financial overheads. phion addresses these challenges and provides the perfect Unified Threat Management (UTM) solution for medium-sized companies. |
Web Application Security
The security and integrity of web applications and services is vital for all enterprises that have web-based sensitive information, use online banking services and offer or operate e-commerce businesses. Web application security is increasingly becoming a concern for many organizations, as reflected in compliance requirements such as the Payment Card Industry Data Security Standard (PCI DSS).
|