Skip Links

Network World

  • Social Web 
  • Email 
  • Close

Intrusion prevention to highlight RSA show

By Ellen Messmer , Network World , 04/14/2003
Newsletter Signup
  • Share/Email
  • Tweet This
  • Comment
  • Print

SAN FRANCISCO - Attendees at this week's RSA Conference will get a good look at an emerging cluster of products designed to identify attacks and block nefarious traffic before it can invade corporate networks.

About a dozen vendors, including Internet Security Systems (ISS) and IntruVert Networks, will introduce intrusion-prevention systems (IPS) that combine the intelligence of intrusion-detection systems (IDS) and attributes of firewalls.

With the market so young, vendors hope these new IPS wares will help win over business customers who are worried about the accuracy and performance of new technology, and nervous about the reliability of running antivirus and content-filtering on a single appliance.

ISS this week will seekto ease those fears with IPS gear called Proventia.

By the end of the summer, ISS plans to have two in-line IPS appliances that will run at 800M bit/sec and gigabit speed, respectively, to block harmful traffic at the network perimeter or in the data center.

"Customers will be able to choose what actions to take, to block or detect," says Tim McCormack, ISS vice president of marketing. ISS has not built hardware appliances until now, and the Proventia line will be appliance-based for speed and ease of deployment, he says.

ISS will showcase four models of its traditional IDS, RealSecure, in the Proventia appliance form. Model A201, at $10,000, is a 200M bit/sec IDS; Model A604, at $28,000, reaches 600M bit/sec; and Model A1204, at $50,000 attains 1.2G bit/sec, the company says. These appliances are designed for use in load-balancing and full-duplex environments.

Some see the inline IPS as the next-generation firewall, so perhaps it should be no surprise that by year-end ISS will introduce a Proventia IPS appliance intended to replace the firewall, McCormack says. The appliance would combine the firewall's packet-filtering and stateful-inspection capabilities. It also would combine antivirus, spam control and content filtering. For antivirus and spam filtering, ISS will partner with other vendors, which it hasn't disclosed.

With its strategy, ISS now goes head to head with Network Associates, the antivirus and security appliance vendor that was once an ally. Network Associates dropped ISS as a technology partner earlier this year and bought two security companies, IntruVert and Entercept Technologies, which sell network-based and host-based IPS products, respectively.

  • Share/Email
  • Tweet This
  • Comment
  • Print
Comment
Login
Forgot your account info?
Add comment
Anonymous comments subject to approval. Register here for member benefits.
Have a NetworkWorld account? Log in here. Register now for a free account.

Videos

rssRss Feed