Web Security Appliance provides selective HTTPS scanning.

Press Release Summary:




Enforcing security policies at enterprise level, S-Series(TM) supports anti-spyware signatures from Webroot as well as anti-spyware and anti-virus signatures from McAfee. Reputation Filters include URL Outbrake Detection, which identifies and blocks URLs that have no reputation or signature, and Botsite Defense, which uses Layer 4 Traffic Monitor to analyze multi-port traffic to identify connections associated with botnet activity on organization's network.



Original Press Release:



IronPort Launches New Enhanced Version of Industry-Leading S-Series Web Security Appliance



Improved S-Series adds Webroot and McAfee signatures, integrates selective HTTPS scanning, boosts reputation filtering

IronPort® Systems, a Cisco business unit and a leading provider of enterprise spam, virus, and spyware protection, has announced its new version of S-Series(TM) Web security appliance. Already the internet threat detection sector's top Web security appliance, the S-Series will augment its multi-vendor signature scanning and provide selective HTTPS scanning to provide unrivaled high-performance security policy enforcement at the enterprise level.

The upgraded S-Series will support anti-spyware signatures from Webroot as well as anti-spyware and anti-virus signatures from McAfee, to be processed via IronPort's Dynamic Vectoring and Streaming (DVS) engine. It will also be capable of performing selective HTTPS scanning, also through the DVS engine; this new function is vital given the more than 60 per cent annual increase in the use of HTTPS throughout the internet, a consideration overlooked in other Web security devices. Hackers have in fact become adept at creating apparently legitimate sites that initiate matching HTTPS connections and then transmit malware that cannot be analyzed by conventional security systems.

"Threat detection and management providers cannot afford to become complacent given the prevalence of malware- and spyware-delivering sites across the more than 10 billion active webpages currently in existence. Between 2 to 10 per cent of websites are believed to be malicious; this huge number necessitates the development of better technologies and strategies that prevent loss of confidential information; potential financial damages; system downtime; and reduced employee productivity", said Ray Kafity, Regional Sales Manager - Middle East, North Africa and Pakistan, IronPort Systems.

IronPort's improved appliance will also include enhancements to its Web Reputation Filters, which currently have one of the highest capture rates of Web-based malware. The S-Series Reputation Filters will add URL Outbreak Detection and Botsite Defense to their capabilities, thus making them the most comprehensive Web security features in the reputation-based filtering market. They are expected to play a crucial protective role for at least 7 per cent of computers connected to the internet, representing between 75 to 100 million machines, which are estimated to be part of some botnet or botsite system.

URL Outbreak Detection is designed to identify and block uniform resource locators (URLs) that have no reputation or signature and which are normally hosted on a botnet-controlled botsite. Botside Defense, on the other hand, will use a unique Layer 4 Traffic Monitor to analyze multi-port traffic to identify connections associated with botnet activity on an organization's network.

"The intelligence of these botnets is astounding. A single botnet can produce thousands of malware-laden botsites that are active for anywhere from a few minutes to a few hours. The only effective defense is a Web reputation service that can detect the underlying deception and filter the sites out proactively," added Kafity.
The enhanced S-Series appliance will also rely on the IronPort SenderBase Network to provide a strong defense against malicious Web-based intrusions. SenderBase has one of the largest email and Web-traffic footprints in the industry, allowing IronPort to detect and block new URL outbreaks rapidly. Real-time analysis of global Web traffic allows analysts in the IronPort Threat Operations Center to proactively publish reputation scores for such URLs prior to signatures being available from anti-malware vendors.

About IronPort Systems

IronPort Systems, headquartered in San Bruno, California, is a business unit of Cisco Systems, Inc. IronPort is the leading provider of anti-spam, anti-virus and anti-spyware appliances for organizations ranging from small businesses to the Global 2000. IronPort appliances utilize SenderBase®, the world's largest email and Web threat detection network and database. IronPort products are innovative and easy to use, providing breakthrough performance and playing a mission-critical role in a company's network infrastructure. To learn more about IronPort products and services, please visit: www.ironport.com

All Topics