Internal Security
Check Point and Arbor Networks
To date, IT security organizations have focused on the network perimeter. However, many of today's attacks are introduced from inside the network. Laptops, PDAs, and other devices travel into and out of the network daily, making it possible for legitimate users to infect the network or unwittingly grant attackers access to the network via a Trojan horse or other spyware. Many worms have propagated inside the network after being introduced by an internal source. Once a single network device has been infected, the entire network can be compromised very quickly. Fast-spreading worms, often called "flash" or "blitz" worms, can spread worldwide in a matter of minutes.
With such costly threats becoming increasingly common, organizations have come to realize that they must provide better defenses against worms, unauthorized access threats, and other attacks within their internal network.
The combined solution between the Check Point InterSpect internal security gateway and the Arbor Networks Peakflow X product enables customers to proactively monitor and protect their network from attacks originating inside the corporate LAN. InterSpect has the ability to segment the network into organizational security zones and quarantine infected zones until they have been cleaned-preventing the rest of the network from being infected. InterSpect also provides the deepest and most comprehensive protection for Microsoft protocols, such as MS RPC, CIFS, SQL, and DCOM, as well as other LAN protocols.
Benefits
- Combines network anomaly detection with protection against LAN protocol vulnerabilities to provide the most comprehensively secured internal network.
- Increases protection levels and ensures layered defenses are in place to maximize internal security.
- Stop the spread of worms, viruses, trojans, and DoS attacks that other technologies miss
- Assess policy compliance and the impact of planned or unanticipated network events
- Identify and prioritize critical threats to resolve risks and events before they become crises
Arbor Networks Peakflow X
Arbor's network integrity systems protect organizations from destructive network attacks like Internet worms and denial of service, and operational vulnerabilities like peering issues and routing instability. As network security threats multiply, organizations require network-wide solutions to successfully prevent costly downtime, network cleanup, and loss of customer confidence.
Built on the proven Peakflow Platform, Arbor's solutions provide a real-time view of network activity, enabling organizations to instantly protect against cyber attacks and harden networks from future threats.
Built to meet the demands of the largest enterprise networks, Peakflow X allows organizations to solve the internal security threat, while maintaining business continuity. Utilizing Relational Modeling - a breakthrough in network modeling technology - Peakflow X constructs a network-wide view of the entire network, auto-learning host behaviors to determine who talks to who, and how. Using this network-wide perspective, Peakflow X generates actionable security information allowing network operators to actively defend their network before, during and after worm outbreaks, harden the internal network against future threats, and eliminate insider misuse.
Check Point InterSpect
Check Point InterSpect is an internal security gateway that blocks the spread of worms and attacks inside the network and provides network zone segmentation. InterSpect is built specifically for internal network security and based on proven Check Point security technologies-INSPECT, Stateful Inspection, Application Intelligence, and SMART (Security Management Architecture).
Benefits
- Intelligent Worm Defender blocks the spread of worms and attacks inside the network.
- Network zone segmentation separates the internal network into organizational security zones.
- Quarantine of suspicious computers isolates attacks and compromised devices.
- LAN protocol protection provides the deepest and most comprehensive support for Microsoft and other LAN protocols.
- Pre-emptive attack protection provides proactive defenses against vulnerabilities and attacks before they are exploited.
- Endpoint security integration enforces endpoint security policies.
- Integrated SMART Management is scalable, easy to use, and easy to manage.