Solutions Contact
Contact Name
solutions@nci.ca | 905.607.9777
IT security | IPS
Malicious attacks can propagate from many sources; the Internet, through a VPN, across your WAN or from an infected end user workstation. An IPS is designed to detect and stop threats but it is critical to place the IPS strategically within your architecture to provide the optimum protection
Intrusion Prevention is now the de-facto standard in providing real-time threat awareness and protection. An IPS can detect, notify, and also prevent attacks in real-time.
Older, IDS technology (Intrusion Detection Systems) alerted organizations to attack attempts or intrusions. However, an IDS relied heavily on administrative intervention to analyze and process the threats. Today, IPS (Intrusion Prevention Systems) utilize in-line protection within the data path to not only detect and notify on attacks, but also to prevent them in real-time, with some devices handling multi-gigabits of traffic with little or no performance loss. Many vendors today also offer the ability to provide automatic update of threat signatures to provide genuine real-time attack prevention.
Organizations must answer a multitude of questions when considering IPS deployment:
- Who will manage this solution?
- Where to put the devices in the network? Will they be in-line or passive?
- How to manage the device if legitimate traffic is stopped?
- What happens if the box suffers a physical failure?
IPS offerings today may also include additional functionality to detect when a new device has been added to the network or when a user is still using an older, more vulnerable web browser.
NCI offers:
IBM - ISS: |
The Proventia Network Intrusion Prevention System delivers preemptive protection for enterprise networks. |
Sourcefire: |
Intrusion Sensors offer an intrusion prevention and detection solution that provides in-depth defense that analyzes network traffic and then either blocks, or alerts when suspicious activity is detected. |
Fortinet: |
Fortinet’s advanced VPN solutions meet the price/performance requirements of any-sized enterprise. |
Reflex Security Inc.: |
The Reflex IPS, identifies, analyzes and responds to internal and external threats in real-time through multiple threat detection and prevention techniques. In conjunction with the Reflex Command Center, this is a powerful, centralized, and comprehensive solution. |
TippingPoint: |
The TippingPoint IPS is an in-line device that is inserted seamlessly and transparently into the network. As packets pass through the IPS, they are fully inspected to determine whether they are legitimate or malicious. This instantaneous form of protection is the most effective means of preventing attacks from ever reaching their targets. |
