DragonĀ® Intrusion Prevention
Distributed Intrusion Prevention & Response for Edge-to-Core and Data Center
The Enterasys Intrusion Prevention System (IPS) is unique in its ability to gather evidence of an attacker’s activity, remove the attacker’s access to the network, and reconfigure the network to resist the attacker’s penetration technique. The IPS stops attacks at the source of the threat and can proactively protect against future threats and vulnerabilities. Offering an extensive range of detection capabilities, host-based and network-based deployment options, a portfolio of IPS appliances, and seamless integration with Enterasys switching, network management and advanced security applications. Enterasys IPS utilizes a state-of-the-art high-performance, multi-threaded architecture with virtual sensor technology that scales to protect even the largest enterprise networks.
When deployed in combination with Enterasys SIEM and NMS Automated Security Manager (ASM), IPS facilitates the automatic identification, location, isolation and remediation of security threats. IPS also integrates seamlessly with Enterasys Network Access Control (NAC) for post-connect monitoring of behavior once network access has been granted.
The advanced in-line IPS is designed to block attackers, mitigate denial of service attacks, prevent information theft, and ensure the security of voice over IP (VoIP) communications - while remaining transparent to the network. Built upon award-winning intrusion prevention technology, Enterasys IPS can alert on the attack, drop the offending packets, terminate the session for TCP and UDP-based attacks, and dynamically establish firewall or role-based access control rules. IPS leverages thousands of vulnerability and exploit-based signatures.
