Next-Generation Intrusion Prevention System (NGIPS)
Today's networks are highly dynamic. New technologies add complexity, and the number and type of applications and systems on your network continues to grow. Information security risks multiply in number and scale as attackers become more sophisticated—and stealthy.
Sourcefire Next-Generation IPS raises the bar for IPS technology by integrating real-time contextual awareness into its inspection. The system gathers information about network and host configurations, applications and operating systems, user identity, and network behavior and traffic baselines. By having the utmost visibility into what's running on your network, NGIPS offers event impact assessment, automated IPS tuning, and user identification to significantly lower the total cost of ownership
How the NGIPS Uses Contextual Awareness to Fuel Intelligent Automation
Sampling of Application Awareness Provided by NGIPS
Leveraging the Open Architecture
Powered by Snort: Created by Martin Roesch, the founder of Sourcefire, Snort is the single most widely deployed intrusion detection and prevention technology in the world. With nearly 4 million downloads and over 326,000 registered users, collaboration with the Snort community offers advanced threat protection. Plus, the open architecture provides the ability to view, edit, and create Snort rules.
Backed by Sourcefire Vulnerability Research Team™ (VRT): The Sourcefire VRT is a group of leading security experts that maintain the open source community rule set and develop the official Snort rules used by the Sourcefire IPS solutions. The comprehensive threat protection offered by Sourcefire is consistently ranked number one. View the NSS Labs Network IPS Individual Product Test Results for the most recent proof.
Seamless Third-party Integration: Because of its open source flexibility, you can quickly and easily integrate Sourcefire IPS solutions with a variety of third-party technologies. Our technology partners include vulnerability management systems, security information and event management (SIEM) applications, network access control (NAC), network forensics, and more.
IPS and NGIPS Hardware and Technology
Sourcefire IPS and NGIPS solutions take advantage of the best hardware technology in the industry, providing IPS inspected throughput options ranging from 20Gbps down to 5Mbps. Upgrading Sourcefire IPS to NGIPS is as easy as adding a license to your software.
The new Sourcefire 3D8000 Series appliances offer interface modularity, expandability, and scalability. Modularity provides a low entry-price and enables you to choose the number of ports and media type for your network and swap out interface types as needed. Expandability gives you the option to pay for network interfaces as you grow. Scalability enables you to add additional processing power through appliance stacking.
At the heart of the new 3D8000 Series appliances lies the breakthrough FirePOWER™ acceleration technology, providing market-leading performance with greater energy efficiency.
All Sourcefire 3D Sensors operate in either inline intrusion prevention or passive intrusion detection modes and come with fail-open capabilities standard to safeguard constant network availability.