David Heath
Tuesday, 06 December 2011 10:40
Business IT -
Security
Whereas most vendors have approached Next Generation Firewall technologies from the perspective of an existing firewall product, Sourcefire has turned the concept inside out and today launches an IPS-based device.
Founded in January 2001 by Martin Roesch, author of Snort, the world's most widely deployed (and free!) intrusion detection and prevention package, Sourcefire has today launched its foray into Next Generation Firewall (NGFW) systems with two new devices based on its tried-and-true IPS technology.
As Sourcefire's Sydney-based Security Engineer Gary Spiteri told iTWire that it's easier to add firewall capabilities to a device which is already good at intrusion prevention than the other way around.
"Threats continue to advance, said Greg Young, research vice president, Gartner, "and network security defenses must evolve to become effective against advanced targeted threats. Enterprises should require vendors to add next-generation intrusion prevention features to network security products. Mainstream enterprises over time will refresh existing next-generation firewall deployments with future versions with next-generation network IPS capabilities."
"As enterprises seek to increase their protection efforts they are looking for solutions that offer the agility to be effective in the face of modern threats," said Martin Roesch, Chief Technology Officer at Sourcefire. "Other NGFW solutions force customers to make tradeoffs between control, prevention, performance and manageability. The Sourcefire Next-Generation Firewall includes our industry-leading NGIPS and provides the user the power and confidence to prevent and respond to complex threats with the granular control required today."
Being IPS-based, these devices are able to operate at layer 7 and can recursively decode potential threats to determine exactly what malicious behaviour (if any) is present.
The two new NGFW devices achieve "threat inspected throughput" of 6GB/sec for the 3D8140 and 10GB/sec for the 3D8250. In addition, up to 4 of the 3D8250 devices may be stacked for a full 40GB/sec throughput.
Sourcefire are running a number of webinars to discuss the new devices, contact the company for details.