Localized pages: French German Japanese
Need more info? CONTACT US
Solutions

Intrusion Prevention System

Built on the legacy of Sourcefire’s Snort® rules-based detection engine, Sourcefire IPS™ (Intrusion Prevention System) uses a powerful combination of vulnerability- and anomaly-based inspection methods—at throughputs and line speeds up to 10 Gbps—to analyze network traffic and prevent critical threats from affecting your network. Whether deployed at the perimeter, in the DMZ, in the core, or at critical network segments, and whether placed in inline or passive mode, Sourcefire’s easy-to-use intrusion prevention system appliances provide comprehensive threat protection. Scalable intrusion prevention system from Sourcefire

Most providers offer a “one-size-fits-all” intrusion prevention system, but Sourcefire is different. Our solution is divided into three customer protection phases—Intrusion Prevention System (IPS), Adaptive Intrusion Prevention System (IPS), and Enterprise Threat Management (ETM)—with each phase building upon the benefits and features of the previous one, adding capabilities to optimize a company’s network protection.

Intrusion Prevention System

Based on the award-winning Snort detection engine, Sourcefire intrusion prevention system provides best-in-class intrusion defense with extensive analytics, powerful reporting, and unrivaled scalability. Through the use of Sourcefire 3D® Sensors and one or more Sourcefire Defense Center® management consoles, the intrusion prevention system phase enables you to detect and/or block attacks targeting thousands of vulnerabilities.

Adaptive Intrusion Prevention System

Sourcefire is the first to offer an Adaptive intrusion prevention system strategy. The Adaptive intrusion prevention system phase incorporates the real-time/all-the-time network intelligence from Sourcefire RNA® (Real-time Network Awareness) to enable automated threat impact assessment and automated intrusion prevention system tuning, saving you considerable time and effort. Adding RNA to your 3D Sensors significantly reduces false positives and false negatives and allows small-sized IT security staffs to effectively monitor large networks.

Traditional intrusion prevention system vs the Sourcefire 3D System

Enterprise Threat Management (ETM)

Sourcefire’s ETM phase provides all-the-time/real-time knowledge of attacks, targets, and the state of your critical systems fully integrated into one system. It couples Sourcefire’s intrusion prevention system solution with additional ETM capabilities, including user identity tracking, network behavior analysis (NBA), and IT policy compliance. With Sourcefire’s ETM, you have the tools necessary to defend your network before, during, and after the attack.

No matter whether your organization is small or large, new to intrusion prevention systems or more experienced, Sourcefire offers an intrusion prevention system solution to meet your network security needs—today and tomorrow.


Quotes

"Events requiring manual reviews have been reduced from over 20,000,000 per month down to approximately 2,000 per month. By using the Sourcefire Intrusion Prevention System, we have been able to reduce the time and number of staff who are dedicated to analyzing IDS data, re-utilizing these SOC resources for other activities."

- Network Security Analyst, Global 500 Software Provider