InfoSecurity India's First Magazine on Comprehensive IT Security
Menu Bar
InfoSecurity April 2009
NEW PRODUCTS


HID on the Desktop ensures secure access

HID Global announced the launch of HID on the Desktop, a powerful set of logical access control solutions that can extend the reach of an organization’s existing physical access infrastructure. Mirroring the secure and convenient user experience popularized by the company’s physical access control platforms, HID on the Desktop delivers user-friendly convenience and improved risk management for secure access to Windows.

HID on the Desktop solutions demystify strong (multi-factor) authentication for both the end-user and the administrator, enabled by the use of a single credential for both physical and logical access. A three-component solution (HID cards, OMNIKEY readers and naviGO software), HID on the Desktop provides corporate enterprises with the flexibility to deploy the most “risk-appropriate” authentication method. Depending on the employee role or job function, a single system can be used to manage different methods of log-on security supporting two-factor authentication (using PIN and card).

A key innovative component of the HID on the Desktop solution is naviGO software, which extends the Windows authentication model to include HID PROX and iCLASS contactless cards, allowing users the ability to use their existing HID access control badge to log on to Windows. In addition, naviGO allows card holders to manage their own enrollment, establish and manage their PIN and provides Emergency. Access via Knowledge Based Authentication all through a self-service application, naviGO also supports PKI based credentials including digital certificates on HID’s Crescendo smart cards.

Back to Top


IBM introduces endpoint security offering

IBM announced a first-of-a-kind endpoint security offering, IBM Proventia Endpoint Secure Control (ESC) that is designed to enable enterprises to escape from the constraints of vendor lock-in and to enhance endpoint security, compliance and operations at a lower cost. This new endpoint security offering is delivered by IBM Internet Security Systems (IBM ISS), leveraging IBM's depth in security experience and technology from BigFix, Inc. for endpoint security management.

The IBM ISS solution delivers endpoint security management designed to address two major problems in the industry today—the escalating cost of security and the growing complexity of endpoint security management. IBM Proventia Endpoint Secure Control combines many of the key areas of security endpoint management, including intrusion prevention systems (IPS), firewall and network access control; data protection such as device control, data loss prevention and endpoint encryption; security configuration and compliance management. Proventia ESC also handles IT security operations such as security patch management, and deployment / removal of security tools. IBM Proventia ESC breaks new ground by encouraging vendors to open their solutions to work together, thus radically simplifying the complex endpoint security marketplace. The new tool will complement IBM Tivoli's operational desktop management offerings with robust endpoint operational security solutions, allowing customers the ability to address end point security. IBM Proventia ESC will also provide key endpoint security audit data to IBM Tivoli Security Information and Event Manager (TSIEM), further strengthening TSIEM's enterprise-wide compliance reporting capabilities.

IBM Proventia Endpoint Secure Control will be available in the spring of 2009. At that time, IBM will provide current IBM Proventia Desktop clients an upgrade path to the new offering.

Back to Top


Juniper Networks expands SRX Series

Juniper Networks announced the expansion of the Juniper Networks SRX Series with the SRX3000 line of extensible “no compromise” networking and security products that run on JUNOS Software, a single source network operating system integrating routing, switching, and security services. The SRX3000 line offers a flexible and modular approach to drive a sustainable competitive advantage for companies to simultaneously improve data protection, maintain compliance, increase productivity and lower TCO. In addition to delivering firewall services, the SRX3000 line natively integrates multiple services such as Intrusion Prevention System (IPS), Distributed Denial of Service (DDos/DoS) protection, Network Address Translation (NAT), policy and control, identity management, and Quality of Service (QoS).

The SRX3600 is the industry’s first single platform that enables a no-compromise 10 GE network environment that can support 30 Gbps of stateful firewall, up to 10 Gbps of VPN, 10 Gbps of IPS, and 175,000 new connections per second. The SRX3400 can support 20 Gbps of stateful firewall, up to 6 Gbps of VPN, 6 Gbps of IPS, and 175,000 new connections per second. Both the SRX3400 and SRX3600 are based on mid-plane design, enabling twice as much flexibility as other units of similar size. Similar to the SRX5000 line, the SRX3000 line offers the scalability of the SPCs and input/output cards for scale of Ethernet ports and services processing.

The SRX3000 Series Services Gateways make up part of the recently announced Juniper Networks Adaptive Threat Management Solutions. Based on a dynamic, open security infrastructure, Juniper’s Adaptive Threat Management Solutions leverage new and enhanced technologies based on a best-in-class networking product portfolio.

Back to Top


Comodo Endpoint Security Manager comes with DDP

Rather than permit executable computer files to install themselves unless they appear on a blacklist, Comodo's Endpoint Security Manager protects enterprise data on a revolutionary new model: default-deny protection (DDP).

The protection software quarantines any software file entering a computer system unless it appears on Comodo's proprietary whitelist of files known to be harmless. System users may then choose to allow the quarantined files to install and execute. With industry-standard default-allow protection, malicious software such as viruses, keyloggers, Trojans or buffer overflow attacks can wriggle in to the computer and install itself without the user's knowing or being able to stop it. Computers are exposed to malicious software if a computer user opens an infected email, or reads from an infected thumb drive or disk. Default-allow systems only stop malware if it is already on the security vendor's list of known malware, and if the computer user has updated the list.

Back to Top


SonicWALL introduces high-speed 802.11n Clean Wireless solution

SonicWALL, Inc. announced a new Clean Wireless solution combining 802.11n wireless controller functionality in NSA and TZ firewalls with SonicPoint-N Dual-Band smart access points. The Clean Wireless solution works by scanning all wireless traffic using the SonicWALL patented Reassembly-Free Deep Packet Inspection technology, delivering comprehensive protection from viruses, spyware and other malicious network threats on the wireless network by scrutinizing wireless traffic with the same intensity as wired traffic. The Clean Wireless solution enables IT administrators to build high-performance, distributed wireless networks with unified policy management across both the wireless and wired networks.

The secure wireless controller is available in SonicOS 5.2 firmware and in addition to SonicPoint management, provides wireless encryption, wireless intrusion detection, virtual access point support, wireless roaming and integrated wireless guest services. SonicOS 5.2 firmware is available for download immediately for TZ and NSA firewall customers with active support contracts.

Based on the IEEE 802.11n draft 2.0 standard, the SonicPoint-N Dual-Band access point enables up to 300 Mbps wireless data rates using 3x3 multiple-input multiple-output (MIMO) technology, packet aggregation and channel bonding to result in a better wireless user experience for anyone
using either legacy 802.11a/b/g clients or new 802.11n clients. The SonicPoint-N Dual-Band access points are available immediately through worldwide SonicWALL distribution channels.

Back to Top


Trend Micro unveils Internet Security Software 2009

Trend Micro recently launched its 2009 versions of its flagship consumer products in India. Trend Micro AntiVirus and Trend Micro Internet Security keep consumers' data and personal information secure from online threats by delivering smart security solutions that can respond and adapt to users’ needs. The products are powered by the Trend Micro Smart Protection Network, a cloud-client security infrastructure that correlates Web and email threat data by using reputation technologies that compare threats against in-the-cloud threat databases.

The 2009 version’s new and enhanced features help consumers get smart about Internet-usage.
With advanced parental controls, parents can better tailor controls for each family member. The enhanced Home Network Protection enables users to manage security of multiple computers easily. Users can see and remotely manage other computers in their home network through a graphical home network map while blocking intruders from accessing their network. In addition, the Security Activity Dashboard gives users a comprehensive and customizable snapshot of all the security activities on their computers through easy-to-use charts and graphs. With State Aware, users no longer get interruptions from scanning and pop-up during full screen mode activities such as watching a DVD, conducting a PowerPoint presentation or playing a computer game. With 20GB worth of Carbonite Online Backup, users now have an additional option of protecting their sensitive data.

Back to Top


Innovative email security protection from SonicWALL

SonicWALL announced the immediate availability of its new E-Class Email Security Appliance (ESA) ES8300. The ES8300 is twice as fast, with twice the memory and ten times the disk storage as previous SonicWALL e-mail security platforms, providing an extremely cost effective inbound and outbound e-mail protection solution and a valuable tool in the fight against spam. SonicWALL's Advanced Reputation Management (ARM) combines the power of Sender IP reputation techniques with the speed and depth of the SonicWALL GRID Network to reject up to 80 percent of e-mail threats at the connection level. To supplement and improve upon traditional IP Reputation information, SonicWALL introduces GRIDprints from the SonicWALL GRID Network, a real-time reputation analysis of the text, URLs, images, attachments and structure attributes of an e-mail. Supported by the SonicWALL Grid Network with over four million endpoints, hundreds of millions of messages and billions of reputation votes, ARM is able to scan messages, regardless of size, and subsequently block them before they even enter the system. Management includes logging of all actions, optional tuning of GRIDprint settings and centralized management and reporting across multiple systems.

Back to Top


Sun Microsystems and C-SAM secures mobile banking

Sun Microsystems and C-SAM, one of the pioneers in secure mobile phone-based transaction technology, announced the availability of a secure, state-of-the-art, high performance, comprehensive and field proven Mobile Banking (mbanking) solution at a very attractive price point. The comprehensive mbanking solution from C-SAM preloaded on Sun platforms will ensure low cost of ownership, quick deployment and peace of mind for banks across the country. The ready-to-deploy platform works on any network-GSM or CDMA and is fully compliant with 'Mobile Banking Transactions in India—Operative Guidelines for Banks’ recently issued by RBI.
 
The C-SAM mobile banking application running on Sun’s high performance scalable servers (one App tier and One Database tier) will help banks in the country acquire new customers, offer new products and services, reduce transaction times, save costs and increase customer satisfaction. The solution runs on Sun's popular MySQL open source database and the Sun GlassFish Enterprise Server, a complete Java Platform Enterprise Edition (Java EE) application server that provides the foundation to develop and deploy next-generation applications and services.

The Sun-C-SAM ready-to-deploy platform is available today through a competitive pricing structure (Rs. 41 Lakhs + taxes) based on licenses, technical support, and implementation. The offer was valid till March 31, 2009.

Back to Top


HID Global introduces UltraCard Premium

HID Global announced the launch of UltraCard Premium cards at the ISC West International Security Conference and Exposition. The preferred card for High Definition Printing applications, the affordable and extremely durable UltraCard Premium is the non-technology card of choice for the Fargo HDP5000 and other Direct-to-Card applications.

The UltraCard Premium’s composite material construction provides for maximum durability, flexibility and card life, with optimal resolution print quality for re-transfer printing, lamination and fluorescent panel ribbon printing applications. It can be used with any card printer on the market. The UltraCard product line, available exclusively as part of HID's Global's Fargo brand secure card issuance solutions, has a long standing reputation among dealers and end-users for consistent quality in construction. The addition of the new UltraCard Premium composite card provides a significantly higher level of quality and durability to the product line.

Back to Top


Kerio introduces new Kerio WinRoute Firewall 6.6

Kerio Technologies announced a new version of Kerio WinRoute Firewall, a Windows-based Unified Threat Management (UTM) gateway security solution. This version premieres a cross-platform Kerio VPN Client for Windows, Mac OS X, and Linux, addressing a growing need to provide secure VPN connectivity to the mobile workforce with diverse OS platforms.

Available now for Windows, Mac OS X and Linux, the Kerio VPN Client is offered at no additional cost to valid license holders of Kerio WinRoute Firewall 6.6. Kerio WinRoute Firewall ships with user management, gateway antivirus, VPN, bandwidth control, Internet link load balancer and gateway firewall. Customers can choose from 16 languages, including Chinese and Japanese.

Kerio WinRoute Firewall 6.6 is immediately available starting at $329 for ten users, or $395 with integrated McAfee Anti-Virus. Additional information on Kerio WinRoute Firewall can be found at www.kerio.com/kwf.

Back to Top


Arbor Networks unveils Internet monitoring system

Arbor Networks unveiled the next-generation ATLAS Internet monitoring system which has been enhanced to look beyond security-related events. ATLAS now includes real-time global Internet traffic, routing and application information. This added layer of business intelligence will better arm service providers to deliver new, secure, revenue-generating services.

ATLAS is a collaborative effort with 100+ ISPs: Arbor has been a pioneer in developing innovative industry initiatives that facilitate cross-provider collaboration and information sharing. The massive ATLAS data set was made possible because of Arbor’s reputation as a trusted third party among the global service provider community. All participating ISPs have agreed to share anonymous traffic data on an hourly basis. Through Arbor’s Peakflow SP and eSeries deployments, customers are sharing anonymized data about their networks that is aggregated into the ATLAS system, analyzed by Arbor’s world-renowned security research team and then shared among Arbor’s service provider customers.

ATLAS is more than a security monitoring platform, it’s a business intelligence tool: The Arbor products that make up the heart of the ATLAS system have been refined and expanded to provide more real-time intelligence about peering relationships, capacity planning, routing, network management, applications, new services and markets. These new capabilities are now reflected in the real-time, actionable intelligence that ATLAS delivers to Arbor’s ISP customers.

Back to Top


Blue Coat introduces WAN optimization solution

Blue Coat Systems announced version 5.4 of its SGOS operating software for its Blue Coat ProxySG appliance family. The new release is designed for fast installation for WAN optimization deployments and features an intelligent configuration wizard that enables set-up in less than a minute, even by a novice.
 
The streamlined installation provides an immediate baseline WAN optimization configuration that, unlike competitive offerings, provides both real-time visibility of WAN application traffic and the ability to accelerate business-critical applications. From this initial configuration, enterprises realize instantaneous acceleration of remote file access (utilizing CIFS), E-mail programs including Microsoft Exchange and Web-based applications whether internal or external providing an immediate time-to-value. The simplified configuration process dramatically reduces the complexity of choices for an initial set-up by automating and layering greater intelligence into each of the installation steps. Enterprise customers can then apply the industry’s most robust set of customization features to gain greater network control, including the ability to manage, meter or block unimportant or malicious applications and content.
 
In addition to the streamlined configuration wizard, ProxySG appliances now feature auto-detection of networking parameters, including automatic discovery of network topology variables, such as interface speeds and layer 2 Media Access Control (MAC) issues. The appliances can now also locate centralized acceleration peers in the data center or headquarters and provide detection of and responsive recovery from high-loss networking conditions.

Back to Top


Fortinet unveils new Endpoint vulnerability management solution

Fortinet recently broadened and deepened its security product portfolio with the introduction of a new vulnerability management (VM) and compliance solution, the FortiScan-1000B appliance. It will help organizations protect thousands of computing assets by integrating the following capabilities into a single device: endpoint vulnerability management, industry and federal compliance, patch management and remediation, and network-level vulnerability management.

FortiScan-1000B leverages technology gained from Fortinet's 2008 asset purchase from risk and IT security compliance company, Secure Elements. Secure Elements' C5 Compliance software solution was the leader in its class and forms the basis for the FortiScan-1000B appliance. Fortinet also integrated the Vulnerability Scanner module from its FortiAnalyzer family of logging, analyzing and reporting appliances into FortiScan. The Vulnerability Scanner is a network-based VM module designed to automatically discover, inventory and assess the security posture of servers, hosts and other devices. The C5 Compliance platform and the FortiAnalyzer VM module are combined on a security-hardened hardware platform to form FortiScan-1000B.

The FortiScan-1000B provides a powerful solution for organizations that require compliance with regulatory mandates such as PCI-DSS, SOX, GLBA, HIPAA, etc. In addition, for customers within the federal government and infrastructure markets, FortiScan offers enterprise-level security compliance for NIST (National Institute of Standards and Technology) / SCAP (Security Content Automation Protocol), including the Federal Desktop Core Configuration (FDCC) standard. The Secure Elements C5 Compliance solution was the first product of its kind to receive SCAP certification.

Back to Top



Home   |   Current Issue   |   Archives   |   Subscription   |   Advertisement   |   Contacts

© 2006-07 'InfoSecurity' magazine. All rights reserved.
Website designed, developed and maintained by Fanatic Media