InfoSecurity India's First Magazine on Comprehensive IT Security
Menu Bar
InfoSecurity Aug 2009
NEW PRODUCTS


‘HID on the Desktop’ launched in India

HID Global launched ‘HID on the Desktop’ during a full day event on 18th June 2009 at Hotel Leela Palace in Bangalore, India, HID stressed that the username and password-based security management solutions have a number of hidden costs and loopholes. “A latest Gartner study puts the cost of traditional password management solutions at between $70 and $200 per user per year, and the cost of a lost password or a security breach is even more expensive,” said Tim Phipps, Director Identity and Access Management, HID Asia Pacific.

HID on the Desktop represents a bold departure from the product positioning and value propositions offered by other strong authentication solutions on the market. Built out of a need to balance ease-of-use, cost and diverse security requirements, this economical solution allows organizations to leverage existing physical access cards, enabling physical access control integrators to use HID technology to provide customers with complementary logical access solutions.

HID on the Desktop solutions demystify strong (multi-factor) authentication for both the end-user and the administrator, enabled by the use of a single credential for both physical and logical access. A three-component solution (HID cards, OMNIKEY readers and naviGO software), HID on the Desktop provides corporate enterprises with the flexibility to deploy the most “risk-appropriate” authentication method. Depending on the employee role or job function, a single system can be used to manage different methods of log-on security supporting two-factor authentication (using PIN and card).

A key innovative component of the HID on the Desktop solution is naviGO software, which extends the Windows authentication model to include HID PROX and iCLASS contactless cards, allowing users the ability to use their existing HID access control badge to log on to Windows. In addition, naviGO allows card holders to manage their own enrollment, establish and manage their PIN and provides Emergency.

Back to Top


Check Point extends its leadership

Check Point Software Technologies Ltd. announced SmartWorkflow, a new security management software blade that provides customers the option of extending their security infrastructure with policy change management functionality. The new SmartWorkflow Software Blade enables an automated process of tracking, approving and auditing policy changes within the security management console, minimizing configuration errors and optimizing the integrity of network security. SmartWorkflow includes reporting and auditing capabilities that help customers ensure compliance with corporate policies and regulations.

Security administrators are challenged by a constant stream of change requests. SmartWorkflow helps to ensure consistency across the company’s security policy, reducing the possibility of errors and policy mis-configuration. SmartWorkflow allows administrators to enforce a step-by-step workflow through a single management console create a new session, work on the session, review session changes, submit session for approval, get approval and deploy changes. Reports can also be easily generated to show what was changed, added or removed before submission for approval, and administrators can compare and restore policies to a previous state. SmartWorkflow joins recently released SmartProvisioning, expanding the list of security management software blades.

Changing business needs and threat scenario compels organizations to make changes to security policies, Check Point’s Smart Workflow automatically reviews and authorizes these changes against approved configuration standards and in return help customer reduce dangerous mis-configurations. More information on Check Point’s Software Blade architecture can be found at: http://www.checkpoint.com/products/softwareblades/architecture/index.html.

Back to Top


Trend Micro announces Core Protection for virtual machines

Trend Micro is expanding its overall virtualization security portfolio with the introduction of a content security solution to protect VMware ESX/ESXi environments. Trend Micro Core Protection for Virtual Machines is designed to secure VMware virtual machines, both active and dormant, comprehensively and efficiently. The product leverages the VMsafe APIs from VMware to offer layered protection through the use of dedicated scanning VMs coordinated with real-time agents within the VM.

The new Trend Micro Core Protection for Virtual Machines is optimized for virtualization and closes the security gaps unique to virtualized environments. It secures dormant and active virtual machines by providing scanning and pattern updates from a separate scanning virtual machine; and improves the performance profile of virtual servers.

It provides world-class malware protection by ensuring that virtual machines are secure even when dormant and ready to go with the latest pattern updates whenever activated. It also simplifies management by integrating tightly with the VMware management infrastructure, reducing the complexity of managing security within virtual environments.

Back to Top


SonicWALL revolutionizes Unified Threat Management

SonicWALL, announced the expansion of its TZ Series product line with the launch of the TZ 200, TZ 200 Wireless-N, TZ 100, and TZ 100 Wireless-N. The updated TZ Series, which also includes the recently announced TZ 210, provides small to medium-sized businesses (SMBs) and distributed enterprises with innovations in enterprise-class anti-spam, 3G failover, SSL-VPN remote access, and a host of additional crucial features required to help companies control security threats and increase productivity.

The new SonicWALL TZ Series appliances set new standards of integration, far exceeding the current generation of Unified Threat Management Firewalls available in the market. Key innovations include the industry's first Comprehensive Anti-Spam Service using SonicWALL's enterprise-class anti-spam technology which incorporates Advanced Reputation Management on the firewall, Bayesian analysis in the cloud, and user level quarantining to provide a complete anti-spam solution. This valuable new service, combined with enterprise caliber productivity features such as automatic 3G and analog failover, application identification, bandwidth management, SSL VPN remote access, wireless switch controller, integrated 802.11n secure access point, gigabit interfaces, and other key features, set a new standard for security appliances in the SMB and distributed enterprise.

Back to Top


Norman launches powerful proactive security solution

Norman ASA announced the release of Norman Endpoint Protection, the next generation security solution for businesses and organizations. This powerful and unmatched security solution utilizes Norman DNA Matching, Norman Exploit Detection, and Norman SandBox, the world’s most recognized proactive technology to protect businesses.

Norman Endpoint Protection is specially developed to meet both the security requirements from small businesses, requiring a comprehensive and straight forward solution to install, deploy and manage, and enterprises’ needs for securing their complex environments. Norman Endpoint Protection is designed for high performance and low on system footprint to optimize system resources and to let businesses conduct operations as usual. Adjustment and tuning capabilities enable the administrator to calibrate the risk level to the nature of the company’s infrastructure to trigger important and necessary warnings and alarms.

The included management console Norman Endpoint Manager is used to manage the security infrastructure. This powerful management console controls and manages the endpoint security, and has an intuitive web based interface featuring reporting capabilities and a unique discovery technology. This is provided by smart antimalware clients installed on servers, desktop computers and mobile units performing the proactive malware protection. A special sniffing component searches the network to detect and rapport new and unknown devices in the environment. Norman Endpoint Manager’s powerful policy based engine makes it easy to deploy endpoints throughout the customer’s infrastructure. A built-in policy tool lets the administrator keep the desired security state in groups of clients at all times. The risk level bar and status view module present the network’s security health status at a glance. With Norman Endpoint Protection organizations can now have confidence in their security and focus on their core business.

Back to Top


SonicWALL strengthens its Firewalls offerings

SonicWALL has announced the SonicWALL Comprehensive Anti-Spam Service (CASS) fully integrated with SonicWALL's Unified Threat Management Firewalls. The new service is designed to be easily enabled on SonicWALL TZ, NSA and E-Class NSA Series security appliances with just one mouse click, and will immediately begin to filter SMTP (Simple Mail Transfer Protocol) email traffic to remove spam, phishing threats and even virus-laden email. The service's hybrid-cloud design simplifies set-up while optimizing protection, and upon activation stops spam before it enters the corporate network. The solution also allows for IT administrators to quarantine individual junk mail boxes, a first in the industry. The Comprehensive Anti-Spam Service differs from other firewall services in that it is a true and complete enterprise-class anti-spam service and not a simple black list filter or OEM list.

Key features and customer benefits of the SonicWALL Comprehensive Anti Spam Service also include: Advanced Reputation Management (ARM); Cloud-based Advanced Content Management (ACM); Flexible junk email routing; User Junk Box for Outlook option; SonicWALL GRID Anti-Virus; and Integrated allow and block lists.

Back to Top


GFI Software launches GFI MAX

GFI MAX is GFI's first offering in the managed services sphere and follows the acquisition of HoundDog Technology, a leading remote monitoring and management company in the UK.

GFI MAX is an award-winning suite of remote management, monitoring and support tools for IT support organizations and MSPs worldwide. MSPs will be able to use GFI MAX's real-time systems monitoring, automated daily health checks, asset tracking, patch management, own-brand client reporting and remote support solutions to build recurring revenues, drive down their operating costs and deliver best-of-breed IT support services.

GFI MAX delivers an easy, affordable solution for IT support professionals and MSPs who are looking to take better care of their clients at less cost.

Back to Top


Webroot enhances Web, email and data security with new SaaS releases

Webroot announced new releases of Webroot Web Security SaaS and Webroot Email Security SaaS with essential enhancements including web browsing quotas to enforce Internet use policies and a new Webroot Email Encryption Service to secure sensitive email communications.

The new release of Webroot Web Security SaaS includes quota support which allows organizations to set, monitor and enforce granular Internet use policies for bandwidth, time spent surfing and number of Web sites visited. Quotas can be controlled independently and provide options to block or warn the user, email the administrator, or simply log the event. By using quotas, organizations can further manage and control employee web activity and easily identify policy violations with new reporting and detailed forensic data.

Webroot Email Security SaaS now includes several end-user and administrator usability enhancements as well as a new policy-based email encryption service. The new Webroot Email Encryption Service helps businesses meet legal, compliance and regulatory standards by automatically encrypting email messages based on company email policy. This policy based encryption service expands data loss prevention capabilities and improves the secure handling of confidential company data.

Back to Top


SafeNet launched new eSafe SmartSuite

SafeNet announced the general availability of its new eSafe SmartSuite Secure Gateway for Web and mail protection and control. An entirely new gateway platform, eSafe SmartSuite offers Security that Thinks — the strong combination of intelligent protection, ease of use, and value-focused management and reporting that provides the insights today’s businesses require.

Building on the foundation of eSafe’s real-time, intelligent technology platform, designed to protect organizations from current and future threats, eSafe SmartSuite offers real-time, intelligent inspection of all inbound and outbound Web and mail traffic while delivering unmatched performance and scalability. Additionally, eSafe SmartSuite now improves productivity and management visibility, and enhances security decision-making capabilities through simple, intelligent, and value-driven monitoring, trend analysis, and reporting functionality.

A component of SafeNet’s vision for comprehensive enterprise data protection, eSafe SmartSuite delivers the first fully integrated content security and data leakage prevention solution with data aware monitoring, enabling assessment and mitigation of threats originating from data leakage. eSafe will allows organizations to detect, analyze, and prevent mishandling of information, and will be fully aware of existing risks so that they can take preventive measures to protect sensitive data.

Back to Top


Check Point establishes a new standard in Endpoint Security

Check Point Software Technologies Ltd. announced Check Point Endpoint Security R72, a groundbreaking, new version of the industry’s only single agent for endpoint security. Check Point Endpoint Security R72 adds a new dimension to endpoint security and user simplicity previously unavailable to enterprises by delivering Check Point WebCheck browser security. WebCheck provides a dual browser mode that segregates corporate data from the Internet, allowing end-users the freedom to surf the Web with full protection against automatically downloaded malware, known as drive-by downloads, and phishing attempts while keeping it separated and isolated from the corporate and other highly secured Web sites. Additional information on Check Point WebCheck can be found at: www.checkpoint.com/products/webcheck/index.html.

To further simplify the end-user experience, Check Point Endpoint Security R72 adds OneCheck authentication and VPN Auto-Connect for enhanced remote access. OneCheck automatically unlocks all endpoint security subsystems, including Windows login, disk encryption, media encryption and VPN, with a single, easy login. New VPN Auto-Connect ensures uninterrupted connectivity for end-users as they move between LAN and wireless connections. VPN Auto-Connect connects automatically following a successful OneCheck authentication and seamlessly determines the correct configuration for remote access to the corporate network, reducing IT help desk requests. The result for the user is seamless and automatic VPN connectivity without the need to further connect or authenticate.

Back to Top


RSA announces RSA SecurID software token for iPhone

RSA announced the availability of the RSA SecurID Software Token for iPhone Devices that enables an iPhone to be used as an RSA SecurID authenticator, providing convenient and cost-effective two-factor authentication to enterprise applications and resources. The RSA SecurID Software Token App is now available on the App Store at no charge. The required RSA SecurID software token seed as well as RSA® Authentication Manager – the software that powers the RSA SecurID system – are both available for purchase worldwide.

The new RSA SecurID Software Token for iPhone is engineered to generate a one-time password that changes every 60 seconds, enabling secure access to enterprise applications and resources. The solution complements the existing range of authentication methods offered by RSA, giving customers a choice in the way they assure identities to a system, resource or information based on risk, cost and convenience. Through a simple download from the App Store, the software token application can be installed easily on the user’s iPhone. With one tap the user can enable the App with a unique software token seed provided by their IT organization, creating a convenient, secure and cost-effective authenticator.

The use of RSA SecurID software tokens can help decrease total cost of ownership for organizations as they do not require any physical shipping, can be revoked and automatically redeployed if an iPhone is lost, eliminating the need for replacement tokens. Additionally, having the software authenticator on a business critical device like the iPhone reduces the number of lost or forgotten tokens, decreasing the number of costly technical support calls.

Back to Top


Cisco strengthens its e-mail security solutions

Cisco has partnered with RSA to introduce data loss prevention capabilities that are engineered to integrate into the industry-leading Cisco IronPort e-mail security products. Cisco also announced new functionality in its Cisco IronPort Web security gateway designed to block the loss of sensitive data via the Web and FTP and a new consultative business security service that helps businesses design a preventive strategy aligning people, business processes and technology.

Recent announcement focuses on protecting data in motion for businesses. It addresses prevailing data-loss risks inherent in e-mail and Web-based communications, risks that are not going away.
Cisco IronPort E-mail security with RSA Data Loss Prevention Technology is building on the policy management, high-performance scanning, and reporting framework of its e-mail security gateways to embed market-leading data loss prevention (DLP) technology from RSA. RSA DLP data-classification technology will be made available through a fully integrated subscription software feature on Cisco's IronPort's e-mail security products and services. The new solution provides accurate and easy-to-use content classification designed to discover and protect sensitive data before it leaves the enterprise through e-mail. More than100 predefined out-of-the-box security and governance policies are maintained and updated by RSA's Information Policy and Classification Research Team. When combined with Cisco IronPort's high-performance content-scanning engine, intuitive workflow, reporting and auditing capabilities optimized for handling DLP violations, RSA Email DLP for Cisco IronPort is a complete DLP solution for data in motion over e-mail.

Cisco IronPort Web security appliances enforce data-security policy over webmail, blogs and social networking sites, as well as FTP. Integration with third-party DLP products enables advanced content scanning and policy enforcement. In addition to protecting against user-initiated data loss, Cisco IronPort Web Reputation Filters and other innovative features combine to target data-stealing malware from entering the network and blocking "phone home" data connections from existing malware.

Back to Top


Array introduces Enterprise-Class Application Delivery Controller for SMBs

Array Networks Inc has recently announced the launch of the Array APV900 Application Delivery Controller (ADC), which brings enterprise-class application delivery capabilities along with the best value and lowest total cost of ownership (TCO) to SMBs. Array’s new ADC delivers Layer 2-7 server load balancing, high availability, caching, SSL acceleration, DDoS protection, Connection Multiplexing and compression, all included in a single, easy-to-manage appliance.

With the APV900, SMBs and branch offices now have a sophisticated and cost-effective application delivery solution that goes beyond traditional server load balancing. They can fully leverage all the acceleration and security capabilities of the Array APV Series platforms to ensure availability, performance, and protection for their core application services and infrastructure. This enables the smaller organizations to leverage advanced, proven ADC functionality to quickly roll out rich content-enabled web applications for increased productivity and business opportunities.

The APV900 directs connections past inactive or overburdened servers, re-establishes connections as conditions permit, and eliminates single point of failure with 1+1 redundant configuration. It also reduces the cost of application, web and network infrastructure while improving performance of business-critical applications and Web sites.

The Array APV900 ADC is available immediately in three packages with specific focus: AppVelocity for application acceleration, AppVelocity-S for secure application delivery, and NetVelocity for WAN link load balancing.

Back to Top



Home   |   Current Issue   |   Archives   |   Subscription   |   Advertisement   |   Contacts

© 2006-07 'InfoSecurity' magazine. All rights reserved.
Website designed, developed and maintained by Fanatic Media