Pure firewall systems without an integrated intrusion prevention system are inconceivable today – the attacks of Worms, Trojans, hackers and so on have become just too numerous and too clever. A security system based exclusively on IP and port addresses represents just a marginal barrier. But is a simple intrusion prevention add-on to a firewall sufficient to avert the many threats systems now face?
packetalarm IPS NG employs quite a different strategy in dealing with this problem - it focuses not on simply reducing the communication options, but on a detailed examination of each individual packet and the possibilities that this offers for specifically identifying attacks.
At the heart of the packetalarm IPS NG-System is the intrusion prevention engine, supplemented by a Layer 2/Layer 3 firewall. After all, whether it’s a matter of event correlation, anomaly detection or Auto-Prevention, cutting edge security technology is crucial and is constantly being enhanced.
The packetalarm IPS NG Intrusion Prevention System operates inline in bridging mode in layer 2. Although packetalarm IPS is “invisible” during communication, the firewall and prevention engine remain active.
packetalarm IPS NG can also be deployed in front of WLAN hotspots, server farms or individual servers - the network configuration does not need to be changed in any way. DHCP, BootP, NT domain logins and other broadcast communications continue to function properly without intervention by an administrator.







