其他功能
专用功能部件 |
36 Gb IDE HD |
安全 |
EN60950 |
电磁兼容性 |
EN55022, EN55024 and EN61000-3-2;-3-3 |
Dragon GE250 Network Sensor Appliance for the regional office, small data center (copper gigabit network interface card), Intel Pentium4,250 Mbps, 1 Gb, 36 Gb HD
Powerful Network Intrusion Defense
A sophisticated software- and appliance based network intrusion defense system, the Dragon Network Sensor identifies misuse and attacks across the network.
Dragon’s advanced Intrusion Prevention (IPS) technology is designed to block attackers, mitigate denial of service attacks and prevent information theft while remaining totally invisible to the network. Built upon Dragon’s award-winning Intrusion Detection technology, the IPS will alert on the attack, drop the offending packets, terminate the session for TCP- and UDP based attacks, and dynamically establish firewall rules that can keep the source of the threat off the network indefinitely or for a configurable period of time. Known sources of attacks can be stopped from ever entering the network by enabling “Black Lists,” while key corporate resources or trusted networks are always allowed to pass via “White Lists.”
Dragon comes ready “out of the box” with a large library of attacks it can be configured to mitigate immediately. Dragon’s Network IPS can leverage the thousands of vulnerability- and exploit-based signatures in Dragon’s threat libraries as a basis for network control and threat defense. Dragon IPS is available only on currently shipping Dragon appliances.
Features & Benefits:
In-line Network Intrusion Prevention appliances
- Protects the network from attackers and keeps them from returning.
High-performance architecture
- Gigabit-speed performance even with protocol decoding, anomaly detection and pattern matchers active simultaneously.
Virtual Sensor support
- Allows one sensor to act as multiple unique sensors.
Protocol decoding
- New VoIP decoders identify attackers who hide an attack within the protocol.
New state-of-the-art signature language
- Incorporates regular expressions, compound pattern matchers, thresholding and state tracking.
IDS/IPS Evasion Counter Measures
- Identifies/blocks attackers who attempt to evade Dragon with fragmented packets and streams.
Event sniping
- Terminates an attack session via a TCP reset or ICMP unreachable message.
Probe prevention
- Defeats scanning techniques with false responses.