Securing and Optimizing the Next Generation Branch Office



Similar documents
Bill Ting, Product Marketing Riverbed Technology

Unified Threat Management, Managed Security, and the Cloud Services Model

Reverse Proxy for Trusted Web Environments > White Paper

How To Choose A Network Firewall

McAfee Web Gateway 7.0

Web Application Firewall for Untrusted Web Environments > White Paper

Application Delivery Networks: The New Imperative for IT Visibility, Acceleration and Security > White Paper

EXTENDING THREAT PROTECTION AND CONTROL TO MOBILE WORKERS

CISCO WIDE AREA APPLICATION SERVICES (WAAS) OPTIMIZATIONS FOR EMC AVAMAR

Web Security Gateway Solutions

The Dirty Secret Behind the UTM: What Security Vendors Don t Want You to Know

Threat Containment for Facebook

Virtualized WAN Optimization

ISB13 Web security deployment options - which is really best for you? Duncan Mills, Piero DePaoli, Stuart Jones

Extending Threat Protection and Control to Mobile Workers with Cloud-Based Security Services > White Paper

Security Information & Event Management (SIEM)

Symantec Endpoint Protection

Protect your internal users on the Internet with Secure Web Gateway. Richard Bible EMEA Security Solution Architect

Top 10 Reasons Enterprises are Moving Security to the Cloud

Data Sheet: Endpoint Security Symantec Protection Suite Enterprise Edition Trusted protection for endpoints and messaging environments

SafeNet Content Security Product Overview. Protecting the Network Edge

Riverbed WAN Acceleration for EMC Isilon Sync IQ Replication

Superior protection from Internet threats and control over unsafe web usage

How To Protect Your Network From Attack From A Virus And Attack From Your Network (D-Link)

Astaro Gateway Software Applications

Lab Testing Detailed Report DR January Competitive Testing of Web Security Devices

The Ultimate Guide to Gaining Control of the WAN

Achieve Deeper Network Security

RIVERBED EXTENDS FROM WAN OPTIMIZATION TO EDGE VIRTUAL SERVER INFRASTRUCTURE (EDGE-VSI)

Achieve Deeper Network Security and Application Control

REVOLUTIONIZING ADVANCED THREAT PROTECTION

Devising a Server Protection Strategy with Trend Micro

Application Visibility and Monitoring >

McAfee Global Threat Intelligence File Reputation Service. Best Practices Guide for McAfee VirusScan Enterprise Software

Applications erode the secure network How can malware be stopped?

Devising a Server Protection Strategy with Trend Micro

How To Buy Nitro Security

McAfee Web Gateway Administration Intel Security Education Services Administration Course Training

Next-Generation Firewalls: Critical to SMB Network Security

Microsoft Exchange 2010 /Outlook 2010 Performance with Riverbed WAN Optimization

Providing Secure IT Management & Partnering Solution for Bendigo South East College

SonicWALL Clean VPN. Protect applications with granular access control based on user identity and device identity/integrity

NetDefend Firewall UTM Services

Replacing Microsoft Forefront Threat Management Gateway with F5 BIG-IP. Dennis de Leest Sr. Systems Engineer Netherlands

How To Control Your Network With A Firewall On A Network With An Internet Security Policy On A Pc Or Ipad (For A Web Browser)

Cisco Cloud Web Security

STEELHEAD PRODUCT FAMILY

Next Gen Firewall and UTM Buyers Guide

Cisco Wide Area Application Services Optimizes Application Delivery from the Cloud

DUBEX CUSTOMER MEETING

CHECK POINT. Software Blade Architecture. Secure. Flexible. Simple.

Presented by Philippe Bogaerts Senior Field Systems Engineer Securing application delivery in the cloud

Lab Testing Summary Report

NGFWs will be most effective when working in conjunction with other layers of security controls.

Content-ID. Content-ID enables customers to apply policies to inspect and control content traversing the network.

The Hillstone and Trend Micro Joint Solution

Technology Blueprint. Protect Your Servers. Guard the data and availability that enable business-critical communications

EasyConnect. Any application - Any device - Anywhere. Faster, Simpler & Safer Networks

Gateway Security at Stateful Inspection/Application Proxy

WAN Optimization for Microsoft SharePoint BPOS >

UNIFIED PERFORMANCE MANAGEMENT

NetDefend Firewall UTM Services

Using Steelhead Appliances and Stingray Aptimizer to Accelerate Microsoft SharePoint WHITE PAPER

On and off premises technologies Which is best for you?

Symantec Endpoint Protection

White paper. Keys to SAP application acceleration: advances in delivery systems.

Secure Web Gateways Buyer s Guide >

Websense Web Security Solutions. Websense Web Security Gateway Websense Web Security Websense Web Filter Websense Express Websense Hosted Web Security

SourceFireNext-Generation IPS

Unified Security, ATP and more

SECURE WEB GATEWAY DEPLOYMENT METHODOLOGIES

Zscaler Internet Security Frequently Asked Questions

SECURITY ANALYTICS MOVES TO REAL-TIME PROTECTION

Leading The World Into Connected Security. Dipl.-Inform., CISSP, S+ Rolf Haas Enterprise Technology Specialist Content Lead EMEA

Cloud and Data Center Security

Smart Network. Smart Business. Application Delivery Solution Brochure

Virtualization Journey Stages

Building a better branch office.

VMware Horizon Mirage Load Balancing

Security Services. 30 years of experience in IT business

Websense Web Security Solutions. Websense Web Security Gateway Websense Web Security Websense Web Filter Websense Hosted Web Security

WHAT S NEW IN WEBSENSE TRITON RELEASE 7.8

Windows Server on WAAS: Reduce Branch-Office Cost and Complexity with WAN Optimization and Secure, Reliable Local IT Services

ESET Security Solutions for Your Business

SYMANTEC ENTERPRISE SOLUTION STRATEGY

OmniCube. SimpliVity OmniCube and Multi Federation ROBO Reference Architecture. White Paper. Authors: Bob Gropman

WAN OPTIMIZATION FOR MICROSOFT SHAREPOINT BPOS

McAfee Network Security Platform

Transcription:

Securing and Optimizing the Next Generation Branch Office 1

Global Organizations Current state of affairs 3 Globally distributed enterprises rely on the WAN for day to day operations to stay competitive and pursue new business opportunities.

Global Organizations Current state of affairs 4 Security breaches and network performance issues can cause havoc.

Global Organizations Current state of affairs 5 Branch offices are trying to solve this challenge by deploying multiple single function appliances leading to management overhead.

Global Organizations Current state of affairs 6 IT organizations need infrastructure that is high performing, simple to manage and requiring minimal administration.

Challenge With Current Solutions 7 Solutions delivering performance and security at the branch are: Complex to setup and manage Expensive to deploy as they require multiple appliances Delivering low performance at the cost of security Performance Security

Branch Office 2.0 8 The next gen branch office solution must be: Fast: Deliver LAN-like performance and improve productivity Secure: Protect from breaches and network attacks at the branch Low TCO: Consolidate appliances, applications to lower cost and management complexity

Riverbed McAfee Joint Solution 9 Fast: Market-leading WAN Optimization solution delivers LAN-like performance Secure: Market-leading Web Gateway solution integrated on RSP Low TCO: RSP enables Branch Office in a Box solution that is easy to manage McAfee Web Gateway Anti-Malware Anti-Virus Web Filtering SSL Scanning Proxy / Cache Global Threat Intelligence

Joint Solution Benefits 10 Consolidation Drives Lower TCO: Lower capex: appliances, servers Lower opex: management, training, IT support costs, cooling Investment protection via open platform (RSP) Lower Business Risk Proactive, zero-day Web 2.0 protection in a single software image Improve security and IT compliance (BC/DR, RTO, RPO,WAN backup) Certified integrated solution with joint vendor support Business Agility LAN like performance improves user productivity Flexible deployment options for private, public, or hybrid cloud / data centers Application and identity based policy mirrors your business

About Riverbed 11

About Riverbed 12 The IT Performance Company for Networks, Applications and Storage Stability Publicly Traded Profitable Partnership Business Presence 9,000 Customers Worldwide 24x7 Support 4-hour parts replacement Thousands of resellers Speed Most L-7 application intelligence Integrated QoS, Visibility Scalability 80% of Global 100 use RVBD Clustering, high-availability options Simplicity Technology Most integration options Leverage existing IT

Award-winning Products for Key Performance Problems 13 Cascade Enterprise-wide performance monitoring Solve performance problems up to 83% faster Executive dashboards that link with detailed analysis Perfect for operations, consolidation projects Steelhead WAN optimization Accelerate applications by up to 100x Cut bandwidth utilization by 65-95% Enable consolidation, cloud, and more effective DR Also impacts virtualization, application rollouts, and mobility Whitewater Cloud Storage Accelerator Accelerate backup and recovery from public cloud storage Cut backup costs by 50% or more Solution for storage architects and data protection managers

Riverbed s Key Technology Differentiators 14 Acceleration The most complete suite of application-intelligent optimizations up to 100x faster applications Deduplication The most granular data dedupe Save 65-95% of both bandwidth and storage Consolidation A complete consolidation approach Centralization, Branch Virtualization, and Cloud Analytics Full flow & packet based analysis Faster response to problems & better data for your executives

Riverbed s High Performance Solution 15 BRANCH OFFICE PRIMARY DATA CENTER WAN MOBILE WORKERS PUBLIC CLOUD SECONDARY DATA CENTER

Virtualizing Edge Services with RSP 16 v DNS/ DHCP v AD v Print v The Riverbed Services Platform allows you to virtualize edge services into one device WAN DATA CENTER Tape Backup Storage v v v v v v Filers File Servers Web Servers Mail Servers MOBILE WORKERS RiOS Services Platform (RSP)* A few servers still remain in the branch office Additional equipment requiring power, cooling, and space Branch users still require these services: IPAM, Active Directory, Print, Streaming & Security Print Streamin Services g Media Networki ng (DNS/DHC P) Security UTM

About McAfee 17

Recognized Industry Leader: McAfee Web Gateway 18 Leader Gartner Magic Quadrant : Secure Web Gateway Leader Forrester Wave: Web Filtering IDC ranks McAfee #1 in Appliance Market Share for web security appliances Network World Magazine Clear Choice Winner for Anti-malware Gateway Dec 2009 2009 Readers Choice Award from Information Security Magazine and SearchSecurity.com SC Magazine Awards 2010 Best Anti-Malware Solution Mazu, Profiler, 18 and Cascade McAfee are trademarks Web or Gateway registered trademarks of Riverbed Technology. All other trademarks used or mentioned herein

About McAfee 19 Founded in 1987 as the world s largest dedicated security company Global research for real-time threat intelligence Integrated solutions and services Compliance processes built into solutions Single management platform for optimized security

McAfee Facts 20 125 million McAfee users 180+ million mobile devices shipped with McAfee 5 million single largest McAfee deployment 7 Gartner Magic Quadrants that feature McAfee 480 McAfee patents, more pending 110+ McAfee Security Innovation Alliance partners 6,121 McAfee employees globally 120 countries that make up McAfee s global footprint

Industry leading solution 21

Riverbed supports more application-specific optimizations 22 CIFS, Exchange, HTTP, SSL NFS Encrypted Exchange Lotus Notes Citrix ICA Oracle Forms FCIP SRDF CIFS, Exchange, HTTP, SSL X No NFS X No Encypted Exchange X No Lotus Notes X No Citrix ICA X No Oracle Forms X No FCIP X No SRDF

McAfee Web Gateway: Single Integrated Solution with Advanced Security 23 Feature Proxy SG Proxy AV MWG 7 Web 2.0 threat protection Real-time web content ratings On-demand cloud intelligence Web 2.0 mashed up content filtering Inline threat analysis (stream scanning) Social networking threat protection True file type checks Compressed archive analysis File and attachment filtering Hardware based SSL performance * * Not required for MWG, due to high performance without hardware acceleration Mazu, Profiler, 23 The and Cascade Re-engergized are trademarks McAfee or registered Brand trademarks of Riverbed Technology. All June other trademarks 2, 2011 used or mentioned herein

Riverbed - McAfee Solution vs. Blue Coat 24 Riverbed-McAfee Best-of-breed offerings for WAN Optimization and Web 2.0 Security VS Blue Coat A security device that uses legacy caching technology to deliver WAN optimization

Riverbed - McAfee Solution vs. Blue Coat 25 ProxySG ProxyAV WAN Optimization(+QoS) + McAfee Web Gateway + Anti-malware + Antivirus Simple configuration and easy to deploy PacketShaper Complex site-specific configuration involving multiple appliances

ROI - Riverbed-McAfee Solution vs. Blue Coat 26 Director ProxySG ProxyAV Reporter PacketShaper Steelhead w/ RSP + McAfee Web Gateway Riverbed CMC

Thank You 27

Backup 28

McAfee Web Gateway Differentiators: Designed For Web 2.0 SECURITY Hybrid security Local: Proactive anti-malware protection Cloud-based: McAfee AV with file reputation, URL filtering with Web reputation Deep content inspection including SSL traffic CONTROL Inbound / outbound filtering of multiple Web protocols Productive use of Web 2.0: Application control Powerful policy engine Prevent data leakage Extensive reporting/auditing PERFORMANCE Robust proxy / cache Enterprise scalability Flexible delivery: Appliances, VMware, blade Flexible deployment: Proxy, transparent bridge, transparent router Manage multiple Web security components 29 McAfee Web Gateway (Webwasher)

Local: Anti-Malware Protection for Web 2.0 ActiveX Controls and Browser Helper Objects Windows Executables and Dynamic Link Libraries Java Applets and Applications JavaScript (in HTML, PDF, Stand-alone) Visual Basic Script Visual Basic for Apps macros in Office docs Intent Analysis: Buffer overflow exploit detection Generic Trojan downloader detection Shell code detection Several other detection algorithms Security Policy Maps Classification Into Action Web 2.0 Anti-malware Engines Must Handle Downloads, Active Content and Scripts, Protect from Malware for Which No Signature Exists, and Prevent OS, Browser And Application Exploits 30 McAfee Web Gateway

McAfee Global Threat Intelligence (GTI) Delivering the Most Comprehensive Intelligence in the Market Threat Intelligence Feeds Endpoints Appliances Servers Firewalls Other feeds & analysis McAfee Labs File Reputation Engine Email Reputation Engine Web Reputation Engine Network Reputation Engine Vulnerability Information epo IPS Firewall Email Web AV AWL DLP Mobile 31

Powerful Rules-Based Engine McAfee Web Gateway includes a powerful policy engine that enables unmatched flexibility in creating and applying policy Enable/disable specific functionality Remove malicious links or extract only the malicious code while letting the balance of the page display Control instant messaging 32 McAfee Web Gateway June 2, 2011

Control: Powerful Rules-Based Engine Example Granular control over who uses the application and how it is used Enabling or disabling specific functionality as needed Allow Facebook but block all Games or specific games: Mafia Wars Example below: Using the policy engine to determine if a user can view YouTube videos, and what kind of Videos they may view! 33 June 2, 2011

Application acceleration results 34 Problem: Slow application performance across the WAN Solution: Address issues of bandwidth, latency, and chatty protocols *Some application-specific features not yet available for Steelhead Mobile

Gartner Magic Quadrant for WAN Optimization Controllers, 2010 35 2010 Gartner, Inc. and/or its Affiliates. All Rights Reserved. Reproduction and distribution of this publication in any form without prior written permission is forbidden. The information contained herein has been obtained from sources believed to be reliable. Gartner disclaims all warranties as to the accuracy, completeness or adequacy of such information. Although Gartner's research may discuss legal issues related to the information technology business, Gartner does not provide legal advice or services and its research should not be construed or used as such. Gartner shall have no liability for errors, omissions or inadequacies in the information contained herein or for interpretations thereof. The opinions expressed herein are subject to change without notice. Andy Rolfe, Joe Skorupa, Severine Real