How To Manage A Network With An Ipc (Ipc) And Ipc V2 (Ipv) On An Ipa (Ipa) On A Network On An Hp Zl (Ips) And V2 On A Pc (



Similar documents
Network Immunity Solution. Technical White paper. ProCurve Networking

HP Networking Mobility Security IDS/IPS Series

Models HP 1405C-5 Switch* IEEE 802.1p prioritization: delivers data to devices based on the priority and type of traffic

QuickSpecs. Models. Features and benefits Application highlights. HP 7500 SSL VPN Module with 500-user License

HP V1410 Switch Series. Product overview. Key features. Data sheet

HP E-PCM Plus Network Management Software Series

Models HP V2 Switch. HP Desktop Switch

HP Identity Driven Manager Software Series Overview

QuickSpecs. Models HP WA2110 Single Radio a/b/g Access Point HP WA2220 Dual Radio a/b/g Access Point

How To Power A Power Supply Shelf With A Power Unit (Hp 2920)

HP PCM Plus v3 Network Management Software Series Overview

HP V1405 Switch Series. Product overview. Key features. Data sheet

HP ProCurve Wireless Access Point 10ag Overview

HP Mobility Security IDS/IPS System Series

HP ProCurve 1410 Switch Series Overview. Models HP ProCurve G Switch

HP ProCurve Threat Management Services zl Module

HP PCM Plus v4 Network Management Software Series

HP ProCurve Switch 1400 Series

HP ProCurve Switch 1800 Series Overview. HP ProCurve Switch G. HP ProCurve Switch G. HP ProCurve Switch G

ProCurve Manager Plus 2.2

QuickSpecs. HP PCM Plus v4 Network Management Software Series (Retired) Key features

HP 1405 Small Office Switch Series

HP E-series MultiService Controller (MSM) Overview. Models HP E-MSM765zl Mobility Controller. HP E-MSM760 Access Controller

QuickSpecs. Models HP S Mbps IPS

HP 1405 Small Office Switch Series

HP Outdoor Bridge and Access Point Overview. Auto-MDIX: automatically adjusts for straight-through or crossover cables on all 10/100 ports

HP E-M110 Access Point Series. Product overview. Key features. Data sheet

QuickSpecs. HP M n Access Point Series. Models HP M n WW Access Point. Key features

HP ProCurve Mobility Security IDS/IPS Series

Comprehensive LAN Security: A Business Requirement

HP V1810 Switch Series

HP Virtual Controller and Virtual Firewall for VMware vsphere 1-proc SW LTU

HP ProCurve Identity Driven Manager 3.0

HP ProCurve Switch 2500 Series

HP S Intrusion Prevention System (IPS) Series

HP MSM317 Access Device US. 4 RJ-45 autosensing 10/100 ports See Configuration Note: 1

Models HP NJ2000G IntelliJack

QuickSpecs. Models HP 110 ADSL-B Wireless-N Router

Cisco IPS 4200 Series Sensors

Traffic monitoring with sflow and ProCurve Manager Plus

QuickSpecs. Models HP MSR Open Application Platform (OAP) with VMware vsphere MIM Module

HP E2510 Switch Series

HP Network Security Processors

QuickSpecs. Model. Key features Can connect wired device to a wireless network Single radio IEEE a/b/g Two external antennas Indoor enclosure

Cisco Intrusion Detection System Services Module (IDSM-2)

HP ProCurve MultiService Controller Series

QuickSpecs. Models HP 4110 IP Phone

QuickSpecs. Models HP TippingPoint S8010F Next Generation Firewall Appliance

HP Intelligent Management Center Standard Software Platform

Cisco IPS 4200 Series Sensors

HP 1810 Switch Series

Cisco ASA 5500 Series IPS Solution

HP Network Configuration and Integration Service

HP 310x IP Phone Series Overview. Models HP 3101SP Basic Speaker Phone HP 3102 Business Phone HP 3105 Attendant Console

QuickSpecs. Models. HP G Switch. Overview. DA Worldwide Version 10 September 25, 2012 Page 1

HP MSM Controller Series

HP V1810 Switch Series

Network Access Control ProCurve and Microsoft NAP Integration

HP Intelligent Management Center Basic WLAN Manager Software Platform

HP Intelligent Management Center User Access Management Software

HP PDU Management Module Overview

HP Intelligent Management Center Enterprise Software Platform

ProCurve Mobility Manager 1.0

Models HP Switch. HP G Switch

HP AP8760 Dual Radio a/b/g Access Point Overview

QuickSpecs. Models. Features and benefits Configuration. HP VCX x3250m2 IP Telecommuting Module. HP VCX x3250m2 IP Telecommuting Module Overview

QuickSpecs. Models. HP 41x0 IP Phone Series Overview. HP 4110 IP Phone

HP MSM n Access Point Series

ProCurve Switch 1400 Series

HP V1905 Switch Series. Product overview. Key features. Data sheet

Models HP IMC Smart Connect Edition Virtual Appliance Software E-LTU

HP ProCurve 1810G Switch Series

HP Intelligent Management Center Enterprise Software. Platform. Key features. Data sheet

Protecting the Extended Enterprise Network Security Strategies and Solutions from ProCurve Networking

QuickSpecs HP Archiving software for Microsoft Exchange 2.2

Cisco Intrusion Prevention System Advanced Integration Module for Cisco 1841 and Cisco 2800 and 3800 Series Integrated Services Routers

Interface Adapters PS/2 Interface Adapter 1 pack B21 PS/2 Interface Adapter 8 pack B21 USB Interface Adapter 1 pack B21

HP UPS Management Module Overview

ProCurve Switch 1700 Series

Integrating HP Insight Management WBEM (WMI) Providers for Windows with HP System Insight Manager

Business white paper. Missioncritical. defense. Creating a coordinated response to application security attacks

HP ATA Networks certification

Models HP M n Access Point (WW)

HP ProCurve Networking. Networking solutions for small and growing businesses

HP ProCurve MultiService Access Point Series

QuickSpecs. Models. HP UPS Management Module. HP UPS Management Module. Overview

Cisco ASA 5500 Series Advanced Inspection and Prevention Security Services Module

ProCurve Network Immunity Manager

Cisco SR 520-T1 Secure Router

HP Intelligent Management Center Standard Software Platform

Cisco IPS AIM and IPS NME for Cisco 1841 and Cisco 2800, 2900, 3800 and 3900 Series Integrated Services Routers

HP Certified Professional

QuickSpecs. HP Fixed Cord PDUs & Extension Bars (Zero-U/1U Modular PDUs) Overview

Transcription:

Overview Models HP Network Immunity Manager v2 Software with 50-Device License HP Network Immunity Manager v2 100-Device License HP Network Immunity Manager v2 Software with Unlimited-Device License J9161A J9162A J9163A Key features Intrusion detection Intrusion response Security management Reporting Flexible deployment Product overview HP Network Immunity Manager is a plug-in for HP PCM Plus that detects and automatically responds to internal network threats such as virus attacks. Additionally, it provides central management of HP Threat Management Services (TMS) zl Modules. The software also leverages security and traffic-monitoring features built into HP networking switches such as sflow, Virus Throttle, and remote mirroring technologies, as well as performs network behavior anomaly detection (NBAD) to detect attacks. Optionally, it remotely mirrors suspect traffic to an IDS/IPS/UTM appliance such as the HP TMS zl Module. This security tool provides visibility into internal network threat activity to help increase network availability. Features and benefits Security Intrusion detection: Network visibility: monitors network traffic for threats using sflow data Detection methods: uses virus alerts, network behavior anomaly detection (NBAD), and security alerts Remote monitoring: mirrors traffic to third-party IDS/IPS/UTM devices for deep packet inspection Offender tracking: identifies the offender (IP, and MAC and DNS names) and displays their location Security heat map: provides a real-time view of security activity across the network Intrusion response: Internal threat protection: detects and mitigates attacks Location-based enforcement: enforces security based on time and location Threat mitigation responses on offenders: quarantine VLAN, bandwidth limiting, MAC lockout, port shutdown, or email alert notifications Chain of actions: is a prioritized list of mitigation actions that triggers an alternative when one action fails Wireless support: blocks offending MAC addresses Security management: Policy management: manages mitigation policies based on event source, location, time, and action Security dashboard: provides a real-time view of security activities, mitigation actions, and offender details across a network White list (exempt list): a set of IP addresses, and MAC and DNS names that are exempt from mitigation actions Configuration cleanup: automatic rollback of response configurations from HP networking switches and wireless access points after the policy expires NEW Centralized management of HP TMS zl Modules: Firewall configuration: sets firewall policies across multiple TMS modules DA - 12743 EMEA Version 5 November 29, 2011 Page 1

Overview IPS configuration: enables and disables IPS signatures across multiple TMS modules VPN configuration: configures IPsec, GRE over IPsec, and L2TP over IPsec Event logging, aggregation, and suppression: provides an overview of threat activity across the network Other TMS central management features: include high availability configuration, IPS signature updates, and firmware updates Reporting: Data mining: generates network-based, offender-based, and alert-based tabular reports; generates a variety of reports to inspect HP Threat Management Services zl Module activity and effectiveness Flexible deployment: Network detection: detects attacks and mitigates threats at the network edge using intrusion-response capabilities Passive intrusion detection: Network Immunity Manager identifies suspect traffic via NBAD analysis and mirrors to an offline IDS/IPS/UTM device for deep packet inspection of attacks Active intrusion prevention and response: receives alerts from inline IDS/IPS/UTM devices and mitigates threats using E-Network Immunity Manager's response capabilities Device support: HP networking: HP Threat Management Services zl Module SonicWALL: SonicWALL UTM PRO Series and E-Class appliances Fortinet: Fortinet UTM appliances Cisco: Cisco IPS 4200 Series Sensor TippingPoint: TippingPoint IPS appliances (excluding SMS and ZPHA models) DA - 12743 EMEA Version 5 November 29, 2011 Page 2

Technical Specifications Services HP Network Immunity Manager HP Network Immunity Manager HP Network Immunity Manager v2 Software with 50-Device License (J9161A) v2 100-Device License (J9162A) v2 Software with Unlimited- Device License (J9163A) For system requirements, please refer to the HP PCM Plus specifications list. 3-Year, 9x5 SW phone support, software updates (UQ122E) 3-year, 24x7 SW phone support, software updates (UQ123E) 1-year, 24x7 software phone support, software updates (HS541E) For system requirements, please refer to the HP PCM Plus specifications list. 3-Year, 9x5 SW phone support, software updates (UQ124E) 3-year, 24x7 SW phone support, software updates (UQ125E) 1-year, 24x7 software phone support, software updates (HS542E) For system requirements, please refer to the HP PCM Plus specifications list. 3-Year, 9x5 SW phone support, software updates (UQ132E) 3-year, 24x7 SW phone support, software updates (UQ133E) 1-year, 24x7 software phone support, software updates (HS547E) Refer to the HP website at: www.hp.com/networking/services for details on the service-level descriptions and product numbers. For details about services and response times in your area, please contact your local HP sales office. Refer to the HP website at: www.hp.com/networking/services for details on the service-level descriptions and product numbers. For details about services and response times in your area, please contact your local HP sales office. Refer to the HP website at: www.hp.com/networking/services for details on the service-level descriptions and product numbers. For details about services and response times in your area, please contact your local HP sales office. DA - 12743 EMEA Version 5 November 29, 2011 Page 3

Accessories accessories Modules HP Threat Management Services zl Module with 1-year IDS/IPS subscription HP Threat Management Services zl Module Appliance HP Threat Management Services 1-year IPS subscription HP Threat Management Services 2-year IDS/IPS subscription HP Threat Management Services 3-year IDS/IPS subscription HP PCM+ Agent with ONE Services zl Module J9156A J9155A J9157A J9158A J9159A J9496A DA - 12743 EMEA Version 5 November 29, 2011 Page 4

NOTE: Details are not available for all accessories. The following specifications were available at the time of publication. HP Threat Management Physical characteristics Services zl Module with 1- year IPS Subscription Service (J9156A) Environment Electrical characteristics Services Dimensions Weight Operating temperature Operating relative humidity temperature relative humidity Altitude 9.75(d) x 8.13(w) x 1.75(h) in. (24.77 x 20.65 x 4.45 cm) 3.25 lb. (1.47 kg) 32 F to 50 F (0 C to 10 C) 15% to 90% @ 122 F (50 C), noncondensing 14 F to 149 F (-10 C to 65 C) 15% to 95% @ 149 F (65 C), noncondensing up to 10,000 ft. (3 km) Maximum heat dissipation 272 BTU/hr (286.96 kj/hr) Maximum power rating 80 W Maximum power rating and maximum heat dissipation are the worst-case theoretical maximum numbers provided for planning the infrastructure with fully loaded PoE (if equipped), 100% traffic, all ports plugged in, and all modules populated. Chassis operating temperature specifications of the E5400 zl/e8212 zl switch when services module is installed: 40 C when any services module is installed in the right side of the chassis 50 C when all services modules are installed in the left side of the chassis Up to 4 services modules can be installed in an E5400 zl/e8212 zl chassis simultaneously. Up to 3 services modules are supported (all installed in the left half of the chassis) in the E5406 zl chassis if a 50 C temperature specification is desired. When the services module is installed, the maximum relative humidity for the switch drops from 95% to 90%. 3-year, 4-hour onsite, 13x5 coverage for hardware (UQ589E) 3-year, 4-hour onsite, 24x7 coverage for hardware (UQ590E) 3-year, 4-hour onsite, 24x7 coverage for hardware, 24x7 SW phone support and SW updates (UQ591E) 3-Year, 9x5 SW phone support, software updates (UQ592E) 3-year, 24x7 SW phone support, software updates (UQ593E) 1-year, post-warranty, parts only, global next-day advance exchange (UQ594PE) 1-year, post-warranty, 4-hour onsite, 13x5 coverage for hardware (HR994E) 1-year, post-warranty, 4-hour onsite, 13x5 coverage for hardware (UQ595PE) 1-year, post-warranty, 4-hour onsite, 24x7 coverage for hardware (UQ596PE) 1-year, post-warranty, 4-hour onsite, 24x7 coverage for hardware (HR995E) software phone support (HR996E) DA - 12743 EMEA Version 5 November 29, 2011 Page 5

software phone support (UQ597PE) 3 Yr 6 hr Call-to-Repair Onsite (UW374E) 4 Yr 6 hr Call-to-Repair Onsite (UW375E) 5 Yr 6 hr Call-to-Repair Onsite (UW376E) 1-year, 6 hour Call-To-Repair Onsite for hardware (HR998E) 1-year, 24x7 software phone support, software updates (HR997E) 1-year, 24x7 software phone support, software updates + Next Business Day Hardware Exchange (HS786E) 1-year, 24x7 software phone support, software updates + 4 hour hardware exchange (HS787E) 3-year, 24x7 software phone support, software updates + Next Business Day Hardware Exchange (HS788E) 3-year, 24x7 software phone support, software updates + 4 hour Hardware Exchange (HS789E) 4-year, 24x7 software phone support, software updates + Next Business Day Hardware Exchange (HS790E) 4-year, 24x7 software phone support, software updates + 4 hour Hardware Exchange (HS791E) 5-year, 24x7 software phone support, software updates + Next Business Day Hardware Exchange (HS792E) 5-year, 24x7 software phone support, software updates + 4 hour Hardware Exchange (HS793E) Refer to the HP website at: www.hp.com/networking/services for details on the service-level descriptions and product numbers. For details about services and response times in your area, please contact your local HP sales office. HP Threat Management Services zl Module (J9155A) Physical characteristics Environment Electrical characteristics Dimensions Weight Operating temperature Operating relative humidity temperature relative humidity Altitude 9.75(d) x 8.13(w) x 1.75(h) in. (24.77 x 20.65 x 4.45 cm) 3.25 lb. (1.47 kg) 32 F to 122 F (0 C to 50 C); important: see note for 50 C temperature specification rules 15% to 90% @ 122 F (50 C), noncondensing 14 F to 149 F (-10 C to 65 C) 15% to 95% @ 149 F (65 C), noncondensing up to 10,000 ft. (3 km) Maximum heat dissipation 272 BTU/hr (287 kj/hr) Maximum power rating 80 W DA - 12743 EMEA Version 5 November 29, 2011 Page 6

Services Maximum power rating and maximum heat dissipation are the worst-case theoretical maximum numbers provided for planning the infrastructure with fully loaded PoE (if equipped), 100% traffic, all ports plugged in, and all modules populated. Following are chassis operating temperature specifications of the 5400zl/8212zl switch when services modules are installed: 40 C when any services module is installed in the right side of the chassis 50 C when all services modules are installed in the left side of the chassis Up to four services modules can be installed in a 5400zl/8212zl chassis simultaneously. Up to three services modules are supported (all installed in the left half of the chassis) in the 5406zl chassis if a 50 C temperature specification is desired. When the services module is installed, the maximum relative humidity for the switch drops from 95% to 90%. 3-year, 4-hour onsite, 13x5 coverage for hardware (UQ589E) 3-year, 4-hour onsite, 24x7 coverage for hardware (UQ590E) 3-year, 4-hour onsite, 24x7 coverage for hardware, 24x7 SW phone support and SW updates (UQ591E) 3-Year, 9x5 SW phone support, software updates (UQ592E) 3-year, 24x7 SW phone support, software updates (UQ593E) 1-year, post-warranty, parts only, global next-day advance exchange (UQ594PE) 1-year, post-warranty, 4-hour onsite, 13x5 coverage for hardware (HR994E) 1-year, post-warranty, 4-hour onsite, 13x5 coverage for hardware (UQ595PE) 1-year, post-warranty, 4-hour onsite, 24x7 coverage for hardware (UQ596PE) 1-year, post-warranty, 4-hour onsite, 24x7 coverage for hardware (HR995E) software phone support (HR996E) software phone support (UQ597PE) 3 Yr 6 hr Call-to-Repair Onsite (UW374E) 4 Yr 6 hr Call-to-Repair Onsite (UW375E) 5 Yr 6 hr Call-to-Repair Onsite (UW376E) 1-year, 6 hour Call-To-Repair Onsite for hardware (HR998E) 1-year, 24x7 software phone support, software updates (HR997E) 1-year, 24x7 software phone support, software updates + Next Business Day Hardware Exchange (HS786E) 1-year, 24x7 software phone support, software updates + 4 hour hardware exchange (HS787E) 3-year, 24x7 software phone support, software updates + Next Business Day Hardware Exchange (HS788E) 3-year, 24x7 software phone support, software updates + 4 hour Hardware Exchange (HS789E) 4-year, 24x7 software phone support, software updates + Next Business Day Hardware Exchange (HS790E) DA - 12743 EMEA Version 5 November 29, 2011 Page 7

4-year, 24x7 software phone support, software updates + 4 hour Hardware Exchange (HS791E) 5-year, 24x7 software phone support, software updates + Next Business Day Hardware Exchange (HS792E) 5-year, 24x7 software phone support, software updates + 4 hour Hardware Exchange (HS793E) Refer to the HP website at: www.hp.com/networking/services for details on the service-level descriptions and product numbers. For details about services and response times in your area, please contact your local HP sales office. HP PCM+ Agent with ONE Services zl Module (J9496A) Physical characteristics Environment Electrical characteristics Services Dimensions Weight Operating temperature Operating relative humidity temperature relative humidity Altitude 9.75(d) x 8.13(w) x 1.75(h) in. (24.77 x 20.65 x 4.45 cm) 3.25 lb. (1.47 kg) 32 F to 122 F (0 C to 50 C); Important: See note for 50 C temperature specification rules. 15% to 90% @ 122 F (50 C), noncondensing 14 F to 149 F (-10 C to 65 C) 15% to 95% @ 149 F (65 C), noncondensing up to 10,000 ft. (3 km) Maximum heat dissipation 272 BTU/hr (287 kj/hr) Maximum power rating 80 W Maximum power rating and maximum heat dissipation are the worst-case theoretical maximum numbers provided for planning the infrastructure with fully loaded PoE (if equipped), 100% traffic, all ports plugged in, and all modules populated. Chassis operating temperature specifications of the HP E5400 zl and E8212 zl Switches when the services module is installed: 40 C when any services module is installed in the right side of the chassis 50 C when all services modules are installed in the left side of the chassis Up to four services modules can be installed in an E5400 zl or E8212 zl chassis simultaneously. Up to three modules are supported (all installed in the left half of the chassis) in the E5406 zl chassis if a 50 C temperature specification is desired. When the services module is installed, the maximum relative humidity for the switch drops from 95% to 90%. 3-year, 4-hour onsite, 13x5 coverage for hardware (UU099E) 3-year, 4-hour onsite, 24x7 coverage for hardware (UU100E) 3-year, 4-hour onsite, 24x7 coverage for hardware, 24x7 SW phone support and SW updates (UU101E) 3-Year, 9x5 SW phone support, software updates (UU102E) 3-year, 24x7 SW phone support, software updates (UU103E) DA - 12743 EMEA Version 5 November 29, 2011 Page 8

1-year, post-warranty, 4-hour onsite, 13x5 coverage for hardware (HS526E) 1-year, post-warranty, 4-hour onsite, 24x7 coverage for hardware (HS527E) software phone support (HS528E) 3 Yr 6 hr Call-to-Repair Onsite (UX035E) 4 Yr 6 hr Call-to-Repair Onsite (UX036E) 5 Yr 6 hr Call-to-Repair Onsite (UX037E) 1-year, 6 hour Call-To-Repair Onsite for hardware (HS530E) 1-year, 24x7 software phone support, software updates (HS529E) 1-year, 24x7 software phone support, software updates + Next Business Day Hardware Exchange (HS794E) 1-year, 24x7 software phone support, software updates + 4 hour hardware exchange (HS795E) 3-year, 24x7 software phone support, software updates + Next Business Day Hardware Exchange (HS796E) 3-year, 24x7 software phone support, software updates + 4 hour Hardware Exchange (HS797E) 4-year, 24x7 software phone support, software updates + Next Business Day Hardware Exchange (HS798E) 4-year, 24x7 software phone support, software updates + 4 hour Hardware Exchange (HS799E) 5-year, 24x7 software phone support, software updates + Next Business Day Hardware Exchange (HS800E) 5-year, 24x7 software phone support, software updates + 4 hour Hardware Exchange (HS801E) Refer to the HP website at: www.hp.com/networking/services for details on the service-level descriptions and product numbers. For details about services and response times in your area, please contact your local HP sales office. To learn more, visit: www.hp.com/networking Copyright 2009-2011 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice. The only warranties for HP products and services are set forth in the express warranty statements accompanying such products and services. Nothing herein should be construed as constituting an additional warranty. HP shall not be liable for technical or editorial errors or omissions contained herein. DA - 12743 EMEA Version 5 November 29, 2011 Page 9