Castleforce IT Security Team

Sourcefire and Snort are world leaders in intelligent cybersecurity solutions

Sourcefire IPS

Built on Snort, the de facto standard for intrusion detection and prevention (IDS/IPS), Sourcefire IPS™ (Intrusion Prevention System) is the foundation of the award-winning Sourcefire 3D® System. Sourcefire IPS uses a powerful combination of vulnerability- and anomaly-based inspection methods—at line speeds up to 10Gbps—to analyze network traffic and prevent threats from damaging your network. Additionally, when Sourcefire IPS is deployed with the Sourcefire SSL Appliance, the benefits of the IPS are extended to SSL-encrypted traffic. Whether deployed at the perimeter, in the DMZ, in the core, or at critical network segments, Sourcefire’s easy-to-use IPS appliances provide comprehensive threat protection.

Enquire about this product

5 Virusn5 SpywarenX Spamn5 Web/IMn5 IPS/Patch Mgmtn5 Data/System Mgmtn

Sourcefire-IPS-smart-defence-architecture

Sourcefire supports a Defence-in-Depth intrusion prevention strategy by allowing physical or virtual Sourcefire 3D Sensors to be positioned in all areas of the network. Sourcefire Defence Centre orchestrates all event aggregation, analysis, and IPS policy management.

Sourcefire IPS contains multiple default policies for out-of-the box blocking, drawing from a comprehensive library of open Snort rules. Open rules allow customers to verify that rules address the vulnerabilities for which coverage is claimed and to create new rules or modify existing ones to protect custom applications and systems. Sourcefire’s IPS can be deployed in inline blocking and/or passive alerting modes, and can remediate attacks using external devices, such as firewalls, routers, patch management systems, and more.

Take the next step to protect your network

Sourcefire is the only IPS provider offering dynamic defences against the threats aimed at your constantly changing network. Sourcefire’s key capabilities include:

Superior attack protection:

  • Snort IPS detection engine
  • Vulnerability-based Snort rules
  • Open rules language—view, edit, and create Snort rules
  • Multiple default IPS policies
  • ICSA Labs certified and NSS Labs tested

Most contextual information about threats:

  • 24x7, passive network intelligence
  • User identity tracking

Only network security provider to offer a real-time adaptive security solution:

  • Real-time, automated intrusion event impact assessment
  • Automated IPS tuning based on actual network assets

Integrated system managed from a single, easy-to-use management console

  • “Manager of managers” enterprise-class scalability through MDC technology

Excellent forensics and event analysis:

  • Powerful event viewing system
  • Full packet logging