Security and Policy
Why 3Com,
Proven 3Com® security solutions offer in-depth, layered protection against threats coming from both outside and inside the network.
To protect valuable network resources, maintain the public’s trust and pass rigorous security audits, the agency needs a security policy that:
- Guards against both external and internal threats and illegal access to sensitive information that can range from personal financial records to confidential medical files
- Provides for continuity of all services if an attack does take place
- Extends security benefits to remote locations, off-site workers and wireless network users
- Safeguards voice communications on IP telephony networks
- Offers performance protection by giving priority to business-critical applications and throttling down instant messaging, peer-to-peer and other less critical bandwidth-consuming traffic
A Universal Security Platform
3Com Intrusion Prevention System
(IPS) products, based on the industry-leading TippingPoint™ IPS engine, combine industry-leading capabilities that include intrusion suppression, virtual private network (VPN) support, a stateful packet inspection firewall, application bandwidth management, audio/video IP multicast routing and web content filtering. These universal IPS solutions detect and eradicate threats proactively, before they can cause damage.
The IPS platform’s VPN capability extends protection to remote users accessing the network over the public infrastructure. Performance protection features ensure that IP telephony and other critical applications get the bandwidth they need to operate reliably and efficiently. The web content filter blocks access to inappropriate web sites that could compromise network security, reduce productivity or present possible legal problems. By implementing all these capabilities on one device, agencies can save equipment costs and make network management easier.
3Com also offers standalone VPN solutions for organizations of any size.
Insider Threats and Mobile Solutions
Often the most dangerous security threats come from within the network. These threats may include worms from traveling laptops and visitor/guest PCs, or installation of unapproved applications such as peer-to-peer file sharing that can carry spyware. A 3Com IPS device can automatically remove an infected PC from the network, or move the PC into a quarantine virtual LAN (VLAN) where it can be safely repaired before being allowed back on the network.
Another innovative 3Com technology called embedded firewalls
extends firewall filtering and auditing capabilities to the desktop level. This technology, integrated on PCI and PC Cards, helps enforce the agency’s security policies on telecommuter laptops, VPN gateways, shared servers, web servers, contractor desktops and always-on broadband connections. It also provides resistance to unauthorized user modifications that could result in management headaches.
FIPS-Secure Wireless LANs
3Com and Fortress Technologies have joined together to offer enterprise-class Wi-Fi solutions that employ government-class security measures. These solutions have been thoroughly tested to comply with the Federal Information Processing Standards (FIPS), as well as NIST, NIAP and various military standards such as TIC certification. The wireless clients, access points, LAN infrastructure devices and management components work together to shield the entire network from the many external and internal threats to which Wi-Fi communications are susceptible.
|