Juniper Intrusion, Detection & Prevention (IDP)
Juniper Networks intrusion
Detection and Prevention (IDP) products offer the latest
capabilities in in-line network Intrusion Prevention System (IPS)
functionality to protect the network from a wide range of attacks.
Using industry-recognized stateful detection and prevention
techniques, Juniper Networks IDP provides zero-day protection
against worms, trojans, spyware, keyloggers and other malware from
penetrating the network or spreading from already infected
users.
Juniper Networks IDP not only helps protect networks against
attacks, it provides information on rogue servers as well as types
and versions of applications and operating systems that may have
unknowingly been added to the network. Application signatures,
available on the Juniper Networks IDP, goes a step further and
enables accurate detection of specific applications such as
peer-to-peer or instant messaging. Armed with the knowledge of
specific applications running in the network, administrators can
more easily enforce security policies and maintain compliance with
corporate application use policy. Juniper Networks IDP also
provides DiffServ markings to allow the routers to enforce
bandwidth limitations on non-essential applications. Not only can
administrators control the access of specific applications, but
they can ensure that business-critical applications receive a
predictable quality of service.
Juniper Networks IDP products are managed by Juniper Networks
NetScreen-Security Manager (NSM), a centralized, rule-based
management solution offering granular control over the system's
behavior. NSM also provides easy access to extensive logging, fully
customizable reporting, and management of all Juniper
firewall/VPN/IDP systems from a single user interface. With the
combination of highest security coverage, granular network control
and visibility and centralized management, Juniper Networks IDP is
the best solution to keep critical information assets safe.
Benefits
- Proactively protect network from undiscovered
vulnerabilities
- Proactively prevent reconnaissance activities or block
Distributed Denial of Service (DDoS) attacks
- Optimize network and ensure necessary bandwidth for
business-critical applications
- Apply unique policies based on department, customer, and
compliance requirements
- Streamline business operations by logically separating and
enforcing roles of various administrators
- Provide detailed real-time reports from each IDP appliance
installed in the network without taxing the central IT
organization
- Provide details on what threats are encountered by the network
as well as the mix of application traffic
