About Us  |  Services  | Recruitment  |  Advertise  | Contact

 

Computer Network Defence Ltd

IDS & IPS Products
Scanning Products
VPN & Firewall Products
Content Protection
Endpoint Security
Full Disk Encryption
Network Access Control
Server Anti Virus
Firewall Anti Virus
ISA Server Anti Virus
Anti Virus Appliances
Enterprise Anti Virus
Anti Spam Desktop
Anti Spam Mail Servers
Anti Spam Gateways
Anti Spyware Prevention
Anti Spyware Removal
Content Filters
Forensics Solutions
Training Courses
Raw Packets
Bug Sweeping / TSCM
Miscellaneous
Services


Content Protection
Content Protection is a critical part of protecting computers and networks in today's world.  Potential virus outbreaks, the nuisance and resource waste of spam, and unwanted or undesirable content all combine to eat away at the resources available for your business. 

 This section includes Anti Virus products, Anti Spam products, Anti Spyware products, Content Filters, Network Access Control, and Endpoint Security.

Also look at the Unified Threat Management (UTM) appliance page for network appliances that combine these functions with the traditional firewall/VPN appliance.

Scroll down for more detailed category descriptions


Other Information about Anti Virus Protection

Other Information about Anti Spam Protection

Other Information about Anti Spyware

Other Information about Content Filters

Other Information about Endpoint Security

Other Information about Network Access Control

Last Reviewed by Michele Jordan 31 Oct 2005



 

Enterprise Anti Virus
Products in this category provide desktop and server antivirus products that are managed from a central location in your network, typically an administrator's console. The console can manage antivirus software installation, software updates, virus definition file updates, and scan policies for all computers within your network.

Anti Virus Gateways
An Anti-virus gateway is a product that works with or in addition to your servers and firewall to scan inbound and outbound traffic for virus infections. There are a variety of products, which have been listed in the categories that follow.

Server Anti Virus
These products install on a standard server, and work either as a proxy or with the mail package to check traffic for virus infections. Some do mail-only, while others can provide scanning for web traffic as well.

Firewall Anti Virus
These products are add-on software to firewall installations, that perform the virus scans on all traffic flowing through the firewall, preventing the virus infections from reaching the internal network.

ISA Server Anti Virus
The Microsoft Internet Security and Acceleration Server (http://www.microsoft.com/isaserver/default.mspx) provides security for the network and integration with a variety of Microsoft networking solutions. Several products run on the ISA Server to provide anti-virus filtering for all traffic flowing through the server.

Anti Virus Appliances
These are hardware/software combination "boxes" that are placed in your network to perform anti-virus scanning. Many perform other functions (anti-spam, content filtering, etc.) as well. They may be placed near the firewall or near the mail server, depending on the functionality offered by the product.

Anti Spam Desktop
Products in this category install on the desktop and monitor for and remove spam at the time of download by the user.

Anti Spam Mail Servers
These products install on, or are part of, the mail server, and filter spam at the time of receipt by the mail server, prior to delivery to the user.

Anti Spam Gateways
These products are separate gateways that install in the network, monitoring for and removing spam prior to reaching the mail server.  It may be part of the firewall or a separate piece of equipment.

 

Spyware Prevention
Spyware Prevention tools can run on the workstation, or at the network perimeter.  Workstation software provides active monitoring and review of processes and programs as they run, identifying potentially harmful actions and normally requesting your approval or denial of the action.  Network appliances block spyware before arriving at the desktop, and prevent previously-infected workstations from reporting back.

Spyware Removal
Spyware removal/detection products scan your computer, looking for known spyware, adware, etc.  The success with which each product detects and removes the various spyware instances often differentiates the products.  It is normally recommended to run two detection products, one free and one commercial.

Content Filters
Content filters do just what the name implies, filter content.  They can be for a single pc, or a network.  They are software and/or appliances.  They can act just on web browsing, or all traffic.  They filter based on file type, banner ads, URL, page content, images, executables, white lists, black lists, categories, p2p, chat.  They can log and record for monitoring and reporting purposes.  Most that filter based on URL come with a URL database and update services.

Endpoint Security
Endpoint Security includes applications to control the use of portable storage devices on the computer, encryption of the data on those devices, and improvements in the devices themselves to secure the information on them.

Network Access Control
Network Access Control (NAC) products (also referred to as Network Admission Control, Network Access Protection (NAP), or Network Quarantine) protect networks by authenticating and authorizing users and computers prior to granting access to the network. The implementation by each product varies widely, using solutions such as DHCP servers, VPNs, or switch hardware. Some solutions require endpoint software be installed on each client.

Full Disk Encryption
As the use of mobile computing increases for business and governments, so does the risk of sensitive information falling into "the wrong hands."  Many businesses and governments now mandate full disk encryption as a way to mitigate this risk.  This can be done through hardware or software, as an individual or a centralized administration task or even as a managed service.  Many products perform FDE with the use of special encryption chips or the TPM (trusted platform module) that is being included in more and more laptops.


Other Information about Anti Virus Protection

 

Links to other anti virus information


Using NOD32 and Postfix as an antivirus gateway
How to Use Merak as your AntiSpam and AntiVirus Gateway for MS Exchange Server?
Debian Anti-Spam Anti-Virus Gateway Email Server using Postfix 2.1, Amavisd-new, SpamAssassin, Razor, DCC, Pyzor, and ClamAV
Rainfinity RainWall and RainConnect: High Availability Software for Content Security

Hosted Services - Hosted services offer mail hosting and perform anti-virus and anti-spam functions prior to delivering mail.
GMSI Advanced Virus Gateway
Ownmail AntiVirus
CipherTrust Managed Services - Hosted IronMail
EmailSifter - Spam and Virus Filtering

 

Information updated: 28 Oct 05


Other Information about Anti Spam Protection

 

Links to other anti spam information


Distributed Checksum Clearinghouse - The idea of the DCC is that if mail recipients could compare the mail they receive, they could recognize unsolicited bulk mail. A DCC server totals reports of checksums of messages from clients and answers queries about the total counts for checksums of mail messages. A DCC client reports the checksums for a mail message to a server and is told the total number of recipients of mail with each checksum. If one of the totals is higher than a threshold set by the client and according to local whitelists the message is unsolicited, the DCC client can log, discard, or reject the message.

Fairly-Secure Anti-SPAM Gateway Using OpenBSD, Postfix, Amavisd-new, SpamAssassin, Razor and DCC

Notes about Mail and Anti-Spam at Linux-sec.net

How to set up an Anti-SPAM gateway using Postfix as your MTA

Hosted Services - Hosted services offer mail hosting and perform anti-virus and anti-spam functions prior to delivering mail.
MailShell Hosted Service
No software or downloads needed: All of your spam is filtered by Mailshell's servers. Point your company's email domain MX record to Mailshell. Customize what you want to be done with spam: reject or tag. Provide the address of your mail server. You can enjoy your spam-free inbox now. - (Priced for companies, not home use)
SpamArrest service - Uses Challenge/Response from senders to verify email (30 day free trial)
emailsifter.com - (15 day free trial)
GMSI Advanced Virus Gateway
Ownmail AntiVirus
Praetor MeM
mailprotector
Peer to Peer AntiSpam Gateway Services
Electric Mail
SpamLion Service
iPermitMail
JustRealMail.com


Other Services
Lashback - Safely unsubscribe from mailing lists, a toolbar that comes as the basic unsubscribe toolbar or with a spam filter
MailShell - SDK for including their spam engine in your products

 

Information updated: 31 Oct 05


Other Information about Anti Spyware

 

Links to other anti spyware information


SpywareWarrior.com - Blogs, Forums, Comparisons, Reviews, Spyware Analysis, and many other resources, including a Rogue/Suspect Anti-Spyware List

SpyBye - SpyBye is a tool to help web masters determine if their web pages are hosting browser exploits that can infect visiting users with malware. It functions as an HTTP proxy server and intercepts all browser requests. SpyBye uses a few simple rules to determine if embedded links on your web page are harmlesss, unknown or maybe even dangerous.

 

Information updated: 15 Oct 05


Other Information about Content Filters

 

Links to other content filter information


Computer Professionals for Social Responsibility Filtering FAQ

 

Information updated: 31 Oct 05


Other Information about Endpoint Security

 

Links to other information


PodSnaffler is a tool to show what data could be stolen from the computer via removable storage.

Microsoft article about using the OS to manage removable storage security.

IT managers see portable storage device security risk: How much damage can an iPod or memory stick do? Plenty, say analysts  article by Lucas Mearian

ITtoolbox Blog about portable storage device security.

Securing USB Memory Devices to Reduce Risks to IT Infrastructure - overview of the problem and options, by Siemens

Social Engineering, the USB Way - an article about using USB memory sticks to compromise a credit union during a security assessment.

 

Information updated: 11 July 06


Other Information about Network Access Control

 

Links to other information


What You Should Know About Network Admission Control

Primer: Network Access Control

Network Access Control Learning Guide

Network Admission Control - Best Practices

Market Analysis: Network Node Validation

Using 802.1X to control physical access to LANs
Remote User Security Checklist

Network Access Control: User and Device Authentication.

 

Articles on NAC/Quarantine in Windows Server 2003

- From TechNet - Network Access Quarantine Control in Windows Server 2003

- From WindowSecurity.com - Server 2003’s Network Access Quarantine Control: What is it and How Does it Enhance Security?

- From TechNet again - Network Access Protection

 

Information updated: 14 Aug 06


Click Here To Go To The Top Of The Page

Last page update: 01 Feb 2008

Computer Network Defence Ltd
Information Security Consultancy and Recruiting
enquiries@securitywizardry.com 

Copyright © 2004 Computer Network Defence Ltd. All Rights Reserved.

PO Box 2680, Corsham, Wiltshire, SN13 0ZR, UK
Phone       0870 3219014
International +44 (0) 1225 811806