NSS Group logo

Intrusion Prevention Systems 

Group Test (Edition 1)

This report has been superseded by IPS Group Test Edition 2 and is no longer available on line.  However, it does include reviews  of five IPS products, four of which  are not included in the current Edition.  It is available for purchase in PDF, CD or print versions.

Click here to purchase on line using our secure server.

Table of Contents

INTRODUCTION
Intrusion Prevention Systems (IPS)
Host IPS (HIPS)

Network IPS (NIPS)
Implementation Challenges
Requirements for Effective Prevention
The NSS Intrustion Prevention Group Test
Performance
Security Effectiveness
Usability

Summary
The Market
The Products

NETWORK BASED PRODUCT REVIEWS

ISS Proventia G200 Revision A
Executive Summary
Architecture
Intrusion Protection Appliance
Proventia Network Agent
SiteProtector
Deployment Manager
Application Server
Sensor Controller
Proventia Site Database
Event Collector
SiteProtector SecurityFusion Module
SiteProtector Console
Performance
Security Effectiveness
Usability
Installation
Configuration
Policy Management
Alert Handling
Reporting and Analysis
Verdict
Contact Details

NetScreen-IDP 500 V3.0
Executive Summary
Architecture
IDP Sensor
Detection Engine
High Availability
IDP Management Server
User Interface (UI)
Performance
Security Effectiveness

Usability
Installation
Configuration
Policy Management
Alert Handling
Reporting and Analysis
Verdict
Contact Details

Network Associates McAfee IntruShield 4000 V1.8
Executive Summary
Architecture
IntruShield 1200 Sensor
IntruShield 2600 Sensor
IntruShield 4000 Sensor
Monitoring Modes
Detection Engine
Virtual IDS (VIDS)
Hardware Acceleration
IntruShield Security Management Systems (ISM)
NAI Update Server
Performance
Security Effectiveness
Usability
Installation
Configuration
Policy Management
Alert Handling
Reporting and Analysis
Verdict
Contact Details

TippingPoint UnityOne-1200 V1.4
Executive Summary
Architecture
UnityOne Intrusion Prevent Appliance (IPA)
UnityOne Intrusion Prevent Systems (IPS)
Local Security Manager (LSM)
Command Line Interface (CLI)
Security Management System (SMS)
Performance
Security Effectiveness
Usability
Installation
Configuration
Policy Management
Alert Handling
Reporting and Analysis
Verdict
Contact Details

Top Layer Attack Mitigator IPS 2400 V2.1
Executive Summary
Architecture
Performance
Security Effectiveness
Usability
Installation
Configuration
Policy Management
Alert Handling
Reporting and Analysis
Verdict
Contact Details

Network IPS Testing Methodology
The Test Environment
Section 1 - Detection Engine
Section 2 - IPS Evasion
Section 3 - Stateful Operation
Section 4 - Detection/Blocking Performance Under Load
Section 5 - Latency & User Response Times
Section 6 - Stability & Reliability
Section 7 - Management and Configuration

Network IPS Test Results

HOST-BASED PRODUCT REVIEWS

NAI McAfee Entercept 4.1
Executive Summary
Architecture
Management Server
Database
Agents
Console
Events
Exceptions
Policies
Signatures
Notifications
Reports
How Does It Work?
Entercept Standard Edition
Entercept Web Server Edition
Entercept Database Edition
Performance
Security Effectiveness
Usability
Installation
Configuration
Policy Management
Alert Handling
Reporting and Analysis
Verdict
Contact Details

Host IPS Testing Methodology
The Test Environment
Section 1 - Basic Protection Capabilities
Section 2 - Performance Under Load
Section 3 - Evasion Techniques

Host IPS Test Results

Appendix A - Vendor Questionnaires

Appendix B - The Test Equipment
Spirent Communications SmartBits SMB-6000/sMB-600
SmartBits Applications
Spirent Communications Avalanche and Reflector
Adtech-AX/4000
Allied Telesyn AT-9800 Series Switches

Top         Home

Certification Programs

Group Test Reports

White Papers

On-Line Store

Contact The NSS Group

Home

Click here to purchase electronic (PDF) and hard copy versions of this report

Send mail to webmaster with questions or 
comments about this web site.

Copyright � 1991-2006 The NSS Group Ltd.
All rights reserved.