Receive a postcard? Click here.
Register for the ConSentry Workshop here.
A HIGH PERFORMANCE, COST EFFECTIVE SOLUTION
TO SECURE ENTERPRISE LANs
ConSentry is building wire-speed devices built to protect
the most demanding LANs with levels of user-based visibility
and control not available today. Enterprise LANs or the internal
network are open and vulnerable with contractors, business
partners and guests all requiring access. It’s not just
about connectivity anymore, its now about control. The ConSentry
platform is purpose built to deliver granular control over
users, applications and access to the LAN with the performance,
simplicity and affordability to make securing your LAN viable
to deploy.
Performance: The Power of the LANShield™ Silicon
Architecture
High Throughput: Enterprise LANs have performance requirements
that are orders of magnitude greater than WAN links. Today’s
wiring closet switches have gigabit and sometimes multiple
gigabit links up to the core/aggregation layer. Only ConSentry’s
patent-pending LANShield silicon architecture is capable delivering
breakthrough secure processing throughput and the flow acceleration
needed to fully visualize and control LAN-based communications.
The ConSentry platform enables deep packet inspection at up
to 10 Gbps throughput rates on traffic coming from users and
coming from the network core.
Innovation in the LAN: Building User and Application
Control into the Network Fabric
Understanding Users: The ConSentry platform binds together
a user’s name to IP and MAC address as the user authenticates
to the LAN. Once bound together, this user information is
tracked and can be used for policy enforcement, authorization
and reporting on a per user basis. Now all incidents and reports
are bound to a specific user greatly reducing the amount of
work needed to associate IP and MAC to users.
Application Awareness:
Most traditional security devices can only inspect and control
traffic up to layer 4, which means web-based applications
which tunnel under port 80 and LAN-based applications which
create their own internal layer 4 port identifiers are not
visible and can’t be controlled. For this reason relying
only on layer 2-4 data is insufficient to control and understand
traffic. The ConSentry platform classifies traffic to layer
7 for every new flow enabling strong application- based enforcement
capability.
Securing the LAN should not mean replacing the LAN. Rather
solutions must leverage the existing installed network equipment.
In addition, it must integrate with existing authentication,
identity management platforms and host integrity software
for a seamless fit. The ConSentry platform does exactly that,
as a non-disruptive bridge in between the wiring closet switches
and core/aggregation layer switches. It deploys seamlessly
into the network infrastructure enabling security that is
transparent to users.
Centralized Management:
Any LAN security solution needs be as simple tomanage as
existing switches. Solutions should not require complex security
event managers to correlate, rather should provide user-based,
violation indexed reporting to allow IT to take immediate
action when a security or network incident arises. The ConSentry
management platform provides IT staff with a centralized,
easy-to- use and actionable control panel for a single view
of all user activity and security incidents across the enterprise
LAN.
Inquire about
Consentry Networks. Request an
onsite trial/evaluation. Request an
online Webinar.