Contact Us (02) 9388 1741

    Trellix Intrusion Prevention System

    Virtual Packet Capture Appliance (Support for Azure, ESXi, KVM, and AMI)

    Why Trellix IPS+ for AWS?

    Trellix IPS+ provides signature-based detection that protects vulnerable assets from exploit, and can stop DDoS, C2 callbacks, and more. It does so at a high speed and scale.

    Superior Detection

    Trellix IPS+ For AWS includes the expected signature-based detection but goes beyond that to include multiple layers of signatureless detection.

    High Performance

    Trellix IPS+ has been designed to provide high speed and scale, so it won’t become a network chokepoint.

    Reduced Operational Complexity

    With the dynamic nature of AWS workloads, an IPS needs to be simple and streamlined.

    At A Glance

    Signature-based detections at speed and scale

    North-South and East-West detection

    Available as an AMI in the AWS Marketplace

    Virtual patching to protect unpatched systems

    High performance – 1Gbps per sensor, unlimited sensors

    Simplified deployment and management – no controllers or probes

    Integrated with AWS GWLB for auto-scaling and high availability

    Includes Trellix IVX for signatureless detection (sandbox detonation)

    Additional Features

    Advanced Threat Prevention

    • Native inbound SSL inspection
    • Microsoft 365 deep file inspection
    • PDF JavaScript emulation engine (lightweight sandbox)
    • Adobe Flash behavioral analysis engine
    • Advanced evasion protection
    • Full protocol analysis
    • Threat reputation analysis

    Botnet and Malware Callback Protection

    • IP defragmentation and TCP stream reassembly
    • Signatures: Trellix, user-defined, and open-source
    • Host quarantine and rate limiting
    • Inspection of virtual environments
    • DDoS prevention
    • Allow/block lists in support of Structured Threat Information eXpression (STIX)
    • Threshold and heuristic-based detection
    • Host-based connection limiting
    • Native support for Snort signatures
    • Self-learning, profile-based detection

    Trellix Global Threat Intelligence

    • Domain name servers (DNS) / domain generation algorithms (DGA) / fast flux callback detection
    • DNS sinkholing
    • Heuristic bot detection
    • Multiple attack correlation
    • Command and control database

    Advanced Intrusion Prevention

    • File reputation
    • IP reputation
    • URL/domain reputation
    • Geolocation-based restricted access
    • IP address-based access control

    Call a Specialist
    Today!

    Our team of experts is ready to help you find the perfect solution for your business needs. Get personalized advice and competitive quotes.

    Monday - Friday: 9:00 AM - 6:00 PM AEST
    Sydney, Australia

    Speak to an Expert

    We're here to help with any questions

    Call us now
    (02) 9388 1741