Contact Us (02) 9388 1741

    Trellix Intrusion Prevention System for On-Premises

    Comprehensive, intelligent, advanced threat protection

    Why Trellix IPS for On-Premises?

    Trellix Intrusion Prevention System (IPS) is a next-generation intrusion detection and prevention system (IDPS) that discovers and blocks sophisticated malware threats across the network.

    Protection against today’s stealthy threats

    Trellix IPS combines intelligent threat prevention with intuitive security management to improve detection accuracy and streamline security operations.

    Integrated security

    Trellix IPS integrates with Trellix Intelligent Sandbox, which combines indepth static code analysis, dynamic analysis (malware sandboxing), and machine learning to detect zero-day threats, including threats that use evasion techniques and ransomware.

    Performance and availability

    Trellix IPS offers the best of both worlds— security and high performance. It combines a single-pass, protocol-based inspection architecture with purpose-built, carrier-class hardware to achieve real-world inspection up to 100 Gbps

    Visibility and control

    Make informed decisions about the applications and protocols on your network. Trellix IPS was the first IDPS solution to combine advanced threat prevention and application awareness into a single security decision engine.

    Intelligent, scalable security management

    Make the most of your security investment through intelligent network security management. IPS Manager provides scalable webbased management from two to several hundred network security appliances.

    At A Glance

    Quickly detects and blocks threats to protect applications and data

    High-performance, scalable solution for dynamic environments

    Integrates with Trellix solution portfolio for device-to-cloud security

    Advanced detection, including signature-less malware analysis

    Inbound and outbound SSL decryption to inspect network traffic

    High availability and disaster recovery protection

    Virtual appliances also available

    Centralized management for visibility and control

    Additional Features

    DoS and DDoS prevention

    • Threshold and heuristic-based detection
    • Host-based connection limiting
    • Self-learning, profile-based detection

    Trellix GTI

    • File, IP, and URL reputation
    • Application and protocol reputation
    • Geo-location
    • Allow listing based on Trellix GTI categories

    High availability

    • Active-active and activepassive with stateful failover
    • External fail open (active)
    • Built-in fail open

    Protocol tunneling support

    • IPv6
    • V4-in-V4, V4-in-V6, V6-in-V4, and V6-in-V6 tunnels
    • MPLS
    • GRE
    • Q-in-Q Double VLAN

    IPS Manager

    • Tiered management (up to 1,000 sensors)
    • User authentication (RADIUS and LDAP)
    • Automated failover and fail back
    • Disaster recovery of critical configuration data
    • Centralized, hierarchical policy management
    • Memory dashboard details memory utilization by device

    Advanced threat prevention

    • Inbound Secure Sockets Layer (SSL) decryption supports Diffie-Hellman and EllipticCurve Diffie-Hellman ciphers using an agent-based, shared key solution with no impact on sensor performance (patent pending for NS-series)
    • Outbound SSL decryption (NS-series)
    • Gateway Antimalware Emulation engine
    • PDF JavaScript emulation engine
    • Adobe Flash behavioral analysis engine
    • Microsoft Office Deep File Inspection engine
    • Advanced evasion protection
    • Mobile threat reputation and cloud analysis

    Advanced intrusion prevention

    • IP defragmentation and TCP stream reassembly
    • Trellix, user-defined, and opensource signatures
    • Native support for Snort signatures (NS-series)
    • Allow list/block list enhancements in support of Structured Threat Information eXpression (Trellix NS-series)
    • Host quarantine and rate limiting
    • Inspection of virtual environments
    • Integration with Trellix Intelligent Sandbox
    • HTTP response decompression support

    Call a Specialist
    Today!

    Our team of experts is ready to help you find the perfect solution for your business needs. Get personalized advice and competitive quotes.

    Monday - Friday: 9:00 AM - 6:00 PM AEST
    Sydney, Australia

    Speak to an Expert

    We're here to help with any questions

    Call us now
    (02) 9388 1741