Product Description:ConSentry LANShield Controller is a new class of secure networking system with the processing power of a switch delivered with the economy and deployment ease of an appliance. It combines unprecedented visibility, identity-based networking, malware containment and centralized event auditing capabilities into a single platform to provide total user access control for maximum LAN security. Based on Consentry's patented LANShield silicon architecture, the platfonn delivers Layer 2-7 deep packet inspection at full duplex, 10 Gbps throughput rates - which is a necessity for an inline device - to fully secure every port that provides access to enterprise LANs. It is fully compliant with Cisco's NAC initiative, Microsoft's NAP initiation, and the Trusted Computing Group's TNC architecture, and can be deployed effectively as a overlay device to secure existing LAN infrastructures.
Performance: Delivers Layer 2-7 deep packet inspection at full duplex, 10 Gbps throughput rates
Interfaces: 10 secure port pairs of unpopulated SFP interfaces (single, multinode fiber or 10/100/1000) 4 extensibility ports, 2 management ports
Key Features & Benefits:
LANShield, a breakthrough, patent-pending silicon architecture that enables the
SLC to deliver switch-class performance to secure LANs with the economy and
deployment ease of an appliance. Massively multithreaded 128 core CPU and the
Consentry Flow Accelerator and Visualizer ASICs that enable deep packet
inspection at full duplex and 10 Gbps throughput rates for traffic flowing from
users and the network core. Ths performance enables it to operate as an inline
appliance within the network fabric.
A unique malware containment technology based on application anomaly
detection that does not require cumbersome attack signatures or system tuning.
Full stateful processing on a per user basis that allows the SLC to classify all
traffic up to Layer 7 on every data flow, allowing unprecedented applicationbased
policy enforcement to control which user or group of users are authorized
to access specific corporate assets. The Secure LAN Controller accomplishes ths
without requiring complex ACLs or VLANs by binding users to roles-based
policies.
The ability to co-exist seamlessly with existing LAN infrastructures including
authentication, identify management and host integrity software to deliver
pervasive LAN security transparently. The Secure LAN Controller is a snap-in
platform that supports Active Directory, Kerberos, RADIUS and LDAP-based
authentication systems.
The Secure LAN Controller deliversnetwork admission control-in-a-box.by
integrating the Cisco Trust Agent and a dissolvable agent technology to securely
manage mobile, guest and uncontrolled desktops attempting to access the LAN.
For the first time, 1T can decouple the host posture check decision from the
network enforcement device decision that does not force a switch upgrade or
dictate specific endpoint software. , Consentry's Secure LAN Controller supports
the industry's broadest range of endpoint security solutions that include Cisco's
Network Admission Control, Microsoft's Network Access Protection, Trusted
Computing Group's Trusted Network Connect specification and Checkpoint's
Integrated Clientless Security technology.
ConSentry Insight, a centralized management platform that provides an actionable
control panel for a single view of all user activity and security incidents across
enterprise LANs.
Highlights: ConSentry Networks is the only company delivering granular LAN visibility and control at multigigabit speeds. The company's security platform combines the capabilities of Network Admission Control (NAC), visibility, user access control, and threat control into a single platform that deploys transparently in the network and maintains LAN-speed throughput.
ConSentry's primary advantage over our competitors is our unique silicon architecture. We have
developed three custom ASlCs, including a 128-threaded parallel processing CPU. This CPU breaks considerable ground, especially compared to typical Intel or AMD CPUs, which are just now beginning to incorporate parallel processing of two or four threads. This breakthrough silicon architecture enables ConSentry to deliver full LAN security in a single platform, enabling IT to avoid the multi-box, manual integration process. The innovation in ConSentry's silicon is akin to the innovation Juniper achieved in the late 1990s when it put routing into ASlCs or to Kalpana's or Grand Junction's success in building Ethernet switches based on custom silicon.
End-Users: Global 2000 enterprises as well as Service Providers
Consentry Networks
1690 McCandless Drive
Milpitas CA 95035 USA
Pros
:
Cons
:
Recommend to others
:
Yes
No
Yes, I want to subscribe to email newsletters from Info Security Products Guide
Yes, I am an end-user and would like to be included in the voters list
Full Name
:
Company Name
:
Title
:
Address
:
City
:
State
:
Country
:
Telephone
:
(with area & country code)
Email Address
:
Renter Email Address
:
I am:
Existing end-user
Prospective Customer
Other: