La descarga está en progreso. Por favor, espere

La descarga está en progreso. Por favor, espere

Protección Web, Messaging & Infrastructure

Presentaciones similares


Presentación del tema: "Protección Web, Messaging & Infrastructure"— Transcripción de la presentación:

1 Protección Web, Messaging & Infrastructure

2 Seguridad Web, Messaging & Infraestructura
Protección Web, messaging e infraestructura ― parte de la protección de la red corporativa Seguridad End Point Seguridad Web, Messaging & Infraestructura Gateways Servidor de Administración Servidores Correo Presentation is about protection of File Servers and Storages, Mail servers and Gateways, which are just a part of corporate infrastructure. Workstations & Dispositivos móviles Servidores de archivo

3 Ι. ΙΙ. Contenido Aproximación al negocio de la Seguridad TI >>
Soluciones & Aplicaciones >> ΙΙ.

4 Aproximación al Negocio de la Seguridad TI

5 Puntos Clave de la seguridad AV
1 Coste de la protección 2 Nuevas fuentes de amenazas y tendencias de seguridad 3 Infraestructuras Multiplataformas 4 Eficacia de la administración 5 Necesidades del cliente 6 Soporte fiable

6 1 Coste de la Protección Daño potencial de la infección
Costes solución AV Pérdida de datos Reputación Interrupción de los procesos de negocio Pérdida productividad Costes de limpieza AV/AS. Licenciamiento Despliegue e instalación Tiempo de mantenimiento Uso de los recursos del sistema Soporte técnico – tiempo de reacción Soporte local Las soluciones KL minimizan el TCP La mejor protección: 0 infecciones = 0 costes de limpieza Mínimo consumo de CPU y memoria = uso óptimo de los recursos del sistema Fácil de gestionar Reacción más rápida a nuevas amenazas, rápida respuesta telefónica y de soporte Presencia multinacional Gama completa de soluciones que cubren desde el endpoint hasta la nube, todo con un único proveedor

7 Nuevas fuentes de amanezas y tendencias de seguridad
2 Nuevas fuentes de amanezas y tendencias de seguridad Servicios Cloud Virtualización Web 2.0 IT consumerización Movilidad Regulaciones & Auditorías

8 Infraestructuras Multiplataforma
3 Infraestructuras Multiplataforma 8

9 Infraestructuras Multiplataforma
3 Infraestructuras Multiplataforma

10 Administración Eficaz
4 Administración Eficaz Funcionalidades de escaneo Actualizaciones Estado de la protección Informes Instalación Alertas Herramienta de Gestión Centralizada para la infraestructura corporativa

11 Necesidades de los usuarios
5 Necesidades de los usuarios Empresa SMB Externalización IT CTP Coste de Adquisición Solución en caja Contratos Globales de mantenimiento Necesidad de recursos del sistema Recursos durante los escaneos y actualizaciones

12 IV III II I 6 Soporte fiable Resolución Calidad de la gestión
Transferencia de conocimiento Información sobre los productos de KL, materiales de formación II Servicios proactivos Disponibles en el Portal de Soporte I Mejora e innovación del producto BBDD antivirus, actualizaciones y mejoras

13 Por qué Kaspersky Lab La mejor protección anti-malware para infraestructuras TI multiplataforma Planes de seguridad optimizados y fiables para maximizar la productividad y reducir el coste total de la propiedad Soluciones fáciles de usar y gran capacidad de interoperatividad Capacidad de anticipar amenazas y tendencias y poder establecer una política de seguridad fiable y a largo plazo Planes de soporte global Tecnologías galardonadas y certificadas >>

14 West Coast Labs certification
West Coast Labs - global leader in technical research, testing and Checkmark Certification of information security products and services WCL tested Kaspersky corporate products over a period of 3 months Products underwent performance testing (in real-time against malware threats from a variety of attack vectors) Checkmark Platinum Product Awards for all new applications WCL carried out comparative testing of Kaspersky products against key competitors

15 Soluciones y productos

16 Servidores de archivos
Soluciones KAV Servidores de archivos Servidores de correo Firewalls & Gateways

17 Seguridad para Servidores de Archivos
Protección frente a todo tipo de programas maliciosos para servidores que corren bajo: Microsoft Windows Linux y FreeBSD Novell NetWare Reliable protection for shared file storage is essential, because a single infected file on a server can affect every computer on your corporate network. However, if your organization uses servers running different platforms, this can be costly and difficult to manage. Kaspersky Security for File Server offers cost-effective protection for servers running on Microsoft Windows, Linux and Novell NetWare - providing a single, effective security solution for multi-platform server networks that protects against all types of malicious programs.

18 Ventajas Soporte para las plataformas de servidores más populares
Gran rendimiento con un nuevo motor AV Proteccón fiable anti-malware Gran usabilidad y potente sistema de reporte Soporte para infrastructuras de red complejas Popular server platform support Designed to work with the complex network infrastructures of modern organizations, the product offers world-class anti-malware protection for file servers running Windows, Linux, Novell NetWare and FreeBSD. High performance, low impact With a new antivirus engine, load balancing of server resources and optimized scanning, the product delivers High Value world-class corporate anti-malware protection for multi-platform IT infrastructures with no noticeable impact on system performance. Reliable anti-malware protection Whatever the size of your organization, you need to know that your anti-malware solution has been developed by a company that takes a focused approach to world-class multi-layered protection. With Kaspersky Security for File Server, if your system malfunctions or is forced to shut down, our solution will restart automatically, maintaining High Value world-class anti-malware protection for your infrastructure, while you get to the root of the problem. Powerful manageability and reporting system Managing IT security over a complex network can be time-consuming. Our solution comes from a product family based on a uniform set of world-class anti-malware and other core technologies that provides user-friendly management tools, accessible security status information and simple reporting systems, to make managing your IT security easier than ever. Complex network infrastructure support The solution protects terminal servers (Citrix, Microsoft) and runs on cluster servers, providing efficiencies to customers through manageability, interoperability and optimizing costs and resource allocation. Virtualization support Kaspersky Security for File Server comes with VMware Ready certification - proven reliability for virtual environments, backed up by trusted, fast and responsive global support plans. Multi-system network protection The solution provides high levels of anti-malware protection for heterogeneous networks running different operating systems simultaneously, for example, Linux and Windows. Protección de redes multi-sistema Soporte para Virtualización: VMware Ready

19 Aplicaciones para File Server
KAV para Windows Server Enterprise Edition KAV para Linux File Server v. 8.0 v. 8.0 KAV para Novell NetWare KAV para Windows Server

20 KAV 8.0 para Windows Server Enterprise Edition: Highlights
Nuevo motor AV 8.0 Soporte para Windows Server 2008 R2 y Microsoft Hyper-V Server 2008 R2 VMware ready Soporte para sistemas HSM Citrix ready, incluyendo XenApp 6.0 Modern corporate networks are complex systems that typically consist of terminal servers, server clusters and other types of nodes. Infrastructure like this demands the highest levels of protection, with file servers requiring dedicated software that won’t just protect data from the latest malware, but will also provide uninterrupted performance under the heaviest load conditions with minimal effect on network efficiency. Kaspersky Anti-Virus for Windows Servers Enterprise Edition has been developed specifically for networks like this, making it easy to protect your most valuable business resources today and in the future. In modern heterogeneous networks, a single virus can spread very quickly as it is virtually impossible to isolate a newly detected network infection immediately. Corporate users often place various files into file storages, thus exposing all nodes on the corporate network to risk, from workstations to shared file storage facilities. New! Support for Windows Server 2008 R2 Compatible with the popular Windows Server 2008 R2 - including the Server Core installation option and Microsoft Hyper-V Server 2008 R2 - Kaspersky Anti-Virus for Windows Servers Enterprise Edition can provide high-level protection to the most modern networks, no matter how big your organization is. New! VMware Ready Certified compatible with the VMware virtualization platform; providing antivirus protection of both real and virtual (guest) operating systems. New! Support for HSM systems Compatible with disk storage management systems (Hierarchical Storage Management), it provides antivirus protection for file systems with even the most complex hierarchies.

21 KAV 8.0 para Windows Server Enterprise Edition: Características
Protección Efectiva Protección antivirus Always-on y escaneo bajo demanda Protección proactiva contra malware Escaneo de las áreas críticas del sistema operativo Configuración flexible del escaneo Protección para Servidor de Terminales >> Soporte para cluster >> Gran Rendimiento Adiministración Flexible Schemes are under hyperlinks on slides 24 and 25 Always-on antivirus protection and on-demand scanning Every file that is launched or modified is scanned, with any suspicious objects treated, deleted or quarantined. You can also launch targeted scans of any suspicious areas. Proactive protection from malware Advanced anti-malware protection identifies malicious programs even if they are not yet on IT security providers’ antivirus databases. Critical area scanning A dedicated task can be run to scan the areas of your operating system most exposed to infection, such as autorun files and RAM. Flexible scan settings Scan settings allow you to set the depth of protection, specify which file types must always be scanned and preset responses to suspicious and infected objects, according to threat type. Terminal server protection With protection for Microsoft Terminal Services and Citrix XenApp servers, end-users working in desktop/application publishing modes remain protected, and are notified of events using the terminal services tools. This also ensures that actions performed on end-users’ files and scripts are audited. Cluster support Designed to work with complex server cluster architecture, Kaspersky Anti-Virus for Windows Servers Enterprise Edition protects both local disks and the cluster’s shared disks, currently owned by the protected node. Third-party compatibility Seamlessly integrates with dedicated server software such as IBM Tivoli, Symantec Enterprise Vault and HP Data Protector. Kaspersky Anti-Virus for Windows Servers Enterprise Edition is compatible with Citrix XenApp and has been awarded a Citrix Ready certificate.

22 KAV 8.0 para Windows Server Enterprise Edition: Características
Protección Efectiva Escalabilidad Fiabilidad– funciona bajo grandes cargas de trabajo Balanceo de la carga Selección de procesos fiables Operatividad de los servidores de forma ininterrumpida Gran Rendimiento Administración Flexible Scalability To ensure server requests are processed as quickly as possible, administrators can specify the number of antivirus threads on multiple-processor servers. Load balancing To limit server load, resources can be allocated between the antivirus and other applications according to pre-assigned priorities: antivirus scanning can also run in background mode. Selection of trusted processes Administrators can choose to exempt secure processes such as data backups or defragmentation of the hard drive. Uninterrupted server operation A server reboot is not required when antivirus protection is installed or updated.

23 KAV 8.0 para Windows Server Enterprise Edition: Características
Protección Efectiva Amplia gama de herramientas de gestión: Admin Kit; MMC; línea de comandos Instalación y Gestión centralizada Administración basada en roles Configuración flexible de los escaneos Sistema de reportes y notificaciones Gran Rendimiento Administración Flexible Selection of management tools. The application can be managed either directly or remotely via the Microsoft® Management Console, the Kaspersky Administration Kit, or by using the command line. The latest version of the product provides an intuitive graphical interface for the Microsoft® Management Console. Centralized installation and management Compatible with the latest version of Kaspersky Administration Kit - a centralized administration management tool that enables you to install and configure the application remotely, manage operations and receive updates. Control over administrator privileges To comply with department-specific or internal security requirements, privilege levels can be assigned to each server’s administrator. Flexible setting of scan times Decide when your scans start and finish - for maximum server resource availability and minimum disruption to business operations. Notification system Administrator notifications are supported via the messaging service or . The application is integrated with Simple Network Management Protocol (SNMP) and can operate with Microsoft Operations Manager (MOM) or the administrator can monitor the application’s operation by reviewing Microsoft Windows or Kaspersky Administration Kit event logs. Flexible search tools and filters can also be used to search for information in large-volume logs.

24 KAV 8.0 para Windows Server Enterprise Edition: Protección Cluster
Servidores clusters KAV 8.0 for WSEE can be installed on clusters of servers working in Active/Active and Active/Passive modes. The solution helps ensure the server operates correctly when resources migrate between cluster resources (failover/failback situations). The cluster is protected completely when KAV 8.0 for WSEE is installed on each node of the corporate network. The application protects the file server system’s local disks and the cluster’s shared disks currently owned by the protected node. Advantage: the product is completely suited to the complex server cluster architecture typically found in large companies. Protección de servidores clusters en redes complejas y heterogéneas

25 KAV 8.0 para Windows Server Enterprise Edition: Protección Servidores de Terminal
Terminal server Terminal connections KAV 8.0 for WSEE protects Microsoft Terminal and Citrix XenApp servers (formerly Presentation Server). This feature helps: Protect terminal users working in desktop/application publishing modes Notify terminal users of events using the terminal services tools Audit actions performed with terminal users’ files and scripts New! Certified Citrix XenApp: Citrix Ready for XenApp 6.0 compatible. Advantage: the solution is flexible enough to protect the infrastructure of terminal servers as effectively as it does regular servers. Protege servidores de terminal bajo Microsoft y Citrix en redes corporativas complejas

26 KAV 8.0 para WSEE vs. Competidores
Funcionalidades/ Competidores KAV for WSEE Symantec Endpoint Protection Trend Micro Server Protect  McAfee VirusScan Enterprise Gestión centralizada V V V V Soporte para W. Server R2 V V X X Soporte Terminal Servers (MS, Citrix) V X V V Soporte Cluster V X V X Soporte para aplicac. back up V V X X VMware Ready V V V X

27 Aplicaciones para File Server
KAV para Windows Server Enterprise Edition KAV para Linux File Server v. 8.0 v. 8.0 KAV para Novell NetWare KAV para Windows Server

28 KAV 8.0 para Linux File Server: Diagrama
Servidor Archivos Linux KERNEL SMB / CIFS Extended File System FTP ODS HTTP NFS Local File System NSS Large corporate networks that use file servers running on different platforms can be a real headache when it comes to antivirus protection. Kaspersky Anti-Virus 8.0 for Linux File Server is part of our range of new and refreshed products, solutions and services for heterogeneous networks. It provides a cost-effective solution, with Samba server integration and other features that can protect workstations and file servers in even the most complex heterogeneous networks. It is also certified VMware Ready and supports current versions of FreeBSD for integrated, future-proof protection. The architecture of Kaspersky Anti-Virus 8.0 for Linux File Server provides multilayered protection for file servers in Linux/heterogeneous networks, functioning simultaneously on the entire file system level and on the level of the SMB/CIFS data transfer protocol (Samba server). The main antivirus module – a kernel-level interceptor – protects the server file system in real time. Protection extends to both local resources and remote resources built into the server file system that can be accessed using a variety of data transfer protocols. Solución efectiva. Gracias a la integración con Samba y otras funcionalidades, los servidores de archivos están protegidos incluso en redes complejas y heterogéneas.

29 KAV 8.0 para Linux File Server: Highlights
Nuevo motor Av 8.0 Consola de Gestión Web Kaspersky Tecnología de escaneo AV optimizado >> Exclusión de procesos fiables del escaneo Fiabilidad Soporte para FreeBSD VMware Ready New! Kaspersky Web Management Console A dashboard in the new Web Management Console displays data on the application’s status in real-time, as well as helping to configure and manage its operation. High Performance The new antivirus engine provides server resource load balancing, optimized antivirus scanning technology and the facility to exclude trusted processes from scanning. These features increase the product’s performance and reduce the amount of system resources required to perform antivirus scans. Reliability Reliable anti-malware protection is ensured as the application restarts automatically if it malfunctions or is forced to terminate. New! Support for FreeBSD The application supports current versions of FreeBSD which significantly extends its capabilities as it can be used to provide powerful anti-malware protection to networks with less conventional operating systems. New! VMware Ready Kaspersky Anti-Virus for Linux File Server comes from a product family based on a uniform set of anti-malware and other core technologies. It protects any files stored on Linux / FreeBSD-based file servers regardless of whether the server is running on a physical machine or a guest virtual machine.

30 KAV 8.0 para Linux File Server: Características
Protección Efectiva Motor AV mejorado Protección en tiempo real y escaneo bajo demanda Cuarentena y almacenamiento backup Protección versátil de los servidores de archivos― Linux, FreeBSD and Samba New! Gran Rendimiento New! Administración Flexible New! Powerful antivirus engine New heuristic technologies combined with traditional signature-based malware detection methods help to dramatically improve the efficiency of malicious object detection and ensure proactive protection against new malicious programs. Real-time protection and on-demand scanning The application scans all files that are launched, opened or modified and disinfects or deletes all infected files. Furthermore, suspicious files and content are isolated in a quarantine area, allowing further analysis to be performed. The application scans specified areas of the system according to a schedule or on-demand, for complete anti-malware protection. New! Quarantine and backup storage When a suspicious object is detected, the program places it in quarantine. If the product treats or deletes an infected file, a copy of the original is placed in backup storage. The file is backed-up in its original format together with all of its attributes. This means that regardless of the actions taken by the antivirus program, document workflows are not interrupted

31 KAV 8.0 para Linux File Server: características
Protección Efectiva Balanceo de la carga del servidor Operatividad del servidor ininterrumpida Actualizaciones regulares de la BBDD Exclusión de procesos fiables Gran Rendimiento Administración Flexible Server load balancing The program helps balance the use of server resources between the antivirus system and other applications according to task priorities. For example, antivirus scanning can be performed in background mode while server software is being updated, helping to reduce server downtime. Continuous server operation The server does not need to be rebooted when the antivirus program is installed or updated. This is an important issue for most corporate networks where rebooting the server is undesirable, or simply not an option. Continuous running of the server software ensures uninterrupted operation of your company’s business processes. Database updates Updating the antivirus databases can be carried out on-demand or automatically from Kaspersky Lab servers or your local servers. The program automatically selects the least loaded update server. Alternatively, updates can be downloaded from the Kaspersky Administration Kit server which means the update installs faster and reduces the volume of inbound traffic in cases when several Kaspersky Lab products are installed on the network. Exclusions of trusted processes This wide range of settings allows optimization of server loads and ensures flexible management of corporate network security.

32 KAV 8.0 para Linux File Server: Características
New! Protección Efectiva Instalación y administración centalizada Amplia gama de herramientas de gestión Fácil instalación Configuración flexible del escaneo Potente sistema de reporte Notificaciones acerca de eventos de seguridad Gran Rendimiento Administración Flexible New! Centralized installation and administration System Administrators can use the Kaspersky Administration Kit – a centralized management system – to configure and remotely manage the application on several servers at once. Wide choice of management tools Administrators can also choose the most convenient management tool for them from Kaspersky Web Management Console, Kaspersky Administration Kit or command-line management. Easy installation Installing the product only takes a few minutes and requires the installation of just one package. Flexible scan settings The application offers a wide range of settings, allowing administrators to: Adjust the level of antivirus protection Assign different settings to different users accessing protected objects on the file server Specify scanning exceptions Assign specific actions for suspicious or infected objects, including by threat type Launch scans according to the most convenient schedule This wide range of settings allows optimization of server loads and ensures flexible management of corporate network security. Reporting system Administrators can control the application using graphical reports via the web console in PDF or XLS format, or via the Kaspersky Administration Kit. Using the command line, they can view reports in HTML or CSV format for specific components. Notifications about security events The application comes with an extensive list of events which the administrator can be notified about by SMS, IM and SMTP, or via the Kaspersky Administration Kit. The application supports Simple Network Management Protocol (SNMP).

33 KAV 8.0 para Linux File Server vs. competitors
Funcionalidades/ Competidores KAV for Linux File Server Symantec Endpoint Protection Trend Micro Server Protect for Linux  McAfee VirusScan Enterprise Gestión centralizada V V V V Soporte Novell OES 2 y NSS V V X V Protección Samba V X V V Soporte para Free BSD V X V X Consola de Gestión Web V V X X VMware Ready V

34 Aplicaciones para File Server
KAV para Windows Server Enterprise Edition KAV para Linux File Server v. 8.0 v. 8.0 KAV para Novell NetWare KAV para Windows Server

35 KAV para Novell NetWare: características
Protección Efectiva Protección en tiempo real Escaneo bajo demanda Copias de backup Cuarentena para objetos peligrosos Gran Rendimiento Administración Flexible Kaspersky Anti-Virus for Novell NetWare was expressly developed to provide antivirus protection for file servers running under the Novell NetWare operating system. Real-time protection. The application provides real-time protection from malicious programs, scanning files for viruses and treating or deleting infected objects as necessary. On demand scanning. Antivirus scanning of the server’s file system can be carried out on a schedule or on demand. Backup copies. Before objects are treated or deleted, backup copies can be saved, so that administrators can later use information from them for future investigation. Quarantine for dangerous objects. Any dangerous or potentially dangerous objects detected by the application can be stored in the quarantine folder.

36 KAV para Novell NetWare: Características
Protección Efectiva Escaneo de virus multi-amenazas Soporte Multi-procesador Gestión de la carga Gran fiabilidad Gran Rendimiento Administración Flexible Multi-thread virus scanning. Multi-thread scanning helps increase overall performance, since it enables processing of requests from a number of workstations simultaneously. The speed and scope of scanning are only limited by the hardware capabilities of the server. Multi-processor support. In order to increase antivirus performance in a multi-processor environment, the application allows administrators to launch several antivirus engine processes simultaneously, taking advantage of distributed data processing. Load management. The application allows the administrator to control the program’s use of the server’s central processing unit, which directly affects program performance. High Reliability. The new generation solution for Kaspersky Anti-Virus for Novell NetWare launches the antivirus engine in a protected address space. Such an approach increases application reliability since application programs and the file server are not affected in the event of any malfunctions during file scanning.

37 KAV para Novell NetWare: Características
Protección Efectiva Administración centralizada y remota via Console One o Kaspersky Administration Kit Notificaciones de eventos sobre Novell NetWare via red o Reportes detallados Actualización de las BBDD de forma regular, bien manual o bajo demanda Gran Rendimiento Administración Flexible Centralized and remote administration. The application integrates seamlessly with the Novell Directory Service (NDS), which means that the program can be administered via ConsoleOne and the web management interface. This allows system administrators to remotely install and configure the basic settings for the application on several servers at once using Kaspersky Administration Kit. Event notifications. Administrators can receive notifications of results from antivirus scanning, as well as warnings when malicious objects are detected, over the Novell NetWare network or via . Event log. The application compiles detailed reports using the results from on demand antivirus scanning, real-time protection and antivirus database updates. Automatic database updates. Antivirus database updates can be made automatically (on schedule) or on demand. If there is an error in a file download, then the program automatically chooses an alternative Kaspersky Lab update server. Update management. Once antivirus database updates have been received, they can be distributed to other servers on the network. Backup copies of update files are created, so that the database can be rolled-back to a previous version (if, for example, data is damaged during download).

38 Aplicaciones para File Servers
KAV para Windows Server Enterprise Edition KAV para Linux File Server v. 8.0 v. 8.0 KAV para Novell NetWare KAV para Windows Server

39 KAV para Windows Server: Características
Protección Efectiva Protección antivirus en tiempo real y escaneo bajo demanda Escaneo rápido de areas críticas del sistema Prevención de epidemias de malware Aislamiento de PCs infectados Recuperación del sistema tras la infección Gran Rendimiento Kaspersky Anti-Virus for Windows Servers protects data on servers running under Microsoft Windows from all types of malicious programs. Real-time antivirus protection and on-demand scanning: Kaspersky Anti-Virus for Windows Servers scans all files that are launched, opened and/or modified and disinfects or deletes all infected files. Furthermore, suspicious files or content is isolated in a quarantine area prior to undergoing further analysis. The application scans specified areas of the system according to a schedule or on demand. Quick scanning of critical system areas: The application can scan those areas of the operating system that are more susceptible to infection as a separate task. For example, scanning startup objects helps prevent malicious code from launching during system startup and detects hidden processes. Other areas that are deemed critical to server security can also be selected for scanning. Prevention of malware epidemics: The application records any malware attacks, which helps the system administrator to react promptly by launching a scan, updating the antivirus database or switching to an increased level of security. Isolating infected computers: If a workstation on the network becomes infected, the application blocks the user from accessing server resources for a certain amount of time. During this period, the administrator can identify the source of infection and treat it. System recovery after infection: After a malicious program is detected and deleted, Kaspersky Anti-Virus for Windows Servers also deletes all of the records created by the malicious program in system files or the system registry. This prevents any possible malfunctions in the operating system. Administración Flexible

40 KAV para Windows Server: Características
Protección Efectiva Escalabilidad Balanceo de la carga Selección de Procesos de confianza Servidores operativos ininterrupidamente Gran rendimiento Administración Flexible Scalability To ensure server requests are processed as quickly as possible, administrators can specify the number of antivirus threads on multiple-processor servers. Load balancing: The application allows administrators to regulate the allocation of server resoubrces between the antivirus solution and other applications depending upon task priority levels; antivirus scans can continue in the background mode. Selection of trusted processes: The system administrator can exclude safe processes from scans, especially if they are slowed down by antivirus scanning (e.g., backup copying, hard drive defragmentation, etc.). Uninterrupted server operation A server reboot is not required when antivirus protection is installed or updated.

41 KAV para Windows Server: Características
Protección Efectiva Instalación y Control centralizado: Admin Kit; MMC; línea de comandos Información acerca del estatus de la protección del servidor via dashboard Información acerca del estatus de las aplicaciones Configuración de los tiempos de escaneo flexible Potente sistema de reporte Actualización regular de las BBDD Gran Rendimiento Administración Flexible Centralized installation and control: Kaspersky Administration Kit – a centralized administration tool – can be used to install applications and change settings remotely for several servers at once and to control the application after installation. The application can also be managed via Microsoft Management Console or using the command line. Information about server protection status: A new dashboard display provides information about the application in real time. Information about the current status of antivirus protection allows IT specialists to react immediately to any incidents in the system. Information about the application’s status: The application comes with an extensive list of events which the administrator can be notified of using a messenger service or via , with support for the Simple Network Management Protocol (SNMP) and the Microsoft Operations Manager (MOM). Flexible time settings for scans: In order to optimize the use of server resources and maximize convenience for users, the system administrator can assign the exact time for an antivirus scan to begin and end, which means on-demand scans can be performed at times when corporate servers are not overloaded, e.g., at night or weekends. Reporting system: The system administrator can control the application using reports and by reviewing the Microsoft Windows or Kaspersky Administration Kit event logs. A search function and filters make it quick and easy to locate information in large logs. Database updates: Updating antivirus databases can be carried out on demand or automatically via Kaspersky Lab servers on the Internet or via local servers. The application automatically selects the least loaded update server.

42 Servidores de Archivos
Soluciones KAV Servidores de Archivos Servidores de Correo Firewalls & Gateways

43 Seguridad para Mail Server
Protección de servidores y granja de servidores contra el malware y el spam Microsoft Exchange Servers 2003, 2007, 2010 IBM Lotus Domino v. 6.5, 7.0, 8.0, 8.5 Servidores de correo basados en Linux: Sendmail, qmail, Postfix, Exim Kaspersky Security for Mail Server is a High Value solution from Kaspersky Lab that is easy to install and use. It effectively protects mail servers and groupware servers even from the latest malware programs and spam. The solution includes refreshed applications that ensure security of all popular mail servers, including Microsoft Exchange, Lotus Domino, Sendmail, qmail, Postfix and Exim. Kaspersky Security for Mail Server can also be used to set up a dedicated mail gateway and works perfectly even in complex, heterogeneous infrastructures.

44 Beneficios de la solución
Protege servidores de correo y plataformas de colaboración Reduce la carga del tráfico Uso óptimo de los recursos del sistema Fácil control: herramientas de gestión simples y fáciles de usar Siempre al día: actualizaciones frecuentes de la BBDD Protects Mail Servers Kaspersky Security for Mail Server works to protect mail on the latest versions of major mail and collaboration platforms: Microsoft Exchange, IBM Lotus Domino and Linux-based mail servers. Ensures Stable Security Automatic restart in the event of a system shutdown ensures stable security while the diagnostics system determines the cause of the malfunction. Reduces Traffic Load Intelligent spam filtering significantly reduces traffic load in your organization. Optimize System Resources A new anti-virus engine, load balancing of server resources, optimized anti-virus scanning technology and excluding specified objects from scanning increase performance and reduce the resources needed to perform anti-virus scans. Control with Ease Simple, user-friendly management tools, information on mail protection status, plus flexible settings for scans and reporting give you efficient control of your mail and document security. Stay up to Date Frequent database updates mean proactive protection against the very latest malware and spam, while enhanced performance efficiency means you get the protection you need with less system resource. Ensure Efficiency Kaspersky Security for Mail Server’s reliability and high performance ensure uninterrupted operation and effective execution of your company’s business processes. Support for Virtualization VMware Ready certification ensures proven reliability for virtual environments. Eficacia garantizada Soporte para infraestructuras de red virtualizadas

45 Aplicaciones para Mail Server
KS para Microsoft Exchange Servers v. 8.0 KAV para Lotus Notes v. 8.0 KAV para Linux Mail Server Kaspersky Mail Gateway Kaspersky Anti- Spam

46 KS 8.0 para Microsoft Exchange Servers: Diagrama
DMZ Clusters Edge Role Hub Role Mailbox Role Due to the fact that is one of the main channels through which malware and spam are distributed nowadays, it is essential that an effective mail server security solution is in place. The new Kaspersky Security 8.0 for Microsoft Exchange Servers ensures world-class anti-malware and anti-spam protection of your Microsoft Exchange mail servers thanks to the new, powerful antivirus engine, comprehensive antivirus scanning of messages and intelligent spam detection. As a result, not only your mail servers, but also your corporate network stays malware- and spam-free while maximizing business productivity. EDGE Transport Role This server role sits at the network perimeter or DMZ (Demilitarized Zone) and is responsible for all incoming and outgoing messages. The Edge Transport protects against virus and spam through a variety of filtering tech­niques, including connection filtering, content filtering, and recipient filtering. It also defends against Denial of Server and Direct Harvest Attacks. Edge Transport Rules Agent can also be applied for additional hygiene. These rules scan SMTP and MIME addresses, as well as key words located in the subject or body of an message. HUB Transport Role This server role is responsible for the transport of internal traffic flow throughout the messaging infra­structure. Incoming messages are passed from the Edge Transport server to the Hub Transport server, and then eventually to the mailboxes of end-users. Outgoing messages also flow through the Hub Transport server before reaching the Edge Transport server. Hub Transport Rules Agent can also be applied to enforce company policy and regulatory compliance. Client Access Role This server role enables end-users to connect to the Microsoft Exchange Server platform through either Post Of­fice Protocol 3 (P0P3), Internet Message Access Protocol 4 (IMAP4), Secure Hypertext Transfer Protocol (HTTPS), Outlook Anywhere, Availability service, and Autodiscover service. The Client Access Server also hosts Web ser­vices. Mailbox Role This server sole contains Microsoft Exchange Server databases, and is home to end-users mailboxes and public folders. Unified Messaging Role This server role introduces integrated unified messaging (UM) capabilities to Microsoft Exchange Server 2007, combining voice mail, faxes, and into one inbox. Microsoft Exchange users can access their inbox outside of their office from another computer, or from a phone using Outlook Voice Access (OVA). Soporta todos los roles Microsoft Exchange

47 KS 8.0 para Microsoft Exchange Servers: Highlights
Nuevo motor de reconocimiento spam 4.0 Nuevo motor AV 8.0 Configuración flexible teniendo en cuenta los procesos específicos de negocio Protección para Microsoft® Exchange server , incluyendo la configuración DAG Escaneo de mensajes en múltiples idiomas VMware Ready New! Powerful Antivirus Engine A new, powerful engine enables increased scanning speed with reduced system resource consumption. New! High Performance The engine ensures increased performance and stability with minimum memory requirements. New! Complete Protection The application offers complete protection of Microsoft Exchange Server 2010 and is compatible with DAG (Database Availability Group). New! Flexible Settings Kaspersky Security 8.0 for Microsoft Exchange Servers offers flexible, user-friendly settings to ensure spam and anti-malware protection that meets your business security goals. New! Multi-language Support The application carries out anti-spam scanning of messages written in different languages, including Asian language sets. New! VMware Ready The application protects mail traffic going through Microsoft Exchange Server whether installed on physical or guest virtual machines.

48 KS 8.0 para Microsoft Exchange Servers: Características
Protección Anti-spam Tecnologías inteligentes de reconocimiento de spam Detección de spam en forma de imágenes Listas DNSBL y tecnología SURBL Clasificación de mensajes y reglas Listas blancas y negras Protección Malware Administración Flexible Intelligent Spam Recognition Technologies The application scans all messages for spam based on formal attributes such as the sender’s and IP address, the size of message and message header. In addition, the content of messages and attachments is analyzed using intelligent technologies including unique graphical signatures which detect spam in the form of images. New! Additional Message Scanning For additional protection against spam, messages are scanned using DNSBL lists of spammers’ addresses and SURBL technology which detects spammer URLs in the message. New! Additional scan of messages. For additional protection against spam, messages are scanned using DNSBL lists of spammer addresses and SURBL technology, which detects spammer URLs in messages. Message Classification As administrator, you can configure separate processing rules for each category of unsolicited mail to prevent any loss of information. For instance, messages that are known to be spam can be blocked; suspicious mail can be directed straight to the Unwanted Mail folder; and formal messages such as message delivery and message read confirmations can go directly to the Inbox. New! White and Black Lists There is a facility for individual users to create their own trusted (white) and black lists by sender’s SMTP or IP address. A white list can also be created using the receiver’s SMTP address. Any message received from a white-listed sender is not scanned and is delivered straight to the recipient. However, if the address is black-listed the message it will be tagged with a special heading and processed according to the rules configured by you, the administrator.

49 KS 8.0 para Microsoft Exchange Servers: Features
Protección Anti- spam Escaneo de correo en tiempo real Escaneo de carpetas públicas Escaneo bajo demanda o programado Copias backup Configuración flexible y exclusiones en el escaneo Protección Malware Administración Flexible Real-time Scanning The program detects and removes all types of viruses, worms, Trojans and other malicious objects from the stream of incoming and outgoing messages, including attachments in almost any format. It detects and removes not only known malware but also potentially dangerous programs. On-demand and On-schedule Background Scanning All folders and messages stored on the server are subject to background scanning to ensure that all objects are processed using the latest version of the antivirus databases. This has minimal impact on server load. Backup Copying Before deleting messages, the application makes backup copies so that it is possible to restore important information if attempts to treat an object result in failure or if a message was incorrectly categorized as spam. A wide range of search parameters make it easier for you to find objects in the backup storage area.

50 KS 8.0 for Microsoft Exchange Servers: Features
Protección Anti-spam Configuración personalizada Actualizaciones configurables Administración remota via MMC Informes detallados Sistema de notificaciones Protección Malware Administración Flexible Customized Configuration You can configure the application based on your company’s IT security policy and hardware capabilities. For example, you can exclude certain file types from scanning or configure the spam intensity level. You can also configure antivirus and anti-spam processing scenarios for different message categories, create white and blacklists by senders’ or receivers’ addresses, etc. Database Updates Updates to antivirus databases are available on demand or can be completed automatically according to a schedule. You can either download updates directly from the Kaspersky Lab website or from a local server. If required, you can update antivirus and spam recognition databases separately. Convenient Administration The administrative interface is based on the popular Microsoft Management Console with remote administration being an option. Detailed Reports You can monitor the operation of the application and the antivirus protection status using the detailed HTML reports or by viewing the Windows event log. You have complete control over the frequency with which reports are generated and the information to be included in them. All reports can be stored on the hard drive or sent via . Sophisticated Notification System As the administrator, you can receive notifications about any critical events in the application’s operation, either by or by viewing the Windows event log.

51 KAV 8.0 para Microsoft Exchange vs. competidores
Funcionalidades/ Competidores Kaspersky Security 8.0 for Microsoft Exchange Symantec Mail Security for Microsoft Exchange 6.0 Trend Micro ScanMail for Exchange Server McAfee GroupShield for Exchange 2010 ESET NOD32 for Microsoft Exchange Server 4.2 Antivirus V V V V V Anti-spam V V V V V Filtrado de Contenidos X V V V X Compatible con DAG V V V V V Reportes V V V V X Support para MS Exchange 2010 V V V V V Support para Windows 2008 R2 V V V V V VMware Ready V V X X X

52 Aplicaciones KS para Mail Server
KS para Microsoft Exchange Servers v. 8.0 KAV para Lotus Notes v. 8.0 KAV para Linux Mail Server Kaspersky Mail Gateway Anti-Spam para Linux

53 KAV 8.0 para Lotus Domino: Diagrama
Servidores Clusters Replicación Local NSF Bases Kaspersky Anti-Virus 8 for Lotus Domino provides effective antimalware protection for Domino servers used in large-scale corporate networks with complex topology and heavy loads. Groupware servers such as Lotus Domino are designed to perform tasks on different levels – from the exchange of messages to hosting an organization’s entire workflow system. Malicious programs penetrating a network via can lead to the loss of business-critical data. Kaspersky Anti-Virus 8.0 for Lotus Domino scans messages and documents on Domino servers, safeguarding a company’s workflow from potential IT threats. Protección anti-malware efectiva para servidores Lotus Domino en grandes redes corporativas con tipologías complejas y grandes cargas de trabajo

54 KAV 8.0 para Lotus Domino: Highlights
Motor Av 8.0 Gestión centralizada de los servidores clusters Soporte para IBM Lotus Domino 8.5 Soporte para Linux VMware Ready Anti-Virus Engine 8.0 Ensures stable, high performance with low impact on system resources. Centralized management of server clusters The application allows different configuration profiles to be created and applied to all servers, without duplicating the settings on every server. Support for IBM Lotus Domino 8.5 The application supports the most up-to-date versions of Lotus Domino. Support for Linux The application supports Red Hat 4, 5 and SLES 9, 10 SP2, 11. Administrator role separation The application is now capable of assigning different duties to the various administrators responsible for the operation of servers, making it possible to enforce internal IT security policies. VMware Ready The application protects s and documents on IBM Lotus Domino servers installed on real and virtual (guest) operating systems.

55 KAV 8.0 para Lotus Domino: Características
Protección Efectiva Escaneo de malware en tiempo real Escaneo de BBDD, de otros objetos y del tráfico durante la replicación Protección contra brechas de malware Backup Configuración flexible y exclusiones en el escaneo Gran Rendimiento Administración Flexible Real-time scanning. The application scans messages, attachments (including packed and archived attachments) and OLE objects for viruses and other types of malware. All documents stored in the database can be scanned on demand by the administrator. Scanning of databases, other objects and traffic during replication. The application performs antivirus scanning of messages and all other Lotus Domino objects: databases and OLE objects, as well as traffic sent between Lotus Domino servers during the replication process, ensuring a company’s entire workflow system based on Lotus Domino can be protected by the application. Protection against malware outbreaks. If the application detects several events of the same type during a defined time period – e.g. one and the same virus has been detected several times – the administrator is notified about the potential threat of a malware outbreak and can stop the sending and receiving of messages. Backup. The application saves copies of infected, damaged and suspicious objects to backup storage, allowing important information to be restored in the event of an object becoming corrupted. A wide choice of search parameters is offered to make searching for an object in backup storage more convenient. Flexible settings and scanning exclusions. The application can set scanning exclusions according to file type or the size of the scanned object and it is also possible to disable scanning of attachments and OLE objects. The administrator can define rules for the processing of attached files, e.g. only scanning attachments for malicious objects if they are not excluded on the basis of size or type.

56 KAV 8.0 for Lotus Domino: Features
Protección Efectiva Escalabilidad automática Arquitectura flexible Soporte cross-platform (Windows y Linux) Optimización del uso de los recursos del sistema New! New! Gran Rendimiento New! Administración Flexible Automatic scalability. The application automatically modifies the number of scanning threads depending on the volume of traffic. The maximum number of threads is set by the administrator of the server. Flexible architecture. The application’s distributed architecture enables existing profiles to be easily transferred to new servers or network nodes if the number of servers changes. Cross-platform support. On a multiplatform network (e.g. Windows and Linux), the application protects all mail servers equally and they work as a single system, regardless of the operating system installed on them. Optimized use of system resources. The application scans objects in the server’s operating memory without saving them to the hard disk. This allows the application to work faster and reduce server loads.

57 KAV 8.0 para Lotus Domino: Características
New! Protección Efectiva Gestión distribuida de los parámetros de protección Replicación de aplicaciones Fácil instalación y herramientas de gestión Etiquetado de mensajes Reportes detallados Actualizaciones regulares de las BBDD New! Gran Rendimiento New! Administración Flexible Distributed management of protection parameters. The application supports the distributed storage of settings on all protected servers. This allows application settings to be saved in the event of the failure of one or more servers. Replication of application statistics. The application supports the distributed logging of events and the storage of statistics on all protected servers. Easy-to-use installation and management tools. Application installation and management can be performed via a web interface or via the standard Lotus Notes interface. A full web interface enables the administrator to remotely install and manage the application from the most popular web browsers. Message tagging. A note saying that a message has been scanned and verified virus-free can be added to outgoing messages, which enhances trust. Detailed reports. The administrator can monitor the operation of the application and the antivirus protection status with the help of comprehensive reports, or by viewing the event log via the application’s interface. The frequency with which reports are generated as well as their content can be defined by the administrator. Database updates. Database updates can be received from Kaspersky Lab servers on request, automatically according to a preset schedule or from a local public shared folder. The optimized updating procedure saves time for the administrator and reduces the amount of traffic required for updates.

58 KAV 8.0 para Lotus Domino vs. competidores
Funcionalidades/ Competidores KAV 8.0 for Lotus/Domino Symantec Mail Security for Domino Trend Micro ScanMail for Domino McAfee GroupShield for Domino Antivirus V V V V Anti-spam X V V V Filtrado de Contenidos X V V V Interfaz Web V X X V Reportes V V V V Soporte para IBM Lotus Domino 8.5.x V V V V Soporte para Linux V V V V VMware Ready V X X X

59 Aplicaciones para Mail Server
KS para Microsoft Exchange Servers v. 8.0 KAV para Lotus Notes v. 8.0 KAV para Linux Mail Server Kaspersky Mail Gateway Anti-Spam para Linux

60 KAV para Linux Mail Server: Características
Efectiva protección AV para el tráfico de correo corporativo. Soporta la mayoría de las soluciones de Antivirus en tiempo real y escaneo del tráfico SMTP Notificaciones personalizables Cuarentena y copias de backup Escaneo del servidor de archivos Filtrado adicional de mensajes por tipo de adjunto y grupos de usuario Gestión flexible y administración remota Antivirus scanning. All elements of messages are scanned for malicious code. The application scans for and removes all types of viruses, Trojans, spyware, malicious and potentially hostile programs from incoming and outgoing mail messages and attachments in most formats. Customizable notifications. When a suspicious or infected object is detected, the system administrator, sender and recipient of the message receive a message, the contents and format of which are defined by the system administrator. System messages can be sent in any language. Quarantine. Infected, suspicious and damaged objects detected in a server’s file system or in traffic can be moved to the quarantine folder, where they will be disinfected, deleted or stored according to pre-defined settings. Backup copies. Backup storage can be created to store copies of infected objects before they are treated, making it possible to restore if necessary. File server scanning. In addition to scanning mail traffic, Kaspersky Anti-Virus for Linux Mail Servers offers on demand scanning of the server’s file systems. The scanning is performed with the help of iChecker, a check-summing technology which significantly reduces the amount of time required for additional scans of each object. Additional message filtering By attachment type. The application can be configured to filter mail traffic by attachment name and file type and to apply specified processing rules for each category. By user group. Administrators can create user groups, assign individual message processing rules to each group and define user privileges for each group. Remote administration. Kaspersky Anti-Virus for Linux Mail Server can be configured either traditionally, via the application’s configuration file, or using the Web interface. Configuration of updates. Antivirus databases can be updated from Kaspersky Lab’s servers via the Internet or from local update servers on demand or on schedule. Administrators can choose the type of antivirus databases to be used: standard (detection of true malware only) or extended (databases used to detect potentially hostile software – spyware, adware and more). Kaspersky Lab antivirus databases are updated hourly.

61 Aplicaciones para Mail Server
KS para Microsoft Exchange Servers v. 8.0 KAV para Lotus Notes v. 8.0 KAV para Linux Mail Server Kaspersky Mail Gateway Anti-Spam para Linux

62 Kaspersky Mail Gateway: Características
Proporciona protección total para sistemas de correo frente a virus y spam Puede usarse como MTA en sistemas Linux Escaneo Av Filtrado de spam Cuarentena Reportes detallados y notificaciones Filtrado por tipo de adjunto y grupos de usuarios Protección frente a accesos no autorizados al servidor Gestión flexible Kaspersky Mail Gateway is a versatile solution that provides full-scale protection for mail system users against viruses and unsolicited s (e.g., spam). Kaspersky Mail Gateway can be installed on a separate server and does not require integration into the existing mail system. The solution significantly increases the level of protection against today’s computer threats, making it possible to combine different vendors’ antivirus solutions on the same network. Because it is designed to operate autonomously, the application fits neatly into any environment and combines easily with other vendors’ programs installed on other network nodes. Its installation and configuration do not require extensive experience with Linux systems. Antivirus scanning. The program scans for and removes all types of viruses, and malicious and potentially hostile programs in all elements of incoming and outgoing messages, including attachments. Spam filtering. The application scans mail traffic for spam based on formal attributes and analysis of message contents and their attachments using intelligent technologies, including special graphical signatures for detecting spam in the form of images. User notification. If a suspicious or infected object is detected, the system administrator, sender and recipient of the message receive a notice, the contents and format of which are defined by the system’s administrator. If a message is categorized as spam, it can be blocked, sent to a quarantine folder or delivered to the recipient with a special tag in the subject field. Quarantine. Infected and suspicious objects and messages identified as spam can be moved to a quarantine folder, where the administrator can view or delete them, or forward them to the end user. Additional message filtering By attachment type. The application can be configured to filter mail traffic by attachment name and file type, helping to immediately identify objects that are likely to contain viruses. By user group. The administrator can define separate message processing rules for each group of mail system users by defining limitations in accordance with the security policy and employee needs. Protection of the server against unauthorized access The application can be configured to prevent DoS attacks and third party attempts to use the server for launching unauthorized mass mailings. In some cases, this helps reduce the server load and increase the processing speed of mail traffic. Flexible management and administration: Remote administration. Kaspersky Mail Gateway can be managed remotely using a web interface, as well as traditionally, using the configuration file. Configuration and optimization of the application. Depending upon mail traffic volume and the stringency of the company’s security policy, the administrator can change the application’s operating parameters, from maximum system performance to maximum user protection. The administrator can also configure various timeouts for sending and/or receiving messages, manage the application’s queue and limit the number of objects that can be scanned simultaneously in the background mode. Configuration of updates. The antivirus database can be updated on demand or automatically according to a predefined schedule from Kaspersky Lab servers on the Internet or from local servers specified by the system administrator. Some modules of the antivirus engine and the linguistic analyzer can be updated, as well. Graphical reports. The program includes the capability of viewing virus activity for a given period of time in graphical form. Information regarding the types of viruses detected during antivirus scans can also be viewed. In addition, the administrator can receive detailed information on the program’s status and operation by using a broad range of reports with the desired level of detail.

63 Aplicaciones para Mail Server
KS para Microsoft Exchange Servers v. 8.0 KAV para Lotus Notes v. 8.0 KAV para Linux Mail Server Kaspersky Mail Gateway Anti-Spam para Linux

64 Anti-Spam para Linux: Características
Protección antispam para sistemas de correo basados en Linux y servicios públicos de correo Filtrado basado en listas Tecnologías SPF y SURBL Análisis de atributos y analásis de firmas Heurística (idioma) Detección de spam gráfico Real-time UDS requests Opciones para el procesamiento de spam Gestión flexible Gestión de grupos de usuarios List-based filtration. Sender IP addresses are checked against blacklists of spammers, which are maintained by Internet service providers and public organizations (DNS-based Blackhole Lists). System administrators can add addresses of trusted correspondents to a safe list, ensuring that their messages are always delivered without undergoing filtration. SPF and SURBL technologies. The filtration process also involves verifying senders using the Sender Policy Framework. Detection of spammer IP addresses using DNSBL is supplemented by SURBL technology (Spam URI Real-time Block List), which can identify spam URLs in the message body. Analysis of formal attributes. The program recognizes spam by such typical characteristics as distorted sender addresses or the absence of the sender’s IP address in DNS, an excessive number of intended recipients or hidden addresses. The size and format of messages are also taken into consideration. Signature analysis. Lexical signature databases are updated around the clock. Using spam signatures, the program can even recognize modified versions of spam messages that have been altered to evade spam filters. Linguistic heuristics. The program scans messages for words and phrases that are typical of spam messages. Both the content of the message itself and any attachments are analyzed. Graphic spam. A database of signatures for graphic spam equips the program to block messages containing spam images, a type of spam that has become increasingly common in recent years. Real-time UDS requests. The Urgent Detection System is updated with information on spam messages literally seconds after they first appear on the Internet. Messages that could not be assigned a definitive status (e.g., spam, no-spam) can be scanned using UDS. Flexible management. Our web interface allows system administrators to manage the application both locally and remotely. The filtration level is easily configurable, as are blacklists and safe lists. It is also possible to disable/enable individual filtration rules and automatically block mail encoded in Asian language sets. Management of user groups. The administrator can create user groups either using lists of addresses or domain masks (for example, and apply individual settings and filtration rules to each group. Options for processing spam. The program can be configured to process spam by either automatically deleting it, redirecting it to the quarantine folder with a note to the user or sent for further filtration to the mail client. Detailed reports. Administrators can easily monitor the application, the protection status and license status, using HTML reports or alternatively, by viewing log files. Data can be exported in CSV and Excel formats. Updating databases on schedule. Updates to antivirus databases can be downloaded on a schedule set by the administrator (by default they update every 20 mins). When undecided about the status of a suspicious message, the program also makes requests to the UDS server.

65 Servidores de Archivos
Soluciones KAV Servidores de Archivos Servidores de Correo Firewalls & Gateways

66 Securidad para Internet Gateway
HTTP(S), FTP, SMTP, POP3 Protección para Microsoft Forefront TMG Microsoft ISA Servers Proxy Servers: Squid Secure Internet access for all employees in an organization is one of the central pillars of any business security strategy. Kaspersky Security for Internet Gateway is a world-class anti-malware solution that ensures secure Internet access for a company’s entire workforce, automatically deleting malicious and potentially dangerous programs from data traffic entering the local network via HTTP, HTTPS, FTP, POP3 and SMTP protocols. Kaspersky Security for Internet Gateway helps to reduce the costs associated with web threats by preserving valuable network bandwidth and ensuring malware threats do not interrupt business operations. Optimized scanning technology, high performance and support for the latest platforms make Kaspersky Security for Internet Gateway a High Value solution for medium and large organizations handling considerable network traffic volumes.

67 Ventajas/Beneficios Gran rendimiento y fiabilidad
Protección en tiempo real Soporte multiplataforma Soporte para Microsoft Forefront TMG Gran usabilidad y potente sistema de reporte High Performance and Reliability. A new, powerful antivirus engine plus optimized, intelligent scanning technology and load balancing increase performance and reduce the resources needed for virus scanning. Real-Time Protection Frequent database updates provide always-on, proactive protection against the latest known and potential threats. Multi-Platform Support Kaspersky Security for Internet Gateway supports most popular gateways based on the Windows and Linux platforms. Support for Microsoft Forefront TMG Kaspersky Security for Internet Gateways supports Microsoft Forefront TMG, a new product which replaces Microsoft ISA Server, providing effective anti-malware protection for corporate networks. Powerful Manageability and Reporting System Simple, user-friendly management tools, protection status information, flexible scanning settings and reporting systems ensure efficient security control. Versatility In addition to providing web protection, the solution can be used to protect corporate mail (for Microsoft ISA/TMG). Support for Virtualized Network Infrastructure Kaspersky Security for Internet Gateway is VMware Ready certified, and offers proven reliability for virtual environments. Versatilidad Soporte para infraestructuras de red virtualizadas

68 Aplicaciones para Internet Gateway
v. 8.0 KAV para Microsoft ISA Server y Forefront TMG SE KAV para Microsoft ISA Server EE KAV para Proxy Server

69 KAV 8.0 para Microsoft ISA Server y Forefront TMG Standard Edition
DMZ HTTP(S), FTP, SMTP, POP3 Servidores Públicos Usuarios Móviles Kaspersky Anti-Virus for Microsoft ISA Server and Forefront TMG Standard Edition is designed to provide secure Internet access to a company’s entire workforce, automatically deleting malicious and potentially dangerous programs from data traffic entering the local network via the HTTP, HTTPS, FTP, POP3 and SMTP protocols. Escaneo del tráfico HTTP(S), FTP, SMTP y POP3

70 KAV 8.0 para Microsoft ISA Server y Forefront TMG Standard Edition: Highlights
Motor AV 8.0 – garantiza un rendimiento estable con impactos mínimos en los recursos del sistema Soporte para Microsoft Forefront TMG Standard Edition 2010 Protección del tráfico de correo Panel con información integrada: monitorización en tiempo real del estatus de la protección AV VMware Ready  New! Anti-Virus Engine 8.0 Ensures stable, high performance with low impact on system resources. New! Support for Microsoft Forefront TMG Standard Edition 2010 The application supports the new Microsoft product superseding Microsoft ISA Server. New! Mail Traffic Protection Kaspersky Anti-Virus for Microsoft ISA Server and Forefront TMG Standard Edition scans mail traffic transferred via SMTP and POP3. New! Real-Time Monitoring of Antivirus Protection Status The application features an integrated information panel to display real-time statistics about the antivirus status of Microsoft ISA/TMG servers, including information about database updates. New! VMware Ready The application protects data transferred via Microsoft ISA/TMG servers installed both on physical and virtual (guest) machines.

71 Administración Flexible
KAV 8.0 para Microsoft ISA Server y Forefront TMG Standard Edition: Características Protección Efectiva Escaneo en tiempo real, incluyendo archivos almacenados Escaneo del tráfico saliente Escaneo del tráfico HTTP(S), FTP, SMTP y POP3 desde los servidores públicos Soporte para HTTPS (Forefront TMG) Soporte para conexiones VPN Backup New! Gran Rendimiento New! New! Administración Flexible Real-Time Scanning The application detects and removes all types of malware from data passing through Microsoft ISA Server and Forefront TMG. Also scans archived and packed files of almost any format. Scanning of Outgoing Traffic The application scans traffic travelling in both directions helping to safeguard a company’s reputation by ensuring that not only incoming but also outgoing traffic is free of malicious objects. New! Scanning of HTTP(S), FTP, SMTP and POP3 Traffic to Published Servers The application scans traffic entering published servers, such as when a web interface is used to access corporate mail. New! Support for HTTPS (Forefront TMG only) The application scans data transferred via HTTPS, allowing control of protected connections. New! Support for VPN connections The application monitors traffic passing through VPN connections established using Microsoft ISA Server or Forefront TMG. New! Backup The application saves copies of infected, damaged and suspicious objects to backup storage, making it possible to restore an object if it has been erroneously tagged as suspicious. This is useful for data transmitted via HTTP/FTP and objects sent via SMTP. A wide range of search parameters makes searching for an object in the backup storage more convenient. New!

72 Administración Flexible
KAV 8.0 para Microsoft ISA Server y Forefront TMG Standard Edition: Características Protección Efectiva Escalabilidad automática Gran rendimiento gracias a Arquitectura optimizada Nuevo motor AV 8.0 Modo especial para ficheros de gran tamaño Gran Rendimiento Administración Flexible Scalability It is possible to launch several antivirus engines simultaneously, allowing for enhanced scanning performance and optimised server load depending on configuration and traffic volume. The number of antivirus engines is determined automatically when the application is installed and can be modified by administrators. High Performance Optimized architecture, a new antivirus engine and a special mode for big-size files means traffic can be scanned extremely rapidly, without noticeably delaying the delivery of information to the end user.

73 Administración Flexible
KAV 8.0 para Microsoft ISA Server y Forefront TMG Standard Edition: Características Protección Efectiva Gestión via MMC Políticas de gestión flexibles Reportes detallados, notificaciones y estadísticas Control del rendimiento Actualización regular de las BBDD New! Gran Rendimiento Administración Flexible Management via MMC This administration console allows local or remote management of the application. The console has an easy-to-use intuitive graphical interface. New! Flexible Policy Management The application offers advanced capabilities for configuring and managing traffic processing policies during scanning. Using the policy management tools, administrators can configure different data scanning rules for different servers, computers, IP address ranges, domain names and subnets. Administrators can also create lists of trusted sites and configure other exemptions to tailor the application’s performance to specific business needs and to comply with a specific corporate security policy. Detailed Reports and Notifications Administrators can control application performance and the antivirus protection status of Microsoft ISA Server and Forefront TMG using detailed reports or looking through the event log. Standard ISA alerts are used for notification of important events. Administrators can select the type of notification from the standard options available in Windows and decide how often and for what period of time the reports are generated. Control over Performance Administrators can measure the application’s performance and its compatibility with other server software using the standard Windows (Performance Monitor) tools to which the application’s own counters are added. Database Updates Databases can be updated either on demand or automatically from Kaspersky Lab servers over the Internet or from the customer’s own preset local servers. The optimised update process saves administration time and minimises external traffic.

74 KAV 8.0 para ISA/TMG SE vs. competidores
Funcionalidades/ Competidores KAV 8.0 for ISA /TMG Trend Micro InterScan Web Protect for ISA McAfee Security for MS ISA Server Microsoft Forefront TMG Escaneo HTTP V V V V Escaneo FTP V V V V Escaneo SMTP V X V V Escaneo POP3 V X X V Escaneo HTTPS V X X V Soporte TMG V X X V Copias Backup V X X X Reportes V V V V

75 Aplicaciones para Internet Gateway
v. 8.0 KAV para Microsoft ISA Server y Forefront TMG SE KAV para Microsoft ISA Server EE KAV para Proxy Server

76 KAV para Microsoft ISA Server Enterprise Edition: Características
Red Corporativa. Delegación Red Corporativa. HQ Configuration Server Microsoft ISA Server Array Microsoft ISA Server Array To see features click in the right corner in the bottom Protección efectiva para granjas de servidores Características >>

77 KAV para Microsoft ISA Server Enterprise Edition: Características
Escaneo completo de los datos que provienen de Internet via protocolos HTTP o FTP Protección para granjas de servidores Rendimiento optimizado: Escalabilidad automática Selección de objetos a escanear y servidores de confianza Configuración de reglas para grupos Administración centralizada

78 Aplicaciones para Internet Gateway
v. 8.0 KAV para Microsoft ISA Server y Forefront TMG SE KAV para Microsoft ISA Server EE KAV para Proxy Server

79 KAV para Proxy Server: Características
Protege todo el tráfico HTTP y FTP que pase por el servidor proxy Gran fiabilidad Escaneo en tiempo real del tráfico de Internet Seleccción de los parámetros de filtrado Detección de programas potencialmente peligrosos Administración remota via interfaz web Configuración flexible del escaneo y políticas de seguridad para grupos Modos de actualización configurables Reportes detallados y sistema de notificaciones Kaspersky Anti-Virus for Proxy Server protects all HTTP and FTP Internet traffic that passes though the proxy server. The application provides security for users when working online and deletes malicious programs and worms that spread via instant messaging programs. Real-time scanning of Internet traffic. The program detects and deletes all types of viruses, worms, Trojans and other malicious programs in traffic that passes through most types of proxy servers. Choice of filtration parameters. The program includes a wide choice of filtration parameters (IP and URL addresses, MIME types and file size), which can be used to create individual scanning rules for different user groups. Scanning of archived files. Kaspersky Anti-Virus provides the highest quality detection and treatment of viruses in any type of file or attachment. The program supports more than 70 formats for archivers (over 420 versions) and more than 260 types of compressed file formats (over 1,330 versions). Detection of potentially harmful programs. Using the extended protection option, the application can detect and delete not only known malicious programs, but also potentially harmful programs (such as spyware). Remote administration. The application can be administered remotely via the web interface or via a single configuration file. Group security policies. The administrator can set individual traffic filtration rules for each user group, which defines permission rules in line with the corporate security policy and employee requirements. User notifications. The program automatically blocks any infected objects and sends the user a notification in the form of an HTML page. The system administrator can configure the content, format and language of notifications. Reports and statistics. The application can compile statistical reports to help administrators track virus activity and monitor the application’s performance. Configurable update modes. Updates to antivirus databases and program modules are available on demand, automatically or on schedule. They can be downloaded directly from Kaspersky Lab servers via the Internet or from a local corporate server. High reliability. Protection from memory leaks, hardware conflicts, input/output errors and critical system conflicts ensures fast and stable application performance.

80 KAV para Proxy Server HTTP, FTP Escenarios de Instalación
Plug-in Escenarios de Instalación Como una solución única Con servidores proxy : Squid

81 KAV for Proxy Server vs. competitors
Funcionalidades/ Competidores KAV para Proxy Server Trend Micro InterScan Web Security Suite Websense Web Security Gateway Escaneado HTTP V V V Escaneado FTP V V V Reportes y estadísticas V V V Políticas V X V Consola Web V V V

82 GRACIAS


Descargar ppt "Protección Web, Messaging & Infrastructure"

Presentaciones similares


Anuncios Google