SECURE Web Gateway 2.1 SECURE Email Gateway 3.1
Alyn Hockey – Director Product Management Mark Maciw – Global Product Manager
Common across both Gateways
Audit Database Maintenance • Maintain Performance levels • Schedule at customers choice
Revised Kernel • Around 2/3 of deployments are provided to customers who provide their own platform or VMware
• Support for newer hardware variants therefore important • Kernel updates are required to support new platforms and also to fix any issues found
MIMEsweeper Technology 3.1 • Format managers analyse files • Detection • Validate their structure for exploit • New Formats • MSI, JSON • Revised format algorithms • Image file formats
Web Gateway
Company Confidential --- Mark Maciw
Policy and Real-time Protection • HTTPS Certificate Policy • Management of the HTTPS Certificate Policy • Real-time Categorization • Indentify and stop access to uncategorised ‘Bad’ sites or sites with dynamic content • Embedded URL detection • Prevent inappropriate cached content on Google and Yahoo
HTTPS Certificate Policy • HTTPS certificate validation is important part of a web policy • Users faced with a certificate warning will often choose to ‘Continue’ • Increases protection by • Policy for when certificate check fails • Review area for certificate failures • White-listing allowed sites & Block untrusted sites Key Points: The organisation decides on what sites can be trusted when certificate checks fail
Real-time Categorisation • Ability to identify ‘bad’ sites in real-time based on page content • Will help prevent ‘bad’ content on uncategorised sites or dynamic sites such as blogs, social networking sites and search sites • The combination of URL Database, realtime categorisation & embedded URL categorisation provide in-depth filtering Key Points: Real time analysis of the web page content Helps to prevent ‘bad’ content from uncategorised or dynamic web sites (blogs, social netwroking)
Embedded URL detection •Some sites use embedded sub URLs to deliver cached content. Sites include: • Google and Yahoo Cached items • Google Images • Google translation pages http://t1.gstatic.com/images?q=tbn:A3eZ9 4LsKbYw2M:http://syrupdvd.com/myura/m/11185r.jpg Key Points: Greater depth of analysis even within the URL Helps prevents inappropriate cached content from Google and Yahoo
Email Gateway
Company Confidential --- Mark Maciw
On-box Encryption • Supports PGP, S/MIME and Password Protected messages • Multiple modes of operation • Allows signing and encryption • Policy based encryption (route, content) • Opportunistic TLS Cost effective solution Can be configured without making changes to existing policy Can scan encrypted content from the desktop
Different models of encryption
Un-encrypted
13
Revised Signatures Engine • Replace the existing SpamLogic Signatures engine • Improved detection, decreased false positive rate • Cloud based solution • Resilient against changing spam tactics
Faster detection of new spam outbreaks Lower memory footprint Language independant
Anti-Spam
80-90%+ of spam cleared using these filters
Anti-spam Engine
Signatures
Bayesian
CURBL
LDAP
HTTP
Validate Sender
SPF
RBL
Anti-Spoof
BATV
Greylisting
Reputation
Connection/Network Level Checks
Content Level Checks
Zero Hour Malware detection • 2009 saw more computer viruses than in all the years before it • 100’s of new variants per day • Customer vulnerable waiting for signatures update • Cloud based solution provides Real time classification Blocks suspect messages hours before signatures maybe available Complements existing Anti-virus products
User Granularity • Encryption settings • Message Management (forward, delete, reprocess, etc) • Shutdown • Message Tracking
Extends the scope of administration roles Allows user rights to be assigned appropriately
Update Information - Mail • Email 3.1 update will start downloading on 6 th May • Customers should review firewall rules for new SpamLogic Signatures
• Older versions reaching End-of-Life • V2.8 - will be supported for another 12 months
Product Demo
ZZ
Any questions?
[email protected] – Email
[email protected] – Web