@nirzuk We hear much about APT's - how best to mitigate? Analytic security products seem own the headlines but not everyone is ready just yet - Are slow-adopters left to process/technology?
the solution will be a combination of processes and technologies all working together. enterprises are still trying to figure out what to do. a quick advise - if you think you found a killer solution - you are probably wrong
They don't have a choice. End users are not asking them whether it's okay to BYOD. Sensitive coprorate information is making its way to personal mobile devices and something needs to be done to protect it
The best PAN appliance has an throughput of 20Gbps (firewall) and 15(threat), but hauwei has 35Gbps (firewall) and 25(threat). is nice to know that pan as GSP support but In an ISP scneario, witch one will be the best appliance to ensure the security ?
it's not about how fast you run but rather what you do at that speed. ISPs are trying to provide more than basic firewall and are turning to Palo Alto Networks for help. In any case, we have already said a 100Gbps device is in the works
Pires Fábio Thanks for the repply. So PAN can be applied not only in corporative scnearios but in ISP too, right ? And you a 100Gbps appliance to deal with it. is it? Can you tell me more about anti-spam ? i know palo alto do not support that, but in ISP...
Contrary to common sense, I think that the hardest verticals to protect would be those that put a lot of restrictions around their users who have become so smart at bypassing security. I'd count financial services and government
SDN is a big word with very little definition behind it. For me, SDN is providing a software API to the network, security included. Centralized controllers have existed since the mid-90's. APIs to managing security are new.
I think that providing APIs to network security is not about saving money but rather enabling the participation of network security in a virtualized data center where things come, go, and more around all the time
I think that many companies forget that network security is not a product but a solution. A single technology, such as IPS, Sandbox, filtering, etc is not going to keep the bad guys out. It's the combination of these technologies that will help
(1) UTM vendors have taken existing network security technologies and bolted them together into one physical device. There are still different engines for IPS, AV, URL, DLP, etc. Palo Alto Networks has created a single engine to do all these
(2) UTM vendors deal with the threats of applications by providing a module/blade to block these apps. Palo Alto Networks provides a way to enable the use of these apps while making them as safe to use as email
Most UTM customers never turn on any functionality beyond the basic firewall. Many Palo Alto Networks' customer use all the product's functionality with no performance degradation
I think we still have a lot of work to do in the Network Security space. With <10% market share we need to stayed focused on Network Security. We will continue, however, to do what we do well - change the definition of Network Security