Castleforce IT Security Team

ForeScout Network Access Control and Intrusion Prevention

CounterACT Edge

CounterACT Edge security appliance delivers an entirely unique approach to preventing network intrusions: Stop attackers based on their "proven intent" to attack without using signatures, anomaly detection or pattern matching of any kind.

Attackers follow a consistent pattern. To launch an attack, they need knowledge about a network's resources. Potential intruders, whether humans or self-propagating threats, compile vulnerability and configuration information through scanning and probing prior to an attack. The information received is then used to launch attacks based on the unique structure and characteristics of the targeted network.

Enquire about this product

5 Virusn5 SpywarenX Spamn5 Web/IMn5 IPS/Patch Mgmtn5 Data/System Mgmtn

 

CounterACT Manager Console

ActiveResponse technology

ForeScout's patented ActiveResponse technology detects attackers' reconnaissance and responds to them with counterfeit information. If an intruder attempts to use this information to attack the network, he has proven his malicious intent and can be blocked before the network is compromised.

By focusing on the "proven intent" of potential attackers, CounterACT Edge's dynamic intelligence ensures elimination of threats before they ever reach the network - without ever requiring signatures, deep packet inspection, anomalous behavior or manual intervention.

ForeScout's threat prevention solution provides accurate, actionable and automated protection against "zero-day" attacks:

Accurate Detection

Unlike signature-based systems which are limited by the quality and availability of pattern files, ForeScout's threat prevention solution is 100% accurate. That is why 100% of our customers set their appliance into automatic blocking mode instead of manual blocking required to avoid false positives and disruptions of legitimate traffic caused by signature-based systems.

Actionable Data

ForeScout security platform dynamically integrates with network devices including routers, switches, firewalls, VPN concentrators and trouble ticketing systems to enable immediate containment and recovery from threats. With 100% accurate detection, ForeScout's threat prevention solution provides actionable data to allow for real-time automatic threat mitigation, based on a range of flexible blocking options defined by the network administrator.

Automatic Response

ForeScout's "detect and protect" mechanism is 100 percent automatic, as it requires no prior knowledge of an attack to protect against "zero-day" threats. ForeScout's threat prevention solution requires virtually no human management and does not require signature updates, tuning or reading through logs, which significantly reduces TCO. Based on the unprecedented accuracy and seamless integration into all network environments, 100% of our customers set their appliances into automatic block mode, allowing their IT staff to focus on other network management issues.

ForeScout Intrusion Prevention IPS Datasheet