UTM ApplianceUnified threat management (UTM) refers to a comprehensive security product that includes protection against multiple threats. A UTM product typically includes a firewall, antivirus software, content filtering and a spam filter in a single integrated package. The term was originally coined by IDC, a provider of market data, analytics and related services.
The principal advantages of UTM are simplicity, streamlined installation and use, and the ability to update all the security functions or programs concurrently. As the nature and diversity of Internet threats evolves and grows more complex, UTM products can be tailored to keep up with them all. This eliminates the need for systems administrators to maintain multiple security programs over time. IDS/IPS Firewall only enforces policy, and if that policy includes allowing inbound HTTP traffic to Web servers on the DMZ, then there is nothing the firewall can do to prevent HTTP exploits from subverting the target Web server. The IPS capability will detect and block such attempted exploits at the network perimeter, preventing the malicious traffic from ever reaching the server. An IDS-only capability can detect exploits and raise alerts, but will be unable to block the malicious traffic. Intrusion detection system (IDS) Intrusion detecion system instantly alerts administrators upon detecting a hacking attempt. The Astaro Intrusion detection system uses a dynamic set of intrusion detection patterns that are updated hourly.Intrusion prevention system (IPS) – Intrusion detection system thwarts hacking attempts automatically using a dynamic set of intrusion prevention patterns that are updated hourly.You can choose between physical, software and virtual appliances Article source:http://searchmidmarketsecurity.techtarget.com/definition/unified-threat-management Article source:http://dealflownetworks.com/Unified-Threat-Management-DC.html |
|