Cisco announced the arival of IPS v7 on April 21st 2009, with one major new feature to drive forward the Cisco Self Defending Network…
In recent times Cisco IDS/IPS has fallen short on some of the offerings around today for intrusion detection and prevention, its signature based methodology though comprehensive lacks the intelligence seen by many other vendors products in the market today.
In a nutshell Cisco are attempting to modernise their IDS/IPS and appear to be adopting an approach simlilar to those used by other vendors by correlating global data to make inteligent decisions. Cisco have the following to say about about the new release:
“Correlation for intrusion prevention system (IPS) harnesses the power of Cisco Security Intelligence Operations, a powerful threat-defense ecosystem, to achieve unprecedented threat-protection efficacy. Cisco turns global threat data captured from a massive footprint of security devices into dynamic updates and actionable intelligence, such as “reputation” scores, and pushes that intelligence out to a business’s network security infrastructure for protective action. By incorporating Global Correlation, Cisco IPS 7.0 is up to two times as effective in stopping malicious attacks, in a shorter amount of time, than traditional signature-only IPS technologies.”
More information can be seen at http://newsroom.cisco.com

Entries (RSS)