Sourcefire readies virtual intrusion prevention appliances
Sourcefire 3D System 4.9 to receive Virtual 3D Sensor and Virtual Defense Center
Ellen Messmer (Network World) 25/06/2009 14:54:00

Sourcefire is readying its first intrusion-prevention systems designed to run as software appliances in VMware's virtual machine environment.

Sourcefire 3D System 4.9, which is expected to ship by year-end, includes the Virtual 3D Sensor and the Virtual Defense Center. The products will run as virtual appliances on VMware's ESX and ESXi servers, as well as on the cloud-computing platform vSphere 4.0.

Sourcefire 3D System 4.9, now in beta, can be used to inspect traffic between two physical hosts, two VMs or between a physical host and a VM, according to Steve Piper, Sourcefire's senior director product marketing.

The first virtual IPS appliances that Sourcefire will ship will deliver speeds ranging from 20M to 250Mbps. This is "the low end" for IPS speeds today, Piper acknowledges.  

Piper says there are some basic concerns regarding a virtual appliance -- which is simply software tailored to run in a specific VM environment -- as compared with a physical appliance that includes software on a dedicated hardware device.

"There are a lot of unknowns," Piper says, because the virtual appliance is likely to share a physical server with other VM applications and there may be wide differences in deployment and usage of resources.

The main concern is the performance of an IPS sensor running as a virtual appliance, he says. As the Sourcefire virtual appliances become available, "we encourage customers to test for performance," Piper says.

In its first iteration of virtual appliances, Sourcefire is not implementing VMware's VMsafe security API, because it's "not ready for prime time" due to performance issues related to Sourcefire's projects, Piper says.

More about IPS, Sourcefire, VMware
Recommend this article?
Yes0 votes
No0 votes

Comments

Post new comment

The content of this field is kept private and will not be shown publicly.
  • Web page addresses and e-mail addresses turn into links automatically.
  • Allowed HTML tags: <a> <em> <strong> <cite> <code> <ul> <ol> <li> <dl> <dt> <dd>
  • Lines and paragraphs break automatically.

More information about formatting options

Enter the fully qualified URL, eg. http://www.example.com/
Users posting comments agree to the PC World comments policy.
Login or register to link comments to your user profile, or you may also post a comment without being logged in.
Syndicate content
 
Gift Guide
MWave
Samsung

CXO Latest

LED Advisor
 

Colour your world with Samsung

A chance to win with every
Samsung Consumable purchase*