McAfee Global Threat Intelligence Proxy (McAfee GTI Proxy) enables McAfee VirusScan Enterprise nodes to perform McAfee GTI file reputation (formerly known as Artemis) queries from within the enterprise network without requiring direct access to the public McAfee cloud from all McAfee VirusScan Enterprise (version 8.7 or later) endpoint systems. With McAfee GTI Proxy, organizations ensure that they have up-to-date threat protection and robust virus detection capabilities, including a strong defense against advanced persistent threats and botnets, even if Internet access is limited.
Consolidated cloud communications — Driven by compliance or other factors, organizations often have unique requirements for allowing applications to access resources on the Internet. For organizations operating limited Internet access environments, McAfee GTI Proxy consolidates communications between McAfee VirusScan Enterprise clients that have McAfee GTI file reputation queries activated and the McAfee cloud via a set of auditable proxy servers.
Streamlined deployment and management — McAfee GTI Proxy is delivered as a VMware virtual appliance and managed by the McAfee ePolicy Orchestrator (ePO) platform. Optimized for efficiency, McAfee GTI Proxy requires little additional network overhead.
Real-time threat protection — Leveraging McAfee GTI via the cloud to resolve real-time file reputation queries, McAfee GTI Proxy identifies suspicious files that may contain malware.
McAfee GTI Proxy supports custom reputation entries enabling local intelligence to override the McAfee Global Threat Intelligence reputation response. Administrators can specify whether a triggered file should have a clean or unclean response regardless of the reputation given by McAfee, enabling rapid response to suspected threats and false positive prevention.
Close the protection gap with McAfee Global Threat Intelligence (GTI). McAfee GTI offers comprehensive, real-time protection against both known and emerging threats and McAfee GTI Proxy enables GTI support for VirusScan Enterprise clients. McAfee GTI, a cloud-based service using reputation-based threat protection in addition to other techniques, correlates real-world data collected from millions of sensors globally and delivers automated intelligence to VirusScan Enterprise via the GTI Proxy.
Support up to 100,000 PCs per virtual appliance, reducing management costs.
Communications between GTI Proxy and the McAfee cloud are handled via UDP wrapped in SSL (which is DTLS on port 443).
These are minimum system requirements. Actual requirements will vary depending on the nature of your environment.
For a technical summary on the McAfee product listed above, please view the product data sheet.
Get answers to commonly asked questions about McAfee Global Threat Intelligence and McAfee GTI Proxy.
Hey guys! I’m Bradi, and this is The Scan – bringing you the very latest in security news! Sharing is Caring The Senate Intelligence Committee just approved the Cybersecurity Information Sharing Act, which would make it easier for the government and private sector to share security threat information with each other. Of course, privacy groups […]
The post The Scan: Breaches are Not a Game, They’re Gameover appeared first on McAfee.
When I turned 25, I saw this as a pretty big milestone in my life. At 25 years old, I felt like a true adult – I was now all grown up. I was educated, employed, experienced and stable. But when I look back, the journey from childhood to adulthood was really far from over […]
The post The Firewall is Turning 25, but is it Really All Grown Up? appeared first on McAfee.
As a leader in e-commerce solutions, Volusion not only has to manage its own endpoints, but also those of its 40,000 customers worldwide. Online shopping is now a major aspect of global retail sales culture, and criminals are naturally following the money. While network security should be a crucial part of every business, e-commerce providers […]
The post How Volusion Used McAfee SIEM to Meet New Security Needs appeared first on McAfee.
We at McAfee obviously believe that Enterprise Security Manager (ESM), our Security Information and Event Management (SIEM) solution, is a fantastic tool to help harden networks from cyber attacks. Corporations trust us to deliver the clearest picture of their network’s security in an instant. Taking this reputation a step further, we are now working with […]
The post How The State of Colorado Secured its Infrastructure with McAfee SIEM appeared first on McAfee.
Last time, I noted the prominence of cyber espionage, who and what is targeted, and the embarrassing time it takes to detect attacks. Here are three more observations to take away from this year’s Verizon Data Breach Investigations Report. The curse of human weaknesses Even with all the latest headlines, sadly the Verizon report found that […]
The post Six Observations on the 2014 Verizon Data Breach Investigations Report – Part II appeared first on McAfee.