Check Point IPS (Intrusion Prevention System) combines industry-leading IPS protection with breakthrough performance at a lower cost than traditional, stand-alone IPS software solutions. IPS delivers complete and proactive intrusion prevention – all with the deployment and management advantages of a unified and extensible Next Generation Firewall solution.
Next Generation Threat Prevention and performance
Unrivaled multi-gigabit performance in an integrated IPS solution
Lowest TCO and fastest ROI of any enterprise-class firewall solution
The Check Point IPS Software Blade is delivering better security than our previous IPS software solution and at a lower cost. Check Point has designed the IPS software blade for efficient resource utilization, which improves performance, mission critical availability, and uptime.
Check Point IPS complements our firewall protection, further securing your network without degrading gateway performance. IPS provides comprehensive network protection against malicious and unwanted network traffic, including:
Delivers multi-gigabit IPS throughput with the optimized IPS profile. IPS incorporates a high-speed pattern matching engine that does multi-layered, 2-tier inspection for maximum performance with thousands of protections enabled.
With IPS and SmartEvent you gain a new, dynamic management paradigm for today’s high volume, real-time and evolving threat environment. Check Point threat management workflows allow you to handle constant change quickly and efficiently, reducing your management overhead and allowing you to confidently and promptly deploy protections.
IPS and SmartEvent offer:
Check Point IPS provides total security at a lower acquisition cost (up to 50% less) than multiple standalone solutions, all with up to 10x better price/performance than existing integrated IPS solutions. Integrated IPS has many advantages that are making it a new standard in security, including:
Reducing costs by consolidating multiple independent solutions. By integrating an IPS Software Blade into your existing firewall, you save on:
Facilitating reduced latency
Providing cohesive security policy
Offering common management and training
Making IPS deployment easier
Scan and secure SSL/TLS encrypted traffic passing through the gateway. When traffic is passed through, the gateway decrypts the traffic with the sender’s public key, inspects and protects, then re-encrypts, sending the newly encrypted content to the receiver.
Granularly define exceptions for SSL/TLS inspection to protect user privacy and comply with corporate policy. Some encrypted content passing through the gateway should not be inspected, and therefore can be bypassed with a simple administrator policy definition.
Patching is an incomplete security measure, which can leave your network open for attack. By taking a more comprehensive approach, which combines robust IPS functionality with a concerted patching strategy, network administrators can better equip themselves to handle ‘Patch Tuesdays’ and secure the network between upgrades and patches.