Introducing Network Security Sensors; About The M-2850/M-2950 Sensor - McAfee M-2850 Product Manual

Network security platform
Table of Contents

Advertisement

1
1

Introducing Network Security Sensors

This section describes the McAfee
M-2850/M-2950 Network Security Sensor (Sensor) in detail.
Sensors are high-performance, scalable, and flexible content processing appliances built for the accurate
detection and prevention of intrusions, misuse, distributed denial of service (DDoS) attacks, and network access
control(NAC) of hosts. When deployed at key access points, a Sensor provides real-time traffic monitoring to
detect malicious activity, and respond to the malicious activity as configured by the administrator.
After the Sensor is deployed and communication established, Sensors are configured and managed using the
McAfee Network Security Manager (Manager) server.
The process of configuring a Sensor and establishing communication with the Manager is described in the later
chapters of this guide. The Manager server is described in detail in the McAfee Network Security Platform Manager
Administration Guide.
Contents

About the M-2850/M-2950 Sensor

M-2850/M-2950 key features
M-2850/M-2950 physical description
About the M-2850/M-2950 Sensor
The M-2850/M-2950 Sensor provides effective network access control (NAC) of hosts.
The M-2850/M-2950 Sensor provides effective network IPS functionality as well as network access control (NAC)
of hosts.
The IPS functionality involves providing real-time detection and prevention of threats and known, zero-day, or
encrypted attacks. The Sensor can perform many types of attack responses, including generating alerts and
packet logs, resetting TCP connections, "scrubbing" malicious packets, and blocking attack packets entirely
before they reach the intended target.
NAC hosts involves regulating access to network resources based on host Operational Status level (Standard/
DHCP NAC), identity of the user logged into the host (IBAC) or both, and OOB NAC (L2, L3 ). The Sensor also
provides the Hybrid NAC functionality where a host is first subjected to DHCP-NAC and then Standard NAC at
different ports of the same Sensor. For more information on the NAC functionality and configurations of the
Manager, see McAfee
Throughout this guide, the terms 'Sensor' and 'M-2850/M-2950' refer to the M-2850 or the M-2950 Sensor in
general.
McAfee
Network Security Platform
®
Network Security Sensors at a high-level and also describes the McAfee
®
Network Security Platform NAC Administration Guide.
®
M-2850/M-2950 Sensor Product Guide
®
7

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

M-2950

Table of Contents