|
NetMonastery employs
unique attack detection and prevention technologies that are
effective and efficient. Attack techniques used by NetMonastery
are flexible and modular as can incorporate newer attack
techniques. Two essential detection techniques are used by
products from NetMonastery.

Signature Based
Detection
The SiteVaxinPro 8000 Series of intrusion prevention systems
use a large database of attack policies that are created by
profiling attacks. These signatures are then used to scan
traffic in real-time to detect and prevent ongoing attacks.
Signature based attack detection is a very common technique used
to detect known attacks. Protocol Anomaly
Based Detection
All SiteVaxinPro devices carry a protocol anomaly framework that
use specific protocol anomaly plugins for data analysis. These
plugins help the device understand the underlying application
protocol. Any deviation to the protocol standard or implemented
standard is considered to be an anomaly. The protocol anomaly
plugins are extremely tuned to reduce false positives. |