Advertisement
Promo

Become a member of the ZDNet UK community

Network management Toolkit in association with http://ad.doubleclick.net/clk;217618582;14453422;e?http://www.citrix.com/lang/English/lp/lp_1688615.asp

  • Email
  • Trackback
  • Clip Link
  • Print

Trend Micro InterScan Gateway Security Appliance review

8.0

Editors' Rating

Excellent

Service & support 8.0
Design 8.0
Features 8.0
Performance 8.0
Trend Micro InterScan Gateway Security Appliance

Christian Harris ZDNet.co.uk

Published: 05 Sep 2007

The InterScan Gateway Security Appliance (IGSA) is Trend Micro's flagship secure content management appliance. Pitched at mid-sized organisations of between 100 and 1000 employees, this bright-red rack-mount appliance is straightforward to install and virtually manages itself. There are also no hidden post-deployment costs, such as expensive client software or updates. You cannot, however, avoid the £496 yearly subscription charge.

Designed to offer a multi-layered approach to threat management, the IGSA covers three main areas: hosted web and email reputationservices and URL filtering; a security-hardened, performance-optimised gateway appliance platform; and Damage Cleanup Services for automated cleansing of desktops from malware or spyware. Unfortunately the latter service only works if the clients on your network are running Windows and Internet Explorer, as it depends on an ActiveX component.

Hardware
The IGSA hardware platform is based around a 3GHz Pentium 4 processor with 1GB of RAM running a security-hardened Linux operating system. The front of the appliance contains two sun screws for holding the unit in a fixed position in a rack cabinet and a removable bezel. These screws should only be used in conjunction with the supplied rail mounting kit, as they won't support the weight of the appliance alone. At the centre of the bezel is the LCM module, comprising an LCD control panel, a reset button, a Unique ID (UID) button and LED indicators. The 65mm by 16mm LCD displays status and configuration messages in two 16-character rows.

The 5-button control panel is used to navigate the menu system and input data during the configuration process. The LEDs indicate the Power, UID, System, Inspection, and Outbreak states of the unit (Power and UID have one colour each; System, Hard Disk and Outbreak have two colours each). The Unique ID button illuminates a blue LED on the front and rear of the device, which helps administrators locate the device for troubleshooting or maintenance.

The back panel of an IGSA contains the power socket, power switch, two USB ports (reserved for future releases), serial port, fan vent, and LAN ports. The IGSA has three user-configurable copper-based Gigabit Ethernet ports.

In operation
Unlike UTM (Unified Threat Management) appliances, the IGSA sits behind your existing firewall/VPN solution, providing an additional layer to the security of your internet gateway. The latest version of Trend Micro's appliance employs the company's integrated antivirus, anti-spyware, anti-spam, content filtering, URL filtering and anti-bot functionality, so it's a well-rounded offering.

With eight models to choose from (IGSA 100, 200, 300, 400, 500, 600, 800 and 1000), the appliance assigns web sites a 'reputation' based on an assessment of the trustworthiness of a URL, derived from an analysis of the domain. It also protects against web-based threats, including zero-day attacks, before they reach the network, and blocks unwanted email. Real-time scans of SMTP, HTTP, FTP and POP3 protocols allow the IGSA to intercept malicious payloads.

Policy enforcement and compliance notifications for both antivirus and web content will help to simplify management tasks and keep larger organisations in line with regulatory requirements. Automatic updates and a single web-based remote management console also help to reduce the mangement overhead. And because this appliance complements existing firewall and VPN solutions, with transparent installation and no changes to clients required, there should be no effect on the company network.

SMTP and POP3 scanning protects your business from viruses (including unkown ones courtesy of heuristic IntelliTrap technology), spyware/greyware, spam and phishing attacks, and other undersirable content, with the administrator and users being notified when phishing messages are detected. FTP scanning is also supported, while HTTP scanning includes virus and spyware/greyware detection, plus the blocking of pharming and phishing URLs. Anti-spam configuration allows the administrator to set the spam threshold to high, medium or low, as well as specify approved and blocked senders and define certain categories of email as spam.

URL blocking and filtering for the HTTP protocol allows the administrator to define and configure URL filtering policies, while a local cache helps to reduce network traffic. Users are also notified if URL filtering blocks the address they want to access. Trend Micro's Network Reputation Service (NRS) blocks spam by validating the IP addresses of incoming mail against databases (RBL+ and QIL) of known spam sources. Reporting is done via an informative summary screen. The graphical management interface shows the status of various attacks and defences in the last 7 days and the last 30 days for easy reference.

Conclusion
Trend Micro's InterScan Gateway Security Appliance (IGSA) delivers relatively complete protection from viruses, spyware, spam and other threats at the internet gateway. The device is easy to deploy and does a great job of blocking malware, stopping inappropriate content or email, and filtering harmful URLs. It can also save your company time and money by helping you to achieve regulatory compliance, preserve network resource availability and reduce spam so that your employees can be more productive, as well as reduce the administrative effort, cost and downtime caused by spyware and viruses.

The only downside is that the IGSA doesn't allow you to add your own scanning protocols, such as those used by IM or peer-to-peer clients, so you'll have to rely on your external firewall to handle this task. The restriction to Windows and IE clients for the Damage Cleanup Services feature is also a drawback.

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Rate this product

Overview

Trend Micro InterScan Gateway Security Appliance

Editors rating
Rating: 8.0
Verdict

Trend Micro's IGSA delivers relatively complete protection from viruses, spyware, spam and other threats at the internet gateway. However, you can't add your own scanning protocols and the restriction to Windows and IE clients for the Damage Cleanup Services feature is a drawback.

Typical price

£ 2365

Related Citrix Resources

Achieving the lowest server virtualization TCO

Consolidation through server virtualization is a powerful agent for datacenter change, but...

Achieving the lowest server virtualization Total Cost of Ownership

Consolidation through server virtualization is a powerful agent for datacenter change, but...

Citrix XenDesktop: The Best Desktop Delivery System For Today's Demanding Business Needs

Whether you're considering your first virtual desktop solution or trying to salvage an existing...

Desktop Virtualization: A buyer's checklist

Desktop virtualization should do more than just move desktop management to the datacenter—its real...

Five reasons why you need Citrix Essentials for Hyper-V now

This paper explores common challenges associated with server virtualization deployments and the...

See All White Papers

Video icon

Video

On The Road Blog

Small Business: Growing Your Small Bus...

Small Business: Growing Your Small Business Blog – Community Blogs! Author: Eric Everson As most people know, in addition to being a mobile gadget guru, I am also passionate about... More

Post a comment

Linux on Netbooks - with PICTURES!

As this is the holiday season, and things are slow, I have finally taken the time to follow up on some very good advice that Jake gave me, and learn to produce blog entries with pictures.... More

3 comments

Mobile Broadband on Linux, Revisited

It has been nearly a year since I last wrote about using Mobile Broadband on Linux. I have recently acquired a new Huawei USB dongle, so I think it is time to revisit the subject.... More

9 comments

Win a BlackBerry with Vlingo voice recognition

Win a BlackBerry with Vlingo voice recognition

What is ZDNet UK's usual tagline?

Competition closes - 14 Jan 2010



Skip Sub Navigation Links to CNET Brand Links

Help

Become part of the ZDNet community.

Newsletters