Palo Alto Networks today announced several first-to-market features for its PA-4000 Series next-generation firewalls that greatly expand the ability for organizations to identify, categorize and control applications and user behavior. As a result, enterprises can safely deploy Web 2.0 and other new, beneficial applications, while implementing effective, application-centric security and compliance policies.
Palo Alto Networks' inaugural Application Usage and Risk Report, released earlier this month, highlights that end-users are evading IT security controls and using unsanctioned applications for both professional and personal use. The report also notes the lack of visibility IT groups had into these activities. Many of these applications offer substantial benefits to the enterprise, but they often introduce significant risk via their behavior. These include risks to productivity, compliance, business continuity, operational costs and data loss/leakage.
According to Gartner research, "The days when port = protocol = application are behind us. An increasing percentage of enterprise network traffic is being funneled through a few well-known ports, more port-hopping or dynamic application content, such as Web 2.0 and other mashups. In many cases, traffic is being encrypted."
App-ID™, Palo Alto Networks’ innovative technology, is the basis for all of Palo Alto Networks’ application understanding and control, and made the Application Usage and Risk Report possible. PAN-OS 2.0 leverages the power of App-ID and makes it even more compelling for enterprises by expanding on an industry-first platform for application visibility and control in three key areas:
"Users are demanding access to new types of applications and technologies, some work-related, some not," said Steve Mullaney, Vice President of Marketing, Palo Alto Networks. "Unfortunately, because traditional security controls are inadequate, the IT group has said ‘no’ to most of those requests. So, users stop asking IT and start getting applications directly. The PA-4000 Series, powered by App-ID, enables organizations to move to a risk-based security model, allowing IT security folks to say yes, while still protecting the business."
The PA-4000 Series is a next-generation firewall that gives organizations unmatched visibility into, and policy control over, applications flowing in and out of its networks, regardless of port, protocol or SSL encryption. The PA-4000 Series identifies traditional and emerging applications – including those embedded in an SSL session – to facilitate total application access and usage control while enabling broad, real-time threat prevention.
Palo Alto Networks™ enables visibility and policy control of applications running on enterprise networks. Based on innovative App-ID™ application classification technology, the Palo Alto Networks PA-4000 Series next-generation firewall accurately identifies applications – regardless of port, protocol, evasive tactic or even SSL encryption – at 10Gbps with no performance degradation. Enterprises can now set and enforce application usage policies to meet compliance requirements, improve threat mitigation and lower operational costs. The Palo Alto Networks team includes security and networking industry veterans from Check Point, NetScreen, McAfee, Cisco, Juniper and Blue Coat. It is backed by investors Globespan Capital Partners, Greylock Partners and Sequoia Capital. For more information, visit www.paloaltonetworks.com.
###
Palo Alto Networks, the Palo Alto Networks Logo, App-ID, FlashMatch and PAN-OS are trademarks of Palo Alto Networks, Inc. in the United States. All other trademarks, trade names or service marks used or mentioned herein belong to their respective owners.