Management and Control
Packet Validity Checks
Threat Detection
Worm Containment
Logging and Reporting
Enforcement Actions
Policy Features
Application Classification
Identity Awareness
Role Derivation
Host Posture Check
Active
Passive
Authentication
The OS also provides an industry-standard command line interface (CLI) for access to LANShield devices. The CLI allows IT to configure the ConSentry platform, apply user control policies, and learn user and incident information.
The LANShield OS coordinates the processing onboard a LANShield device and also interfaces with the ConSentry InSight Command Center software. InSight sends policies to the LANShield platforms via the LANShield OS, and the OS sends back to InSight extensive data about incidents, session information, user status, and other LAN security data collected by the LANShield silicon.
For each traffic flow, the LANShield OS binds together username, device, role, addresses, applications, and destination and applies policy. As a result, all reporting and control ties back to the user, device, and role. The OS enables active or passive authentication for users, automatically derives the role for each user or devices, and recognizes and classifies applications. LANShield OS names more than 300 applications at Layer 4, and it inspects more than 30 at Layer 7. The LANShield devices then use that application knowledge to apply policies that control what users can access.
The ConSentry LANShield OS drives the massive parallel processing capabilities of the LANShield silicon. The 128-core LANShield CPU processes 128 threads simultaneously, enabling deep packet inspection and policy enforcement. The accompanying programmable ASICs provide wire-speed forwarding on already inspected flows and session tracking for reporting and auditing. Together, the LANShield CPU and ASICs deliver full user and application control at 10 Gbps rates, maintaining wire-speed performance.
LANShield OSIntelligent Control Software LANShield Architecture
coordinates the processing onboard a LANShield device and also interfaces with the ConSentry InSight Command Center software.