Help - Search - Members - Calendar
Full Version: SM/TP beefs up security for the common server!
The Planet Forums > General > The Lounge
Mr.Smith
As you may or may not know, we have beefed up security here and would like to know what you think about it. I also wanted to make you aware of some new services that we offer.

New features in Server Matrix include New Security Operations Center (SOC), Arbor Peakflow DDoS Detection, TippingPoint’s UnityOne in-line network intrusion detection & prevention system and Cisco Guard DDoS Mitigation deployed at the network edge.

New services include Ozone Access Control List Management, Spirus email gateway, ISS RealSecure Host Based Intrusion Detection System and Prevention and for only $20 per server, you will receive access to our complete security reporting system which includes: Cisco Guard XT reporting, Arbor network reporting, TippingPoint reporting, ISS host-based reporting and firewall graphs.


*NOTE: All current FloodGuard customers will be converted to this reporting service as the remainder of the legacy Flood Guard systems are retired.
Paul
QUOTE (Mr.Smith)
*NOTE: All current FloodGuard customers will be converted to this reporting service as the remainder of the legacy Flood Guard systems are retired.
How will we know?
Will extra things appear in orbit (when it's not slower than a dead person)?
Mr.Smith
Yes. Under the security tab there are links for Cisco Gaurd reporting, tipping point and firewall graphs.
Paul
Bleh, I must still be on floodguard then, since they're all not active apart from tippingpoint reports (which everyone gets anyway).
Mr.Smith
From now until the system is fully deployed, you may preview certain security reports at no charge.
zaitsev
filtering all traffic for viruses would be a good addition icon_biggrin.gif
gordonrp
This is all for premium bandwidth servers, correct? Unmetered servers are still "sitting ducks"?

gp
staggs
Where do we order this ISS reporting stuff at...I don't see it anywhere in orbit. I do see all the rest of the stuff, but I'd like to get the full reporting for $20/mo per server.
Guspaz
QUOTE (Mr.Smith)
From now until the system is fully deployed, you may preview certain security reports at no charge.


Please reconsider:

1) EV1 provides free reports
2) It is your responsibility to let customers know what traffic you are blocking to their servers
Mr.Smith
They actually make almost the same statment, i believe there website states "Fireslayer is currently offered at no cost to all customers. This should not change in the immediate future." Which implies that they may be charging you for the service eventually.

Cisco Gaurd, combined with arbor peak flow, is offerred at no cost to customer and there is no plan to charge for the protection... just the detailed reporting which included host IDS reports, firewall graphs, tipping point data and DDoS information.
staggs
QUOTE (Mr.Smith)
They actually make almost the same statment, i believe there website states "Fireslayer is currently offered at no cost to all customers. This should not change in the immediate future." Which implies that they may be charging you for the service eventually.

Cisco Gaurd, combined with arbor peak flow, is offerred at no cost to customer and there is no plan to charge for the protection... just the detailed reporting which included host IDS reports, firewall graphs, tipping point data and DDoS information.


I don't mind paying icon_razz.gif Where do I order it from in orbit icon_biggrin.gif
Mr.Smith
You can't order it right now, becasue we are letting you view them for free but they will show up in the Sale > Order Products section in orbit. Right now it is showing "Coming Soon"
gordonrp
QUOTE (gordonrp)
This is all for premium bandwidth servers, correct? Unmetered servers are still "sitting ducks"?

gp
Mr.Smith
No, all IP's in our IP space are protected including the unmetered servers.
sightz
So is today's new security product Realsecure going to prevent intrusion attempts from inside SM's datacentre as well, or is it an external-traffic-only filter like Tippingpoint?

Don't get me wrong, I love the new shields - I just find that I am getting a lot of attempts from inside the house now! (and abuse does not seem to answer emails or have a contact option in Orbit).
Mr.Smith
RealSecue is host based so it will detect both inside and outside traffic. Pretty much anything on traversing the uplink will be monitored.
staggs
Where can we see the ISS: Real Secure reports right now in orbit (while they are free) for some reason I can't find them in orbit :-/
GMoore7
Nor can I. Perhaps they are not available yet?

~Garrett
ToddW
So if we are paying for floodguard and are switched like all will be do we stop getting billed for it or what happens?
eddy2099
QUOTE (ToddW)
So if we are paying for floodguard and are switched like all will be do we stop getting billed for it or what happens?


If I am not wrong, it was stated before that if you are paying for floodguard, you will be switch over to the new security reporting system for free. I believe that is true as long as you continue to pay your dues. So instead of paying for floodguard, you are paying for the new reporting system.

If you however do not want the reporting system then you can have it terminated and you will not being charged for it.
Mr.Smith
QUOTE (eddy2099)
QUOTE (ToddW)
So if we are paying for floodguard and are switched like all will be do we stop getting billed for it or what happens?


If I am not wrong, it was stated before that if you are paying for floodguard, you will be switch over to the new security reporting system for free. I believe that is true as long as you continue to pay your dues. So instead of paying for floodguard, you are paying for the new reporting system.

If you however do not want the reporting system then you can have it terminated and you will not being charged for it.



That is correct.
cprompt
QUOTE (Mr.Smith)
That is correct.

Eddy is always correct icon_mrgreen.gif
dball
I have a couple of questions about the switchover.

1. Wasn't something said early on about you being sent an e-mail if they stop a DDos, even if you don't have the new reporting option icon_question.gif

2. IIRC, if you have floodguard and get DDos'ed, you don't pay for the extra traffic floodguard stops. Does this mean that if you get DDos'ed under the new system and don't have the reporting option that you WILL be charged for the traffic the floodguard replacement stops icon_question.gif

-- David
eddy2099
I thought that all the new anti-DoS framework that is being implemented are installed before it reaches your server or port and if that is so, anything that is deflected would not be counted towards your bandwidth usage. If I am not wrong, bandwidth usage for each server is computed at the port right before it gets to your machine.
This is a "lo-fi" version of our main content. To view the full version with more information, formatting and images, please click here.
Invision Power Board © 2001-2010 Invision Power Services, Inc.