Today state-of-the-art network systems are becoming increasingly complex in terms of:
Multiple access ways: wired/wireless; PC / PDA / Cell. Phone
New applications with new challenges: P2P, large scale multimedia applications
Multiple vendors and HW/SW-platforms due to the growing of nodes and needs within the network
Increasing amount of intrusions / spam
So network administrators need support in order to handle these issues more easily. Besides better training, they need:
Better security tools and moreover a better coordination among these tools
A reliable / guaranteed answer to the question: "will my network fulfill the desired security needs?"
An automated support for handling alerts within the network. Or even better: a proactive system that continuously checks the network and provides a self learning mechanism through the handled alerts, attacks and other critical events.
We believe, that the traditional firewall of today will disappear in near future! Security issues will be handles by all elements of the network according to their abilities.
How? See the next section to learn more about the POSITIF-approach.