Symantec to Preview Security Information Management Appliance | eWeek

Symantec to Preview Security Information Management Appliance

Jun 17, 2005
2 minute read
eWeek Le contenu et les recommandations de produits sont indépendants de la rédaction. Nous pouvons gagner de l'argent lorsque vous cliquez sur des liens vers nos partenaires. En savoir plus

Symantec on Monday will announce a beta version of Symantec Security Information Manager 9500 Series, a new security information management appliance that the company hopes to release in the fourth quarter of 2005.

The new appliance will replace Symantecs Security Incident Manager software and will allow organizations to automatically correlate security intelligence information from Symantecs DeepSight Threat Management System, said Rowan Trollope, vice president of security management solutions at Symantec Corp.

Security incident management technology collects filters and correlates large volumes of data generated by other network security technology, such as IDS/IDP (intrusion detection and prevention) products, gateway anti-virus and firewalls.

SIM (security information management) products allow IT managers to more easily identify and respond to security events across their network.

/zimages/4/28571.gifClick hereto read about Symantec merging security with server and storage management.

In addition to data from other network security products, the Symantec SSIM appliance will take in and correlate data from Symantecs global DeepSight network.

For example, information on IP addresses or ISP networks used in malicious attacks might be used to block traffic from those sources at the firewall, said Ashesh Kamdar, product manager for Symantec Incident Manager.

“Customers will see global threat patterns correlated automatically, so they dont need to monitor DeepSight and their SIM product separately,” he said.

The SSIM 9500 Series is also designed for easy deployment on corporate networks. In addition to the appliance form, the new device comes with preconfigured event-correlation rules that match data from disparate security products, Symantec said.

There are two models of SSIM 9500 Series appliances: the SSIM 9550, with dual, 3.0 GHz processors, 8GB of RAM and 1TBe of storage; and the SSIM 9500, a security incident “store and forward” device with the same processors, 4GB of RAM but no storage.

The devices will be able to correlate as many as 2,500 events per second, compared with 450 events per second for the latest version of Security Incident Manager. In clustered deployments, the 9500 Series devices can support as many as 15,000 events per second, Trollope said. ´

Advertisement

/zimages/4/28571.gifCheck out eWEEK.coms for the latest security news, reviews and analysis. And for insights on security coverage around the Web, take a look at eWEEK.com Security Center Editor Larry Seltzers Weblog.

eWeek Logo

eWeek has the latest technology news and analysis, buying guides, and product reviews for IT professionals and technology buyers. The site's focus is on innovative solutions and covering in-depth technical content. eWeek stays on the cutting edge of technology news and IT trends through interviews and expert analysis. Gain insight from top innovators and thought leaders in the fields of IT, business, enterprise software, startups, and more.

Propriété de TechnologyAdvice. © 2026 TechnologyAdvice. Tous droits réservés

Divulgation publicitaire : Certains des produits qui apparaissent sur ce site proviennent d'entreprises dont TechnologyAdvice reçoit une compensation. Cette compensation peut influencer la façon dont les produits apparaissent sur ce site, notamment l'ordre dans lequel ils apparaissent. TechnologyAdvice n'inclut pas toutes les entreprises ou tous les types de produits disponibles sur le marché.