際際滷

際際滷Share a Scribd company logo
Palo Alto Threat Prevention Concept
1. Threat Prevention Overview
2. Content-ID Flow
3. Anti-virus
4. Anti-spyware
5. DNS Sinkhole
6. Vulnerability Protection (IPS)
7. File Blocking
8. Data Filters
9. DoS Protection
10. Zone Protection
DLP ( Data Loss Prevention )
Threat Prevention (Content-ID) Overview
APP-ID Anti-virus Web Filtering Wildfire
Anti-virus
HTTP, FTP, SMB ,SMTP, IMAP, and POP3
 Anti-spyware
DNS Sinkhole
File Blocking
 Prevent Introduction of malicious data
 Prevent exfiltration of sensitive data
 Logs to Data filtering log
Blocking Multi-Level Encoded Files
17 palo alto threat prevention concept
17 palo alto threat prevention concept
 Packet-Based (Not Signature-Based) and not linked to security policy
 Two types:
Zone Protection profile protects ingress zone
DOS policy plus DoS profile protects destination zone or specific hosts
 Vulnerability Protection
Security Policy with Security Profiles
Security Profiles implement additional security checks on allowed traffic
Content-ID Flow
17 palo alto threat prevention concept
17 palo alto threat prevention concept
17 palo alto threat prevention concept
17 palo alto threat prevention concept
17 palo alto threat prevention concept

More Related Content

17 palo alto threat prevention concept