Content

McAfee Host Intrusion Prevention for desktops

McAfee Host Intrusion Prevention for desktops product shot
Enforce policies, set firewall rules, and keep desktops safe

How do you successfully manage security and connectivity policies for desktops and laptops in a global enterprise? Desktop protection can be a challenge, as any security specialist can tell you. McAfee Host Intrusion Prevention offers a sweeping three-part defense strategy—stateful firewall for Microsoft Windows, behavioral rules, and signature analysis—managed from one central console.

Tab Navigation

Benefits and Features

Benefits:

  • Aggressive, comprehensive protection for your desktops
    Prevent intrusions, protect assets, and safeguard desktops and laptops with three layers of protection—behavioral rules, signatures analysis, and firewall protection; protect your desktop systems against unknown (zero-day) attacks; it’s easy to manage all your desktops, regardless of location, from a single centralized console.
  • Protect enterprise desktops worldwide
    McAfee Host Intrusion Prevention is centrally managed and scalable, so that you can deploy it across your entire enterprise for complete global protection with multiple language support
  • Stay ahead of threats with prioritized patch management
    Use the power of McAfee Host Intrusion Prevention against new vulnerabilities and exploits when they hit for more time to research, test, and deploy patches
  • Lower your costs and simplify management
    Reduce the frequency and urgency of patching systems; with its centralized streamlined management, you will also lower system maintenance costs
  • Control installation of unauthorized applications
    Prevent unauthorized applications (such as games) that may increase security risk or reduce employee productivity from being installed on a system

Features:

  • Vulnerability shielding
    Automatic security content updates target specific vulnerabilities; it recognizes unknown exploits and stops them from executing; security content updates do not require system reboots
  • Prevents buffer-overflow exploits
    McAfee Host Intrusion Prevention uses a patented host intrusion technology to prevent buffer-overflow attacks, one of the most common methods of attacking desktops
  • Application Blocking
    Control which specific applications can run—or must never run—on any given computer for an added layer of protection
  • Windows firewall protection
    Apply different security parameters based on how your system connects to the network (wired or wireless) with a stateful firewall for Windows; quarantine noncompliant systems as they attempt to connect to the network and block system ports
  • Advanced application protection
    McAfee Host Intrusion Prevention puts an “envelope” around an application to prevent it from communicating with other applications; this prevents applications from being leveraged in any type of attack
  • Connection Isolation
    Block all traffic on all but selected networks; when users "forget" to turn off wireless interfaces after connecting to the corporate LAN, this feature will ensure that no unintended breaches occur
  • IPV6 Support
    McAfee Host IPS firewall supports the "next generation" IP protocol that is an integral component of Windows Vista

Description:

Managing security and controlling connectivity for the desktops and laptops that your employees use every day can be a real IT headache. Employees can inadvertently introduce worms, spyware, and other threats into your network through their desktops or laptops. The other side of the coin is that desktops are commonly the target of exploits like buffer-overflow attacks. This can compromise your data, put employees at risk, and result in lost productivity.

McAfee Host Intrusion Prevention monitors and blocks such unwanted activity and makes it easier to keep desktops safe with multiple proven methods—system firewall, signature analysis, and behavioral analysis. And you can manage it all from one centralized console.

With automatic signature updates and zero-day protection, you get advanced vulnerability-shielding capabilities. Patching systems is something you will do less often and less urgently. You’ll also find it easier to comply with legal regulations. With a single agent for host intrusion prevention on your desktops, Host Intrusion Prevention is easy to deploy, easy to configure, and easy to manage.

Our stateful firewall for Microsoft Windows proactively defends and controls your desktops and laptops to combat new threats that anti-virus alone cannot defend against.  With connection aware policies you can apply different levels of protection depending on how and where a system connects to the network (wired or wireless).  McAfee Host Intrusion Prevention can quarantine and restrict network access to systems if it is found to be out of date or running old policies.

Standalone products have cumbersome unintegrated management platforms, making it difficult to deploy the comprehensive protection you need against today's blended threats. Host Intrusion Prevention integrates into your existing McAfee® ePolicy Orchestrator® management platform, for accurate, scalable, and easy-to-use advanced desktop protection.

System Requirements:

Note: The following are minimum system requirements only. Actual requirements will vary depending on the nature of your environment.

System requirements

  • Windows XP Home with Service Pack 2
  • Windows XP Professional with Service Pack 2
  • Windows XP Tablet PC
  • Windows Vista, 32-bit and 64-bit