Presentation is loading. Please wait.

Presentation is loading. Please wait.

March 2009 Sipera Overview. 2 © 2009 Sipera Systems, Inc. All Rights Reserved. About Sipera  Leader in real-time Unified Communications (UC) security.

Similar presentations


Presentation on theme: "March 2009 Sipera Overview. 2 © 2009 Sipera Systems, Inc. All Rights Reserved. About Sipera  Leader in real-time Unified Communications (UC) security."— Presentation transcript:

1 March 2009 Sipera Overview

2 2 © 2009 Sipera Systems, Inc. All Rights Reserved. About Sipera  Leader in real-time Unified Communications (UC) security Confidently deploy UC over any network Award-winning UC-Sec appliances  VIPER Lab Proactive vulnerability research and assessments  Major Partners Avaya DevConnect Platinum Cisco Affiliate Microsoft Metro Technology Nortel Select Product RSA Secured Partner

3 3 © 2009 Sipera Systems, Inc. All Rights Reserved. Benefits of Unified Communications  UC benefits come from extending the UC network  New modes of collaboration Extended workforce Suppliers Partners Clients  Corporate policies Business continuity Privacy compliance, auditing Green initiatives  Cost reduction Converged infrastructure SIP trunks Clients Suppliers, Partners Enterprise Extended Workforce IP-PBX UC Assets Employees, Departments Remote Phones SIP Trunks Internal Phones

4 4 © 2009 Sipera Systems, Inc. All Rights Reserved. Enterprise Challenges of Extending UC  IP PBX & phone protection  Policy and compliance enforcement  Device and user authentication  Signaling and media privacy  Deployment Phone configuration and management Corporate firewall configuration Remote firewall traversal Clients Suppliers, Partners Extended Workforce IP-PBX UC Assets Employees, Departments Remote Phones SIP Trunks Internal PhonesSIP Trunks Rogue EmployeeSpammer Internet HackerInfected PC

5 5 © 2009 Sipera Systems, Inc. All Rights Reserved. Meeting the Challenges  Sipera UC-Sec security appliance Protect UC network Authenticate users Encrypt sessions Enforce business policies and monitor compliance Simplify deployment of remote users, soft phones, and SIP trunks  Sipera VIPER Lab Proactive vulnerability research Vulnerability assessments  Sipera Managed Services Enterprise Clients Suppliers, Partners Extended Workforce Employees, Departments Remote Phones SIP Trunks Internal PhonesSIP Trunks Rogue EmployeeSpammer Internet HackerInfected PC IP-PBX UC Assets

6 6 © 2009 Sipera Systems, Inc. All Rights Reserved. Sipera’s Value  Extended Workforce Flexibility: Teleworkers, Distributed call centers, Business continuity  Suppliers, Partners Collaboration: Supply chain automation, Channel management  Policy Enforcement Compliance: Logging, Privacy compliance records, Security policy enforcement, Auditing  Clients Interaction: Secure virtual storefronts, Multi-mode communication Enterprise Clients Suppliers, Partners Extended Workforce Employees, Departments Remote Phones SIP Trunks Internal PhonesSIP Trunks IP-PBX UC Assets Interaction CollaborationFlexibility Compliance

7 7 © 2009 Sipera Systems, Inc. All Rights Reserved. Examples  Fortune 100: VoIP calls, voicemail passwords intercepted Sipera solved problems  Bank: “Virtual bank” interface to customers Sipera detected and blocked critical attack  Fortune 100: VoIP calls intercepted and used by external parties Sipera investigated and found gaps  Higher Education: University needed to comply with privacy requirements, but keep open IT environment Targeted Sipera deployment secures privacy, enables open environment

8 8 © 2009 Sipera Systems, Inc. All Rights Reserved. Summary  Extending UC increases its value  Sipera UC-Sec enables teleworkers, SIP trunks, and enterprise VoIP  Extending UC leads to unique security issues different than data  Sipera UC-Sec secures UC networks  Sipera VIPER Lab delivers proactive vulnerability research and assessments

9 9 © 2009 Sipera Systems, Inc. All Rights Reserved. Backup

10 10 © 2009 Sipera Systems, Inc. All Rights Reserved. Sipera IPCS Appliances  Sized based on registered users and simultaneous sessions  Encryption affects sizing UC-Sec 200, 500 UC-Sec 1000, 2000 UC-Sec 3000, 5000 UC-Sec 10000 UC-Sec 50000 IPCS Appliance Target Market Branch / SMBSmall enterpriseEnterprise, Small Provider Enterprise, Provider Big enterprise, Provider Registered users 200 & 5001,000 & 2,0003,000 & 5,00010,00050,000 Simultaneous sessions 100 & 250250 & 500750 & 1,2502,00010,000 Signaling latency < 10 ms Media latency < 500 µs< 50 µs

11 11 © 2009 Sipera Systems, Inc. All Rights Reserved. VoIP Security is Different UC-SecFirewallIP-PBX …requires intimate knowledge of VoIP and call states IDS / IPS Layer 3 attack Layer 4 attack Layer 3 attack Layer 4 attack SBC OS attack Application attack OS attack Application attack SIP protocol fuzzing SIP denial of service SIP protocol fuzzing SIP denial of service SIP spoofing SIP ongoing fuzzing SIP stealth denial of service SIP distributed denial of service Media anomalies SIP spoofing SIP ongoing fuzzing SIP stealth denial of service SIP distributed denial of service Media anomalies

12 12 © 2009 Sipera Systems, Inc. All Rights Reserved. Technology Comparison Sipera UC-SecData FirewallSession Border Controller Floods / “fuzzing” protectionYesNoLimited – Rate limiting only Media anomaly protectionYesNo Spoofing preventionYesNo Stealth attack preventionYesNo Reconnaissance preventionYesNo Whitelist / blacklistYesNo – IP layer onlyYes Signaling firewallYesNo – Not for VoIPNo Media firewallYesNo – Not for VoIPYes Application controlYesNo – Not for VoIPNo Call routing policiesYesNoYes Message integrityYesNoLimited – Signaling only Privacy (encryption)YesNoLimited – Signaling only AuthenticationYesNoYes Replay protectionYesNoLimited – Signaling only Firewall / NAT traversalYesNo – Not for remote NATYes Secure firewall channelYesNo Call admission controlYesNoYes


Download ppt "March 2009 Sipera Overview. 2 © 2009 Sipera Systems, Inc. All Rights Reserved. About Sipera  Leader in real-time Unified Communications (UC) security."

Similar presentations


Ads by Google