Skip the navigation

Data loss prevention comes of age

By Benjamin Blakely, Mark Rabe and Justin Duffy
April 19, 2010 03:52 PM ET

Network World - After testing endpoint and perimeter data loss prevention products, we conclude our series with a look at data loss prevention tools that can do both.

We sent invitations to McAfee, Sophos, Fidelis, TrendMicro, CodeGreen, Palisade, Symantec, RSA, Websense, NextLabs and CA. Only McAfee and Sophos accepted the challenge.

We found both these products to be a breath of fresh air. McAfee and Sophos seem to have a very practical understanding of the role of DLP in a modern organization. They both have innovative features, excellent user interfaces, and a clear vision for the future of DLP. McAfee's solution seems to be more appropriate for larger organizations spanning many locations, even globally.

Sophos' solution seems better suited for small to midsize businesses that are looking for DLP as an added bonus to an existing antimalware infrastructure, and for whom the cost of and training for a larger solution might be prohibitive.

The Sophos DLP lineup consisted of their Email Security and Data Protection appliance (ES1100) and the Endpoint Security and Data Protection software suite. McAfee sent us its ePolicy Orchestrator, DLP agent, Email Gateway, and Web Gateway software, as well as the Discover, Prevent, Monitor, and Insight network DLP (NDLP) appliances.

Installation

We received the four appliances and a VMware server from McAfee, then were joined by two technicians who got everything up and running, and walked us through the initial configuration.

Much of the configuration work had been done prior to McAfee shipping the products. Our part of the DLP setup consisted of wiring up all four of the DLP appliances, including giving the NDLP Monitor device a network tap connection (which we chose to place between our DMZ and its gateway), giving the technicians IP addresses to use for all of the services, and helping them to integrate their product into our Active Directory setup.

We had the opportunity to get a more hands-on impression of the installation of Sophos' software, and were very pleased. The ES1100 appliance came with a very easy to digest quick start guide. This gave us the information we needed to initially connect to the device and initiate the configuration wizard.

This wizard was one of the best we've seen. It was well designed, provided helpful information at each step, and did a number of checks to verify proper configuration (even testing to make sure its network connections weren't cross-wired). The only issue we ran into was that, in our isolated environment, we didn't have a connection to the Internet. The product needs to be able to connect back to Sophos to test its connectivity and download a large (200MB) license file. We were able to get around this using a proxy server.

Originally published on www.networkworld.com. Click here to read the original story.
Reprinted with permission from NetworkWorld.com. Story copyright 2012 Network World, Inc. All rights reserved.
Our Commenting Policies
Internet of Things: Get the latest!
Internet of Things

Our new bimonthly Internet of Things newsletter helps you keep pace with the rapidly evolving technologies, trends and developments related to the IoT. Subscribe now and stay up to date!