Enable your security team to respond more effectively to threats across your data centers with Distributed IDS/IPS.
NSX Service-defined Firewall with Advanced Threat Prevention includes a comprehensive set of detection and prevention capabilities, including Distributed IDS/IPS. Leverage its unique architecture and precise app context to replace discrete appliances and gain operational simplicity.
Achieve more zero-false-positive workloads with curated rulesets and higher-fidelity signature matches based on precise application context.
Scale inspection capacity automatically and eliminate hardware bottlenecks with IDS/IPS functionality built-in to each workload.
Reduce network congestion and simplify network design by eliminating the need to hair-pin traffic to centralized appliances.
Enable wide-spread use of virtual patching for all workloads in the data center.
Create and customize multiple virtual security zones for internal teams and partners without requiring physical separation of network.
Simply turn on traffic inspection through a software-driven deployment model without needing to buy expensive appliances.
NSX Distributed IDS/IPS is an application-aware intrusion detection system/intrusion prevention system (IDS/IPS) purpose-built for analyzing east-west traffic and detecting lateral threat movements.
NSX Distributed IDS/IPS uses an all-software distributed approach by moving traffic inspection out to every workload. It eliminates the need to hair-pin traffic to discrete appliances, ensuring comprehensive coverage without any blind spots.
Key capabilities of NSX Distributed IDS/IPS include:
For full capabilities, see the solution overview.
Use cases for NSX Distributed IDS/IPS include:
The benefits of NSX Distributed IDS/IPS include: