H3C NS-SecCenter CSAP-NTA-V1000+LIS Sec Center CSAP-NTA-V1000 Network Traffic Threat Detection Probe Bundle, includes 1 CSAP-NTA-V1000 virtual host and a one-year signature database upgrade license

H3C NS-SecCenter CSAP-NTA-V1000+LIS
H3C NS-SecCenter CSAP-NTA-V1000+LIS Sec Center CSAP-NTA-V1000 Network Traffic Threat Detection Probe Bundle, includes 1 CSAP-NTA-V1000 virtual host and a one-year signature database upgrade license. Traffic Collection: Supports the collection of IPv4, IPv6, and VXLAN traffic and protocol parsing.. Weak Password Detection: Supports weak password detection for Telnet, FTP, POP3, SMTP, and IMAP protocols.. Threat Intell
Especificaciones clave
¿Necesita ayuda con la configuración?
Nuestros ingenieros certificados CCIE pueden ayudarle a verificar la compatibilidad.
Envío rápido
Red logística global orientada a la entrega el mismo día.
Calidad garantizada
Cada unidad supera una inspección rigurosa de 38 puntos.
Alcance global
Empresas de 6 continentes confían en nosotros.
Soporte experto
Ingenieros de red certificados listos para ayudar con la configuración.
Resumen
Especificaciones
| Catalog Description | |
|---|---|
| Description | H3C Sec Center CSAP-NTA-V1000 Network Traffic Threat Detection Probe Bundle, includes 1 CSAP-NTA-V1000 virtual host and a one-year signature database upgrade license |
| Key Specifications | |
| Traffic Collection | Supports the collection of IPv4, IPv6, and VXLAN traffic and protocol parsing. |
| Weak Password Detection | Supports weak password detection for Telnet, FTP, POP3, SMTP, and IMAP protocols. |
| Virus Detection | The system supports detection engines based on both a built-in virus detection engine and the YARA rule database to identify malicious code such as known vulnerabilities, Trojans, worms, viruses, and hacking tools. |
| Threat Intelligence Detection | Supports local detection of malicious IPs, URLs, domain names, MD5 hashes, and more |
| Machine learning detection | Supports the use of machine learning models to detect webshell files, malicious PE files, and DGA domains. |
| Dynamic sandbox detection | Uses dynamic behavioral analysis technology in a sandbox to detect known and unknown threats; the sandbox detection environment supports Windows 10 x64, Windows XP, Windows 7 x86, and CentOS operating systems |
| Product Specifications | |
| Traffic Collection | Supports the collection of IPv4, IPv6, and VXLAN traffic and protocol parsing. |
| File Recovery | Supports recovering files in specified formats from HTTP, FTP, POP3, SMTP, IMAP, and SMB/CIFS protocols. File categories include documents, executables, scripts, compressed files, text, images, multimedia, and software data. |
| File Format Detection | Supported formats include Office (Word, Excel, PPT, RTF), PDF, HTML, JS, PE (EXE, DLL, ELF, etc.), SWF, compressed archives (ZIP, 7Z, RAR, CAB, GZIP, TAR, etc.), and script files (BAT, VBS, SH, PY, Power Shell), among others. |
| Intrusion Detection | Supports detection of common network threat events, including botnets, worms, Trojans, injection attacks, cross-site scripting (XSS) attacks, Web Shells, other Web attacks, cyber weapons, vulnerability exploits, exploits targeting OA system applications, attacks exploiting known vulnerabilities in Web servers and plugins, and penetration testing components. |
| Weak Password Detection | Supports weak password detection for Telnet, FTP, POP3, SMTP, and IMAP protocols. |
| Virus Detection | The system supports detection engines based on both a built-in virus detection engine and the YARA rule database to identify malicious code such as known vulnerabilities, Trojans, worms, viruses, and hacking tools. |
| Threat Intelligence Detection | Supports local detection of malicious IPs, URLs, domain names, MD5 hashes, and more |
| Machine learning detection | Supports the use of machine learning models to detect webshell files, malicious PE files, and DGA domains. |
| Dynamic sandbox detection | Uses dynamic behavioral analysis technology in a sandbox to detect known and unknown threats; the sandbox detection environment supports Windows 10 x64, Windows XP, Windows 7 x86, and CentOS operating systems |
| Network Behavior Simulation | Supports simulation of various common network protocols, including ICMP, DNS, HTTP, SMTP, POP3, and more. It simulates responses from external servers to samples, enabling the collection of additional network behavior data from malicious samples without connecting to the external network. |
| Adaptive Sandbox Count | Based on the length of the file detection queues in each sandbox, the system can automatically adjust the number of sandboxes to dynamically adapt to changing network traffic patterns and different application scenarios; |
| On-sample embedded file detection | Can open and run the embedded files in the sample, and perform threat determination based on the line is |
| Nested Compressed File Detection | Supports threat detection for subfiles within multi-level (at least 3 levels) nested compressed files. |
| Digital signature detection | Can analyze digital signature status information of samples, including certificate verification results, timestamps, serial numbers, users, validity periods, etc., and can identify signature validity. It can identify information such as expired certificates and forgeries. |
| Multi-sample parallel detection | Sandbox supports concurrent execution of multiple x samples, and isolates the line is logs of different samples to improve detection performance |
| Custom Rule Detection | Supports custom detection rules, which can be added manually or imported in bulk. Custom detection can be configured using various keywords, including protocol types, threat classifications, traffic direction, MITRE ATT&CK, and NSA/CSS. |
| Sampling of Network Behavior | When manually uploaded samples are executed in the sandbox, their network behavior can be captured, saved as a PCAP file, and downloaded for local analysis. |
| File masquerade identification | Can identify formats based on file content instead of file extensions. |
| Event Analysis and Viewing | Provides the ability to view detailed information about threat events, including event descriptions, transmission details (source and destination IP addresses, source and destination ports, protocol types), geographic location, and threat detection results. This information can be viewed via a web page or exported as a file. |
| Traffic storage | Supported store threat traffic discovered by the traffic detection module |
| Security Analysis | Supports online viewing of comprehensive analysis reports, uploading of local suspicious files for detection, and automatic downloading and scanning of network-shared files from specified URLs. |
| Ordering Information | |
| functions feature license certificate | |
| 3130A50Y | LIS-SecCenter CSAP-NTA-V2-1Y - H3C Sec Center CSAP-NTA-V2 Signature Database Upgrade License, 1 Year |
| Product Identity | |
| Brand | H3C |
| Series | H3C Sec Center CSAP Full-Traffic Threat Probe Product |
Reseñas
Aún no hay reseñas
Sé el primero en calificar este producto.
Garantía
Política de Garantía Estándar
Todo el hardware vendido por ITMall incluye 3 años de mantenimiento gratuito y 1 año de sustitución RMA. Consulte nuestra Política de garantía para más detalles.
- Sustitución anticipada de 1 año (RMA)
- Servicio de reparación gratuito durante 3 años
- Cobertura completa de defectos funcionales
Proceso de RMA sin complicaciones
Hemos simplificado las devoluciones para reducir el tiempo de inactividad e incluimos diagnóstico previo por nuestros ingenieros.
- Plazo de devolución de 30 días
- Portal RMA automatizado con seguimiento inmediato
- Sin tarifa de reposición por problemas funcionales
Soporte técnico certificado
Ingenieros CCIE ofrecen orientación sobre compatibilidad, configuración y diagnóstico sin coste adicional.
- Consulta de topología gratuita antes de la venta
- Diagnóstico remoto y asesoramiento de firmware
- Pruebas de laboratorio antes del envío
Logística Global y Embalaje
Enviamos a más de 85 países con embalaje antiestático premium. Los pedidos antes de las 14:00 (GMT+8) suelen salir el mismo día.
- Cajas de doble pared con espuma a medida
- Envío neutro para socios de canal
- Seguimiento en tiempo real con FedEx / DHL / UPS
Recursos
Preguntas frecuentes
¿Este producto es nuevo?
¿Cuál es el periodo de garantía?
¿Ofrecen descuentos por volumen?
¿Con qué rapidez pueden enviar?
¿Todavía tienes preguntas?