https://www.forescout.com/products/counteract/see/visibility-capabilities/

Home ≫ Products ≫ ForeScout CounterACT® ≫ SEE ≫ See Capabilities*

See Capabilities*

 

Device Information

 
  • Device type (printer, wireless network device, laptop, etc.)
  • Device authentication/NETBIOS/domain membership
  • System information (manufacturer, model name, number of processors)
  • Storage information (drive type, volume name, size and name)
  • Motherboard (manufacturer, model, serial number, removable)
  • RAM (memory type, capacity, manufacturer, serial number and speed)
  • Network adapter (DeviceID, name, adapter type and speed)
  • Processors (number of cores, description, family and manufacturer)
  • MAC/IP address
  • NIC vendor
  • Hostname
 

Security Status

 
  • Anti-malware agents status (installed/running) and database versions
  • Patch management agent status (installed/running)
  • Firewall status (installed/running)
  • Audit trail of changes to OS/configuration/application
  • X.509 certificates
 

User Information

 
  • Username
  • Full name
  • Authentication status
  • Workgroup
  • Email address
  • Phone number
  • Guest/authentication status
 

Device Information

 
  • Device type (printer, wireless network device, laptop and more)
  • Device authentication/NETBIOS/domain membership
  • MAC/IP address
  • NIC vendor
 

Operating System Status

 
  • Type
  • Version number
  • Patch level
  • Processes and services installed or running
  • Registry and configuration
  • File name/size/date/version
  • Shared directories security status
  • Anti-malware agents status (installed/running) and database versions
  • Patch management agent status (installed/running)
  • Firewall status (installed/running)
  • Audit trail of changes to OS/configuration/application

Application Information

 
  • Authorized applications installed/running
  • Rogue applications installed/running
  • P2P/IM clients installed/running
  • Application name and version number
  • Registry values
  • File sizes
  • Modification date and patch level
 

Peripheral Information

 
  • Device class (disk, printer, DVD/CD, modem, NIC, memory, phone and more)
  • Connection type (USB, Bluetooth, infrared, wireless)
  • Device information (make, model, device ID, serial number)
 

Network Traffic Information

 
  • Malicious traffic (worm propagation, device spoofing, intrusion, spam and more)
  • Traffic source/destination
  • Rogue NAT/DHCP behavior
  • IPv6 tunnels through IPv4
 

Physical Layer Information

 
  • Switch IP, description, location
  • Switch port
  • VLAN
  • Number of devices on any port
  • 802.1X authentication status
 

Virtual Servers/Desktops

 
  • Server name
  • Server build
  • Server instance
  • Server license product name
  • Server license product version
  • Server locale build
  • Server locale version
  • Server OS type
  • Server product ID
  • Server product name
  • Server vendor
  • Server version
  • Server IP
  • Guest OS information
 
 

Industry Solutions

GOVERNMENT

 

Security, privacy and compliance begin at the endpoint

Local, state and federal government agencies are prime targets for hackers, whether politically motivated, seeking information they can sell, or simply engaged in mischief. By providing secure network access for a wide range of devices and user populations, ForeScout CounterACT® can help government agencies protect their confidential data and support their compliance efforts with mandated policies and regulations such as FISMANERCISO/IEC 27001 and the GDPR. ForeScout can:

  • Identify managed and unmanaged devices and control the spread of malware across the network
  • Guard against targeted threats that can result in stolen data and network downtime
  • Address endpoint compliance issues related to Security Content Automation Protocol (SCAP)
 

Learn more about what CounterACT can do for you.

Visit our Government Solutions Page

 
 
 

When it’s late at night, or when my staff is sleeping, CounterACT is working with our other security solutions to take immediate action on threats. You can’t put a price tag on that type of automation.

Michael Roling, Chief Information Security Officer, State of Missouri

 
 

FINANCIAL

 

Protect information assets and fortify security, privacy and compliance

Although financial institutions face threats from a multitude of sources, today’s primary risks are internal. Employees and contractors misuse and abuse corporate data resources—intentionally or otherwise—and their personally owned devices can wreak havoc on network security and stability. CounterACT delivers real-time visibility and automates control of devices the instant they connect to your network to:

  • Improve security posture without impeding customer service
  • Reduce risks of data breaches, ransomware and malware attacks
  • Support your compliance efforts with regard to FINRAGLBAPCI DSSSOXand other regulatory mandates

Learn more about what CounterACT can do for you.

Visit our Financial Solutions Page

 
 

Ease of implementation and support for hybrid environments made
ForeScout the logical choice. Its Value and ROI were clearly superior.

Dominic Hart, Manager Information Security Architecture, IT&S Security, RWJBarnabas Health

 
 

HEALTHCARE

 

Boost security, privacy and compliance in clinical settings

Healthcare organizations are facing constant threats as new types of devices add vulnerabilities to medical networks. CounterACT sees devices including medical, personally owned and IoT devices, the instant they connect. Its policy engine identifies thousands of medical devices from leading manufacturers to help you:

  • Improve security posture without impeding medical care
  • Expand network access to doctors and other clinicians, caregivers, research organizations and contractors
  • Support compliance efforts with regard to mandates from HIPAAHITRUSTHITECHOSHA and other regulatory bodies
 

Learn more about what CounterACT can do for you.

Visit our Healthcare Solutions Page

 

EDUCATION

 

Maintain security and privacy while facilitating learning

Security teams at educational institutions face a unique challenge: dealing with a constantly changing array of unmanaged devices connecting to the network even as they must try their best to maintain the free flow of information. But with CounterACT, you can:

  • Control access to networks by students, teachers, administration and guests
  • Automatically enforce limits based on identities
  • Continuously monitor the behavior of devices on the network and automatically execute a range of responses

Learn more about what CounterACT can do for you.

Visit our Education Solutions Page

 
 

RETAIL

 

Reduce risks of data breaches and malware attacks

Cybercriminals constantly look for—and find—opportunities in the retail environment. As breach disclosures continue unabated, retailers need better ways to secure POS systems, ATMs, kiosks and other endpoints while keeping pace with regulations. CounterACT helps retailers address PCI DSS 3.0 compliance and reassure customers and shareholders. This powerful appliance can:

  • Continuously monitor POS machines and other devices
  • Automatically detect and remediate retail endpoints
  • Identify and control devices that are attempting to access the network

Learn more about what CounterACT can do for you.

 

MANUFACTURING

 

Protect intellectual property, business operations and your company’s brand

Cybersecurity in manufacturing is extremely complex because there’s so much at stake—everything from factory floor operations to reputations, not to mention productivity and profitability. Fortunately, CounterACT lets you:

  • Gain real-time visibility and endpoint compliance by continuously monitoring the vast array of small-footprint, IP-connected devices
  • Automate remediation of vulnerabilities on managed and unmanaged endpoints
  • Rapidly respond to incidents without human intervention

Learn more about what CounterACT can do for you.

一个基于DPI技术实现了内网资产识别的应用的更多相关文章

  1. 基于4G Cat.1的内网穿透实例分享

    上一篇分享了:小熊派4G开发板初体验 这一篇继续BearPi-4G开发板实践:内网穿透实验. 基本TCP的socket通信测试 之前我们学习WiFi模块时,与PC进行TCP协议的socket通信测试我 ...

  2. 给我一个shell我能干翻你内网

    0x00 前言 在去年小菜鸡学了点内网知识就闲着没事跑点jboss的站看看,在经历过很多次内网横向失败之后终于算是人生圆满了一把,阿三的站一般进去之后很难横向,不知道是不是我太菜的原因,反正阿三的站能 ...

  3. 传输层隧道技术之lcx内网端口转发

    传输层技术包括TCP隧道.UDP隧道和常规端口转发等.在渗透测试中,如果内网防火墙阻止了指定端口的访问,在获得目标机器的权限后,可以使用IPTABLES打开指定端口.如果内网中存在一系列防御系统,TC ...

  4. 搭建基于HTTP协议内网yum仓库

    目录 1. 前言 2. 把rpm包下载到本地 3. 配置nginx对外提供服务 4. 配置本地repo文件 5. 生成repodata信息 6. 检查及使用 7. 对管理机器上的仓库进行更新 参考资料 ...

  5. 一台PC双网卡,一个外网一个内网

    问题:一台PC双网卡,一个连外网一个连内网.用户主要访问外网,内网只访问有限的几个ip.因为外网很大,一般人公司内网常访问的ip是有限的几个. 现在如何做到在上外网的同时也能访问内网的系统?明明两个网 ...

  6. 脑残式网络编程入门(六):什么是公网IP和内网IP?NAT转换又是什么鬼?

    本文引用了“帅地”发表于公众号苦逼的码农的技术分享. 1.引言 搞网络通信应用开发的程序员,可能会经常听到外网IP(即互联网IP地址)和内网IP(即局域网IP地址),但他们的区别是什么?又有什么关系呢 ...

  7. Linux内网渗透

    Linux虽然没有域环境,但是当我们拿到一台Linux 系统权限,难道只进行一下提权,捕获一下敏感信息就结束了吗?显然不只是这样的.本片文章将从拿到一个Linux shell开始,介绍Linux内网渗 ...

  8. 内网ip/公网ip

    ip地址初识: 现在的IP网络使用32位地址,以点分十进制表示,如172.16.0.0.地址格式为:IP地址=网络地址+主机地址 或 IP地址=网络地址+子网地址+主机地址. IP地址类型 最初设计互 ...

  9. 什么是公网IP、内网IP和NAT转换?

    搞网络通信应用开发的程序员,可能会经常听到外网IP(即互联网IP地址)和内网IP(即局域网IP地址),但他们的区别是什么? 1.引言 搞网络通信应用开发的程序员,可能会经常听到外网IP(即互联网IP地 ...

随机推荐

  1. C# 反射获取所有视图

    原地址:忘了 controller 的 action 加上属性 [System.ComponentModel.Description("菜单列表")]  且  返回值为 Syste ...

  2. 解决:python 连接Oracle 11g 报错:ORA-12514: TNS: 监听程序当前无法识别连接描述符中请求的服务

    其次,将查询到的service_name替换sid即可:conn=cx_Oracle.connect('hr/admin@localhost:1521/EE.oracle.docker')

  3. Centos7.x Docker桥接网络

    基于Centos7.x构建Docker桥接网络, 配置bridge桥接网络可以直接设置网卡配置文件: 自定义桥接网络设置如下: 关掉docker0 ifconfig docker0 down 删除do ...

  4. 拓扑排序-有向无环图(DAG, Directed Acyclic Graph)

    条件: 1.每个顶点出现且只出现一次. 2.若存在一条从顶点 A 到顶点 B 的路径,那么在序列中顶点 A 出现在顶点 B 的前面. 有向无环图(DAG)才有拓扑排序,非DAG图没有拓扑排序一说. 一 ...

  5. Makefile编写参考

    http://www.ruanyifeng.com/blog/2015/02/make.html

  6. 2018面向对象程序设计(Java)第13周学习指导及要求

    2018面向对象程序设计(Java)第13周学习指导及要求 (2018.11.22-2018.11.25)  学习目标 (1) 掌握事件处理的基本原理,理解其用途: (2) 掌握AWT事件模型的工作机 ...

  7. OpenCV SVM

    #include <opencv2/core/core.hpp> #include <opencv2/highgui/highgui.hpp> #include <ope ...

  8. Unity3D中的高级摄像机跟随

    在Unity3D中,先调整MainCamera在场景中的位置,然后把脚本挂到MainCamera上,摄像机跟随分为简单的摄像机跟随和高级摄像机跟随. 简单摄像机跟随: public class Cam ...

  9. Mysql 5.7 忘记root密码或重置密码的详细方法

    在Centos中安装完MySQL数据库以后,不知道密码,这可怎么办,下面给大家说一下怎么重置密码 在Centos中安装完MySQL数据库以后,不知道密码,这可怎么办,下面给大家说一下怎么重置密码 1. ...

  10. Numpy:ndarray数据类型和运算

    Numpy的ndarray:一种多维数组对象 N维数组对象,该对象是一个快速而灵活的大数据集容器,nadarry是一个通用的同构数据多维容器,也就是说,其中的所有元素必须是相同类型的.每个数组都有一个 ...