NEXT GENERATION FIREWALL. Tested Products. Environment. SonicWall Security Value Map (SVM) JULY 11, 2017 Author Thomas Skybakmoen

Similar documents
NEXT GENERATION FIREWALL COMPARATIVE REPORT

WEB APPLICATION FIREWALL COMPARATIVE ANALYSIS

ENTERPRISE ENDPOINT COMPARATIVE REPORT

TEST METHODOLOGY. SSL/TLS Performance. v1.0

ADVANCED ENDPOINT PROTECTION TEST REPORT

ADVANCED ENDPOINT PROTECTION COMPARATIVE REPORT

BREACH DETECTION SYSTEMS COMPARATIVE ANALYSIS

Quick Start Guide for Administrators and Operators Cyber Advanced Warning System

DATA CENTER IPS COMPARATIVE ANALYSIS

THREAT ISOLATION TECHNOLOGY PRODUCT ANALYSIS

TEST METHODOLOGY. Virtual Firewall. v2.1 MARCH 13, 2017

CONSUMER EPP COMPARATIVE ANALYSIS

They Call It Stormy Monday

BREACH DETECTION SYSTEM PRODUCT ANALYSIS

TEST METHODOLOGY. Breach Detection Systems (BDS) v5.0 MARCH 5, 2018

CAWS CONTINUOUS SECURITY VALIDATION PLATFORM API GUIDE VERSION 3.0

Terms of Use. Changes. General Use.

TEST METHODOLOGY. Breach Detection Systems (BDS) v3.0

CONSUMER AV / EPP COMPARATIVE ANALYSIS

BREACH DETECTION SYSTEMS TEST REPORT

Market Analysis. Overview 2013 INTRUSION PREVENTION SYSTEMS. Authors: Rob Ayoub, Andrew Braunberg, Jason Pappalexis

BCDC 2E, 2012 (On-line Bidding Document for Stipulated Price Bidding)

HYCU SCOM Management Pack for F5 BIG-IP

TEST METHODOLOGY. Data Center Firewall. v2.2

MySonicWall Secure Upgrade Plus

Kemp Technologies LM-3600 IPv4 and IPv6 Performance Report

CAWS CYBER THREAT PROTECTION PLATFORM API GUIDE. Version 2.3

CAWS CONTINUOUS SECURITY VALIDATION PLATFORM API GUIDE VERSION 3.0

Entrust WAP Server Certificate Relying Party Agreement

Maturing VARs Offer New Outsourcing Option

Customer Support: For more information or support, please visit or at Product Release Information...

Release Information. Revision History. Version: build 018 Release Date: 23 rd November 2011

DBAM Systems EP60 Test Executive Summary

Winnebago Industries, Inc. Privacy Policy

Cloud Access Manager SonicWALL Integration Overview

CALSTRS ONLINE AGREEMENT TERMS AND CONDITIONS

Compatibility Matrix. Good Control and Good Proxy. June 4, 2018

Achieve deeper network security

AT&T Release Notes. Enhanced Web Real-Time Communication (WebRTC) API. Publication Date: August 2015

Product Release Information

The Forcepoint NGFW should be on every company s short list.

Ecma International Policy on Submission, Inclusion and Licensing of Software

IT S NOT ABOUT THE 98 PERCENT YOU CATCH, IT S ABOUT THE 2 PERCENT YOU MISS.

PLEASE CAREFULLY REVIEW THESE TERMS AND CONDITIONS OF USE BEFORE USING THIS SITE.

Policies & Medical Disclaimer

End User License Agreement

Release Notes. BlackBerry Enterprise Identity

BlackBerry Enterprise Server Express for Microsoft Exchange

BlackBerry Enterprise Server for Novell GroupWise. Compatibility Matrix June 26, 2012

Release Notes. BlackBerry UEM Client for Android Version

Entrust SSL Web Server Certificate Subscription Agreement

SUPPORT MATRIX. Comtrade OMi Management Pack for Citrix

Quick Start Guide. BlackBerry Workspaces app for Android. Version 5.0

SUPPORT MATRIX. HYCU OMi Management Pack for Citrix

User Manual Arabic Name Romanizer Name Geolocation System

Android Backdoor GhostCtrl can Silently Record Your Audio, Video, and More

Ecma International Policy on Submission, Inclusion and Licensing of Software

TERMS & CONDITIONS. Complied with GDPR rules and regulation CONDITIONS OF USE PROPRIETARY RIGHTS AND ACCEPTABLE USE OF CONTENT

The Travel Tree Terms and Conditions

Specific Terms And Conditions for hi!share International Prepaid Airtime Top- Up Value Added Service ( hi!share International Terms )

TERMS OF USE Effective Date: January 1, 2015 To review material modifications and their effective dates scroll to the bottom of the page. 1.Parties.

Bar Code Discovery. Administrator's Guide

SonicWall Mobile Connect for Chrome OS

TEST METHODOLOGY. Breach Detection Systems (BDS) v4.0

Funding University Inc. Terms of Service

BlackBerry Enterprise Server Express for IBM Lotus Domino. Compatibility Matrix. September 20, 2012

Installation and Configuration Guide

MERIDIANSOUNDINGBOARD.COM TERMS AND CONDITIONS

Network-MIDI Driver Installation Guide

Site Impact Policies for Website Use

Terms Of Use AGREEMENT BETWEEN USER AND DRAKE MODIFICATION OF THESE TERMS OF USE LINKS TO THIRD PARTY WEB SITES USE OF COOKIES

The use of Workbench Services and INFORM Services are governed by and subject to these Electronic Access Terms and Conditions ( EATCs ).

HPE Education Services ESE (East and South Europe) Terms and Conditions

BlackBerry Enterprise Service 10. September 10, 2014 Version: 10 and 10.1.x. Compatibility Matrix

1. License Grant; Related Provisions.

Avast Customer & Technical Support Policy

DME-N Network Driver Installation Guide for M7CL

LOGO LICENSE AGREEMENT(S) CERTIPORT AND IC³

User Guide. BlackBerry Docs To Go for Android. Version 1.3.0

Weebly API Terms of Use

Terms of Use for companies accessing MyStay Product Database via MyStay API

BlackBerry Enterprise Server for Microsoft Office 365. Version: 1.0 Maintenance Release: 1. Release Notes

TREND MICRO LEGAL DISCLAIMER

BlackBerry Enterprise Server for IBM Lotus Domino. Compatibility Matrix. September 20, 2012

Astaro Security Gateway Evaluation Request Form

TREND MICRO LEGAL DISCLAIMER

Domain Hosting Terms and Conditions

Notifications for the Payment API

Advanced Endpoint Protection

INCLUDING MEDICAL ADVICE DISCLAIMER

DRIDEX s New Tricks Lead to Global Spam Outbreak

Class Composer General Terms of Use

SonicWall Global VPN Client Getting Started Guide

SONICWALL SECURITY HEALTH CHECK SERVICE

Compatibility Matrix. BlackBerry UEM. March 26, 2018

MyCreditChain Terms of Use

Tisio CE Release Notes

NEXT GENERATION INTRUSION PREVENTION SYSTEM (NGIPS) TEST REPORT

Terms and Conditions For Online-Payments

SDLC INTELLECTUAL PROPERTY POLICY

Transcription:

NEXT GENERATION FIREWALL SonicWall Security Value Map (SVM) JULY 11, 2017 Author Thomas Skybakmoen Tested Products NGFW Group Test: SonicWall NSA 6600 SonicOS Enhanced 6.2.5.10-70n Dynamic signature database and engine rule definitions: [Gateway Anti-Virus UTC 01/05/2017; Intrusion Prevention UTC 01/05/2017; Anti-Spyware UTC 01/05/2017] Follow-on Test: SonicWall NSA 6600 SonicOS Enhanced 6.2.5.10-70n Dynamic signature database and engine rule definitions: [Gateway Anti-Virus UTC 05/17/2017 16:31:39.000; Intrusion Prevention UTC 05/17/2017 19:29:30.000; Anti-Spyware UTC 05/17/2017 19:28:09.000] 1 Environment Next Generation Firewall (NGFW) Test Methodology v7.0 1 Devices with signatures and engine rule definitions that are timestamped as above or later will have remediated versions. Updates take place automatically, so no additional action from the customer is required, so long as the device has Internet connectivity.

Overview This document provides updated test results for the NSA 6600 SonicOS Enhanced 6.2.5.10-70n. During the 2017 NGFW Group Test, the SonicWall NSA 6600 failed to detect 100 percent of evasions in the HTTP evasion test. This affected its placement in NSS 2017 NGFW Security Value Map (SVM). After working closely with NSS, SonicWall rolled out the following signature database updates and engine rule definitions: [Gateway Anti-Virus UTC 05/17/2017 16:31:39.000; Intrusion Prevention UTC 05/17/2017 19:29:30.000; Anti-Spyware UTC 05/17/2017 19:28:09.000] The updated device was subjected to testing in our lab with the same test methodology used in the group test (NGFW v7.0), and the SonicWall NSA 6600 detected 100 percent of evasions in the HTTP evasion test. Although the device improved its overall evasion score by 73 percent, the device experienced a 0.1% drop in its exploit block rate and consequently a 5 Mbps drop in performance. Key Findings NSS NGFW Group Test The NSA 6600 achieved a 26.4% Security Effectiveness score and $39 TCO per Protected Mbps (Value). The device failed to protect against the HTTP evasion technique. Please see the Test Report for additional details. Follow-on Test SonicWall rolled out updated signature database updates and engine rule definitions: Gateway Anti-Virus UTC 05/17/2017 16:31:39.000; Intrusion Prevention UTC 05/17/2017 19:29:30.000; Anti-Spyware UTC 05/17/2017 19:28:09.000. The NSA 6600 achieved a 97.8% Security Effectiveness score and $10 TCO per Protected Mbps (Value). The device proved effective against all evasion techniques tested. This report is Confidential and is expressly limited to NSS Labs licensed users. 2

The SVM illustrates the relative value of security investment by mapping the Security Effectiveness and the Total Cost of Ownership (TCO) per Protected Mbps (Value) of tested product configurations. The terms TCO per Protected Mbps and Value are used interchangeably throughout NSS reports. Figure 1 2017 SonicWall Security Value Map (SVM) Note: For guidance on how to read the SVM, please refer to the original NGFW SVM Comparative Report 2. Product NSS-Tested Throughput (Mbps) Block Rate Evasions Security Effectiveness TCO per Protected Mbps SonicWall Group Test 3,772 97.9% 27.0% 26.4% $39 SonicWall Follow-on Test 3,767 97.8% 100% 97.8% $10 Figure 2 Detailed Results 2 Next Generation Firewall Security Value Map Comparative Report This report is Confidential and is expressly limited to NSS Labs licensed users. 3

Detailed Results SonicWall NSA 6600 SonicOS Enhanced 6.2.5.10-70n NSS NGFW Group Test: June 6, 2017 Dynamic signature database and engine rule definitions: [Gateway Anti-Virus UTC 01/05/2017; Intrusion Prevention UTC 01/05/2017; Anti-Spyware UTC 01/05/2017] NSS Exploit Library Block Rate CAWS (Live) Exploit Block Rate Evasion Techniques Stability and Reliability Firewall Policy Enforcement Application Control Performance Rating Using the recommended policy, the NSA 6600 blocked 95.38% of attacks against server applications, 96.71% of attacks against client applications, and 96.09% of attacks overall. The device blocked 99.76% of live exploits. The device failed to protect against the HTTP evasion technique. Please see the Test Report for additional details. The device passed all stability and reliability tests. The device proved effective in enforcing all firewall policies. NSS engineers verified that the device successfully determined the correct application and took the appropriate action based on the policy. The NSA 6600 is rated by NSS at 3,772 Mbps, which is higher than the vendor-claimed performance; SonicWall rates this device at 3 Gbps. Follow-on Test: July 11, 2017 Dynamic signature database and engine rule definitions: [Gateway Anti-Virus UTC 05/17/2017 16:31:39.000; Intrusion Prevention UTC 05/17/2017 19:29:30.000; Anti-Spyware UTC 05/17/2017 19:28:09.000] 3 NSS Exploit Library Block Rate CAWS (Live) Exploit Block Rate Evasion Techniques Stability and Reliability Firewall Policy Enforcement Application Control Performance Rating Using the recommended policy, the NSA 6600 blocked 94.87% of attacks against server applications, 96.79% of attacks against client applications, and 95.90 of attacks overall. The device blocked 99.76% of live exploits. The device proved effective against all evasion techniques tested. The device passed all stability and reliability tests. The device proved effective in enforcing all firewall policies. NSS engineers verified that the device successfully determined the correct application and took the appropriate action based on the policy. The NSA 6600 is rated by NSS at 3,767 Mbps, which is higher than the vendor-claimed performance; SonicWall rates this device at 3 Gbps. 3 Devices with signatures and engine rule definitions that are timestamped as above or later will have remediated versions. Updates take place automatically, so no additional action from the customer is required, so long as the device has Internet connectivity. This report is Confidential and is expressly limited to NSS Labs licensed users. 4

Test Methodology Next Generation Firewall (NGFW) Test Methodology v7.0 A copy of the test methodology is available on the NSS Labs website at www.nsslabs.com. Contact Information NSS Labs, Inc. 206 Wild Basin Road Building A, Suite 200 Austin, TX 78746 info@nsslabs.com www.nsslabs.com This and other related documents are available at: www.nsslabs.com. To receive a licensed copy or report misuse, please contact NSS Labs. 2017 NSS Labs, Inc. All rights reserved. No part of this publication may be reproduced, copied/scanned, stored on a retrieval system, e-mailed or otherwise disseminated or transmitted without the express written consent of NSS Labs, Inc. ( us or we ). Please read the disclaimer in this box because it contains important information that binds you. If you do not agree to these conditions, you should not read the rest of this report but should instead return the report immediately to us. You or your means the person who accesses this report and any entity on whose behalf he/she has obtained this report. 1. The information in this report is subject to change by us without notice, and we disclaim any obligation to update it. 2. The information in this report is believed by us to be accurate and reliable at the time of publication, but is not guaranteed. All use of and reliance on this report are at your sole risk. We are not liable or responsible for any damages, losses, or expenses of any nature whatsoever arising from any error or omission in this report. 3. NO WARRANTIES, EXPRESS OR IMPLIED ARE GIVEN BY US. ALL IMPLIED WARRANTIES, INCLUDING IMPLIED WARRANTIES OF MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE, AND NON-INFRINGEMENT, ARE HEREBY DISCLAIMED AND EXCLUDED BY US. IN NO EVENT SHALL WE BE LIABLE FOR ANY DIRECT, CONSEQUENTIAL, INCIDENTAL, PUNITIVE, EXEMPLARY, OR INDIRECT DAMAGES, OR FOR ANY LOSS OF PROFIT, REVENUE, DATA, COMPUTER PROGRAMS, OR OTHER ASSETS, EVEN IF ADVISED OF THE POSSIBILITY THEREOF. 4. This report does not constitute an endorsement, recommendation, or guarantee of any of the products (hardware or software) tested or the hardware and/or software used in testing the products. The testing does not guarantee that there are no errors or defects in the products or that the products will meet your expectations, requirements, needs, or specifications, or that they will operate without interruption. 5. This report does not imply any endorsement, sponsorship, affiliation, or verification by or with any organizations mentioned in this report. 6. All trademarks, service marks, and trade names used in this report are the trademarks, service marks, and trade names of their respective owners. This report is Confidential and is expressly limited to NSS Labs licensed users. 5