Datasheet

McAfee Firewall Enterprise
Control Center Advantages
•
Quickly search for rules and
objects to reuse in existing or
new rewalls.
•
Dene packet ltering and
application-layer rules quickly
and efciently in a graphical,
object-based environment.
•
Use wizards to reduce the
size and complexity of your
rule base, reduce overlaps
and duplications, and
simplify common tasks like
VPNdeployments.
•
Receive, consolidate, and
display customized alerts from
managed rewalls through a
secure channel.
•
Validate policy consistency and
understand rule interactions
prior to distribution.
•
Import rewall congurations,
make changes, and then export
back to all devices, saving
signicant time andeffort.
•
Backup and restore rewall
congurations to recover from
conguration errors, or replicate
a trusted conguration on a
new system quickly and easily.
•
Control individual or groups of
rewalls by re-initializing the
network or rebooting.
•
Cost-effectively manage
multiple entries, organizations,
or conguration domains
(for managed services) or
organizations.
•
Track all user actions in a session
by associating them with a
changeticket.
•
Support audit and regulatory
compliance by viewing all
changes in the audit trail with
the change ticketnumber.
•
Automatically update all
rewalls with the latest
software releases andpatches.
•
Right-click on a rewall in
McAfee Firewall Enterprise
Control Center and launch
immediate command line
accessvia SSH.
Figure 2. McAfee Firewall Enterprise Control Center centralizes and eases management of multiple rewalls.
Intuitive dashboard and real-time
auditviewer
The rewall dashboard provides quick details on
system status, allows simple conrmation and
updating of security services, and highlights
the latest number of applications discovered
and policies in use over your chosen time span.
Additionally, the real-time audit viewer within the
console helps you keep abreast of active rules
and troubleshoot issues. You can lter audit logs
using predened or custom lters, color code the
results to accentuate threat events, and schedule
automatic exporting of data to reporting systems,
like McAfee Firewall Reporter or McAfee Security
Innovation Alliance partner products.
Central administration
In environments with multiple rewalls, rewall
administrators can use the local rewall
administration console for full policy and device
conguration, to set up and monitor dashboards,
and to perform troubleshooting by viewing packet
captures and logs in real time.
But how do you see the big picture? How do you
capture economies of scale and reduce overlaps
in rules, policies, and operations? The optional
McAfee Firewall Enterprise Control Center
dedicated or virtual appliance centralizes rewall
management across multiple rewalls, boosting
consistency and slashing maintenance effort.
McAfee Firewall Enterprise Control Center helps
you implement rewall security conguration
settings, policies, and policy changes quickly,
easily, and accurately across your entire rewall
infrastructure. This integrated environment unites
all of the McAfee rewall management tools.
Powerful yet simple rule creation, validation,
and distribution
An enterprise security policy may require hundreds
of rules deployed across a eet of rewalls. Large
policies with many rules are harder to manage and
increase the chance of user error, which puts the
network at risk.
The McAfee Firewall Enterprise Control
Center environment helps you construct and
optimize policies to minimize the number of
rules, streamlining execution for better rewall
performance. You can allow the trafc and
inspections that you need, without extra checks
that slow it down.
McAfee Firewall Enterprise Control Center
includes graphical, fully integrated policy
management tools that handle your entire
enterprise network—from the edge to the
core. The single rule policy concept available for
local administration is enriched here to match
the challenges of managing multiple systems,
handling complex network topologies, and
reusing rules. As you dene powerful rules to take
full advantage of ltering and protection features
and act on applications and users, McAfee Firewall
Enterprise Control Center helps you leverage these
rules across your rewallinfrastructure.
Drag-and-drop rule “objects” make it easy to
congure, reuse, merge, optimize, troubleshoot,
and clean up (remove unused) policies as you
create specic congurations for each appliance
in a multirewall environment. To control access
to specic systems, such as database servers, you
can search by rules within objects, such as IP
address or port. Just drag and drop the resulting
rule objects to the correct rule elds to create or
update access controls. Before you update the rule,
just click to see if there are overlaps and conrm
that the rule will re.