Datasheet
McAfee Firewall Enterprise
Control Center Advantages
•
Quickly search for rules and
objects to reuse in existing or
new rewalls.
•
Dene packet ltering and
application-layer rules quickly
and efciently in a graphical,
object-based environment.
•
Use wizards to reduce the
size and complexity of your
rule base, reduce overlaps
and duplications, and
simplify common tasks like
VPNdeployments.
•
Receive, consolidate, and
display customized alerts from
managed rewalls through a
secure channel.
•
Validate policy consistency and
understand rule interactions
prior to distribution.
•
Import rewall congurations,
make changes, and then export
back to all devices, saving
signicant time andeffort.
•
Backup and restore rewall
congurations to recover from
conguration errors, or replicate
a trusted conguration on a
new system quickly and easily.
•
Control individual or groups of
rewalls by re-initializing the
network or rebooting.
•
Cost-effectively manage
multiple entries, organizations,
or conguration domains
(for managed services) or
organizations.
•
Track all user actions in a session
by associating them with a
changeticket.
•
Support audit and regulatory
compliance by viewing all
changes in the audit trail with
the change ticketnumber.
•
Automatically update all
rewalls with the latest
software releases andpatches.
•
Right-click on a rewall in
McAfee Firewall Enterprise
Control Center and launch
immediate command line
accessvia SSH.
Figure 2. McAfee Firewall Enterprise Control Center centralizes and eases management of multiple rewalls.
Intuitive dashboard and real-time
auditviewer
The rewall dashboard provides quick details on
system status, allows simple conrmation and
updating of security services, and highlights
the latest number of applications discovered
and policies in use over your chosen time span.
Additionally, the real-time audit viewer within the
console helps you keep abreast of active rules
and troubleshoot issues. You can lter audit logs
using predened or custom lters, color code the
results to accentuate threat events, and schedule
automatic exporting of data to reporting systems,
like McAfee Firewall Reporter or McAfee Security
Innovation Alliance partner products.
Central administration
In environments with multiple rewalls, rewall
administrators can use the local rewall
administration console for full policy and device
conguration, to set up and monitor dashboards,
and to perform troubleshooting by viewing packet
captures and logs in real time.
But how do you see the big picture? How do you
capture economies of scale and reduce overlaps
in rules, policies, and operations? The optional
McAfee Firewall Enterprise Control Center
dedicated or virtual appliance centralizes rewall
management across multiple rewalls, boosting
consistency and slashing maintenance effort.
McAfee Firewall Enterprise Control Center helps
you implement rewall security conguration
settings, policies, and policy changes quickly,
easily, and accurately across your entire rewall
infrastructure. This integrated environment unites
all of the McAfee rewall management tools.
Powerful yet simple rule creation, validation,
and distribution
An enterprise security policy may require hundreds
of rules deployed across a eet of rewalls. Large
policies with many rules are harder to manage and
increase the chance of user error, which puts the
network at risk.
The McAfee Firewall Enterprise Control
Center environment helps you construct and
optimize policies to minimize the number of
rules, streamlining execution for better rewall
performance. You can allow the trafc and
inspections that you need, without extra checks
that slow it down.
McAfee Firewall Enterprise Control Center
includes graphical, fully integrated policy
management tools that handle your entire
enterprise network—from the edge to the
core. The single rule policy concept available for
local administration is enriched here to match
the challenges of managing multiple systems,
handling complex network topologies, and
reusing rules. As you dene powerful rules to take
full advantage of ltering and protection features
and act on applications and users, McAfee Firewall
Enterprise Control Center helps you leverage these
rules across your rewallinfrastructure.
Drag-and-drop rule “objects” make it easy to
congure, reuse, merge, optimize, troubleshoot,
and clean up (remove unused) policies as you
create specic congurations for each appliance
in a multirewall environment. To control access
to specic systems, such as database servers, you
can search by rules within objects, such as IP
address or port. Just drag and drop the resulting
rule objects to the correct rule elds to create or
update access controls. Before you update the rule,
just click to see if there are overlaps and conrm
that the rule will re.