PUBLICATION & RESEARCH LIBRARY

Authors: Thomas Skybakmoen

Publish Date: September 19, 2018

Next generation intrusion prevention systems (NGIPS) must provide organizations with the ability to identify both the applications and the users on their internal networks. As with their predecessors, NGIPS must protect the enterprise user against threats. Designed to identify and block attacks against internal computing assets, a good NGIPS can provide temporary protection and relief from the immediate need to patch affected systems. The NGIPS must catch sophisticated attacks while producing as few false positives as possible. This report uses data from NSS’ individual NGIPS Test Reports to create Security Effectiveness ratings for each product. Products are scored on multiple factors that affect their overall security effectiveness, including:

  • Exploit block rate
  • Evasions
  • Stability and reliability

PRODUCTS EVALUATED:

  • Forcepoint Forcepoint NGFW v6.3.6
  • Fortinet FortiGate 500E v5.6.4GA build 7892
  • Fortinet FortiGate 3000D v5.6.4GA build 7892
  • IBM QRadar XGS5200 v5.4.0.4
  • Juniper Networks SRX4200 v15.1X49-D140.2
  • Palo Alto Networks PA-5220 PAN-OS 8.1.2
  • Trend Micro TippingPoint 8400TX v5.1.0.4965

To learn how vendors performed, download a copy of each Test Report. NSS clients can also download the NGIPS Comparative Reports on Performance, Total Cost of Ownership (TCO), and SVM. As with all NSS Labs group tests, there was no fee for participation. In addition, the test methodology applied is in the public domain to provide transparency and to help enterprises understand the results.