|
Subtle changes to the registry which normally go unnoticed can seriously impact network security.
Xintegrity Professional's powerful registry modification detection abilities will detect new registry subkeys, removed registry subkeys and changed registry values. This detection ability includes changes to normally hidden
registry keys such as the SAM and SECURITY keys.
Xintegrity Professional detects any changes to the security access permissions of any file,
including whether any new accounts have been created, accounts that have been removed, and changes to every security permission associated with each account. The ability to detect changes to the security permissions of files is
essential to detecting unauthorised access to your network.
Xintegrity Professional also detects any changes to installed services and detects any new or
removed services, including all the services that are not normally visible via the management console.
Xintegrity Professional additionally detects any change to the contents of any file. Xintegrity
Professional will detect the smallest possible change to a file of unlimited size, and this protection is provided to any file type including operating system files. File integrity checking algorithms include MD5, SHA1, SHA256
and SHA512. This enables immediate identification of known and unknown rootkits [where an intruder will modify vital system files].
Xintegrity Professional's file modification detection abilities allow for monitoring of your other
security applications files. Imagine the impact to your network security if an intruder managed to modify your firewall files. With Xintegrity Professional you know for certain if any files have been modified.
When Xintegrity Professional detects a modified file it shows exactly when and how the file was
modified, displaying the contents of the file in comparison with an optionally backed up copy of the file.
Xintegrity Professional can automatically create protected backup files [ optionally encrypted with
256 bit AES ] which provides the ability of restoring a pre-modification version of the file. Xintegrity Professional can be configured to automatically restore modified files without any further interaction.
All of Xintegrity Professional's database files, report files and log files are encrypted with 256
bit AES which provides the highest possible level of protection.
Xintegrity Professional can send Email notifications [ optionally encrypted with 256 bit AES ]
whenever modifications are detected which makes Xintegrity Professional ideal for environments where multiple servers need to be monitored.
Xintegrity Professional never opens a socket itself which makes it particularly useful for high
security environments where open ports have to be kept to an absolute minimum.
Xintegrity Professional can be an essential component of your network security strategy, providing
intrusion detection via modification detection. Xintegrity Professional is suitable for enterprises of any size, and is compatible with Windows 2000, XP, and 2003 Server.
|