Security Basics mailing list archives

Re: zero-hour e-mail antivirus solutions


From: Anthony J Placilla <anthony_placilla () suth com>
Date: Thu, 01 Feb 2007 12:49:41 -0500



Francois Yang wrote:
I'm actually looking at something similar, and I'm currently
evaluating proofpoint.
They seem pretty good.  http://www.proofpoint.com/products/msg.php
I've talked to couple of their customers and they seem pretty happy.
any have any experience with Proofpoint that can comment on them?


On 2/1/07, Matt Miller <madmillerx () gmail com> wrote:
Hello folks.

I'm in the process of choosing an e-mail anti-virus gateway which has
some kind of outbreak detection features that can protect me during
zero-hour, before the signatures are released. Currently, it seems that
IronPort and CommTouch are the main players in this area. I was
wondering, what are your experiences with these zero-hour AV systems. As
I understand, CommTouch is more of a statistical analyzer, while
IronPort has a 24x7 team of analysts constantly monitoring the
SenderBase network.

Anyone using one of these systems? Any comments?

Thanks in advance.
Matt




We use ProofPoint  & like it. Enterprise of about 15k users

contact me off list if you would like more details


-- 
Tony Placilla, RHCT, GSEC
anthony_placilla () suth com


GPG-Key-ID: 1024D/C78F8B64              http://pgp.mit.edu
Key fingerprint = A8D5 7AFF CE88 4179 C792  D9A9 F197 2A15 C78F 8B64


Current thread: