{"product_id":10238,"v_id":10238,"product_name":"SecureSphere 6","certification_status":"Not Certified","certification_date":"2009-02-20T00:00:00Z","tech_type":"Wireless Monitoring","vendor_id":{"name":"Imperva Inc.","website":"www.imperva.com"},"vendor_poc":"Amichai Shulman, Nir Naaman","vendor_phone":"972-3-6840103","vendor_email":"shulman@imperva.com","assigned_lab":{"cctl_name":"Leidos Common Criteria Testing Laboratory"},"product_description":"<p class=\"BodyTextIndent2\" style=\"margin: 3pt 0in;\"><span style=\"font-size: 10pt;\"><span style=\"font-family: Times New Roman;\">Imperva <span style=\"mso-field-code: ' DOCPROPERTY  TOE  \\* MERGEFORMAT ';\">SecureSphere 6</span> is an IDS/IPS that monitors network traffic between clients and servers in real-time, analyses that traffic for suspected intrusions, and provides a reaction capability. Reaction options include recording and monitoring suspected traffic and ID events, blocking traffic, and generating alarms containing event notifications. Database auditing allows you to record selected user database queries for audit purposes. Web queries and responses can also be selectively recorded. In addition, monitored databases can be actively scanned to identify potential vulnerabilities. </span></span></p>\r\n<p class=\"MsoNormal\" style=\"margin: 0in 0in 0pt;\"><span style=\"font-size: x-small;\"><span style=\"font-family: &quot;Times New Roman&quot;,&quot;serif&quot;;\">Imperva SecureSphere 6 includes the following gateway and Management Server appliances running the SecureSphere 6 software image: G4, G8, G16, MX, <span style=\"font-family: &quot;Times&quot;,&quot;serif&quot;; mso-bidi-font-size: 10.0pt;\">G4 FTL</span><span style=\"font-family: &quot;Times&quot;,&quot;serif&quot;; mso-bidi-font-size: 10.0pt;\">, G8 FTL</span></span><span style=\"mso-bidi-font-size: 10.0pt;\"><span style=\"font-family: Times;\"> and MX FTL</span></span><span style=\"font-family: &quot;Times New Roman&quot;,&quot;serif&quot;;\">.</span></span></p>","evaluation_configuration":"","security_evaluation_summary":"<p class=\"Body\" style=\"margin: 0in 0in 6pt;\"><span style=\"font-size: x-small; font-family: Times;\">The evaluation was carried out in accordance with the Common Criteria Evaluation and Validation Scheme (CCEVS) process and scheme. The criteria against which the Imperva SecureSphere 6 TOE was judged are described in the Common Criteria for Information Technology Security Evaluation, Version 2.3.<span style=\"mso-spacerun: yes;\">&nbsp; </span>The evaluation methodology used by the evaluation team to conduct the evaluation is the Common Methodology for Information Technology Security Evaluation, Version 2.3.<span style=\"mso-spacerun: yes;\">&nbsp; </span>SAIC determined that the evaluation assurance level (EAL) for the product is the EAL 2 family of assurance requirements augmented with ALC_FLR.1.<span style=\"mso-spacerun: yes;\">&nbsp; </span>The product, when configured as specified in the installation guides and user guides, satisfies all of the security functional requirements stated in the Imperva SecureSphere 6 Security Target.<span style=\"mso-spacerun: yes;\">&nbsp; </span>A validator on behalf of the CCEVS Validation Body monitored the evaluation carried out by SAIC.<span style=\"mso-spacerun: yes;\">&nbsp; </span>The evaluation was completed in February 2009.<span style=\"mso-spacerun: yes;\">&nbsp; </span>Results of the evaluation can be found in the Common Criteria Evaluation and Validation Scheme Validation Report for Imperva SecureSphere 6 prepared by CCEVS.</span></p>","environmental_strengths":"<p><span style=\"font-size: 10pt;\">Imperva SecureSphere 6 is a commercial IDS/IPS product that provides:<span style=\"mso-spacerun: yes;\">&nbsp; </span>Data Collection, ID Analysis, Actions, Audit, Security Management, and TSF Protection security functions.</span></p>","features":[]}