Tuesday | 2 December, 2008
Lab test: BorderWare Security Platform
BorderWare boasts high accuracy and excellent content management features, but is plagued by false positives and difficult LDAP configuration
Logan G. Harbaugh (InfoWorld) 10/04/2008 09:42:28

The BorderWare Security Platform (v7.1), running on the SP-800 appliance, had the worst false positive performance of any product tested, and by a large margin: nine critical false positives and 171 bulk false positives. Its filtering rate was 96 per cent of spam caught, an acceptable number but below the median. To reduce the false positives, you'll need to count on a training period of several weeks during which users inspect the quarantine carefully and whitelist the senders from whom they want to receive e-mail.

The BorderWare SP-800 is capable in some areas, but difficult to configure. Although LDAP configuration looks organized, it is hard to get right, exacerbated by help examples that are more often misleading than useful. The procedure is extremely clumsy: the initial screens don't suggest proper syntax, so you have to iron out the query in test mode (where help screens do provide useful info), then edit it again in the initial LDAP setup until it finally works. Further, the LDAP settings are not carried over from one part of LDAP to another; you need to configure five different queries to set up for domain, users, mail, aliases, and so forth. Another annoyance, which can't be changed, is that the admin interface times out after 30 minutes.

On the upside, the BorderWare interface is clean and easy to navigate, with context-sensitive help that is generally useful. The content management features were extensive and capable, with pre-built lists of phrases available in several categories and the capability of applying weights so that it takes three or more offensive words from one list, or two or more from another list to trigger the filter, for instance. The SP-800 can also inspect zip archives and hold encrypted e-mail for inspection. The integrated URL filter intended to stop phishing and spyware by blocking downloads and access to malicious sites worked reasonably well, but blocked legitimate sites while allowing access to some bad ones. It stopped 77 per cent of phishing messages and blocked 8 legitimate messages from banking sites.

BorderWare offers extensive enterprise-class features such as access control by user, group, or domain; good reporting and notification controls; policy-based encryption; centralized management of multiple devices; clustering; IM protection; policy-based rules; and the capability to integrate with F5 load balancers.

Pricing for the SP-800 is at the high end of the field, although not out of line for the rich feature set. However, considering the middling filtering accuracy and high rate of false positives, most administrators will want to look at some of the alternatives first.

Return to: Mail security challenge

Computerworld Buyer's Guide - Vendors Matched to this Article
More about BorderWare, V7, F5
Computerworld Buyer's Guide - Vendors Matched to this Article
Additional Resources
Executive Guides
Whitepapers
Zones
Zone logoZones provide focussed content from Computerworld and leading technology partners.
Newsletter Subscription
Sign up for our Computerworld newsletters!
RSS Feeds
Market Place

 

Smart SOA World Tour

Discover how SOA can create smarter outcomes for your business.

Attend and learn:

  • How SOA is helping leading companies to become more agile
  • Where you should be applying SOA processes in your company
  • The top SOA implementation mistakes to avoid

Click here for more information.
Whitepaper

Refresh your AUP: Top tips to ensure your acceptable use policy is fit for purpose

Your organisation may well have devised and implemented an Acceptable Use Policy (AUP) some time ago in order to guard against the risks of inappropriate use of computer systems by your workers, but are you confident that your AUP remains 'fit for purpose'? Read on to discover how you can enhance the effectiveness of your AUP.

Enterprise IT Buyer's Guide
Find Technology Vendors Fast
 
Find vendors by name | Find by category
Sponsored Links