
McAfee Database Activity Monitoring
Problem Statement
Value Proposition
Competition
Questions to Ask
Database
Activity
Monitoring
• Not enough knowledge about who is
accessing the data
• Unauthorized or undesired access to the
database
• Customer is not able to patch all the
databases timely
• Customer need to be compliant
• Protecting the customers most valuable data
stored in databases
• Detect and/or prevent unauthorized access
to the database
• Virtual Patching allows a better planning for
patching and reduce the need to patch
• Helps to enforce Compliance in the database
(PCI-DSS, HIPAA, SOX ...)
• Auditing accessing or modifying data
• Flexible reporting for Auditors, Security
Team, Management
• Where are the sensitive data?
• Do you install all the patches after they are
released by the vendor?
• Do you use databases which are not longer
supported by the vendor?
• Do you get any info or alert, when a high
priviliged user (e.g. Database Administraor)
accesses data he should nnot access?
• Are your databases compliant?
• Oracle – needs a specific server for
scanning the network traffic
• Imperva – networkbased appliance
• Guardium (IBM) – networkbased appliance
• All of them „see“ the incoming SQL-
Statement, McAfee DAM „sees“ also the
targeted objects inside the database
PRODUCT INFO
Security Server
Version 4.3.0
McAfee ePO 4.5 and up
MS Windows Server 2003
Service Pack 2 (SP2) and up
Microsoft SQL Server 2005
SP1 and up
Database Sensor
Version 4.3.0
Oracle Version 8.1.7 and up
(Sun Solaris, IBM AIX, Linux,
HP-UX, Microsoft Windows)
MS SQL Server 2000 or up
(on all supported MS-
plattforms)
Sybase ASE 12.5 or up
(on all supported MS-
plattforms)
PRODUCT LINKS
SMP Product Site
SMP Sales Play
SMP Competitve
Sales Presentation (PPT)
Datasheet (ENG)
McAfee Website (ENG)
Reference Spotlight
Evaluation Link
System Requirements (KB)
Komentarze do niniejszej Instrukcji