Notes:
- For licenses different from those listed above, contact us for a formal quote. Volume discounts are available.
- McAfee Host Intrusion Prevention includes ePO (Policy Orchestrator management console). It is required for centralized managment and administration.

DatasheetManaging security and controlling connectivity for the desktops and laptops that your employees use every day can be a real IT headache. Employees can inadvertently introduce worms, spyware, and other threats into your network through their desktops or laptops. The other side of the coin is that desktops are commonly the target of exploits like buffer-overflow attacks. This can compromise your data, put employees at risk, and result in lost productivity.
McAfee® Host Intrusion Prevention monitors and blocks such unwanted activity and makes it easier to keep desktops safe with multiple proven methods—system firewall, signature analysis, and behavioral analysis. And you can manage it all from one centralized console.
With automatic signature updates and zero-day protection, you get advanced vulnerability-shielding capabilities. Patching systems is something you will do less often and less urgently. You’ll also find it easier to comply with legal regulations. With a single agent for host intrusion prevention on your desktops, Host Intrusion Prevention is easy to deploy, easy to configure, and easy to manage.
Our firewall proactively defends and controls your desktops and laptops to combat new threats—and it helps you enforce policies. With Host Intrusion Prevention, you can define firewall rules based on how systems connect to your network. After a system establishes a network question, quarantine mode checks to see if the computer is out of date or out of compliance. If that’s the case, network access is restricted until security issues are cleared up.
Standalone products have cumbersome unintegrated management platforms, making it difficult to deploy the comprehensive protection you need against today's blended threats. Host Intrusion Prevention integrates into your existing McAfee® ePolicy Orchestrator® management platform, for accurate, scalable, and easy-to-use advanced desktop protection.
Benefits:
- Aggressive, comprehensive protection for your desktops
Three layers of protection—behavioral rules, signatures analysis, and firewall protection—prevent intrusions, protect assets, and safeguard desktops and laptops. McAfee Host Intrusion Prevention even protects your desktop systems against unknown (zero-day) attacks. And it’s easy to manage all your desktops, regardless of location, from a single centralized console.
- Protect enterprise desktops worldwide
McAfee Host Intrusion Prevention is centrally managed and scalable, so that you can deploy it across your entire enterprise for complete global protection with multiple language support
- Stay ahead of threats with prioritized patch management
Use the power of McAfee Host Intrusion Prevention against new vulnerabilities and exploits when they hit for more time to research, test, and deploy patches
- Lower your costs and simplify management
Reduce the frequency and urgency of patching systems; with its centralized streamlined management, you will also lower system maintenance costs
Features:
- Vulnerability shielding
Automatic security content updates target specific vulnerabilities; it recognizes unknown exploits and stops them from executing; security content updates do not require system reboots
- Prevents buffer-overflow exploits
McAfee Host Intrusion Prevention uses a patented host intrusion technology to prevent buffer-overflow attacks, one of the most common methods of attacking desktops
- Blocks removable USB media
By blocking the use of removable USB media, you can stop viruses or worms from being inadvertently loaded onto desktops, reduce data theft, and enforce corporate lock-down policies
- Desktop firewall protection
With desktop firewall, you can apply different firewall policies based on how your system connects to the network; you can also quarantine noncompliant systems as they attempt to connect to the network and block system ports
- Advanced application protection
McAfee Host Intrusion Prevention puts an "envelope" around an application to prevent it from communicating with other applications; this prevents applications from being leveraged in any type of attack
System Requirements:Note: The following are minimum system requirements only. Actual requirements will vary depending on the nature of your environment.
- Microsoft® Windows® (English, French, German, Spanish, Japanese, Korean, Traditional Chinese)
- Microsoft Windows NT 4.0 Workstation (SP6a)
- Microsoft Windows NT 4.0 Server (SP6a)
- Microsoft Windows NT 4.0 Enterprise Server (SP6a)
- Microsoft Windows 2000 Professional (up to SP4)
- Microsoft Windows 2000 Server and Advanced Server (up to SP4)
- Microsoft Windows XP (up to SP2)
- Microsoft Windows 2003 Server (up to SP1) Supported Web server platforms: IIS 4.0, 5.0, and 6.0 (Microsoft Windows)
- Supported database server platforms: Microsoft SQL Server 2000 (Microsoft Windows) SP3a, SP4