

AirMagnet Enterprise is a centralized system that proactively protects WiFi networks and users from all types of threats, ensures maximum network performance and uptime and arms staff with the tools to solve problems quickly and remotely. AirMagnet Enterprise does this by going to the true source of WiFi threats and problems – the airspace itself.
The solution provides full-time automated analysis of all WiFi traffic, channels, devices, their connection state as well as optional spectrum analysis of non-WiFi devices and sources of interference. This full time view lets you get to the root-cause of any problem instead of just seeing the symptoms, while ensuring full visibility and control over the wireless boundary between your network assets and the outside world.
AirMagnet Enterprise takes action to defend the wireless environment by automatically blocking, tracing and mapping any threat in addition to an unmatched suite of event alerting, escalation, remote troubleshooting, forensic analysis, and professional PCI and compliance reporting. The end result is a unified system that keeps WiFi under your control – performing safely and meeting the needs of your users and applications.
The industry’s first software-based sensor which runs on Windows PCs delivers basic wireless security monitoring at a very low cost structure and enables true client based performance measurement. This new flexibility to combine SSA-based sensors with hardware sensors allows users to build the wireless monitoring solution which is best optimized for their requirements and budget.
Automated Health Check provides the fastest and most accurate way to detect and pinpoint the cause of problems which impact the productivity of WLAN users. Software or hardware sensors actively probe the network from the wireless user’s perspective, to verify connectivity across the wireless link to critical network resources. AHC reduces the costs associated with user productivity loss and troubleshooting process caused by complex wireless problems.
AirMagnet Enterprise scans all possible 802.11 channels (including the 200 extended channels), ensuring there are no blind spots where rogue devices may be hiding. AirMagnet Enterprise goes beyond Wi-Fi analysis with optional spectrum analysis that detects and classifies RF jamming attacks, Bluetooth devices and many other non-802.11 transmitter types, such as unapproved wireless cameras.
The AirWISE engine constantly analyzes all wireless devices and traffic using a combination of frame inspection, stateful pattern analysis, statistical modeling, RF analysis and anomaly detection, enabling detection of hundreds of specific threats, attacks and vulnerabilities such as rogue devices, spoofed devices, DoS attacks, man-in-the-middle attacks, evil twins, as well as the most recent hacking tools and techniques such as MDK3, Karmetasploit and 802.11n DoS attacks.
Dynamic Threat Update technology speeds the creation, automation and immediate deployment of new threat signatures through the AirMagnet AirWISE® engine. As soon as any new threat definition is ready, it can be deployed with no impact to system operation, providing a unique framework for maintaining the most up-to-date WLAN security posture for the enterprise.
Threat Tracing, Blocking & Mapping All devices are traced using a suite of wired and wireless tracing methods to quickly and reliably determine if a device is connected to the wired network. The system uses a newly enhanced set of sophisticated techniques, including use of SNMP, automated switch discovery, and hardware and traffic analysis, to ensure accurate, fast tracing in any network topology.
Threats can be manually or automatically remediated with a combination of both wired and wireless threat suppression. Wireless blocking targets a threat at the source and specifically blocks the targeted wireless device from making any wireless connections. Wired blocking automatically closes the wired switch port where a threat has been traced.
All threats and devices can be located on a map or floorplan and set to trigger rogue alarms based on the device’s location.
AirMagnet Enterprise offers the only solution in the industry to meet the established standards of a mission critical security application. It is the only system to build fault-tolerance into each component, with fail-over boot images in every sensor and automatic server fail-over licenses that come standard with the system. Additionally, AirMagnet Enterprise sensors can operate as fully independent IDS/IPS nodes detecting and remediating threats without losing information, even if the network connection to the server is lost for days.
With intelligent sensors that locally analyze Wi-Fi and RF conditions, more than 1,000 sensors can be supported through single centralized server in the data center, requiring minimal network bandwidth.
Processing at the sensor level means that each sensor continues to enforce the security policy even if connection to the server is lost for more than 24 hours. Hot standby server software (included) enables fully redundant data center operations for maximum wireless security protection.
AirMagnet Enterprise can capture a complete packet or RF forensic record of any network event, allowing appropriate staff to investigate the issue issue in depth, at any time. By leveraging its unique intelligent sensors, AirMagnet Enterprise provides the only solution in the industry to automatically capture forensic information from before, during and after the event.
In addition to rich security features, AirMagnet Enterprise constantly monitors the health of the wireless LAN and RF environment to proactively detect evolving problems that can lead to an interruption to the network. The system detects these issues, gives engineers topical remediation advise and includes active remote tools to troubleshoot the issue. This allows staff to avoid network downtime and vastly reduce the time-to-fix for any outage, leading to more uptime, improved user satisfaction and a higher performing network.
The AirMagnet Enterprise system can monitor the RF Spectrum and 802.11n traffic. AirMagnet Enterprise performs a complete interference analysis of the air. This includes co-channel interference from Wi-Fi devices, as well as optional spectrum analysis of non-Wi-Fi devices, such as microwave ovens, cordless phones or legacy wireless equipment.
AirMagnet Enterprise goes beyond simple 802.11n support to provide managers with hands-on 802.11n optimization tools and intelligence focused on real-world performance and network throughput. Tools include live diagnostics of any 802.11n connection that automatically highlights and explains how performance can be improved.
AirMagnet Enterprise provides automated compliance reporting for all major network regulations including PCI, HIPAA, Sarbanes-Oxley, GLBA and more. Reports provide instant visibility into issues that may need to be addressed for compliance and exactly what needs to be fixed. Reports can be scheduled to run and delivered automatically, ensuring a complete library of regulatory reports in the case of an audit.
| Title/Description | Download | |
Wireless Solutions Brochure
Wireless Solutions Brochure | Download PDF (1.49 MB) |
| Title/Description | Download | |
AirMagnet Enterprise Datasheet
AirMagnet Enterprise Datasheet | Download PDF (4.67 MB) |
| Title/Description | Download | |
Overlay vs. Integrated Wireless Security
This paper examines 3 approaches for Wireless Intrusion Prevention. | Download PDF (829 KB) | |
Dynamic Wireless Threat Protection
Analyst Lisa Phifer examines dynamic threat protection technology for wireless intrusion prevention systems (WIPS). | Download PDF (1.2 MB) |
Jordan School District, located in West Jordan, Utah, serves more than 50,000 students across 33 elementary schools, nine middle schools, eight high and technical schools and three specialty schools. The district employs more than 4,500 faculty and staff across its 55 locations.
Challenges
With more than 55 locations, 1,300 access points (APs) and 25,000 networked devices, the district’s wireless network supports more than 50,000 students and faculty and is essential to the day-to-day operations of the district and individual schools.
For optimal performance, it is recommended that AirMagnet Enterprise run in a Server/Database/Client configuration where the server, database and console run on separate machines.
Server operating systems*
Microsoft® Windows Server® 2008 (Standard or Enterprise, 32 or 64 bit), Windows Server 2003 (Standard or Enterprise, 32 bit, Service pack 2) or Windows® XP Professional (Service Pack 3). Windows Server 2003 or Windows Server 2008 is required for a deployment with more than 20 AirMagnet sensors.
Supported databases
Microsoft SQL Server® (2000, 2005, 2008), Oracle® 10g -11g, PostgreSQL® (64 bit use v9.0.5, 32 bit use v8.4.9-1) or Microsoft Access® (Access not recommended for larger deployments).
Console operating systems*
Microsoft Windows 7 (Service Pack 1), Windows Server 2003 (Service Pack 2), Windows XP (Service Pack 3).
* Server and console installations require local admin rights.
Hardware Specifications
Small business |
Medium Sized Business Up to 500 sensors |
Enterprise |
||
| Server | Processor | Intel® Xeon® Processor E3 | Intel® Xeon® Processor 5000 or greater recommended | Intel® Xeon® Processor 5000 or greater recommended |
| RAM | 2 GB available for the AME application | 2 GB available for the AME application | 2 GB available for the AME application | |
| Hard disk space | 146 GB available | 300 GB available | 300 GB available | |
| Ethernet | 10/100 Mb or higher | 1 Gb or greater | 1 Gb or greater | |
| Database | Processor | Intel® Xeon® Processor E3 | Intel® Xeon® Processor E3 | Intel® Xeon® X5600 Series CPU |
| RAM | 4 GB / 1333 MHz or faster | 8 GB / 1333 MHz or faster | 12 GB / 1333 MHz or faster | |
| Hard disk space | 146 GB available 10,000 RPM SAS recommended |
146 GB available 10,000 RPM SAS recommended |
300 GB available 15,000 RPM SAS recommended |
|
| Database max size | 5 GB | 10 GB | 15 GB | |
| Ethernet | 1 Gb or greater, full duplex | 1 Gb or greater, full duplex | 1 Gb or greater, full duplex | |
| Console | Processor | Intel® Core i5 or greater | Intel® Core i5 or greater | Intel® Core i5 or greater |
| RAM | 3 GB | 3 GB | 3 GB | |
| Hard disk space | 500 MB | 500 MB | 500 MB | |
| Ethernet | Ethernet connection | Ethernet connection | Ethernet connection |
Important Notes:
VMware Specifications
| VMware ESX or ESXi 3.5-4.1 |
100 sensors | 300 sensors | Up to 500 sensors per virtual machine | |
| Per VMware Server | Processor | Intel® Xeon® Processor X5000 series or greater recommended | Intel® Xeon® Processor X5000 series or greater recommended | Intel® Xeon® Processor X5000 series or greater recommended |
| RAM | 4 GB available for the AME application | 8 GB available for the AME application | 8 GB available for the AME application | |
| Hard disk space | 60 GB available 10,000 RPM SAS recommended | 80 GB available 15,000 RPM SAS recommended |
120 GB available 15,000 RPM SAS recommended | |
| Ethernet | 10/100 Mb or higher | 1 Gb or greater | 1 Gb or greater | |
| Per VMware Database | Processor | Intel® Xeon® X5000 series or greater recommended | Intel® Xeon® X5000 series or greater recommended | Intel® Xeon® X5000 series or greater recommended |
| RAM | 4 GB / 1333 MHz or faster | 8 GB / 1333 MHz or faster | 8 GB / 1333 MHz or faster | |
| Hard disk space | 80 GB available 10,000 RPM SAS recommended | 120 GB available 15,000 RPM SAS recommended |
160 GB available 15,000 RPM SAS recommended |
|
| Database max size | 5 GB | 10 GB | 15 GB | |
| Ethernet | 1 Gb or greater, full duplex | 1 Gb or greater, full duplex | 1 Gb or greater, full duplex | |
Important Notes:
