HP Network Protector SDN Application Administrator Guide

by switch CPU through a Service Insertion tunnel. The desired best performance for application is
achieved with switches that support OpenFlow and tunnel technology for Service Insertion.
For more information about Service Insertion, see the HP Service Insertion Guide Wired Switches
K/KA/WB 15.15 in the SDN information library at http://www.hp.com/go/sdn/infolib.
Figure 2 Service insertion mechanism
HP TippingPoint RepDV Cloud Service
TippingPoint Reputation Digital Vaccine (RepDV) is a subscription service that enables organizations
to monitor and block inbound and outbound communications with known malicious and undesirable
hosts. RepDV is a robust security intelligence feed powered by advanced analytics and a global
reputation database of IPv4, IPv6, and DNS names.
The RepDV database includes more than a million known malicious or undesirable hosts collected
from HP TippingPoint ThreatLinQ global intelligence network, DVLabs malware repository and
honeypot network, third-party commercial sources, and open source black lists. A threat score of
1 to 100 is assigned to each entry based on DVLabs analysis of the activity, source, category,
and threat. Customers can tune RepDV policies based on reputation score, category, or geolocation
to meet custom security requirements. RepDV is updated multiple times a day to stay ahead of
emerging threats and reduce customers security risk.
The application interfaces with the RepDV Cloud service to download the RepDV database and
update its local copy of the same. This database forms the basis of DNS hostname comparisons
after being filtered based on policies defined within the application. The application polls for
updates every two hours (adjustable from the GUI) from the service to keep itself updated of new
threats.
ArcSight CEF Logger
ArcSight is the universal log management solution to unify logs across the IT to collect, store, and
search. HP ArcSight Logger can improve compliance, risk management, security intelligence, IT
operations, and efforts that prevent insider and advanced persistent threats. This universal log
management solution collects machine data from any log-generating source and unifies the data
HP TippingPoint RepDV Cloud Service 9