{"id":6879,"date":"2023-10-25T09:00:32","date_gmt":"2023-10-25T07:00:32","guid":{"rendered":"https:\/\/partnernews.sophos.com\/fr-fr\/?p=6879"},"modified":"2024-07-04T12:30:07","modified_gmt":"2024-07-04T12:30:07","slug":"sophos-firewall-v20-active-threat-response","status":"publish","type":"post","link":"https:\/\/partnernews.sophos.com\/fr-fr\/2023\/10\/products\/sophos-firewall-v20-active-threat-response\/","title":{"rendered":"Sophos Firewall\u00a0v20\u00a0: r\u00e9ponse active aux menaces (Active Threat Response)"},"content":{"rendered":"<p>Avec Sophos Firewall\u00a0v20 <a href=\"https:\/\/community.sophos.com\/sophos-xg-firewall\/sfos-v20-early-access-program\/b\/announcements\/posts\/sophos-firewall-v20-early-access-announcement\" target=\"_blank\" rel=\"noopener\">d\u00e9sormais disponible en acc\u00e8s anticip\u00e9<\/a>, nous allons vous pr\u00e9senter, dans chaque article, une nouvelle fonctionnalit\u00e9, et ce jusqu\u2019au lancement.<\/p>\n<p>Dans l\u2019article de la semaine derni\u00e8re, nous avons abord\u00e9 les <a href=\"https:\/\/partnernews.sophos.com\/fr-fr\/2023\/10\/products\/sophos-firewall-v20-azure-ad-enhancements\/\" target=\"_blank\" rel=\"noopener\">nouvelles am\u00e9liorations au niveau de l\u2019authentification et d\u2019Azure AD<\/a> dans Sophos Firewall\u00a0v20. Cette semaine, nous examinerons l\u2019une des fonctionnalit\u00e9s phares de cette version\u00a0: la r\u00e9ponse active aux menaces (Active Threat Response).<\/p>\n<p>La r\u00e9ponse active aux menaces am\u00e9liore consid\u00e9rablement le temps de r\u00e9ponse.\u00a0 Cette fonctionnalit\u00e9 \u00e9tend principalement la s\u00e9curit\u00e9 synchronis\u00e9e (Synchronized Security) aux analystes Sophos MDR et XDR, permettant ainsi une r\u00e9ponse instantan\u00e9e et automatis\u00e9e aux adversaires et menaces actifs.<\/p>\n<h2>Comment la r\u00e9ponse active aux menaces fonctionne-t-elle\u00a0?<\/h2>\n<p>Si un analyste identifie une nouvelle menace communiquant avec un serveur command &amp; control, il peut transmettre les renseignements sur les menaces (Threat-Intel) au pare-feu depuis Sophos Central via une nouvelle API de flux de menaces. Le pare-feu commencera alors \u00e0 coordonner une d\u00e9fense imm\u00e9diatement et automatiquement, sans avoir besoin d\u2019une intervention manuelle ou de nouvelles r\u00e8gles de pare-feu. Tout h\u00f4te tentant de communiquer avec la menace bloqu\u00e9e sera signal\u00e9 par un signal Security Heartbeat ROUGE et sera ainsi isol\u00e9, emp\u00eachant tout mouvement lat\u00e9ral et stoppant net la menace en question. Elle fonctionne avec la m\u00eame efficacit\u00e9, quelle que soit la m\u00e9thode d\u2019identification initiale de la menace\u00a0: l\u2019analyste, un syst\u00e8me endpoint, le pare-feu ou le NDR.<\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"alignnone wp-image-6880 size-full\" src=\"https:\/\/partnernews.sophos.com\/en-us\/wp-content\/uploads\/sites\/3\/2023\/10\/image001-2.png\" alt=\"\" width=\"1431\" height=\"764\" \/><\/p>\n<p>Regardez cette courte vid\u00e9o qui vous pr\u00e9sentera cette nouvelle fonctionnalit\u00e9\u00a0:<\/p>\n<p><iframe loading=\"lazy\" class=\"vidyard_iframe\" title=\"Sophos Firewall\u00a0v20\u00a0: R\u00e9ponse active aux menaces avec Flux de menaces MDR\" src=\"\/\/play.vidyard.com\/kysi9dTRDCRHuPFgPi2AEr.html?\" width=\"640\" height=\"360\" frameborder=\"0\" scrolling=\"no\" allowfullscreen=\"allowfullscreen\"><span data-mce-type=\"bookmark\" style=\"display: inline-block; width: 0px; overflow: hidden; line-height: 0;\" class=\"mce_SELRES_start\">\ufeff<\/span><span data-mce-type=\"bookmark\" style=\"display: inline-block; width: 0px; overflow: hidden; line-height: 0;\" class=\"mce_SELRES_start\">\ufeff<\/span><\/iframe><\/p>\n<p>Cette nouvelle fonctionnalit\u00e9 de r\u00e9ponse automatis\u00e9e change v\u00e9ritablement la donne pour les clients Sophos MDR et XDR qui utilisent Sophos Firewall.<\/p>\n<p>&nbsp;<\/p>\n<h2>D\u00e9couvrez toutes les nouvelles fonctionnalit\u00e9s de la v20<\/h2>\n<p>Sophos Firewall\u00a0v20 inclut de nombreuses nouvelles fonctionnalit\u00e9s int\u00e9ressantes. Consultez la liste compl\u00e8te des am\u00e9liorations apport\u00e9es en t\u00e9l\u00e9chargeant notre <a href=\"https:\/\/assets.sophos.com\/X24WTUEQ\/at\/w8vnx57qw4vhs997fbknp2j\/sophos-firewall-key-new-features.pdf\" target=\"_blank\" rel=\"noopener\">Guide des nouveaut\u00e9s<\/a> (PDF).<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Profitez, d\u00e8s \u00e0 pr\u00e9sent, de toutes les nouvelles fonctionnalit\u00e9s de SFOS\u00a0v20.<\/p>\n","protected":false},"author":19,"featured_media":3000006677,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"advanced_seo_description":"","jetpack_seo_html_title":"","jetpack_seo_noindex":false,"_jetpack_memberships_contains_paid_content":false,"footnotes":""},"categories":[74],"tags":[9,216,111],"coauthors":[45],"class_list":["post-6879","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-products","tag-programmes-dacces-anticipe","tag-sfos-v20","tag-sophos-firewall"],"jetpack_featured_media_url":"https:\/\/partnernews.sophos.com\/en-us\/wp-content\/uploads\/sites\/3\/2023\/09\/featured-image-sophos-firewall-v20.png","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/partnernews.sophos.com\/fr-fr\/wp-json\/wp\/v2\/posts\/6879","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/partnernews.sophos.com\/fr-fr\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/partnernews.sophos.com\/fr-fr\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/partnernews.sophos.com\/fr-fr\/wp-json\/wp\/v2\/users\/19"}],"replies":[{"embeddable":true,"href":"https:\/\/partnernews.sophos.com\/fr-fr\/wp-json\/wp\/v2\/comments?post=6879"}],"version-history":[{"count":2,"href":"https:\/\/partnernews.sophos.com\/fr-fr\/wp-json\/wp\/v2\/posts\/6879\/revisions"}],"predecessor-version":[{"id":6890,"href":"https:\/\/partnernews.sophos.com\/fr-fr\/wp-json\/wp\/v2\/posts\/6879\/revisions\/6890"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/partnernews.sophos.com\/fr-fr\/wp-json\/"}],"wp:attachment":[{"href":"https:\/\/partnernews.sophos.com\/fr-fr\/wp-json\/wp\/v2\/media?parent=6879"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/partnernews.sophos.com\/fr-fr\/wp-json\/wp\/v2\/categories?post=6879"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/partnernews.sophos.com\/fr-fr\/wp-json\/wp\/v2\/tags?post=6879"},{"taxonomy":"author","embeddable":true,"href":"https:\/\/partnernews.sophos.com\/fr-fr\/wp-json\/wp\/v2\/coauthors?post=6879"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}