iPass Helps Mitigate Network Security Risks With New Policy Compliance Tools

New Service Helps Enterprise IT Identify and Address Endpoint Vulnerabilities

LONDON, United Kingdom – October 22, 2003 – iPass (Nasdaq: IPAS) today announced its new iPass Endpoint Policy Managementâ„? service. With this announcement, iPass becomes the first company to offer endpoint policy compliance integrated into a leading enterprise connectivity solution. This new service helps the IT department stay out in front of threats to the corporate network caused by worms, viruses and other malicious agents, reducing the risk of lost productivity and network downtime. It ensures that access to the corporate network is only given to end users who are running up-to-date and properly configured security and operating system software.

The iPass Endpoint Policy Management service is an optional addition to the iPass Corporate Accessâ„? service that enables enterprise remote and mobile workers to securely access their corporate network from over 20,000 access points in more than 150 countries, including over 3,500 Wi-Fi and Ethernet broadband locations. It enforces policies pertaining to VPN version and configuration, personal firewall version and policy rules, anti-virus version and definition files, and operating system updates and patches.

The new service enables IT managers to:

” Use the Web to configure fine-grained policies easily from a central location
” Ensure that end-user systems are checked for policy compliance before and during each connection
” Option to force immediate software updates for out-of-compliance endpoints
” Monitor compliance through Web-based reporting tools

This new capability is focused on mitigating the risks caused by events such as the summer of 2003’s worm attacks and is an extension of the ability of the iPass Corporate Access service to enforce, manage and administer policies around connection characteristics.

As with all aspects of iPass enterprise services, this capability is vendor-neutral. It allows the enterprise to take advantage of an optimal combination of best-of-breed security systems, while tying it all together with a single policy management solution.

“It’s not only the next virus or worm that keeps the IT manager sleepless at night, but also how to disseminate the remedy quickly across the entire user base in order to prevent or minimise damage,” said Eric Paulak, vice president and research director for Gartner, “There is a definitive need in the market for a solution that would give IT departments both the ability to force users into compliance at the time of connection as well as actively monitor the compliance status of their enterprise user base.”

The iPass Endpoint Policy Management service keeps connectivity simple for the user through integration with the award-winning iPassConnectâ„? service interface. Before allowing the user to connect to the corporate network, it identifies whether and how an endpoint is out of compliance and can automatically push out any required updates from iPass-hosted servers directly to the endpoint. This integrated approach allows the IT manager to protect the corporate network without impacting user productivity.

The new service also simplifies IT operations by way of configuration and reporting tools delivered through the iPass Portal, iPass’ Web-based operational interface. IT staff can use these tools to deploy and maintain policy configurations as well as monitor end-user policy compliance.

“As the recent worm attacks have made clear, the software environment has become so complex that it is difficult, if not impossible, to keep all applications and operating system components up to date,” said Jon Russo, vice president of marketing at iPass. “iPass has moved quickly to remedy this enterprise pain point, providing a solution that can deliver the needed protection to the network, a simple experience to the end user and powerful control capabilities to the IT manager.”

The iPass Endpoint Policy Management service will be generally available by the end of the year as an option for customers using iPass Corporate Access.

About iPass
iPass Inc. (Nasdaq: IPAS) is a software-enabled virtual network operator (VNO) that provides enterprise connectivity services permitting secure access to information and applications on corporate networks from over 150 countries around the world. iPass has built a global network comprised of over 20,000 access points, including an iPass Global Broadband Roaming (GBR) footprint of over 2,500 Wi-Fi hotspots and 1,000 Ethernet enabled venues at business-oriented locations such as airports, hotels and conference centers worldwide. The award-winning iPassConnectâ„? service interface simplifies the user connection experience and is easily deployed across multiple computing devices and operating systems. iPass service offerings also give enhanced control over security policy and connectivity management to information technology departments at iPass’ customers like General Motors, Dow Corning and Mellon Financial. Founded in 1996, iPass is headquartered in Redwood Shores, Calif., with offices throughout North America, Europe and Asia Pacific. For more information visit www.ipass.com.

iPass® is a registered trademark of iPass Inc.

The statements in this press release relating to the features and benefits to be obtained under iPass Endpoint Policy Management service as well as the timing for general availability of the service offering are forward-looking statements that are subject to risks and uncertainties that could cause results to be materially different than expectations. Such risks and uncertainties include, but are not limited to, unforeseen delays resulting from the execution of the research and development process. Further information on potential factors that could affect the financial results of iPass are included in the section entitled “Risk Factors” in iPass’ Prospectus filed on July 24, 2003, with the Securities and Exchange Commission. iPass assumes no obligations to update the information in this press release.

Don't miss