Product Overview
MetaDefender ICAP Server integrates into your existing network devices to provide an additional layer of security for file uploads, file downloads, and file transfers. It is designed to prevent malware outbreaks, data breaches, and compliance violations by scanning files for malware, vulnerabilities, and sensitive data at the network perimeter.
With multiple threat detection and prevention technologies integrated via the lightweight internet content adaptation protocol (ICAP), MetaDefender ICAP Server can analyze every file for potentially malicious content and sensitive data before it reaches the internal network or endpoints, helping organizations meet security and compliance requirements.
How MetaDefender Core and MetaDefender ICAP Server Work Together
OPSWAT's MetaDefender Core provides advanced file security capabilities, including AV multiscanning, file sanitization, DLP, advanced sandbox analysis, and more. While integration with MetaDefender Core can be achieved through a full REST API, OPSWAT offers multiple native and bespoke integrations to simplify adding MetaDefender to your file workflows.
MetaDefender ICAP Server functions as a simplified interface to perform file scanning with MetaDefender Core. The ICAP Server integrates with network security appliances (firewalls, load balancers, proxies, application delivery controllers, WAFs, etc) and with MetaDefender Core, allowing all file-based traffic moving through the network device device to be secured.
MetaDefender ICAP Server can integrate to your environment in less than 5 minutes, offering advanced file security at the perimeter of the network - without requiring any network architecture changes.
MetaDefender Platform Features & Benefits
MetaDefender Core manages the file analysis process using multiple proprietary OPSWAT technologies, including:
- Multiscanning leverages 30+ commercial AV/anti-malware engines to detect a broad range of known threats.
- Deep CDR (Content Disarm and Reconstruction) sanitizes files by removing potentially malicious content and reconstructing safe, usable versions, effectively preventing zero-day attacks or unknown threats.
- Proactive DLP (Data Loss Prevention) identifies and redacts or blocks sensitive information within files to help meet compliance requirements.
- File-Based Vulnerability Assessment detects known vulnerabilities within software components.
- Emulation-based, anti-evasion Sandbox rapidly performs deep inspection of files to identify and extract malicious hyperlinks and other indicators of compromise (IOCs) to quickly inform threat investigations.
Common Use Cases
File Upload Security
Protect network and application web servers by inspecting file uploads for malware and malicious content they reach your application.
Enterprise Secure File Transfer and Storage
Prevent malicious files from spreading through mass transfers of business documents across organizations with collaboration platforms or via SRA-protected connections into air-gapped environments.
Web Traffic Security and SSL Inspection
Prevent malicious files from being downloaded by internal employees or users. Screen web traffic before it reaches your secured network.
ICAP Integration Diagram

MetaDefender Platform
OPSWAT's MetaDefender solution provides additional integration options to easily implement advanced File Security in your organization. Whether you need to secure file uploads for a web application or files at rest in storage or files on the move with an MFT - on-prem, in the cloud, or somewhere in-between, OPSWAT can meet you where your data is.
