September 30, 2008
Free Newsletters :

SecureTrack

Configuration Change Monitoring and Reporting for Firewalls

SecureTrack provides configuration change monitoring, reporting, and alerting features specifically for corporate firewalls. Check Point, Cisco PIX, and Juniper/Netscreen firewalls are all supported.

The product is deployed on a central Red Hat (Enterprise Linux, CentOS) server. For Check Point firewalls, the product tracks all changes made by admins (watching for policy saves or installs) logged onto a Check Point SmartDashboard or Provider-1 GUI (the Provider-1 or SmartCenter servers being monitored should be of version NG FP3 or higher). When such changes are noted, the central server uses OPSEC to retrieve the policy, storing it in its own internal DB for subsequent analysis. For Cisco PIX (v 5/6/7) and Juniper/Netscreen firewalls, the product periodically logs into the firewall via SSH, retrieving the firewall's policies and ACLs and translating them into the product's internal XML rule base format.

In both cases, once the policies are stored on the device, they are analyzed for changes; with alerting features supported to notify specified individuals as needed. Notifications can be sent in the form of E-mail reports, syslog messages, or SNMP traps.

SecureTrack leverages this configuration change repository to perform multiple monitoring/alerting features especially for security administrators or compliance officers. For example, organizational policies can be defined, with SecureTrack automatically providing notifications whenever a firewall configuration has been changed such that it violates those policies (such as allowing inbound telnet access). The vendor states that change reports detail both who made the change, and what firewalls were affected.

Other features include:

- Store and compare incremental policy changes in a graphical side by side view, with changes highlighted

- Report on the history of a specific rule; i.e., how and when it was changed over time

- Report on expired rules

- Generate rule usage reports which detail which rules are most-, least-, or un-used

- Support for usage analysis at the object level for Check Point, allowing for the identification of unused network and service objects

- Included best practice settings allowing for the generation of automated security audits of Check Point firewall configurations

- Support for the monitoring of Check Point FireWall-1 OS components; including network interfaces, routing tables and system resources (including CPU usage, memory, and disk space)

- Support for Cisco and Juniper Virtual Firewalls

Also available from the vendor is an appliance-based version of the product. Two appliances are initially available: The T-500, for medium-to-large organizations; and the T-1000 for Service Providers or large Enterprise.

New to SecureTrack is the inclusion of the PCI-DSS Audit Report for security devices, which is based on PCI-DSS v1.1. The PCI-DSS Audit Report is expected to be available on June 30, 2008.

SecureTrack is available now. Base pricing is $5,000 for the software version and $6,000/$16,500 for the T-500 and T-1000, respectively (appliance pricing includes 1-year next business day onsite support and 24x7 helpdesk support).

Contact Tufin Software Technologies for further information.

product submission by EITPlanet Staff

fact sheet
ID#: 1176477785
date posted: Jun. 4, 2008
category: Security:Firewalls
platform: Red Hat Enterprise Linux 3/4; CentOS 3/4
vendor: Tufin Software Technologies Ltd
(www.tufin.com)


Security

Anti-spam | Anti-virus | Biometrics | Encryption | Filtering/Monitoring | Firewalls | Identity | Intrusion Detection/Prevention | Personal Utilities | Privacy | Security Administration Tools | Tools

Latest category updates via our RSS feed
RSS




JupiterOnlineMedia

internet.comearthweb.comDevx.commediabistro.comGraphics.com

Search:

Jupitermedia Corporation has two divisions: Jupiterimages and JupiterOnlineMedia

Jupitermedia Corporate Info


Legal Notices, Licensing, Reprints, & Permissions, Privacy Policy.

Advertise | Newsletters | Tech Jobs | Shopping | E-mail Offers

Solutions
Whitepapers and eBooks
IBM Whitepaper: Service Component Architecture Enabling XML Web Services for Java Programmers
IBM Whitepaper: Innovative Collaboration to Advance Your Business
Intel Article: Using Power & Display Context in the Intel Mobile Platform SDK
Internet.com eBook: Real Life Rails
IBM SCA Center Article: Simplifying Composite Applications with Service Component Architecture
Intel PDF: Quad-Core Impacts More Than the Data Center
Internet.com eBook: The Pros and Cons of Outsourcing
Go Parallel Article: Scalable Parallelism with Intel(R) Threading Building Blocks
Intel PDF: Analysis of Early Testing of Intel vPro in Large IT Departments
Internet.com eBook: Best Practices for Developing a Web Site
Intel PDF: IT Agility through Automated, Policy-based Virtual Infrastructure
IBM CIO Whitepaper: The New Information Agenda. Do You Have One?
Microsoft Article: BitLocker Brings Encryption to Windows Server 2008
IBM Whitepaper: Service Component Architecture & Java EE Integration
Microsoft Article: RODCs Transform Branch Office Security
Go Parallel Article: James Reinders on the Intel Parallel Studio Beta Program
Avaya Article: Advancing the State of the Art in Customer Service
IBM Whitepaper: How are other CIOs driving growth?
Adobe Acrobat Connect Pro: Web Conferencing and eLearning Whitepapers
Avaya Article: Avaya AE Services Provide Rapid Telephony Integration with Facebook
Go Parallel Article: Getting Started with TBB on Windows
HP eBook: Storage Networking , Part 1
MORE WHITEPAPERS, EBOOKS, AND ARTICLES
Webcasts
Go Parallel Video: Intel(R) Threading Building Blocks: A New Method for Threading in C++
HP Video: Is Your Data Center Ready for a Real World Disaster?
HP On Demand Webcast: Virtualization in Action
Go Parallel Video: Performance and Threading Tools for Game Developers
Rackspace Hosting Center: Customer Videos
Intel vPro Developer Virtual Bootcamp
HP Disaster-Proof Solutions eSeminar
HP On Demand Webcast: Discover the Benefits of Virtualization
MORE WEBCASTS, PODCASTS, AND VIDEOS
Downloads and eKits
Download: IBM WebSphere Application Server V7.0 Feature Pack for Service Component Architecture
Actuate Download: Free Visual Report Development Tool
Microsoft Download: Silverlight 2 Software Development Kit Beta 2
30-Day Trial: SPAMfighter Exchange Module
Red Gate Download: SQL Toolbelt
IBM SCA Download: Start Building SCA Applications Today
Iron Speed Designer Application Generator
Microsoft Download: Silverlight 2 Beta 2 Runtime
MORE DOWNLOADS, EKITS, AND FREE TRIALS
Tutorials and Demos
IBM IT Innovation Article: Green Servers Provide a Competitive Advantage
Microsoft Article: Expression Web 2 for PHP Developers--Simplify Your PHP Applications
Featured Algorithm: Intel Threading Building Blocks - parallel_reduce
MORE TUTORIALS, DEMOS AND STEP-BY-STEP GUIDES