SHARE
Follow this article on Twitter Facebook LinkedIn Bookmark and Share
Home >> Security >> Security Products, Practices and Infrastructure

Enterprise firewall maintenance from central hub

Enterprise firewall maintenance from central hub

By:  Kathleen Lau  On: 01 Nov 2007 For: ComputerWorld Canada Creator

Secure Technologies CommandCenter is designed for companies with enterprise-grade devices at different sites, and can help configure multiple security policies

Centrally managing corporate firewalls by way of virtual systems can reduce the complexity of multiple security policies and varying compliance requirements typically faced by large multinationals.

A San Jose, Calif.-based enterprise gateway security vendor, Secure Computing Corp., seeks to provide that extended control to IT managers with CommandCenter, an add-on to its existing firewall products, Sidewinder and SnapGear.

CommandCenter is designed for companies of varying sizes, but in particular those with disparate enterprise-grade devices or remote offices, said the company's vice-president of product management, Scott Montgomery.

"You may have 75 per cent of the devices that you're managing with CommandCenter at your corporate data centre or data centres, but then you may have more remote regional headquarters or disaster recovery sites or other kinds of remote facilities as well," he said.

By creating virtual instances of the CommandCenter, large multi-nationals, in particular, he said, can centrally manage the configuration of security policies and easily create, validate and distribute those policies. If necessary, he added, policies could be re-used across a number of firewalls.

An IT manager can also control staff administrative access to certain firewalls by assigning someone like an in-house auditor, for instance, with security policy and log viewing privileges but no authority to make policy changes. Access can also be assigned to firewalls in specific business units, geographical locations, or a combination of both.

"It's a central place to manage policies without having to go device by device."

Actually, the often complex issue of regulatory compliance is addressed through assigning security policies geographically because it lets globally-based companies adhere to a particular country's privacy law, he added.

Through virtual interfaces, organizations can assign a dedicated global security team who establishes "overarching rules" for the enterprise, and who can then delegate the more granular administrative capabilities to remote locations, said James Quin, senior research analyst with London, Ont.-based Info-Tech Research Group.

"It's not a case of Bob over in Burma managing the firewall and I have no idea how he's doing it," said Quin.

He added that if an employee violated company policy or made a mistake that jarred with regulatory compliance requirements, it could be monitored and corrected.

With CommandCenter, said Montgomery, the IT manager can manage software updates and patches, eliminating the labour of maintaining individual firewalls across the organization.

And the ability to monitor activity and run reports across a firewall or a group of firewalls, he added, helps assess which systems are operating, for instance, at a higher than expected CPU rate, and which ones bore external attacks and of what nature.


Sign up for our Newsletters












Print |  Views: 803   |   Rating:offoffoffoffoff  (0 votes)
Rate this article on a scale of
1 to 5 stars,5 being the best.




Kathleen Lau Kathleen Lau was a senior writer with ITWorldCanada.com and ComputerWorld Canada from December 2006 to August 2011.In her role as senior writer, she covered broadly technology news and issues r... more

Related Content

HP enters security space with application scanning
HP enters security space with application scanningNearly two years after acquiring SPI Dynamics, HP is updating WebInspect and its Assessment Management Platform to help spot software errors before they turn into major problems
Aging firewalls pose security risks
Aging firewalls pose security risksThe succession of admins maintaining geriatric corporate firewalls often leave a trail duplicated rules and security holes that lay an organization open to various attacks
Opinion Pinning down policy
Opinion Pinning down policyHow often have you heard, "I'm not sure you can do that; there isn't a policy in place?" I hear it too often, because I hate writing policies. And I hate writing policies because at a very engineering-centric company like mine, generic policies don't go over well.
McAfee partners with ArcSight
mcafee inc. has signed arcsight inc. to be part of its mcafee security innovation alliance. as a result of the partnership, arcsight will integration its siem platform with mcafee’s epolicy orchestrator (epo). th
blog comments powered by Disqus