|
 |
Overview |
 |
Vulnerabilities in the Network
The growing number of systems crossing between trusted and untrusted
networks poses a dangerous situation for organizations. Systems
catching a virus or Trojan on one network can infect another after
connecting to it. Traditional access control security such as authentication
and physical location do not prevent this problem.
Detailed security policies and software specifying proper endpoint
configurations provide a starting point. Without enforcement, however,
this provides limited protection because it depends on end user
participation and properly working systems. Users who do not dedicate
the proper effort to learn and comply with policies can jeopardize
the entire network.
Endpoint Enforcement
When using endpoint software to enforce access to the network, systems
without the endpoint software will bypass the "enforcement".
Although this approach works if all the systems are assumed to be
correctly configured, it fails for systems whose software has been
misconfigured, uninstalled, or new systems that do not have the
software at all.
 |
Network
Enforcement with CyberGatekeeper |
 |
Secure Enforcement - Untrusted Until Proven Trusted
CyberGatekeeper LAN and CyberGatekeeper Remote let systems access
the network only after verifying they comply with security policies.
If systems are not in compliance or do not participate in the audit,
they are kept in a quarantine network.
With network enforcement, systems that are unknown or whose configurations
are incorrect will be restricted to the quarantine network. Because
the enforcement is performed by the network, attempts to change
system settings, misconfiguring software, removing the agent, or
using a different system will not gain access to the network.
CyberGatekeeper LAN and CyberGatekeeper Remote allow compliant
systems in and keep dangerous systems out. CyberGatekeeper LAN is
used to control access for network access points on the LAN, and
CyberGatekeeper Remote controls access for remote systems over VPN,
NAS, and SSL. Both products ensure third party anti-virus software,
personal firewalls, operating system patches, and other software
is configured properly and up to date.
Key features of CyberGatekeeper provide administrators
with:
- Custom policy definitions
- Compulsory enforcement
- End user transparency
- Central management
- Scalability
- Ease of deployment
InfoExpress. Copyright ©
2007. All Rights Reserved.
|