Dome9 launches automated firewall management service

Startup Dome9 Security is introducing automated management of firewall settings on servers in physical and virtual environments with the aim of keeping servers locked down with less manual configuration.

The company says the problem is that cloud-based servers are so diversely deployed and flexible that managing their security is complex and time consuming. As a result many servers are left with ports open by default when they could actually be closed most of the time.

Dome9's service seeks to automate some of that security by setting and enforcing policies on firewalls that are native to virtual or physical server operating systems. The service does not manage third-party firewalls.

RELEASE: HP's 'Secure Boardroom' gives execs comprehensive view of corporate security posture

The company says the service can lock down firewall ports, allowing access only to specified users during specified time windows but closing them at all other times. Administrative ports, for example, can be shut down by default and enabled per server on demand for a specific period of time and for a particular administrator or group.

The service also enables creating different privilege sets for different administrators or groups.

The service could be offered by cloud service providers or businesses could buy the service themselves. Cloud provider GoGrid says it will offer a service based on Dome9's technology. Customers who buy the Dome9 service directly from Dome9 can use it to manage firewall settings on servers within multiple cloud provider networks, the company says.

Customers can log in via username and password to Dome9's service and set access policies. Management access to the servers themselves is either through a firewall application programming interface or via a software client running on the server.

The client supports Windows 2008 R2, 2008, 2003 R2 and 2003 as well as Linux versions CentOS/RHEL 5.x and 6.0 and Debian 6.

The service provides auditing that enables viewing when users have logged in, altered policies and accessed machines.

For service providers, the company offers Dome9 Connect, which is software that integrates via API into management of Amazon Web Services EC2 and VPS security groups.

The services are available now. Pricing for business customers starts at $20 per server per month and increases with the number of servers and number of administrators. The company offers a free 14-day trial and a free personal plan in which a customer can support one server and one administrator.

Dome 9 is co-founded by former Check Point Software executive Zohar Alon, Dome9 CEO, and Roy Feintuch, the company's CTO. The company is funded by Opus Capital.

Read more about wide area network in Network World's Wide Area Network section.

Tags security

Keep up with the latest tech news, reviews and previews by subscribing to the Good Gear Guide newsletter.

Tim Greene

Network World

Comments

Comments are now closed.

Most Popular Reviews

Follow Us

Best Deals on GoodGearGuide

Shopping.com

Latest News Articles

Resources

GGG Evaluation Team

Kathy Cassidy

STYLISTIC Q702

First impression on unpacking the Q702 test unit was the solid feel and clean, minimalist styling.

Anthony Grifoni

STYLISTIC Q572

For work use, Microsoft Word and Excel programs pre-installed on the device are adequate for preparing short documents.

Steph Mundell

LIFEBOOK UH574

The Fujitsu LifeBook UH574 allowed for great mobility without being obnoxiously heavy or clunky. Its twelve hours of battery life did not disappoint.

Andrew Mitsi

STYLISTIC Q702

The screen was particularly good. It is bright and visible from most angles, however heat is an issue, particularly around the Windows button on the front, and on the back where the battery housing is located.

Simon Harriott

STYLISTIC Q702

My first impression after unboxing the Q702 is that it is a nice looking unit. Styling is somewhat minimalist but very effective. The tablet part, once detached, has a nice weight, and no buttons or switches are located in awkward or intrusive positions.

Latest Jobs

Shopping.com

Don’t have an account? Sign up here

Don't have an account? Sign up now

Forgot password?