China Information Security | Only by achieving these six points can it be called the "next generation" fortress
Release time: 2019.04.25 | Source: China Information Security

"Fortress machine", also known as unified security management and integrated audit system, is a product widely used in the security field. It can provide users with a set of multi-dimensional operation and maintenance control and auditing solutions, and it plays an irreplaceable role in the waiting guarantee. The role of.

 

To put it simply, the bastion machine acts as a gatekeeper, and all requests to network devices and servers pass through it. It can filter out illegal access to the target device, and audit and monitor the misoperation and illegal operation of internal personnel, so as to track the responsibility afterwards.

 

As a product that has been developed for more than ten years, the bastion machine technology has been continuously improved and the application has become more mature. However, the changes in market demand under new technologies and new application environments have also strongly promoted the emergence of transformative products in the field of bastion machines. .

 

Recently, on the shore of West Lake, Palladium officially released the next generation of bastion machine (PAM), namely Privilege Account Management Center (Privilege Account Management Center) at the National Channel Partner Conference.



Why Palladium?

 

As we all know, the first to launch the fortress machine product and promote the development of this industry is Palladium Technology, and Palladium and Palladium Technology are originally one.

 

In the words of Chen Yun, General Manager of Palladium, “Security is fundamentally a management issue, and security and management must be integrated.”

 

It is precisely because of this that Palladium, which was established in the later period, focused on security management, focusing on the three major directions of management security, database security, and log big data analysis. Palladium will continue to cultivate in the field of fortress machines, but it will become a subsidiary of Palladium in the future.


Focusing on security management, Palladium has created a series of products such as IAM (identity authentication and access security management system, IAM-CASB business fortress, DAM database monitoring and auditing system, log security analysis system, database application security defense system, etc.), focusing on the data center Core security helps users fully implement security protection and compliance management in the data center field.

 

With what functions can it be called the next-generation bastion machine

 

Focusing on security management does not mean that the status of the fortress is weakened. On the contrary, the role of the fortress as an indispensable role is crucial.

 

Chen Yun believes that the traditional fortress machine manages people, and now it manages people and machines. Today, when digital transformation has become a wave of enterprise informatization, under the impetus of security management, the bastion host will become the only way to access the enterprise data center, and will develop into an independent and unified account-centric security management platform. In charge of the account and access control of the data center infrastructure, it will become the core management platform of the future data center. But the traditional bastion machine can no longer meet the security requirements of the era of automated operation and maintenance, and the era of automated operation and maintenance requires a new bastion machine.


 

How to better adapt to the new information environment and integrate new operation and maintenance tools is Palladium’s constant exploration goal. After more than ten years of technology and market accumulation, Palladium believes that the fortress machine has evolved from technology to market. There has been a qualitative and inter-generational leap in demand. At this time, the release of the next-generation bastion host not only redefines the functions of the bastion host, but also meets the security management needs of future data centers.

 

"Achieving these six points can be called the next-generation fortress machine." Palladium Director Wang Feng said that the reason why Palladium emphasized the PAM (next-generation fortress machine) this time is because it has seen the market now and in the future. According to the requirements, the following six key functions have been realized.




  1. Programmable environment channel. Automatic program penetration can be carried out. Through the API interface, the operation and maintenance automation is no longer outside the law, and the entire automation process can be managed and audited.

     

    Supports highly reliable clusters and distributed deployments. The volume of the data center is getting larger and larger, and the corresponding bastion machine also needs to adapt to it, and it needs to support clustering and distributed deployment in any environment.

     

    Support mobile management and operation and maintenance BYOD. In the era of mobile Internet, mobile management and operation and maintenance have gradually become rigid demands. The next-generation bastion machine PAM can conduct multi-faceted management and operation from the perspective of managers and operators through dedicated apps.

     

    Data security control. Data security is the core concern of enterprises, and it is necessary to solve the problem of unauthorized copying and leakage of data during the operation and maintenance process.

     

    Account security management. All accounts in the server and the network can be collected with one click, and their status can be seen at a glance, and the most complete single sign-on can be achieved.

     

    High experience, high convenience. Customize management of account permissions, support multiple browsers, provide customers with a visual permission matrix display, and provide one-stop security settings.

     

    Wang Feng emphasized that the next-generation bastion machine PAM not only has all the functions of the traditional bastion machine, but will also provide unified and independent account management and channel control services for the data center infrastructure. The data center infrastructure is programmable. At this point, SDN, SDS, ITSM, CMDB, automated operation and maintenance, various network management software, etc., will be able to program the data center infrastructure through the next-generation bastion machine to achieve closed-loop control and AI processing.

     

    With the release of the next-generation bastion machine PAM, 14 years of sharpening the sword, Palladium led by Chen Yun has undoubtedly become a well-deserved industry leader in the field of bastion machines.



At the meeting, Chen Yun said with a smile that he may be the oldest in the industry, an old programmer who is still writing code. But as a low-key corporate leader, “I’m here to do a good job of the technology that I see, and no one can drive it away.” It is this focus and persistence that Chen Yun’s “new era, new operation and maintenance” The goal of "New Fortress" is becoming reality step by step.




Copyright © 2019 All Rights Reserved Designed
Hangzhou pldsec Network Technology Co