This product is built upon Sun's very secure Trusted Solaris 8 operating system, which has been used by the U.S. Department of Defense for over 25 years. It is a hardened version of the Solaris operating system platform for deployment of high-security desktops, database servers, firewalls, and communication gateways.
Many companies are looking to secure their networks from wardriving attacks and the current advice is to put a VPN behind a wireless access point. With this in mind, the following product should be ideal. The aim of the product is to secure access to network infrastructure from wireless clients using the wireless transport layer security (WTLS) protocol, which is a wireless version of SSL.
The SafeGuard Biometrics product is straightforward in concept and execution, making use of smartcard and biometric technology to provide strong identity verification for workstation and network access, as well as making the same functionality available to other services such as email clients and the use of certificates.
Guardware produces a variety of innovative products, all of which have been well received. It was interesting, therefore, to see a keyboard product with integral fingerprint reader from this Hungarian company (although the keyboard is actually made in China).
The Instant Virtual Extranet (IVE) Access 3000 from Neoteris is a hardware/software hybrid SSL VPN appliance that offers users access to network resources securely. These resources also encompass web-enabled applications and email software (Lotus Notes and Microsoft Exchange), as well as Unix file shares.
iInventory is the latest version of LANauditor, which was launched back in 1990. This package can audit not only Windows-based PCs but also Macs and Linux systems. However the console that runs the whole show must be installed under Windows. The vendors recommend installing the software on a workstation instead of a server as it is claimed it is more secure, offers greater data throughput and clients do not need to access any part of the main program or data.
K2 builds upon KeyServer's success as a desktop management application to include auditing, in effect integrating software auditing and metering into one package. The client end can run on Windows, Macs and thin-clients, while the server can be hosted from any Windows-based PC as well as Macs, Novell Netware and Linux/ Unix.
PC-Duo from Vector Networks has now reached version 2.0. The suite comprises of modular components that can be bought in when needs dictate. Like other desktop management systems PC-Duo includes modules such as Inventory Management, Remote Control, Software Distribution, Diagnostics, Software Metering, and web-based helpdesk tracking.
GASP is probably most famous for being the auditing software of choice for the Business Software Alliance. A free download of a version of this software is available on its web site. However, it can only audit up to 100 PCs and is time-limited. The version we reviewed is very much angled at the enterprise managing thousands of systems.
A complete Tripwire system consists of two components: Tripwire for Servers, which is an agent that must be installed on all servers that are to be protected; and Tripwire Manager, which provides central management for any number of Tripwire for Servers agents. Communications between server agents and management workstation are secured using the secure sockets layer (SSL) protocol.
Applock/Web works for web servers based on Microsoft IIS running on Windows NT/2000. It locks down both operating system and web server application. It auto-discovers which files are associated with web server functions (this may include web content and web scripts) and locks them down. It works within the operating system at the kernel level.