Imperva - Database and Application Security, Reporting and Audit Solutions.Imperva SecureSphere - MX Management Server

Comprehensive Centralized Data Security Management

 

Overveiw:

The SecureSphere MX Management Server is a centralized management platform for multiple SecureSphere gateways. It provides a single point for aggregating security policy, hierarchical security management, real-time monitoring, logging, auditing and compliance reporting. The SecureSphere MX Management Server can simultaneously manage the SecureSphere Data Security Suite, Web Application Firewall, Database Activity Monitoring, and Database Firewall under a single console.

The SecureSphere MX Management server uniquely provides a unified global view of Data Security for applications and databases. Combined with its innovative risk management Risk Explorer, the MX Management server helps organizations focus their activities and priorities based on a full picture of their data security environment.

Management Architecture

Benefits:

  • Scales to support large, distributed deployments by centrally provisioning and managing multiple SecureSphere gateways
  • Hierarchical and role-based administration to support complex environments and large federated organizations
  • Enables MSSPs and large enterprises to apply unique security policies to specific customers or applications
  • Visibility into the complete data security lifecycle to enable automated and repeatable security process
  • Minimizes operational overhead due to intuitive policy creation and automated application and database learning

MX Management Server Features

  • Centralized Administration – The SecureSphere MX Management Server centrally provisions, manages, upgrades, and monitors multiple SecureSphere gateways, including heterogeneous Web and database security deployments. Changes are made on the MX Management Server and automatically distributed to multiple gateways with a single click.
     
  • Hierarchical Management – An extremely flexible hierarchical grouping mechanism allows administrators to classify the IT assets being monitored. This enables large enterprises, ASPs and MSSPs to create groupings of their enterprise by physical sites, customer, business unit, management function or other logical classification.
     
  • Flexible User and Role Definition – The SecureSphere MX Management Server provides role-based management capability to enable custom administrative roles and groups. Administrators can define roles, grant privileges and assign users to them. Coupled with hierarchical management, this model greatly eases management as well as security.

SecureSphere Alert
The Dashboard provides an overall status of all SecureSphere gateways and the applications, servers and databases managed, giving an instantaneous snapshot of enterprise-wide compliance and security status

  • Unified Audit Data Viewing and Management – A distributed auditing architecture distributes database audit collection, data storage and analytical processing across multiple appliances. The SecureSphere management server presents high-level audit views while distributed gateways handle recording and storage of detailed logs. When compliance managers need to drill down from high-level views to detailed logs, the management server automatically retrieves the required information from distributed gateways. Audit information may be periodically archived to external devices to meet long term audit needs.
     
  • Unified Real-Time Alert Monitoring – Real-time alerts originating from multiple SecureSphere gateways and of various types, such as database profile violations and Web application protocol exceptions, are collected, prioritized and presented to the administrator within a single unified view. Alerts notifications may be sent via email, phone, pager, and SNMP messages. There is no need to connect to individual devices distributed throughout the data center.
     
  • Centralized Reporting – A robust reporting framework provides a wealth of pre-defined reports, while offering complete flexibility for creating custom reports and templates appropriate for unique reporting situations, and integrating the analytical tools necessary for documenting compliance relevant to specific business environments.
     
  • Task Oriented Workflow – A workflow engine allows task creation and management. This enhances operational efficiency by allowing large and small organizations to focus their efforts in compliance and security projects.

Features and Appliance Specifications:

 

Features Specifications:
Management
  • Intuitive Web User Interface (HTTP/HTTPS)
  • Command Line Interface (SSH/Console)
Provisioning
  • Centrally provisions, manages, and monitors up to 15 SecureSphere gateways
  • Supports distributed, heterogeneous deployments of Web and database gateways
Out-of-Band Management
  • Out-of-band management supported via out-of-band management ports in SecureSphere gateways
Management Communications
  • SSL encrypted communications between MX Management server and SecureSphere gateways
Policy/Signature Updates
  • Security updates provided weekly or immediately for critical threats
Hierarchical Management
  • Policies may be defined hierarchically, via a flexible, object –oriented policy framework.
Role-Based Administration
  • Completely customizable roles and privileges
  • Users can be assigned to roles
Alerts
  • SNMP
  • Syslog
  • Email
  • Integrated graphical reporting
  • Real-time dashboard
High Availability
  • MX Management Server High Availability mirrors configuration and provides immediate failover
Workflow
  • Task-oriented workflow engine

 

SecureSphere MX Management Appliances

The SecureSphere MX Management Server unifies the configuration, monitoring, auditing and reporting of large, distributed SecureSphere gateway deployments. Available in two models, the MX Management Server hardware satisfies the most stringent performance, security and reliability requirements. Expansion options plus redundant fans, power supplies and hard drives make the M150 model the ideal choice for demanding data center environments. The MX Management Server can manage any combination of SecureSphere Web Application Firewalls, Database Monitoring Gateways and SecureSphere Database Security Gateways

Appliance Specifications:
  Imperva M150 Imperva M100
  M150 M100
Fault Tolerance Dual, hot-swap hard drives, power supplies, and fans N/A
Interfaces 2 x 1GbE 2 x 1GbE
Interface Types Copper Copper
Hard Drive 2 hot-swap 300 GB 300 GB
Memory 4 GB 4 GB
Serial Port RJ45 connector RJ45 connector
USB Port 2 2
LOM or Fibre Channel Optional N/A
Power Supply Dual 400 W 200 W
AC Power 100-240V, 50-60 Hz 100-240V, 50-60 Hz
Typical Consumption 190 W 110 W
Typical Heat Output 650 BTU/Hr 375 BTU/Hr
Form Factor 2U 1U
Dimensions 17.4 x 20.1 x 3.46 in
(443 x 512 x 88 mm)
17 x 14 x 1.73 in
(431.8 x 355.2 x 44 mm)
Weight 22.7 Kg (50 lbs) 6.4 Kg (14.1 lbs)
Operating Environment Temperature: 5° - 40° C, Relative Humidity: 20% - 90%
Storage Environment Temperature: 0° - 70° C, Relative Humidity: 20% - 90%
Safety Agency Approval CE/FCC/cTUVus/VCCI