IBM Sterling Secure Proxy
Secure partner access to your internal servers
Our Price: Request a Quote
Click here to jump to more pricing!
Please Note: All Prices are Inclusive of GST
Overview:
Advanced edge security for your inbound and outbound multi-enterprise data exchanges
IBM Sterling Secure Proxy provides a crucial DMZ-based security layer at the network edge, preventing directexternal access to internal servers to ensure trusted B2B and MFT exchanges.
By employing multifactor authentication, SSL session breaks, and protocol inspection, it secures network and data while in-flight anti-virus and data loss prevention actively neutralize malware and prevent unauthorized data outflow,safeguarding sensitive organizational information.
Highlights
- Provides a DMZ architecture with session termination for security
- Offers in-flight anti-virus scanning of inbound files
- Prevents data leaks with proactive Data Loss Prevention scans
- Captures detailed audit logs to meet compliance requirements
Features:
Certified containers
IBM Sterling Secure Proxy certified containers are enterprise-grade, security-hardened product editions with integrated common software services for consistent deployment lifecycle management. The scalable containers include easy iinstallation and configuration options, and upgrade and roll-back management.
Demilitarized zone application proxy
Provides a secure intermediary, a standalone server, as the demilitarized zone (DMZ). This is a sterile holding area until the partner is successfully validated. Then a separate session is established from the DMZ to the trusted zone.
Firewall navigation best practices
Minimizes rich targets in the DMZ by ensuring that files, user credentials and data are never stored on physical drives in the DMZ. Removes requirement for inbound holes in the firewall.
Perimeter security
Prevents direct communications between external and internal sessions by establishing secure session breaks in the DMZ using SSL or TLS encryption.
Multifactor authentication
Provides authentication options, including IP address, user ID and password, digital certificates, SSH keys and RSA SecurID.
In-flight virus scanning
Provides support for ICAP supported virus scanning engines to ensure files are scanned for malwares before it lands on the secure zone.
Benefits:
Data protection
Provides firewall navigation best practices to help ensure perimeter security for enhanced protection of your data and trusted zone.
Full authentication services
Offers multifactor authentication before connection to backend systems, for tighter controls and validation.
Advanced proxy features
Includes proxy support and functions to improve security of edge-based file exchanges.
Dynamic routing
Provides advanced routing to simplify infrastructure changes, saving time and reducing risk during migrations.
Specifications:
| IBM Sterling Secure Proxy Features | Inbound Edition | Outbound Edition | Premium Edition |
|---|---|---|---|
| Supported Incoming Protocols | CD, SFTP, HTTP, FTP/S | – | CD, SFTP, HTTP, FTP/S |
| Supported Outbound Protocols | Connect Direct | SFTP | CD & SFTP |
| Session Break at DMZ | Yes | Yes | Yes |
| User-Specific / Dynamic Routing of Requests | Yes | Yes | Yes |
| User ID and Password-Based Authentication | Yes | Yes | Yes |
| REST APIs for SSP Config Manager | Yes | Yes | Yes |
| CRL Checking | Yes | Not required for SFTP | Yes |
| User ID / IP Block Listing / Allow Listing | Yes | Allowed IPs / User IDs stored in SEAS | Yes |
| Virus Scanning of Incoming Files | Yes | – | Yes |
| HSM Support | – | – | Yes |
| Data Loss Prevention Scanning of Files | – | Yes | Yes |
Documentation:
Download the IBM Sterling Secure Proxy (.PDF)
Pricing Notes:
- All Prices are Inclusive of GST
- Pricing and product availability subject to change without notice.
Our Price: Request a Quote
