Global Command Center - Configuration Management Tool Details
The Configuration Management Tool prevents configuration errors that expose your network to attack. It provides role-specific access to security policy settings using a graphical, object-based environment.
Configuration Management Is Business-Critical
According to IDC analyst Chris Christiansen, "60 to 70 percent of all firewalls are mis-configured," rendering them... "worse than useless." That's why an effective mechanism for configuration management is critical to securing your business.
The Configuration Management tool provides an efficient and intuitive graphical environment where you implement security policies simply by defining objects once and then reusing them wherever they're needed. Global Command Center supports many types of objects, including firewalls and firewall groups, hosts, networks, address ranges, endpoint groups, and services.
Flexible and powerful Intelligent Objects take on the properties specified for a particular device. For example, an administrator can define rules using a generic Mail Server host endpoint object and have each device resolve the address when the rules are propagated.
Manage Complex and Dynamic Security Policies
An enterprise security policy may require hundreds of rules deployed across a fleet of firewalls and secure content management solutions. You need an efficient way to compare your security policy to your security implementation. With Global Command Center, you can selectively view the rules for a particular firewall, firewall group, or the entire organization and then modify those rules easily using inline editing.
Policies change or attacks threaten? Just update the affected objects and Global Command Center can instantly apply those changes to all CyberGuard solutions across the enterprise.
You can even compare policy configurations on all of your Global Command Center managed devices to ensure consistency across your network. Robust configuration management features let you centrally track, trace and validate all policy changes.
Key Features and Benefits
- Graphical, object-based environment lets you define packet filtering and application layer gateway rules quickly and efficiently.
- Simplified VPN management lets you define and implement Mesh, Star and Remote Access topologies in three easy steps. Simply create the VPN peers, select the community type and edit the key exchange properties. Global Command Center creates the secure channels for you automatically.
- Consistency checking feature validates policies prior to distribution.
- Configuration back up and restore lets you recover from configuration errors or replicate a trusted configuration on a new system quickly and easily.
- Security policy audit report processes archived audit reports to spotlight configuration changes.
- Compliance report automatically collects and compares configuration data from all of your firewall/VPN appliances and alerts you instantly if any systems are found to benon-compliant with your security policy implementation.
- Full device import lets you upload configurations, make changes, and then export back to all devices, saving significant time and money.
- Control individual or groups of devices by re-initializing the network, rebooting, or terminating active sessions.
- Fault tolerant backup management automaticallyreplicates and synchronizes data between the Master database server and up to three Backup servers, eliminating a single point of failure.