OPSEC Partners
Secure Passage
Product Version Certified: FireMon 4.0 for Windows and Linux
Certified For Use With: NG with Application Intelligence and NGX
Product Description: FireMon is the Security Operations solution that enables enterprises to track changes, enforce compliance, analyze policy usage, and optimize performance of firewalls and other security devices.
Four key features make up the FireMon solution:
Monitor: With FireMon, enterprises can actively monitor firewalls, routers, and other critical network devices for change. And with FireMon’s distributed data collection mechanism, a single installation can contain multiple data collectors communicating with one application server, and can scale to monitor thousands of devices.
Control: FireMon has the tools to help you control your network devices. With FireMon, administrators can compare configurations, create reports, view results in vendor-specific formats, and receive change notices.
Analyze: FireMon helps enterprises understand how their security stacks up against various corporate, regulatory, and industry security practices. FireMon also has tools that enable enterprises to test security policies before they are implemented.
Optimize: FireMon’s policy optimization tools identify used and unused rules and objects in a security policy, as well as usage frequency. With FireMon’s policy usage analysis, enterprises can determine where policies can be shortened, simplified and reorganized for improved firewall efficiency.
Company Description: Secure Passage is the leading provider of Security Operations solutions. Headquartered in Kansas City, MO, Secure Passage provides innovative security applications to some of the largest enterprise and government organizations in the world.
The security and software professionals who started Secure Passage saw many enterprises struggling to manage their security operations. We wanted to help maintain security in growing corporate networks where business demanded complex changes to critical security devises. We believed that if security teams could more easily manage changes to their devices, better security would be a natural result. So in 2001, Secure Passage released the industry’s first firewall monitoring and configuration analysis software.
Secure Passage is still leading the industry in creating innovative security operations applications. We continue to build on the strategy that grew our flagship product from a firewall analysis tool into the leading Security Operations solution: to develop tightly integrated, interoperable software with a flexible architecture that helps network security teams better manage their security environments.
Key Features and Benefits
- Improves security by providing proactive and continuous configuration analysis.
- Increases administrator efficiency by simplifying change management tasks.
- Optimizes firewall performance by analyzing policy usage and identifying configuration performance issues.
- Reduces downtime with real-time alerting and immediate access to change information.
- Enforces compliance with internal and regulatory requirements.
OPSEC Integration
The FireMon Data Collector uses the OPSEC CPMI API to retrieve policy information from Check Point management servers. Administrators can select their preferred SIC method for CPMI authentication and encryption. And through CPRA, FireMon provides automatic OPSEC object creation and SIC certificate generation to accelerate the monitoring setup process.
The FireMon Data Collector uses the OPSEC LEA API to collect usage data from Check Point log servers. This valuable rule and object usage is the basis for FireMon’s policy optimization feature, which highlights usage and inefficiencies in firewall policies.