fhs
Volume 7, Number 16 -- April 24, 2007

BSafe Introduces Cross-Platform Auditing

Published: April 24, 2007

by Alex Woodie

Companies that run multiple types of servers are faced with special challenges when it comes to collecting log data, normalizing the information, and generating audit reports. Auditing is bad enough with a single server, but the difficulties are compounded when the data resides across disparate systems. Security software vendor Bsafe Information Systems has addressed this challenge with Bsafe Enterprise Security version 5.5, which enables companies to run audit reports across i5/OS, Linux, mainframe, and Windows servers from a single screen.

There are some pretty big changes coming to Bsafe Enterprise Security. This product, which was introduced about two years ago as a replacement to the company's OS/400 security tool, called Bsafe/Global Security, expanded the company's reach by delivering access control and auditing capabilities to Linux as well as i5/OS environments.

But the key deliverable in Bsafe Enterprise Security for iSeries and Linux (as the product is formally called) was a new Windows-based GUI management console that gave administrators a clear picture of security settings. With the delivery of Bsafe Enterprise Security 5.5 this month, that Windows module is now being used to front the company's mainframe security tools, as well as the i5/OS and Linux security tools. The company will still sell the old green-screen mainframe tools, Bsafe/CICS for zSeries and Bsafe/DB2 for zSeries, but it expects most new customers to adopt Bsafe Enterprise Security and get the extra capabilities that it delivers.

And one of these new tricks delivered in Bsafe Enterprise Security 5.5 is the cross-platform auditing. Instead of requiring administrators to manually write custom scripts that extract and load log data for centralized reporting, administrators in multi-platform shops can rely on Bsafe Enterprise Security to do the grunt work of collecting, consolidating, and presenting security-related log data for them.

The new cross-platform auditing function resides on a Windows server running the SQL Server database software. At intervals defined by the scheduler, the product automatically collects log data from the various Bsafe agents running on monitored servers, and summarizes it in SQL Server. A reporting tool provided by Bsafe allows users to generate audit reports from this data, which is output via e-mail, PDF, Word, Excel, and plain text.

Supported inputs on the System i include Bsafe's system-, file-, and application-level audit journals, the Bsafe administrator audit function, SQL statements and security alerts. Input from the mainframe includes the SMF for RACF, Top Secret, and DB2 facilities, as well as the Bsafe/CICS facility. For Windows, the cross-platform audit reads the Windows security event log, maintenance logs, and the Bsafe administrator audit function.

Shimon Bouganim, founder and chief executive officer of Bsafe, says cross-platform audit functionality is unprecedented among security tools, and predicted it will be well-received by companies struggling to automate the audits of multiple platforms. "This one database includes all these monitors from different platforms," he says. "We developed an interface, an API, that can read data from the various platforms in one format. We analyze this data, bring the data in that format, and make it easy to manage."

An especially useful function for this cross-platform audit capability will be following the actions users take as they traverse various platforms, Bouganim says. For example, say an outside consultant logs onto your various systems remotely. "You want to know exactly what he did while on the system, but there's no way to get the information without BSafe cross-platform auditing," Bouganim says. "How can I understand what he did on the multiple platforms? It could drive you crazy [without Bsafe]."

Bsafe includes dozens of predefined reports with the cross-platform auditing function. Alternatively, users can create their own ad hoc reports. For example, an administrator could generate a report showing all the failed TCP/IP requests for the iSeries server. Such a report would take about five minutes to generate, Bouganim says.

Customers will also save precious disk space on their production servers by offloading audit log data to an inexpensive Windows server, Bsafe says. Users can also configure how much data the cross-platform auditing function should hold, and define rules telling the system which data it can safely eliminate. However, considering the strict data retention guidelines of the Sarbanes-Oxley Act, Bsafe expects customers will want to hang onto this data for at least five to seven years.

Future releases of the cross-platform auditing function may support additional databases besides SQL Server. The company is considering Oracle and DB2, Bouganim says. This is also the first time Bsafe has offered any type of security monitoring capability on the Windows platform. While Bsafe offers access control as well as auditing on the other platforms, the company does not expect to offer any type of access control capability for the crowded Windows market, Bouganim says.

The cross-platform auditing function is a separately priced item. Bsafe says the license fee is equal to 30 percent of the base price customers are paying for their iSeries/Linux or mainframe products. Pricing for BSafe Enterprise Security for iSeries and Linux is tier-based and ranges from $5,000 to $50,000, for an unlimited number of users and LPARs. Pricing for the mainframe product ranges from $100,000 to $1 million. For more information, visit www.bsafesolutions.com.

RELATED STORIES

Bsafe Addresses HIPAA with Field Masking for i5/OS Apps

Bsafe Boosts OS/400 Auditing with Enterprise Security 4.1



                     Post this story to del.icio.us
               Post this story to Digg
    Post this story to Slashdot


Sponsored By
SEAGULL SOFTWARE

Do you need to expand the functionality of your System i apps?

Do you need to bring select back-office data to the Web for employees and customers?

Do you need basic rejuvenation or advanced workflow improvement?

Web-enable your System i apps with LegaSuite GUI.

See for yourself how easy it is to build a GUI from a green-screen without any changes to your code. Watch a narrated demo or schedule a no-obligation, personal demo today.

www.seagullsoftware.com/green


Editor: Alex Woodie
Contributing Editors: Dan Burger, Joe Hertvik,
Shannon O'Donnell, Timothy Prickett Morgan
Publisher and Advertising Director: Jenny Thomas
Advertising Sales Representative: Kim Reed
Contact the Editors: To contact anyone on the IT Jungle Team
Go to our contacts page and send us a message.

Sponsored Links

New Generation Software:  Leading provider of iSeries BI and financial management software
Vision Solutions:  The first new HA release from the newly merged Vision and iTera companies
LASERTEC USA:  Fully integrate MICR check printing with your existing application


IT Jungle Store Top Book Picks

The System i Pocket RPG & RPG IV Guide: List Price, $69.95
The iSeries Pocket Database Guide: List Price, $59.00
The iSeries Pocket Developers' Guide: List Price, $59.00
The iSeries Pocket SQL Guide: List Price, $59.00
The iSeries Pocket Query Guide: List Price, $49.00
The iSeries Pocket WebFacing Primer: List Price, $39.00
Migrating to WebSphere Express for iSeries: List Price, $49.00
iSeries Express Web Implementer's Guide: List Price, $59.00
Getting Started with WebSphere Development Studio for iSeries: List Price, $79.95
Getting Started With WebSphere Development Studio Client for iSeries: List Price, $89.00
Getting Started with WebSphere Express for iSeries: List Price, $49.00
WebFacing Application Design and Development Guide: List Price, $55.00
Can the AS/400 Survive IBM?: List Price, $49.00
The All-Everything Machine: List Price, $29.95
Chip Wars: List Price, $29.95

 

The Four Hundred
Power6: Later in 2007 Rather than Sooner?

Slowing U.S. Sales Hurt IBM's First Quarter

Reader Feedback on User-Priced System i Boxes

As I See It: Induced Labor

The Linux Beacon
Canonical Updates Ubuntu Linux with 7.04 Release

Intel Details Future 45 Nanometer Chip Plans from Beijing

Dell, IBM Push Power-Saving Servers

As I See It: The Legacy

Big Iron
Slowing U.S. Sales Hurt IBM's First Quarter

Top Mainframe Stories From Around the Web

Chats, Webinars, Seminars, Shows, and Other Happenings

Four Hundred Guru
Calling SQL Functions Directly From a High Level Language Program

My Favorite Keyboard Shortcuts for RSE

Two Ways to Audit Your Backup Strategy

System i PTF Guide
April 14, 2007: Volume 9, Number 15

April 7, 2007: Volume 9, Number 14

March 31, 2007: Volume 9, Number 13

March 24, 2007: Volume 9, Number 12

March 17, 2007: Volume 9, Number 11

March 10, 2007: Volume 9, Number 10

The Windows Observer
'Viridian' Beta Delayed. Is Longhorn Next?

Windows Server DNS Flaw Being Exploited

Dell, IBM Push Power-Saving Servers

Marathon Makes Virtualization Fault Tolerant with v-Available

The Unix Guardian
Fujitsu, Sun Deliver Joint Sparc Enterprise Server Line

Power6: Later in 2007 Rather than Sooner?

Slowing U.S. Sales Hurt IBM's First Quarter

As I See It: Disorderly Conduct

Four Hundred Monitor
Four Hundred Monitor's
Full iSeries Events Calendar

THIS ISSUE SPONSORED BY:

Bytware
Quadrant Software
Seagull Software
VAULT400
Affirmative Computer



TABLE OF CONTENTS
PowerTech Tools Build Trust By Decreasing Authority

IBM Expects Speedier Portal Projects

BSafe Introduces Cross-Platform Auditing

CCSS Addresses SOX Requirements in QMessage Monitor

News Briefs and Product Shorts:


Curl Re-Emerges at Web 2.0 . . . Lawson Signs Five Companies to M3 Contracts . . . Magic Develops iBOLT for SAP R/3, mySAP . . . Jupiter Taps MobileHWY for Mobile Building Permit Program . . . Reporting Tool Works with i5/OS Trucking Software . . . Help/Systems Issues Another Update for Robot/SCHEDULE . . .

Four Hundred Stuff

BACK ISSUES





 
Subscription Information:
You can unsubscribe, change your email address, or sign up for any of IT Jungle's free e-newsletters through our Web site at http://www.itjungle.com/sub/subscribe.html.

Copyright © 1996-2008 Guild Companies, Inc. All Rights Reserved.
Guild Companies, Inc., 50 Park Terrace East, Suite 8F, New York, NY 10034

Privacy Statement