• The Four Hundred
  • Subscribe
  • Media Kit
  • Contributors
  • About Us
  • Contact
Menu
  • The Four Hundred
  • Subscribe
  • Media Kit
  • Contributors
  • About Us
  • Contact
  • SafeStone Taps RSA for SIEM Expertise

    August 24, 2010 Alex Woodie

    Safestone Technologies has long been a partner of RSA Security and used the security giant’s expertise in authentication to bolster the environments of its IBM System i customers. With this month’s update to Safestone’s security software, the vendors have strengthened the partnership with an IBM i connection to RSA’s security information and event management (SIEM) system.

    Safestone says it worked closely with RSA (a division of EMC) to launch i Connect, which is a new component of the DetectIT suite that’s designed to move IBM i log data to enVision, RSA’s SIEM solution.

    The i Connect product watches for more than 300 different IBM i event types, including changes or additions to user profiles, object authorities, network access, use of SQL, and entries to the security journal and system history log, the vendor says.

    i Connect also includes filtering mechanisms to help avoid overloading the RSA SIEM with unimportant system events. (Remember, IBM i is quite exact, and prolific, in its log monitoring and journaling capabilities compared to your “standard” X64 or Unix environment). Administrators can screen logs by event type, message ID, job name, job user name, program name, and time and day of week.

    Safestone also did some work on its Syslog connecter with DetectIT 14.3, and this played heavily into the launch of i Connect and its integration with enVision. The vendor says it made “extensive enhancements” to its Syslog interface with DetectIT 14.3 to support high volume environments.

    Previously, the only way to get IBM i log data into enVision was to send it via FTP. With the Syslog-based mechanism that Safestone developed for enVision with DetectIT 14.3 and i Connect, it is much easier and faster to move the data to enVision.

    enVision is used by more than 1,600 organizations around the world, according to RSA. At the heart of the SIEM solution is the LogSmart Internet Protocol database (or IPDB), which RSA says is very good at managing unstructured data, such as that coming from all the various Syslog agents feeding data into the SIEM, as well as many other sources (although IBM i log data is more refined, and verbose, than most sources).

    Several other features were added with version 14.3, and one of the most compelling is an enhancement to Powerful User Passport (PUP), the software launched last year that minimizes the potential impact that individuals with privileged user profiles can take, by allowing users to “swap” into powerful user profiles for limited periods of time.

    With this release, PUP now monitors all SQL activity the user takes while swapped into a powerful user profile, like ALLOBJ. Since SQL is one of the most powerful (and dangerous, because it is not monitored natively) capabilities of the IBM i platform, creating a full audit trail of all SQL activities while a user is swapped into a powerful user profile with PUP makes perfect sense. (It probably should have been there before, but late is better than never.)

    DetectIT 14.3 also brings full RSA certified support for version 7.1 of the SecurID Authentication Manager. It also features more flexible deployment options, Safestone says. SecurID is used to implement two-factor authentication; it prevents a user from gaining access to System i or other servers unless they can provide two forms of authentication, such as a password or PIN and a hardware authenticator, such as a smart card or USB token.

    The new release of DetectIT supports IBM i version 7.1. For more information, see www.safestone.com.

    RELATED STORIES

    Safestone Unveils i/OS Compliance Software

    Safestone Gives Away Free PCI Assessments to i OS Customers

    Safestone Cracks Down on Excessive Authority with PUP

    Safestone Gives i Security Officers Greater Control

    Safestone Re-emerges with New Corporate Identity, i OS Security Tools



                         Post this story to del.icio.us
                   Post this story to Digg
        Post this story to Slashdot

    Share this:

    • Reddit
    • Facebook
    • LinkedIn
    • Twitter
    • Email

    Tags:

    Sponsored by
    DRV Tech

    Get More Out of Your IBM i

    With soaring costs, operational data is more critical than ever. IBM shops need faster, easier ways to distribute IBM applications-based data to users more efficiently, no matter where they are.

    The Problem:

    For Users, IBM Data Can Be Difficult to Get To

    IBM Applications generate reports as spooled files, originally designed to be printed. Often those reports are packed together with so much data it makes them difficult to read. Add to that hardcopy is a pain to distribute. User-friendly formats like Excel and PDF are better, offering sorting, searching, and easy portability but getting IBM reports into these formats can be tricky without the right tools.

    The Solution:

    IBM i Reports can easily be converted to easy to read and share formats like Excel and PDF and Delivered by Email

    Converting IBM i, iSeries, and AS400 reports into Excel and PDF is now a lot easier with SpoolFlex software by DRV Tech.  If you or your users are still doing this manually, think how much time is wasted dragging and reformatting to make a report readable. How much time would be saved if they were automatically formatted correctly and delivered to one or multiple recipients.

    SpoolFlex converts spooled files to Excel and PDF, automatically emailing them, and saving copies to network shared folders. SpoolFlex converts complex reports to Excel, removing unwanted headers, splitting large reports out for individual recipients, and delivering to users whether they are at the office or working from home.

    Watch our 2-minute video and see DRV’s powerful SpoolFlex software can solve your file conversion challenges.

    Watch Video

    DRV Tech

    www.drvtech.com

    866.378.3366

    Share this:

    • Reddit
    • Facebook
    • LinkedIn
    • Twitter
    • Email

    Sponsored Links

    SEQUEL Software:  FREE Webinar. Aug 25. Learn how SEQUEL simplifies EnterpriseOne data access.
    PowerTech:  FREE Webinar! Top 10 IBM i Security Risks. August 25, 10 a.m. CT
    COMMON:  Join us at the Fall 2010 Conference & Expo, Oct. 4 - 6, in San Antonio, Texas

    IT Jungle Store Top Book Picks

    Easy Steps to Internet Programming for AS/400, iSeries, and System i: List Price, $49.95
    The iSeries Express Web Implementer's Guide: List Price, $49.95
    The System i RPG & RPG IV Tutorial and Lab Exercises: List Price, $59.95
    The System i Pocket RPG & RPG IV Guide: List Price, $69.95
    The iSeries Pocket Database Guide: List Price, $59.00
    The iSeries Pocket SQL Guide: List Price, $59.00
    The iSeries Pocket Query Guide: List Price, $49.00
    The iSeries Pocket WebFacing Primer: List Price, $39.00
    Migrating to WebSphere Express for iSeries: List Price, $49.00
    Getting Started With WebSphere Development Studio Client for iSeries: List Price, $89.00
    Getting Started with WebSphere Express for iSeries: List Price, $49.00
    Can the AS/400 Survive IBM?: List Price, $49.00
    Chip Wars: List Price, $29.95

    IBM Ships Fat Memory for Power 770 and 780 Systems Early An Introduction to Python on IBM i, Part 1

    Leave a Reply Cancel reply

Volume 10, Number 30 -- August 24, 2010
THIS ISSUE SPONSORED BY:

ProData Computer Services
Bytware
RevSoft
DRV Technologies
RJS Software Systems

Table of Contents

  • PHP and JavaScript Come Together in Zend Studio 8
  • SafeStone Taps RSA for SIEM Expertise
  • SkyView Gets Tough on User Profiles
  • Profound Updates I/O Handler for RPG Open Access
  • IGEL Adds 5250 Emulation to Linux Thin Clients
  • LogLogic Strives to Create Better Visibility of Log Data
  • Third-Party ERP Support Does Save Money, Nucleus Says
  • RentalMan Gets Hooks into IntelliChief
  • IBS Launches New BI, CRM Products
  • ACOM to Throw In Free Printer on Software Sale

Content archive

  • The Four Hundred
  • Four Hundred Stuff
  • Four Hundred Guru

Recent Posts

  • Meet The Next Gen Of IBMers Helping To Build IBM i
  • Looks Like IBM Is Building A Linux-Like PASE For IBM i After All
  • Will Independent IBM i Clouds Survive PowerVS?
  • Now, IBM Is Jacking Up Hardware Maintenance Prices
  • IBM i PTF Guide, Volume 27, Number 24
  • Big Blue Raises IBM i License Transfer Fees, Other Prices
  • Keep The IBM i Youth Movement Going With More Training, Better Tools
  • Remain Begins Migrating DevOps Tools To VS Code
  • IBM Readies LTO-10 Tape Drives And Libraries
  • IBM i PTF Guide, Volume 27, Number 23

Subscribe

To get news from IT Jungle sent to your inbox every week, subscribe to our newsletter.

Pages

  • About Us
  • Contact
  • Contributors
  • Four Hundred Monitor
  • IBM i PTF Guide
  • Media Kit
  • Subscribe

Search

Copyright © 2025 IT Jungle