Tufin orchestrates and manages security policies across physical networks and cloud platforms.
Security Policy Orchestration is the ability to centrally visualize, analyze, control and change security policies across heterogeneous platforms. It enables a high degree of automation for these activities.
Tufin’s centralized management employs a Unified Security Policy that enables visualizing and controlling enterprise-wide network security from a single console – a single pane of glass – across physical networks and cloud platforms.
Improves:
Reduces:
Tufin automates many aspects of security operations activities, such as rules provisioning, reporting, analysis, troubleshooting, audit-preparation and compliance. Tufin focuses on automating the firewall policy change process using a dedicated tool. Tufin users can automate access requests end-to-end including the following workflow steps:
Tufin’s automation is designed for network security managers. Each level of automation provides incremental value and can be enabled gradually. For example, you can get an automated design recommendation for each firewall but still implement it manually.
Absolutely. Tufin’s workflow is specially designed for handling network security changes, it integrates with leading industry ITSM solutions, such as BMC Remedy and ServiceNow.
Tufin Orchestration Suite provides the business application context for managing network connectivity and security. Tufin believes that all network security should be managed from an application context. This approach eliminates the complexity involved in traditional network management and enables a close and healthy tie between business, infrastructure and security.
Tufin Orchestration Suite is designed to scale out for the following factors:
Scalability is achieved through a combination of hardware configuration, distributed deployments and code optimization. Tufin provides professional services for achieving a customized, scalable deployment. Tufin’s Professional Services Team can assist large deployments, integrate with other systems and customize the system.
Applications are the focus of all IT services. Tufin enables network and cloud security policy management based on application needs. Tufin monitors the configurations of firewalls, routers, load balancers and cloud platforms. Tufin normalizes the routing and the security policy configurations to a standard format that enables the various analytics and reporting tools in the Suite. Traffic logs are also collected to enable the detection and removal of unused rules and objects. If routers are monitored, Tufin also automatically generates a dynamic network topology map that enables simulation of network connectivity. Network topology can be used for analysis, trouble-shooting and change automation. Change automation is supported for security policies on the leading enterprise firewalls.
No. Tufin Orchestration Suite is agentless.
There are two modes:
Tufin recommends the Real-time Mode. Polling frequency is configurable.
Basically, the same as it does for physical networks: Tufin enables change tracking, visualization, analysis, compliance and reporting for security groups and networking configuration of private, public and hybrid cloud platforms. Plus Tufin adds an additional dimension for cloud platforms which is the visibility of Instances or VMs.
There are three modes of SDN – physical, overlay and hybrid. Tufin currently supports VMware’s flavor of SDN, NSX, which is an overlay network. Tufin will continue to add support for the leading SDN platforms as they approach mainstream.
Tufin provides two levels of Technical Support: Standard Support during business hours and Premium Support 24/7 around the clock. US customers receive local support from Tufin’s Ohio-based support center.
Learn more at Tufin Support.
Tufin is used by one of the world’s largest service providers to manage over 1000 firewalls. This large enterprise deployment consists of over 12 Tufin servers in a distributed architecture of multiple sites.
Sure. Request a free evaluation.
Price depends on the number of firewalls and applications. Request a quote here.