Patented XML and WAF Security Gateway
Experience for you self how to eliminate risk, simplify management, centralize admninistration, consolidate monitoring, and improve performance. Download the Forum Sentry software edition, or evaluate the patented, crypto-accelerated XML gateway hardware.
Service Virtualization
Parse, merge and administer compound WSDLs from multiple endpoints.
Selectively expose service definition to consumers based on credentials.
Cloak service endpoints
Access Control
Deep integration with Identity Systems for authentication and authorization.
Granular control: protocol, service, operation, and message level identity bridging across Protocol- and Message-based identities.
Threat Mitigation
Defend against message-based threat Vectors such as XML Bombs, Malware, SQL Injection. Schema Validation, on-board AV scanning, Intrusion Detection and Prevention rules, throttling, blocking, and alerting.
Data Privacy & Integrity
Content-level message encryption and signatures, transport independent. Extensive WS-Standards support for superior interoperability.
Granular message capture for archiving and auditing
Information Enrichment
Message Enrichment via external services.
Prevent Information Leak through outbound message filtering.
Message Transformation and Routing
Centralized Policy Mgmt
Web-based interface for secure policy management across instance deployments.
Partial Policy import, export and full policy mirroring across instances.
Decouple and centralize SOA policies from Service and Client developers.
Patented Performance
Patented, accelerated XML, identity, and protocol processing for crypto operations. Streaming technology for
Jumbo payload processing.
Non-Intrusive Deployment
Eliminate software libraries and APIs for transaction processing and agent-less transaction monitoring.
Flexible Deployment Options include Hardware, software, VMWare, and cloud images.
Base Standards
XML 1.0, SOAP 1.1/1.2, WSDL 1.1/1.2, UDDI 2.x+, XPath 1.0/2.0, Schema 1.0, DTD, XSLT 1.0, REST, SOAP with Attachments, MTOM, WS-Addressing, WS-ReliableMessaging, WS-I Basic Profile.
Supported Protocols
HTTP, HTTPS, IBM MQ Series, Tibco Rendezvous, Tibco EMS, JMS, FTP, FTPS, SMTP, AS2, sFTP.
Protocol mixing and remote server failover and load balancing.
Cryptography and PKI
Import, generation and management of X.509 and PKCS Formats. Direct Java Key Store Import.
PKCS #1, PKCS #7, PKCS #8, PKCS #11, PKCS #12, X.509 Certificates and CSRs. All key sizes for RSA, DSA, DES, 3DES, SHA-1, RC4, AES,
OCSP, CRL via LDAP, XKMS, HTTP, FILE, CDP.
Cert Chain Validation for XML Security and SS. FIPS 104-2 Level III HSM for Secure Key Storage and Management
Identity
Protocol level and message level access control. HTTP Basic Auth, X.509 Mutual Auth, Digest Auth, Cookies, HTTP Form Post.
WS-Security Auth (Username Token, X.509, Kerberos and SAML), SAML 1.0 and 2.0.
Adaptors: CA SiteMinder, LDAP, SunOne, MS Active Directory, RSA ClearTrust, Oracle CoreId, HP Select Access, IBM TAM, Sun JSAM, and any WS-Trust IDM.
Security
Request and response security processing.
XML Digital Signatures and Encryption with granular Element-Level Security.
WS-Security 1.0 and 1.1.
SSL v2.0 and v3.0, TLS v1.0.
XML Firewall with content-level filtering via built-in rules, XPath, schema tightening and RegEx. On-board virus scanning and malware detection in message and attachments.
Logging and Monitoring
Data-Level evidence repository with external archiving to MySQL, IBM UDB, Oracle, MS SQL.
Syslog monitoring, SNMP v3 w/ Forum MIB and JMX, SOAP logging, database logging.
Integrated 3rd party monitoring: HP-OpenView, CheckPoint ELA, Oracle WSM, CA WSDM.
Log to any SOAP enabled endpoint.
On-board WS traffic reporting, statistics and monitoring for SLA enforcement
Transformation
Wire-speed streaming XSLT Transformation. Full support of compound XSLT.
Attribute Mapping across protocol headers, Certificate/LDAP attributes and XML content.
Administration
Simple Web-based UI. Command-line Interface (CLI) with SSH access and Serial.
Global Device Management with Full Policy Mirroring and Partial Policy Promotion.
Role-based Access Control (RBAC) and Multi-Domain Administration
Forum Systems is a wholly owned subsidiary of Crosscheck Networks. The Forum Systems product lines of Sentry SOA Gateway, STS Identity Broker, and Presdio FTP Gateway are developed and sold by Forum Systems.
Please click here to visit the Forum Systems web site and learn more about these products.
Sub Navigation
- » Service Virtualization
- » Access Control
- » Threat Mitigation
- » Data Privacy and Integrity
- » Information Enrichment
- » Centralized Policy Management
- » Patented Performance
- » Non-Intrusive Deployment
- » Base Standards
- » Supported Protocols
- » Cryptography and PKI
- » Identiy Generation and Conversion
- » Security Features
- » Logging and Monitoring
- » Transformation
- » Administration
- » Sentry Data Sheet
Latest Coverage
- 2011-12-09
XML Security Gateway plugging holes for Public Clouds
Recently, there has been a flurry of news emanating from the XML security world related toresearchersdemonstrating an attack on Amazon's AWS clo [...]
- 2011-07-27
Managed File Transfer belongs under SOA Governance umbrella.
Jack Vaughan's recent article covers an important emerging trend: convergence between SOA and MFT technologies. Managed File Transfer (MFT) is a bas [...]
- 2011-04-19
Evolving from Static HTML to Dynamic Portals: Security Implications
Companies that deploy websites with static HTML content typically use Web Application Firewalls (WAFs) to protect their static HTML content. With the [...]
- 2010-11-02
Cisco ACE gateway EOL: How to Pick a Replacement XML Gateway
It's official:Cisco has publishedEnd-of-Lifeannouncements for it'sCisco ACE XML Gateway.Here are the top factors that end customers must c [...]
- 2010-10-06
Next Generation of patented XML Gateway - Forum Sentry v8.0 - announced in Berlin, Germany
New Capabilities for Company's Flagship XML Gateway Ease Enterprise-to-Cloud Migration; Enable Seamless Extension of SOA to the CloudBOSTON and BERLIN [...]
- 2010-02-08
There are some common XML Gateway myths that this post would like to dispel. These myths are a manifestation of vendors overwhelming the customers wi [...]
- 2009-12-22
Reducing the Complexity of Application Security
Integration is the Enemy of Security and so is Flexibility - an attribute that is essential for organizations to survive. A corporation that can [...]
- 2009-11-12
Forum Systems latest XML Gateway targets SOA Federation
Looks like Forum Sentry, the pioneer and leader of XML Gateway and XML Firewall technology has announced its latest product that now addresses the gro [...]
- 2009-08-05
Finally! What companies such asForum Systemspioneered a defensive layer for through its XML Gateway product,Forum Sentry, andCrosscheck Networksinven [...]
- 2009-07-31
Qualifying your XML Gateway Horsepower
Often in our tech industry there is a penchant to spout off performance numbers without qualifying the metrics and conditions under which these number [...]
- 2009-07-20
XML Gateways are becoming standard in enterprise SOA deployments with the following common themes:Identity mediation is the first step for the majorit [...]
- 2009-07-13
Why is an XML Gateway a requirement?
The main two reasons to justify the capital expense of an XML Gateway are performance and security. When the enterprise deems those two reasons releva [...]
- 2009-07-09
Forum Systems, the pioneer inXML Gatewaysbecame the first network appliance to be issued a Patent for XML security functionality. This issued patent [...]
- 2009-07-08
XML Gateway: Best Practices, Requirements and deployment Strategies
XML Gateways are a great IT component for managing information flow between your enterprise and your trading partners. They provide the required fun [...]
