AlgoSec FireFlow


AlgoSec FireFlow intelligently automates the security policy change workflow for firewalls - increasing accuracy, eliminating unnecessary changes and enforcing security and compliance. FireFlow complements existing helpdesk ticketing systems by adding network topology, risk and compliance intelligence to the change process.

By providing complete visibility and control of the firewall policy change process, FireFlow aligns security and operations teams to:

  • Reduce the time required to process changes by up to 60 percent.
  • Improve operational accuracy.
  • Simplify auditing.
  • Increase corporate governance.

 

  • Features
  • Specifications

   

Flexible Workflows and Templates

FireFlow easily tailors to each organization’s unique change process and provides a visual workflow editor. Role-based workflow logic ensures accountability and increases corporate governance.

Out-of-the-box workflows are provided for adding rules, removing rules and changing objects.

Customizable, pre-populated request templates save time and improve communication and clarity between requestors and  firewall administrators.

 

Click to Enlarge Image


Proactive Risk and Compliance

To ensure compliance with regulatory and corporate standards, FireFlow analyzes each change before it is implemented and provides detailed information to approvers on any changes in risk or compliance levels.

FireFlow draws on the broadest risk knowledgebase, which includes industry best practices, regulations such as PCI-DSS and SOX and customized corporate policies.

 

Click to Enlarge Image


Network Intelligence

Leveraging topology-aware algorithms, FireFlow detects unneeded ("already works") changes and notifies requestors. Required changes are designed in the most secure and optimal way and include all relevant devices and rules to add, delete or edit.

 

Click to Enlarge Image


Automated Change Execution

FireFlow's unique ActiveChange™ technology automatically implements recommended policy changes, saving time and avoiding manual errors.

(ActiveChange is available as an add-on solution.)

 

Click to Enlarge Image


Auto-Validation and Matching

FireFlow validates that change requests have actually been implemented on the network, preventing pre-mature closing of tickets. Additionally, to prevent unauthorized changes, all detected policy changes are automatically matched to request tickets and mismatches are reported.

 

Click to Enlarge Image


Audit-Ready Reports

Detailed reports track the entire change lifecycle, providing SLA metrics and greatly simplifying auditing and compliance processes.

 

Click to Enlarge Image


CMS Integration

FireFlow seamlessly integrates with all leading change management systems, including BMC Remedy, HP ServiceCenter and CA Service Desk.

 

AlgoSec - Risk Analysis

Click to Play (3:12)

Supported Devices

Check Point

FireWall-1®, Provider-1®, SmartCenterv3.0 and up
VSX All versions
Security Gateway VEAll versions

Cisco

PIX, ASA Seriesv4.4 and up
Firewall Services Module (FWSM)v1.0 and up
Cisco Router Access Control ListsAll versions
Cisco Layer-3 SwitchesAll versions

Juniper

NetScreen Seriesv5.0 and up
Network and Security Manager (NSM)v2008.1 and up
SRX SeriesAll Versions

Fortinet

FortigateFortOS 3.x and up, including  VDOM
FortiManagerv4.x
 

 

Supported Change Management Systems*

BMC

Remedy

HP

Service Manager

CA

Service Desk Manager

* Additional change management systems can be supported by AlgoSec professional services.

 

System Requirements

The AlgoSec Security Management Suite can be delivered as software only, or preloaded on a virtual or physical appliance.

Physical appliances can be deployed in high-availability mode and support load-sharing for increased scalability.

Software

Memory2GB
CPU3Ghz
Storage300 GB
 (2GB and additional 50MB per report)
Operating SystemRed Hat Enterprise
Linux v4/v5
CentOS 4 - 5
Microsoft Windows
2000/XP/Vista (VMware)
BrowserInternet Explorer 7.0 or higher
Firefox 3.0 or higher

Virtual Appliance

VMware virtual appliance can run on a hosting Windows server with 1GB of RAM (2GB RAM or more is recommended).

AlgoSec Appliance

AlgoSec 1020 – low cost entry level, best for up to 150 firewalls
AlgoSec 1080 – high-performance enterprise level, best for up to 1000 firewalls
AlgoSec 1160 – Enterprise level, best for up to 2000 firewalls