Cloud
11/29/2016
02:35 PM
Dark Reading
Dark Reading
Products and Releases
50%
50%

CloudPassage Launches New Release of Halo Agile Security Platform

Improved Visibility and Filtering for Simplified Workload Security Management

San Francisco, November 29, 2016 - CloudPassage announced today a new release of CloudPassage Halo, the company’s award-winning agile security platform. The update includes several enhancements including a new filtering feature in the portal user interface, visual and functional improvements to the Traffic Discovery feature (offering improved insight into firewall connections and traffic) and improved server lifecycle management.

“CloudPassage continues to focus on developing and delivering innovative automated security and compliance solutions to help companies embrace the power of agile computing,” said Ram Krishnan, Chief Product Officer, CloudPassage. “In fact, our SaaS-based platform was purpose-built to handle the dynamic nature of the modern IT infrastructure, and operates seamlessly across any environment to provide a broad range of controls — at speed and scale — to enable secure innovation and deployment. This newest release delivers numerous capabilities that enhance the security team’s visibility and eases management.”

Improved filtering for display views makes it easier to organize issues, scans, servers, alerts, policies and connections. Security managers can now interactively create new filters by clicking the filter box and selecting the attributes and values that apply to the dataset being viewed. Wherever applicable, drop-downs and hints will automatically appear to help build the filter quickly.

Visual and functional improvements to traffic discovery include a dynamic graph for viewing and drilling into large numbers of connections; an added “direction” column to show connection behavior; and a new quick filter in the visualization view to easily see inbound or outbound firewall connections.

 

Server Lifecycle Management

This release has implemented the ability to automatically retire deactivated servers as a user’s workloads grow more numerous (and possibly transitory). This helps reduce the clutter in the portal. Existing customers will need to choose a timeframe (from hours to days) for when the deactivated servers should be retired.

Additional enhancements in this new version of Halo are detailed in CloudPassage’s publicly listed release notes.

 

About CloudPassage

CloudPassage® Halo® is the world’s leading agile security platform that provides instant visibility and continuous protection for servers in any combination of data centers, private clouds and public clouds. The Halo platform is delivered as a service, so it deploys in minutes and scales on-demand. Halo uses minimal system resources; so layered security can be deployed where it counts, right at every workload – servers, instances and containers. CloudPassage was recently awarded three patents that extend the scope of its original, agent-based, agile security model, making it the first company to obtain a U.S. patent for universal cloud infrastructure security. Leading enterprises like Citrix, Salesforce.com and Adobe use CloudPassage today to enhance their security and compliance posture, while at the same time enabling business agility. Headquartered in San Francisco, California, CloudPassage is backed by Benchmark Capital, Lightspeed Venture Partners, Meritech Capital Partners, Tenaya Capital, Shasta Ventures, Musea Ventures and other leading investors.

For more information, visit www.cloudpassage.com.

CloudPassage® and Halo® are registered trademarks of CloudPassage, Inc.

Comment  | 
Print  | 
More Insights
Comments
Newest First  |  Oldest First  |  Threaded View
Register for Dark Reading Newsletters
White Papers
Video
Cartoon Contest
Write a Caption, Win a Starbucks Card! Click Here
Latest Comment: This comment is waiting for review by our moderators.
Current Issue
Security Operations and IT Operations: Finding the Path to Collaboration
A wide gulf has emerged between SOC and NOC teams that's keeping both of them from assuring the confidentiality, integrity, and availability of IT systems. Here's how experts think it should be bridged.
Flash Poll
New Best Practices for Secure App Development
New Best Practices for Secure App Development
The transition from DevOps to SecDevOps is combining with the move toward cloud computing to create new challenges - and new opportunities - for the information security team. Download this report, to learn about the new best practices for secure application development.
Slideshows
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2017-0290
Published: 2017-05-09
NScript in mpengine in Microsoft Malware Protection Engine with Engine Version before 1.1.13704.0, as used in Windows Defender and other products, allows remote attackers to execute arbitrary code or cause a denial of service (type confusion and application crash) via crafted JavaScript code within ...

CVE-2016-10369
Published: 2017-05-08
unixsocket.c in lxterminal through 0.3.0 insecurely uses /tmp for a socket file, allowing a local user to cause a denial of service (preventing terminal launch), or possibly have other impact (bypassing terminal access control).

CVE-2016-8202
Published: 2017-05-08
A privilege escalation vulnerability in Brocade Fibre Channel SAN products running Brocade Fabric OS (FOS) releases earlier than v7.4.1d and v8.0.1b could allow an authenticated attacker to elevate the privileges of user accounts accessing the system via command line interface. With affected version...

CVE-2016-8209
Published: 2017-05-08
Improper checks for unusual or exceptional conditions in Brocade NetIron 05.8.00 and later releases up to and including 06.1.00, when the Management Module is continuously scanned on port 22, may allow attackers to cause a denial of service (crash and reload) of the management module.

CVE-2017-0890
Published: 2017-05-08
Nextcloud Server before 11.0.3 is vulnerable to an inadequate escaping leading to a XSS vulnerability in the search module. To be exploitable a user has to write or paste malicious content into the search dialogue.

Dark Reading Radio
Archived Dark Reading Radio
In past years, security researchers have discovered ways to hack cars, medical devices, automated teller machines, and many other targets. Dark Reading Executive Editor Kelly Jackson Higgins hosts researcher Samy Kamkar and Levi Gundert, vice president of threat intelligence at Recorded Future, to discuss some of 2016's most unusual and creative hacks by white hats, and what these new vulnerabilities might mean for the coming year.