Check Point Marries Virtual, Physical Security for VMware Servers

New Check Point app secures VMware virtual servers and applications by making them act as if they were on separate physical servers; unifies security tasks for physical and virtual resources.

By Steven J. Vaughan-Nichols

CONNECTIONS
VMware
Check Point
Gartner
Tue, August 19, 2008CIO Running virtual machines is easy. It's managing and securing them that's the problem, according to both users and analysts. Check Point Software Technologies thinks it has an answer: the VPN-1 VE (Virtual Edition).

The VPN-1 VE is a VMware-certified virtual application, which is designed to secure VMware virtual servers and applications by making them act as if they were on separate physical servers. While Check Point claims that it's the "first company to provide unified security management for both physical networks and virtual applications," the concept is used by other vendors in the still new field of virtualization security. For example, Apani's EpiForce VM takes a similar approach.

Check Point's VPN-1 VE will, however, integrate with pre-existing Check Point security infrastructure. This should result with in a significant management saving since administrators will be able to run both virtual and the more usual server and network security tasks from one interface.

The VE is part of Check Point's VPN-1 Power VSX virtualization security suite. Power VSX, a virtualized security gateway, allows managed service providers and corporations to consolidate up to 250 VMware virtual security systems. This package includes firewall, virtual private network (VPN) and intrusion prevention on a single hardware application platform.

What VE adds to the package is a way to quickly deploy a VMware ESX or ESXi reconfigured security setup without requiring additional hardware devices. It also, according to Check Point, "strengthens auditing, compliance and risk management with unified logging for the entire security infrastructure, including virtual environments."

It sounds good, but does this approach of treating virtual systems as if they were physical servers really work? In general, Gartner analyst Neil MacDonald isn't crazy about this approach, he says. "Many organizations mistakenly assume that their approach for securing [virtual machines] will be the same as securing any operating system and thus plan to apply their existing configuration guidelines, standards and tools. While this is a start, simply applying the technologies and best practices for securing physical servers won't provide sufficient protection," he says.

And as Dan Kusnetzky of the Kusnetzky Group IT consultancy points out, there are many virtualization security programs vying for your attention now. "Security is an area of intense focus. Neocleus, Qumranet, Fortisphere, Fortinet and a few others have products that address some aspect of creating a secure environment."

A wise CIO is going to take a long hard look at several proposed virtualization security programs before committing to one. It's also noteworthy that this is a VMware specific security solution. VMware, as anyone who has been following the company knows, recently released a patch that actually knocked out ESXi servers.

© 2008 CXO Media Inc.

More from IT Drilldown « Back to Virtualization
CASE STUDY
Bank Scores with Server Virtualization
They say old habits die hard. It's a adage that's certainly true for ICICI Bank's senior GM and the Group CTO, Pravir Vohra. As a man who was part of the team that popularized online banking and helped create a new revenue stream for ICICI Bank, Vohra is already known as an IT leader who can make a difference. Full Story »

Loading...
Virtualization Vendor Matrix

Find out what vendors offer the products you need.

View the Vendor Matrix »
Virtualization ABCs

Get up to speed on virtualization.

Learn More »
Virtualization MarketSpace
MarketSpace White Papers
Twenty-to-One Consolidation on Intel Architecture: New Tools for Virtualization and Workload Management
Consolidation isn't easy—especially considering the costs and risks that come with bringing multiple applications and operating systems together on a single mainframe or proprietary platform... Learn more »
Building the Virtualized Enterprise with VMware Infrastructure
Many organizations struggle with their legacy IT infrastructures which are often plagued by high costs, slow response times and inconsistent management... Learn more »
TECHNOLOGY ASSESSMENT: The Impact of Virtualization Software on Operating Environments
Virtualization is a potential game-changer for modern computing. This IDC Technology Assessment discusses how virtualization technologies impact operating environments, now and in the future... Learn more »
Reducing Server Total Cost of Ownership with VMware Virtualization Software
Technology purchases are often quantified simply by hardware and software costs. But there's more to it. This TCO study takes a holistic view—considering soft dollars too, like ongoing maintenance and... Learn more »
 
SPONSORED LINKS
 

Virtualization Benchmark and TCO Analysis-Read Now

New IDG Survey Results on Data Center Automation

Get help navigating the management challenges of virtualization.

Narrow the gap between virtualization's benefits and the management risks.

Cash in on the promise of virtualization

Learn to Leverage Maximum Computing Power

Windows Vista: Essential Benefits and Deployment Strategies

Best Practices: Safe and Secure Hardware Asset Recovery

White Paper: Migrating to Windows Vista and Microsoft Office 2007 Together

White Paper: Enabling Next Generation IP Communications

White Paper: A Cohesive Network Security Approach

Why Your Firewall, VPN, and IEEE Aren't Enough to Protect Your Network

Dramatically boost network capacity and speed-up to 600 Mbps

Learn how companies are changing how they reach out to their most profitable customers.

Remote Infrastructure Management - What Your Peers are Thinking

Complementary BI: The New Approach to Business Intelligence

Unified Communications & Collaboration: Game-Changing Business Results

The ECM Paradox: Extending Local Flexibility to Strengthen Central Control

Customer Insight Yields Sales, Marketing Gains

Efficient by design: Watch this flash demo of the Quad-Core AMD Opteron Processor

HP and Oracle deploy unbreakable computing infrastructure at Replacements, Ltd.

File Integrity Monitoring: Prove compliance and secure your IT environments

Affordable technology-no compromise. HP server solutions

SOA Educational Library at the TIBCO SOA Resource Center

CIO Viewpoints: Migrating to Exchange 2007

Server Virtualization Benchmark Results

White Paper: The Roadmap to Data Center Automation

Find out how to manage virtualization's risks and reap the rewards.

Conquer the realities of managing virtualization

White Paper: Scaling Down HPC for Smaller Organizations

White Paper: Never Enough Compute Power?

Microsoft Windows Vista Cost and Benefit Estimator

White Paper: Efficient Desktop Application Management

White Paper: Take your Call Center to the Next Level

Is Your WLAN Helping You Comply with Security Guidelines of the PCI Standard?

White Paper: Improve Employee Efficiency and Reduce Telecom Costs

White Paper: Green Issues for Networking

Operational Excellence Is Key to Maximizing IT Investments

The Right and Wrong Master Data Management Strategies to Start Small and Grow Big

Webcast - "Into the Wild: Managing Laptops Outside the Office"

Mobility is Growing: Survey Shows Why CIOs are Concerned

Learn what it takes to build a holistic digital collaboration platform

Make Hidden Trends, Inter-Relationships and Influences Visible.

Improve delivery of product information to customers.

Renowned Engineering Institution Chooses AMD Processor-Based Servers

Corral, configure and control all your mischievous machinery with a Lantronix device server

Spend less. Get hosted UC. Get cash back. It's easy under a Cypress

Predict the future with HP Insight Power Manager

Log onto Hitachi True Stories, films inspired by the next great achievement

Earn PROFESSIONAL DOCTORATE Part-Time, Online at Syracuse University's iSchool

 
 
RESOURCE CENTER