• No results found

Axway SecureTransport

N/A
N/A
Protected

Academic year: 2021

Share "Axway SecureTransport"

Copied!
6
0
0

Loading.... (view fulltext now)

Full text

(1)

For many organizations, years of adding one-off file-transfer connections to meet specific needs has created a complex environment that lacks the flexibility, reliability, security and traceability required to support the full gamut of business scenarios and compliance requirements. Axway SecureTransport is a multi-protocol MFT gateway for securing, managing, and tracking file flows among people and applications inside your enterprise, and beyond your firewall to your user communities, the cloud and mobile devices. It is designed to handle everything — from high-volume automated file transfers between systems, sites, lines of business and external partners, to user-driven communications and mobile, folder- and portal-based file sharing.

You can use SecureTransport to:

ƒ Ensure you are ready for high-growth use cases such as ad-hoc file transfer by providing flexibility and autonomy for end users while maintaining corporate controls

ƒ Weave MFT capabilities into innovative digital applications and emerging use cases using full REST APIs ƒ Accelerate and manage movement of files (push or pull) and host files in secure mailboxes or folders ƒ Push data securely to trading partners in real time

ƒ Power ultra-high-end shared service bureaus to meet the demands of multiple business units and organizations in one scalable infrastructure

ƒ Quickly meet new file-flow requirements with customized, multi-step file handling and routing

Axway SecureTransport

(2)

Data Sheet

w w w . a x w a y . c o m 2

Key Features & Benefits

High-end performance, scalability, and reliability

SecureTransport is the most scalable and resilient MFT product on the market, with fault-tolerance and high-availability capabilities to meet a wide range of capacity requirements.

ƒ Guaranteed delivery, checkpoint/restart, resubmit, and near real-time document exchange (as opposed to batch or once daily) ensure that file transfers keep pace with your business.

ƒ Standard clustering enables Active/Active and Active/Passive deployments, with no dependency on an external database.

ƒ Large-enterprise clustering ensures service availability, provides elasticity and can scale up to 20 nodes — with virtually unlimited concurrent connections while leveraging an external database

ƒ File-transfer acceleration ensures files are delivered on-time and within SLAs established by the business. ƒ A native 64-bit architecture scales to support increasing data volumes, expansion across multiple business units,

and growing customer and partner communities. (There are no limits on document size.) Industry-leading security

and governance

SecureTransport delivers end-to-end controls and clear visibility into when and where data is traveling inside and outside your enterprise firewall — no matter what applications, systems, or platforms you and your trading partners have in place.

ƒ Data is secured in transit, never stored within the DMZ, and encrypted while at rest on the server, regardless of the underlying transport network.

ƒ Delegated administration, pre-defined and configurable workflows, and customer self-service give business units and end users the ease of use and autonomy to manage their own requirements.

ƒ Strong audit trails protect against legal liability and demonstrate compliance with a wide range of industry and government mandates, such as HIPAA, SOX, PCI, SEPA and GLBA.

ƒ You can add Axway Sentinel to monitor SLA-driven file flows and track KPIs in real time, and offer self-service visibility to customers, partners and business users.

ƒ An ICAP connector enables out-of-the-box integration with DLP and anti-virus engines, providing added protection for incoming and outgoing file flows.

ƒ The API-accessible repository is fully encrypted to ensure that no content can be viewed — even in the event of a security breach. SecureTransport also supports Hardware Support Modules (HSM), which help ensure PCI compliance.

Integration and interoperability with existing infrastructures SecureTransport integrates easily with your existing IT infrastructure and file-transfer processes to leverage and preserve your investments.

ƒ Reduce configuration time and cost and lower ongoing operational costs with a proven architecture for building loosely coupled, highly scalable applications

ƒ Use the REST-based Web Services API framework and other integration capabilities to merge processes, data and file transfers using event-driven workflow, rules-based file processing and multi-step routing, and seamless integration with other MFT systems such as Sterling Commerce Connect:Direct (NDM).

ƒ Integration with Axway Transfer CFT, a non-intrusive multi-platform file and message transfer controller, ensures the same quality of service and a uniform interface to users and applications throughout the enterprise.

Easy-to-use and easy-to-implement A single MFT gateway solution for connecting with your entire trading community improves the management of all file transfers, enhances business relationships, and reduces software, training and maintenance costs.

ƒ Use advanced routing capabilities to customize, manage and monitor pre-processing, routing and post-processing steps with a single product, so you can quickly and reliably link file flows with a wide variety of related business processes.

ƒ Apply enterprise governance and security policies to ad hoc human-to-human, human-to-system, and system-to system file transfers.

ƒ Use real-time alerts, reports and the web-based user interface to administer, configure, monitor and analyze all file-transfer activities and applications.

ƒ Automate the flow of information (EDI, statements, images, CAD/CAM designs, etc.) with external partners, customers, suppliers and regulatory bodies.

ƒ Communicate with your trading community over HTTP/S, FTP/S, SSH, SFTP and AS2. SecureTransport is also interoperable with third-party clients.

(3)

Secure and Flexible Enhanced MFT Gateway

Axway SecureTransport provides a unified MFT solution that can accommodate diverse corporate, business unit, user, application, system and trading community requirements.

SecureTransport Server

Trusted Network

SecureTransport Edge

DMZ

Connect:Direct FTPS / SFTP Servers File Servers Directory Servers Email Servers SNMP Monitors Single Sign-on ESB / SOA Managed File Transfer Transaction Manager REST API Web Services Ad-hoc File Transfer Application Layer Streaming Web Browsers Intelligent Routing Mailboxing E-mail Integration Data Security No Data Stored in DMZ Standard FTP Clients Standard SSH Clients Unix Clients AS2 Servers ActiveX for IE Outlook and

(4)

Data Sheet

w w w . a x w a y . c o m 4

High-end MFT scalability, redundancy and performance

ƒ Standard clustering enables Active/Active and Active/Passive deployments, with no dependency on an external database. This option provides efficiency and a low total cost of ownership for organizations that need both redundancy and scalability.

ƒ Large enterprise clustering goes beyond standard clustering by enabling organizations to leverage an external database to scale up to 20 nodes and virtually unlimited concurrent connections. See below for more information on this add-on capability.

ƒ File transfer acceleration enables high-volume transfer over high-speed networks to ensure that data is delivered on time and within the SLAs established by the business. SecureTransport utilizes pTCP with PeSIT protocols to accelerate the transfer of files between two SecureTransport servers and between a SecureTransport server and an Axway Transfer CFT server.

ƒ Delegated administration enables consolidation of file-transfer requirements from multiple business units, divisions or projects on one infrastructure while also allowing assignment and autonomy for managers from different business units and the appropriate security levels to protect each division.

Integration

ƒ Open and standards-based

ƒ REST-based Web Service API model for managing file transfers and partners ƒ Rich set of application integration capabilities for merging enterprise

infrastructure processes, data, and file transfer ƒ Multi-LDAP support and LDAP mapping ƒ Event-driven workflow

ƒ Multi-step, rules-based file processing and routing ƒ File system abstraction layer

ƒ Meta data management Management

ƒ Intuitive graphical user interface for visibility into all file transfer activities, with hierarchical package tracking

ƒ Delegated administration distributes administrative tasks by business unit and function

ƒ End-to-end monitoring, reporting, alerting, and KPI/SLA management ƒ Optimized process automation

ƒ Utilization of existing identity stores

ƒ Transparent enforcement of security policy across all file movement activities

System Specifications

Delivery options

Amazon EC2 virtual appliance VMWare virtual appliance Hardened Linux appliance Licensed software Cloud SaaS Platforms

Red Hat Enterprise Linux 5.3+, 6.x, 7.x

Microsoft SQL Server 2008 R2 64-bit (Standard & Enterprise) for large enterprise clustering

Oracle 11g Release 2 Enterprise Edition for large enterprise clustering SUSE 11

Solaris 10 and 11

Microsoft Windows 2008 R2, Windows 2012 R2

AIX 6.1, 7.1 Endpoints

Rich Web 2.0 interface 3 HTML templates (included) Mobile Applications for Android

and IOS Axway Secure Client IBM Notes and Outlook plugins Other compliant third-party clients Standards & protocols

IPv6 PTCP with PeSIT SFTP and FTP/S HTTP and HTTP/S AS2*

FIPS 140-2 SSL/TLS

* Certified annually by the Drummond Group

(5)

Security and compliance

ƒ Document and repository encryption is transparent to the user

ƒ Secured connections for transmission of critical business data across the Internet ƒ Strong audit trails

ƒ Integration with DLP and anti-virus engines Authenticated partner access

ƒ Data integrity checks

ƒ Non-repudiation of origin and receipt using signed digital receipts ƒ Secure data streaming across the DMZ with Axway Edge Community

ƒ Role-based trading community management features, including delegated administration for distributing community management/monitoring tasks ƒ Flexible partner communication

ƒ Inexpensive, secure endpoint clients that are easy to deploy and use

Value-added Options

Much more than a typical MFT gateway, SecureTransport offers ultra-high-end MFT functionality that can ensure business continuity, support shared services, and accommodate extremely high volumes and peak loads

Large enterprise clustering

ƒ Scale to 20 nodes with up to a 200 percent performance improvement per node over standard clustering.

ƒ Gain elastic scalability in physical and virtual deployments by adding capacity to support peak loads and/or unplanned growth. Adding nodes does not require downtime for the cluster

ƒ Use policy-based load distribution to isolate lines of business and server tasks in different parts of the cluster

(6)

Data Sheet

w w w . a x w a y . c o m 6

DS_ST_EN_080415

For more information, visit www.axway.com

Copyright © Axway 2015. All rights reserved.

Ad hoc human communications

ƒ Enable end users to send files of any size and any type at any time to anyone ƒ Manage system-to-human and human-to-system file delivery

ƒ Use mobile apps for Android and iOS

ƒ Send files directly from Outlook or IBM Notes using plug-ins

ƒ Enable secure and auditable file transfer via portals and shared folders ƒ Establish policies to control file access and movement, create audit trails, and

ensure regulatory compliance.

ƒ Offload attachments to enable secure systematic delivery of data. SecureTransport sends notifications via email and delivers files via a secure channel.

ƒ Enable users to transfer files from their computers, mobile devices or networks to a SecureTransport server and create, delete, and rename folders on the server. ƒ Keep information in the format in which it originates, with no additional overhead

References

Related documents

Cloud Domain Join makes it possible to connect work-owned Windows devices to your company’s Azure Active Directory tenancy in the cloud. Users can sign-in to Windows with their

In push mode (i.e., no local agent on the Windows server), Privileged Access Manager servers peri- odically connect to Windows servers or Active Directory in order to change

The way we keep bridge IP addresses secret is by using the trusted t-out-of-n bridge authority servers to relay messages between bridges and clients, who should all connect to

These three interface functions typically allow the firewall to connect a corporate network to the Internet and place servers in a protected DMZ zone for Internet only access..

This document provides an overview of how to use the Rackspace Private Cloud cookbooks to connect OpenStack Identity to an existing Active Directory authentication system for

VMware Infrastructure (Host Datacenter) ESX Servers A B C D E F VDM Client VDM Connection Server Active Directory User connect to the Connection Server using the VDM Client..

If your client monitors runtime MBeans for multiple servers, or if your client runs in a separate JVM, Oracle recommends that you connect to the domain runtime MBean hierarchy on the

IP-based trusted connections enable users from “safe” machines to access Master Data Servers and repositories using their sign-on credentials only (without having to additionally