Scalable managed security for the virtualized network

Our ProtectPoint VSS™ virtual offering is designed specifically for datacenters, hosting providers, collocation facilities, and large enterprises that have embraced the virtual hosting model. A single ProtectPoint VSS virtual appliance affords managed firewall and managed intrusion detection/prevention (IDS/IPS) protection to potentially every virtual machine on a physical host (see figure below). Not only is the hosting potential of the physical infrastructure maximized, but security services can be seamlessly enabled for any hosted system.

The power of ProtectPoint VSS

  • Minimal security appliance footprint
  • Multi-tenant security from single appliance
  • Custom policies for each sensor
  • Protects against external and internal threats
  • Rapid provisioning, time to market
  • 100% service delivery by StillSecure

Multi-tenant coverage
For datacenter operators and enterprises, a successful virtualization strategy depends on squeezing every drop out of hardware investments—that's why we created ProtectPoint VSS. With today's high-performance boxes capable of hosting a dozen or more individual virtual networks, the more resources available for hosting, the greater the ROI.

Minimal footprint, rapid provisioning
With ProtectPoint VSS, valuable resources are no longer consumed with multiple instances of a virtual security appliance (i.e., one appliance for each hosted network). Regardless of the number of networks or the number of virtual machines supported on the physical host, a single ProtectPoint VSS instance secures them all with individual custom security policies and rule sets.

And because ProtectPoint VSS is embedded in the Hypervisor, an instance can be configured and provisioned quickly—usually on the order of 15 to 30 minutes.

Available for the VMware® platform, ProtectPoint VSS offers datacenters and enterprises a scalable model for protecting their cloud-based networks and maximizing the ROI of their hosting hardware.

For small and medium size businesses, the virtual version of our standard ProtectPoint services might be a better fit for meeting your virtual security needs.

Deployment

  • Available for the VMware® platform
  • Embedded within Hypervisor
  • Resource allocation: unlimited
  • Highly efficient CPU memory and bandwidth utilization
  • Memory consumption, base ProtectPointVSS appliance: 400 MB
  • Memory consumption, per additional customer/policy: 300 MB
  • Utilizes VMsafe API with VMware's vSphere solution
  • Services available:
    • Managed firewall
    • Managed intrusion detection prevention (IDPS)
  • Multi-tenant coverage: VSS filters installed on selected virtual NICs
  • Both fail-open and fail-closed options available
  • Supports multiple policies per appliance

Provisioning

  • Multi-tenant coverage: Requires one ProtectPoint VSS virtual security appliance per host
  • Requires installation of ESX kernel module per host
  • Rapid time to market: 15 to 30 minutes for configuration/activation per network segment