Skip Links

Network World

  • Social Web 
  • Email 
  • Close

Virtualization security hole plugged by Altor's new tool

By Laurianne Mclaughlin , CIO , 03/17/2008

There's no shortage of startup companies hawking virtualization management and security tools, but a new entrant, Altor Networks, has an interesting angle for IT leaders worried about virtualization security. Its debut product, being announced Monday, the Virtual Network Security Analyzer, gives visibility into the data traffic between virtual machines- which has until now been a security blindspot for people managing virtualized servers.

Virtualization giant VMware and a slew of startup companies have addressed myriad management and security features, but none have been able to offer visibility into or analysis of the traffic running between multiple VMs. This means, for instance, that IT managers have been able to get a good look inside individual VMs, but have been blind to what one VM on one physical machine is trying to say to a VM on another physical machine. This presents real malware and compliance risks, as security experts noted in CIO's earlier article "How to Find and Fix 10 Real Threats on Your Virtual Servers."

Altor has a unique offering, says Mike Montecillo, a security and risk management analyst with Enterprise Management Associates.

"Gaining the visibility into virtual networks has been difficult due to the fact that in most cases organizations are deploying physical appliances to monitor network traffic," Montecillo says. Those physical security appliances, designed to watch for risks on a physical network such as intrusions, unauthorized internet connections and suspicious traffic on ports, today do not work with VMs, Montecillio notes. Nor can today's firewall products see into traffic between virtual machines.

Altor's Virtual Network Security Analyzer will be sold as software inside a virtual appliance, says Amir Ben-Efraim, founder and CEO of Altor Networks. "Our goal is to make the virtual network more secure than the physical," he says.

Today the product works with VMware ESX Server, but Altor Networks plans to later support other major players including Citrix/Xen and Microsoft, says Ben-Efraim.

The software will centrally collect data on all packets traveling between VMs and uncover potential risks such as port scans and unusual protocols, Ben-Efraim says. The tool also will create what he calls a "baseline on your data center behavior," then analyze traffic going forward, looking for unusual patterns, Ben-Efraim says.

Partner Content

Brilliantly simple security and control solutions for email, web and endpoint

www.sophos.com

Stopping data leakage

Learn how to exploit your current security investment to control the information that flows into, through and out of your network.

Download the white paper.

Why detection rates aren't enough

Evaluating endpoint security products is a time-consuming and daunting task. Learn the six critical questions you need to ask to prospective vendors to get the right endpoint solution.

Download the white paper.

Unauthorized applications: Taking back control

Employees installing and using unauthorized applications like IM, VoIP, games and peer-to-peer file-sharing applications cause many businesses serious concern. How do you control these applications?

Download the white paper.

Comment
Login
Forgot your account info?
Add comment
Anonymous comments subject to moderator approval. Register here for member benefits.
Have a NetworkWorld account? Log in here. Register now for a free account.

Videos

rssRss Feed
Save The Date!
What They Are Saying

14 years ago, I dealt with somebody like Childs. I was the new manager and the veteran techie knew it...- Anonymous

Join the Discussion