Elemental aims to make policy-based computing easier to implement and monitor

* Elemental Security policy-based computing

Among the many buzz phrases being tossed around these days is policy-based computing. Windows network managers can be excused if they show a complacent grin when they hear that phrase since policy-based computing has been a part of Windows for a number of years. But the new thing, the new paradigm, if you will, is using policies to control and monitor your entire network.

Policies allow you to control who can do what, when and where they can do it, and the means they can use (i.e., the "how"). That's Who, What, When, Where and How. Noticeably absent from that list is "Why", but we can't give the software and hardware the ability to read the user's mind just yet. Still, by knowing Who did What, When they did it and Where they did it we can both deduce a probable Why as well as ask the user "Why?".

Start-up Elemental Security (http://www.elementalsecurity.com) wants to make the whole policy-based computing thing easier for you to implement and monitor as well as more all-encompassing by including almost all of the hardware on your network along with your users.

It wants to be the fuel that powers your network. That's a pun, because the essence of its offering is Fuel, a scripting language for policy writing. Fuel was created for Elemental Security by Guido van Rossum who also created the Python language. Fuel is a very English-like (in words and syntax) language that allows you to express policy in constructs such as "Engineering cannot talk to HR Servers," where "engineering" is an Active Directory group and "HR Servers" could be Windows boxes, Linux servers or Solaris hosts.

Elemental Security supports a wide range of hardware devices and understands the policy language of all of them. Not only does it understand these policy languages, but it can also translate among them. So the simple English phrase you write is quickly and effortlessly converted into a policy that's understood on each and every platform that needs to understand it.

Groupings (e.g., "HR Servers"), by the way, can be done dynamically - no need to manually update the policies. There are also policy driven packet filters that can be used to enable dynamic network access control lists (ACL) as well as auto discover new machines - and immediately apply the necessary policies.

Besides the peace of mind that can come with monitoring and controlling all of your network, the Elemental package will make a good addition to your suite of regulatory compliance products. Knowing not only who did what but also knowing who could do what (by a thorough examination and reporting of policies) is integral to regulations such as Sarbanes-Oxley.

Elemental Security has a lot to offer in a product that's only on its 1.1 version. You need to take a peek.

Learn more about this topic

Today's top 5 stories from NetworkWorld.com:

1. Opinion: Mad as hell, switching to Mac

Network World, 05/23/05

2. Businesses follow carriers' MPLS lead

Network World, 05/23/05

3. Tech Update: Fuel cells fire up handhelds

Network World, 05/23/05

4. Cisco acquires chip firm

Network World, 05/23/05

5. There's battle tested... and then there's the Israeli military

Network World, 05/23/05

Join the Network World communities on Facebook and LinkedIn to comment on topics that are top of mind.

Copyright © 2005 IDG Communications, Inc.