Infoblox Unveils First Dedicated IF-MAP Server, Supports Standards-Based Orchestration of IT Infrastructure Systems & Applications

Infoblox Inc. today announced availability of the Infoblox Orchestration Server, a dedicated appliance that automatically aggregates, correlates, and distributes data to and from different IP connected systems, in real time. Based on the IF-MAP standard from the Trusted Computing Group (TCG), the Infoblox Orchestration server replaces complex, costly and brittle system integration with a powerful standards-based approach that makes it possible to automate a tremendous range of systems, processes

May 24, 2010

3 Min Read
Network Computing logo

SANTA CLARA, Calif.--(BUSINESS WIRE)--Infoblox Inc. today announced availability of the Infoblox Orchestration Server, a dedicated appliance that automatically aggregates, correlates, and distributes data to and from different IP connected systems, in real time. Based on the IF-MAP standard from the Trusted Computing Group (TCG), the Infoblox Orchestration server replaces complex, costly and brittle system integration with a powerful standards-based approach that makes it possible to automate a tremendous range of systems, processes and applications.

Today, sharing data among infrastructure systems, and between the infrastructure and applications, typically requires custom, point-to-point integration using SNMP, syslog, proprietary APIs and custom scripts. The resulting systems are complex, brittle and difficult to maintain. As a result much of the data available in IT systems today remain locked in isolated silos. This leaves many organizations without visibility into their infrastructure or assets, which compromises security, increases costs and slows the ability to respond to changing conditions and business needs.

Consider the challenges in network security: Today's business and regulatory requirements demand that organizations provide appropriate levels of network and application access for a constantly changing mix of employees, contractors, partners and devices in data centers and remote locations. Implementing effective policies requires information about a user's employment status, role, and privileges. In some organizations, it's even necessary to restrict a PC's access to the network if their user leaves a secure location or if they exhibit anomalous network behavior, such as worm traffic.

The first version of the Interface to Metadata Access Point (IF-MAP) standard was published by the Trusted Computing Group in 2008, as part of the Trusted Network Connect (TNC) protocol suite that provides an open standard for network access control. The IF-MAP specification defines a standard client-server protocol that aggregates, correlates, and distributes information to and from different systems in real time.

IF-MAP clients, which can range from security sensors like intrusion detection systems, to policy engines, authentication servers, security management systems, asset management systems, network location systems and many more, can publish metadata to the MAP server, search for data, and via subscriptions, receive automatic, immediate updates when data of interest changes - such as when an employee or contractor is terminated or their privileges change. The IF-MAP service is extremely flexible and can aggregate both standardized and user-defined data - including user role and capabilities, device characteristics and availability, authentication and authorization status, physical location, conformance with policy, recent behavior, configuration, and more. A number of vendors, including Juniper Networks, currently support the IF-MAP standard and are deploying powerful, multi-vendor network access control solutions.The Infoblox Orchestration Server (IBOS) is the first dedicated MAP server appliance. The IBOS is fully compliant with the latest version of the IF-MAP standard (version 1.1) and can exchange data with any compliant device that implements the IF-MAP client. Delivered on the proven robust and secure Infoblox NIOS??? operating system, the IBOS appliance provides value-added capabilities as well, including high-availability operation with no data loss, granular client authorization that limits the types of data that can be viewed or modified by each client, and extensive data browsing and log management capabilities.

Available on a range of Infoblox appliance platforms, customers can scale MAP deployments from tens of thousands to millions of meta-data objects, and can support thousands of publish, search and subscribe operations per second. 

SUBSCRIBE TO OUR NEWSLETTER
Stay informed! Sign up to get expert advice and insight delivered direct to your inbox
More Insights