Storage Security Products

Tags: , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , ,

Channel: Other, Networking & Mgmt, Data Protection, Content Management

Dig Deeper
Read On

Although we're not picking a winner in this review, Cisco's 9216i switch (pictured) impressed us with its broad range of functionality. Granted, it does absolutely nothing to protect hosts, but the 9216i let us handle authorization, access control and encryption from a single platform and was easily the most comprehensive offering we tested. Virtual LANs nicely restricted which devices, and even LUNs (logical unit numbers), could be seen from any given host, meaning that a breach mustn't serve up all your data, just that which the compromised server must see. If compliance is a concern, Cisco's integration with RADIUS provides the ability to maintain access logging.

Although the Cisco 9216i--or any other switches we tested--won't be a fit for installations with other vendors' Fibre Channel infrastructures already in place or that use NAS or iSCSI, we found viable ways to satisfy storage-security needs in nearly any configuration.

Access Control

Access control should be straightforward. And if you simply need to determine who can manage your storage network, then it is. But once you start considering who can see what data, things aren't so clear-cut. The problem lies in the overlap of the storage infrastructure with the users and groups defined in most IT operations. For example, in a database you create users and give them access to the data, so the database-encryption products we looked at did not worry about access control. For file- and block-level encryption products, only an add-on at the client level could allow access control by user. Decru has a good solution to this problem--we could even define which applications had access to a given file or folder.


Page:  1 | 2 |3 |4 |5 |6 |7 |8 |9 |10 |Next Page »

Related Reading


More Insights




Currently we allow the following HTML tags in comments:

Single tags

These tags can be used alone and don't need an ending tag.

<br> Defines a single line break

<hr> Defines a horizontal line

Matching tags

These require an ending tag - e.g. <i>italic text</i>

<a> Defines an anchor

<b> Defines bold text

<big> Defines big text

<blockquote> Defines a long quotation

<caption> Defines a table caption

<cite> Defines a citation

<code> Defines computer code text

<em> Defines emphasized text

<fieldset> Defines a border around elements in a form

<h1> This is heading 1

<h2> This is heading 2

<h3> This is heading 3

<h4> This is heading 4

<h5> This is heading 5

<h6> This is heading 6

<i> Defines italic text

<p> Defines a paragraph

<pre> Defines preformatted text

<q> Defines a short quotation

<samp> Defines sample computer code text

<small> Defines small text

<span> Defines a section in a document

<s> Defines strikethrough text

<strike> Defines strikethrough text

<strong> Defines strong text

<sub> Defines subscripted text

<sup> Defines superscripted text

<u> Defines underlined text

Network Computing encourages readers to engage in spirited, healthy debate, including taking us to task. However, Network Computing moderates all comments posted to our site, and reserves the right to modify or remove any content that it determines to be derogatory, offensive, inflammatory, vulgar, irrelevant/off-topic, racist or obvious marketing/SPAM. Network Computing further reserves the right to disable the profile of any commenter participating in said activities.

 
Disqus Tips To upload an avatar photo, first complete your Disqus profile. | View the list of supported HTML tags you can use to style comments. | Please read our commenting policy.
 

Research and Reports

Storage Virtualization Guide
May 2012

Network Computing: May 2012

TechWeb Careers