With the understanding that every endpoint has a different set of external interfaces, based on differing standards but all leveraging the standard IP protocol stack - Safend created a protocol-level, generic, semi-permeable barrier that can be "wrapped around" any device.
At the heart of this barrier - dubbed "Digital Membrane" - is a unique kernel-level protocol inspection engine that analyses in real time all inbound and outbound communication interfaces for a given device. The engine examines all seven protocol layers - from the physical to the application layer.
The Digital Membrane monitors and controls all incoming and outgoing traffic for each device - blocking or allowing access or data based on highly-granular security policies. Barrier permeability is controlled in accordance with organizational security policy – granularly defined in the Safend Security Management console.
The result - total policy-based monitoring and control at all protocol layers – enabling previously unheard-of visibility and control over devices, applications, and actual data transferred.
|