Cloud Network Security

Cloud Network Security

  • Protect Data in Motion Among Servers in the IaaS Cloud
  • Adopt Cloud Technologies without Opening Security Gaps
  • Cryptographically Segment your Data from Other Cloud Customers
  • Maintain Control of Encryption Keys

Cloud Network Security

While the cloud provides a compelling case for cost savings, agility and operational efficiency that cannot be ignored, executing IaaS (Infrastructure as a Service) workloads while protecting sensitive information has been a challenging if not impossible task for most organizations.

The lack of a comprehensive cloud network security solution that can protect sensitive works loads in different environments has also been a problem given how new cloud technologies are adopted. It is rare that customers do a hard cut over to any new cloud technology despite the efficiencies the various cloud models provide. More common is a gradual migration where companies adopt technologies that make the most sense for any particular workload. This method of technology adoption tends to leave companies with the full spectrum of clouds from enterprise owned virtualized data centers to private clouds to hybrid and public clouds.

Given this stepwise approach to cloud migration, the availability of flexible cloud network security solutions that allow organizations to protect their sensitive workloads across multiple infrastructures is a critical factor in adoption rate and realization of the cost benefits of the cloud. The good news is that new cloud security solutions are emerging that will keep sensitive information secure in cloud environments allowing organizations of all sizes to take advantage of cloud-based servers and efficient cloud operating models, while minimizing the risk of a data breach or failed audit. These solutions benefit cloud-computing customers by providing the flexibility to migrate applications and servers to the environment that best fits their budgets, technical capabilities, and organizational needs, without opening security gaps along the way.

Flexibility is important because secure cloud computing is still in its nascent stages. Customers who adopt flexible solutions will be prepared to take advantage of new technologies and cost efficiencies in networks and cloud operating environments as they emerge.

Certes Networks has built upon its proven technologies to provide a comprehensive cloud network security solution that makes any cloud safe for sensitive workloads. This will lead to secure and optimized solution architectures for Wide Area Netorks (WANs) data centers and cloud environments that dramatically reduce IT costs.

To learn more about our Cloud Network Security solutions or for pricing information, contact us at 1-888-833-1142 or feel free to ask us a question.

Learn More:
vCEP Datasheet
vCEP Brochure
Cloud Security Solution Note
Making the Cloud Safe for Sensitive Workloads
TrustNet Manager Whitepaper

Related Information:
Certes TrustNet Manager™
CEP VSE Encryption Appliances
10 Gigabit Encryptors

Features and Benefits

Protect Sensitive Workloads
Secure sensitive workloads within the IaaS cloud

Eliminate Security Gaps
Encrypt network traffic from the private data center to the cloud and among VMs running in the cloud with no encryption gaps

Cloud Scalability
Allow any-to-any connectivity among all VMs and Servers without creating point to point tunnels

Cryptographic Isolation
Prevent other cloud customers and the cloud provider from intercepting traffic. Protect the VM and the data center from threats originating in the public cloud

High Bandwidth and Low Latency
Support the bandwidth-critical and latency-critical encryption at the boundaries of trust zones, such as the interface between private data centers and the wide area network. Encrypt at speeds up to 10Gbps with latency in the tens of microseconds

Distributed Performance
Distribute the load of encrypting traffic across each cloud-based VM to the server on which it’s running in order to take advantage of the massive scalability and elasticity of the cloud

Customer Control
Allow cloud users to maintain control of their own policies and keys. Certes Networks offers Network Encryption for the Cloud solutions that provide secure and scalable connectivity among private data centers, central offices and regional offices. This highly scalable solution is also capable of maintaining security controls through technology migrations allowing organizations to securely adopt various cloud technologies at their own pace

Learn More:
vCEP Datasheet
vCEP Brochure
Cloud Security Solution Note
Making the Cloud Safe for Sensitive Workloads
TrustNet Manager Whitepaper

Related Information:
Certes TrustNet Manager™
CEP VSE Encryption Appliances
10 Gigabit Encryptors

Data Center Use Case

Problem:
There are a number of issues with using sensitive data in the cloud:

  • IPsec tunnels terminate at the providers “front door” leaving cloud network security in the hands of the provider and storing keys on a devices shared by other clients
  • Tunnels do not scale for the cloud, where there can be tens of thousands of instances per customer
  • Data in the cloud (which is shared by many customers) is left in the clear

Click for larger Cloud Network Secuirty diagram

Click image to enlarge

Solution:
Building upon our groundbreaking solutions for wide area network and data center encryption, Certes Networks maintains the existing TrustNet solution to support Cloud Network Security. In doing so, we have provided a means for organizations to reduce data center costs through the adoption of cloud computing technologies, while maintaining high standards for protecting sensitive information for compliance and risk reduction.

Benefits:
  • Solution scales to 10’s of thousands of VMs
  • Data is encrypted and authenticated from the client’s servers all the way to the virtual servers leaving no security gaps
  • Cloud customers maintain control of their security (and access to their data) within and between clouds
  • Organizations can protect their cloud-based assets from other tenants through cryptographic segmentation

Learn More:
vCEP Datasheet
vCEP Brochure
Cloud Security Solution Note
Making the Cloud Safe for Sensitive Workloads
TrustNet Manager Whitepaper

Related Information:
Certes TrustNet Manager™
CEP VSE Encryption Appliances
10 Gigabit Encryptors