Packet GENERAL Networks™

Defend Your Data®

LDAP-GENERAL - Solution For Securing LDAP Data
 
Certified LDAP Applications

LDAP-GENERAL for eDirectory (Identity Manager)



LDAP-GENERAL - a new approach to secure LDAP data

Changes in the business place, technological advances, and regulatory environments are driving change within the enterprise. Some changes are reactionary, while others are mandated in order to conduct business. Regardless of the prime motivator, IT organizations that do not meet the new requirements and threats will leave the enterprise at risk. An organization’s enterprise directory is a crucial element in the overall computing infrastructure. Directory services typically provide mechanisms for identification, authentication, and entitlements as well as directory/lookup functions. As the central repository for such critical data, special measures must be taken to administer and protect those data assets.

Lightweight Directory Access Protocol (LDAP) is an industry-standard protocol and mechanism for providing enterprise directory services. Like a relational database, LDAP provides persistent storage for many data assets. However, unlike relational databases, LDAP is highly suited for high-volume and high performance access for directory, authentication, and entitlements data. As its intended usage is to control and provide access to other software subsystems, an organization’s directory service is a very critical (and thus vulnerable) component in an IT infrastructure. Any breaches or other operational compromises to an LDAP service can compromise all related systems downstream.

Threats


* Malicious/compromised "root"

* LDAP Data tampering

* Logs manipulation/destruction

* Loss of physical media

* Insider snooping



Regulatory Compliance by Design

Technology that powers LDAP-GENERAL






Feature Highlights:
  • Transparent data encryption of LDAP repository
  • No changes are made to the LDAP sever to achieve encryption
  • Lifetime FIPS-140 level 2/3 compliant key management
  • Role-Based-Access-Control
  • Protection against privileged user abuse
  • Encrypted backups of the LDAP data
  • Automated patch management
  • Secure LDAP configuration

Benefits:
  • Insider threat mitigation ("root")
  • Regulatory compliance
  • Data security
  • Encrypted backups