Change Management

With vGate, secure configurations can be easily enforced throughout the entire virtual environment. Once instructed, the product will maintain the specified security level.

Proactive control

Mandatory access control and delegation mechanisms allow the explicit separation of infrastructure and security administrators while preventing self-escalation.
vGate also takes control over virtual machine templates, preventing:

  • Virtual sprawl
  • Making templates (cloning) security-enabled machines

Configuration policies

Policies are based on security labels and control literally each and every configuration aspect of virtual machines and infrastructure. Preconfigured policy templates were created with respect to applicable compliance regulations and can be fine-tuned as needed. With vGate, there’s no need to worry about policy overlaps –all configuration settings work together to form the most secure configuration.

On ESX servers, policies govern local and network access and any configuration changes, including hardware and software installation.

On virtual machines, policies control not only offline configuration changes, but also actions that compromise VM data on the fly:

  • Using clipboard and drag-and-drop
  • Downloading virtual machine to desktop
  • Making snapshots

Eventually, all configuration changes are moderated and approved by designated security administrators and can be rolled back as necessary.