Home : Products | CONTROLER
CONTROLER

CONTROLER

The Solution for Global Access Control on the IBM i

CONTEXT

CONTROLER
was introduced in 2003 to answer demands from clients that could not find existing product that fulfilled their security needs on the IBM i.

Since its release, CONTROLER has continually enhanced within the marketplace due to its high technical level and unique approach to security.  CONTROLER protects your data directly.  This unique methodology is second to none in the modern realm of regulatory frameworks such Sarbanes-Oxley (SOX), Basel II, PCI-DSS, and HIPAA.


DESCRIPTION

CONTROLER complements IBM i OS security, either in classic mode or by using adopted authorities. 

Two CONTROLER modules are available: the Access Protocol Control module covers exit points and along with all the traditional access methods, such as FTP, 5250, ODBC, DDM, etc; the Command Control module covers all commands (whether issued remotely or directly from a 5250 interface), jobs, SQL instructions from the SQE engine, and files invoked by the CQE engine.  These two modules can be used separately or concurrently.  CONTROLER is therefore a global access control product.

Examples of controls that you can implement using the Command Control module:
  • Block access or send notification when users try to open a spooled file they do not own.
  • Limit which system values *SECADM can modify.
  • Force qualification of all file names when accessed through a command line (UPDDTA, CRTDUPOBJ, etc).
  • Reject copy or save commands for specific files outside of normal operating procedures.

Examples of controls that you can implement using the Access Protocol Control module:

  • Block authentication protocols using simple, easy-to-maintain rules.
  • Block "Open session request" (not TELNET) according to specific criteria.
  • Install generic controls on remote commands issued from users who do not normally have command-line access.
  • Strengthen security for generic users.
To implement the controls, you have access to a single, integrated interface to define and maintain the corresponding rules.  This interface allows powerful and flexible settings and offers easy access for day-to-day operations.


ADVANTAGES


CONTROLER leads the field in technical performance:

  • Controls all traditional access points (FTP, ODBC, TELNET, NetServer, etc).
  • Controls all user or system commands.
  • Controls the query access from the SQE and CQE engines.  Blocks unwanted SQL queries from accessing specific fields and/or files.
  • Ensures very low impact on system performance.
  • Provides an extensive vocabulary for rule definition.
  • Includes simulation and learning modes.
  • Secures your data (not the access route) by using powerful, easy-to-understand rules.
  • Allows alerts and messaging (e-mail, popup, syslog) when unauthorized actions are performed.
  • Produces reports in many different formats (XLS, CSV, PDF, etc).
  • Includes a standard off-the-shelf access model.
  • And much more...

BENEFITS

  • Significantly reduce the time and associated costs required to achieve regulatory compliance.
  • Record and act on security incidents rapidly and effectively.
  • Deter fraudulent activity and encourage best practices.

Try it for yourself.  Experience the power of Cilasoft Software for 40 days—FREE.