Applying Thought   
About Wipro
Newsroom
Investors
Careers
  
   
Wipro Technologies Consulting IT Services Product Design Business Process Outsourcing CONTACT US
 
Case Studies
Ideas
 
Search
Technology Infrastructure Home
Global Command Center
Data Centers
Servers & Mainframe Services
Networks
DBA Services
Messaging Infrastructure
Telecom Infrastructure
Desktop Management
IT Help Desk
Security Services
Global Delivery Model
 
Global Sourcing Lounge
 
 
 
TECHNOLOGY INFRASTRUCTURE SERVICES
Case Study
Technology Infrastructure Services
 
Centralized Management of Checkpoint Firewalls
 
 

The Client

The client, a financial services company, has 25 checkpoint firewall gateways all over Europe and uses the checkpoint centralized management tool for management and reporting. Four security professionals from Wipro assist the client in this.

 

The Challenge

The activities performed under Checkpoint Management services are:

Central Monitoring services

  1. Current status of individual firewall modules.
  2. Centrally defining the Security Policies for individual firewalls module and deploying the same. Thus the rules defined for individual firewalls are available at a central place for viewing and modification.
  3. Centralized logging of Alerts and 'log data' by the individual firewalls.

Management services

  1. Addition / Deletion / Modification rules defining access control.
  2. Configuring Network Address Translation to suite client requirements.
  3. Configuration of Site-to-Site VPN using Checkpoint VPN-1 product.
  4. Configuration of Client to Site VPN using Checkpoint VPN-1 product.
  5. Establishing High Availability using Checkpoint's High availability module.
  6. Establishing necessary authentication mechanism for critical services.
  7. Configuration of Alerts to notify situations needing immediate attention.

Reporting

  1. Report on bandwidth usage / ftp transfers / telnet session etc
  2. Reports on top users
  3. Reports on most accessed sites
  4. Reports on top/least requested pages
The Reporting module of Checkpoint is used currently for all reporting purposes.

Given below is a partial list of reports generated on a daily basis using Checkpoint's Reporting Module (Licensed separately).

General Network Use - Predefined Reports

Report Name Description
Firewall Modules Load Split Number of bytes per Firewall Module
Hourly split The number of connections per hour
Last Month Load The number of bytes per day for allowed Connections.
Last Two Weeks Comparison Compares the total duration per day for the last two weeks.
Main Services Comparison The number of connections per hour for Web, FTP and Mail services
Service Use Split The number bytes per service for all network services.

User/Group Activity - Predefined Reports

Report Name Description
Cost Estimation Cost per Client for use of network services
Most Active Clients Summary of bytes and connections per client, plus average duration per Client
User's services use Frequent users of Web, FTP, and Mail services

Suspicious Activity - Predefined Reports

Report Name Description
Blocked Connections details Details on connections either dropped or rejected, showing the total number of blocked connections from each source
Failed authorization connections data Details on failed authentication attempt, including time, user name, and service. Sample report attached.
Failed authorization connections graph Number of failed authenticated connections per hour for the previous day.
Service Split of Blocked Connection Breakdown of blocked connections by Service pie chart.

A sample report used to check failed connections is shown below

 
 

The Solution

Wipro is delivering the sustenance service for Firewall and IDS by carrying out activities like ongoing monitoring incident detection, incident response, incident notification, analysis of logs, MIS reporting, periodic review with client and management of sensors - updation of policies on sensors.

 
The Benefits

The client got the following benefits from this assignment.

Management reports giving a summarized view

Technical reports providing an analyzed view
 
  Send us an email
Request proposal for services
Subscribe to our monthly newsletter
  CASE STUDIES
Secure remote access for an Indian software development company for global roaming users
Remote database administration for a global investment company, USA
Security consulting for a business corporate
  More case studies

 
Contact us Terms of use Privacy Sitemap