KaVaDo InterDo
KaVaDo InterDo

KaVaDo InterDo

A useful tool in the fight to keep your server secure.

Alan Stevens

As essential as they are, all the firewalls featured this month operate mostly at the network level.

HTTP requests, typically carried unfiltered by most firewalls, can still be used to manipulate known server vulnerabilities, tamper with cookie information, manipulate URLs and so on. It's these application-level issues that InterDo, from Israel-based KaVaDo, addresses.

Advertisement

The software that makes up InterDo is installed and run on a Windows NT 4.0 or 2000 server, with the main components running as background services. For optimum protection, the host system should be a dedicated server, although InterDo can reside on the same system as a protected web server, if required.

It can also be bought pre-installed on an Intel-based server appliance (from £14,300 ex. VAT) ready to plug straight into the local area network and begin working.

One of InterDo's key features is its ability to protect almost any HTTP 1.0 or 1.1 based application running on any platform. HTTPS support is also provided.

However, protection isn't automatic and a fair amount of configuration is needed, which can vary from a couple of hours for a single application on one server to several days for more complex distributed applications. Fortunately, the process isn't difficult and help with deployment will normally be included in the price.

Configuration is done via a custom Java-based console. The first step is to define one or more tunnels linking the internet with the web server/s on the protected network, done by specifying the IP addresses and ports to monitor and connect to.

Next, applications are defined by providing the paths to their web server directories with any not specified covered by a catch-all default security policy.

The final task is to decide on the types of checks to be made by associating so-called security pipes. Several are provided, starting with the AllowList pipe, which limits the directories that users are allowed to access.

Cookie pipes stop cookie information being used inappropriately, while the database pipe checks to make sure HTTP requests don't contain harmful SQL commands.

Other pre-defined pipes prevent URLs being manipulated and HTTP parameters being misused. Another blocks access to specific web server and application vulnerabilities. Like most, it can be customised to deal with new threats as they arise.

Some experimentation is required to get the right configuration, but there's no need for any code changes. The impact on performance will depend on the applications and hardware involved, but KaVaDo claims that the software can support 500 to 1,000 concurrent users using a single InterDo server.

Scaling beyond that is possible by deploying multiple servers, managed from a single console.

As with most security products, InterDo isn't a complete solution; a firewall is still essential, along with antivirus and intrusion detection tools. However, it provides a level of application protection not possible using those tools alone.

Price: From £10,700 (ex. VAT) for a single tunnel.

Minimum requirements:

Hardware 700MHz Pentium III; 128Mb of Ram. (InterDo appliance is a dual-processor Pentium III rackmount server).
Software Windows NT 4.0/2000 (latest service packs should be applied).
Compatibility: Platform-independent. Works with all major web servers and browsers. Supports HTTP and HTTPS protocols.

Contact: KaVaDo 020 7604 4466
www.kavado.com

Product overview

  • Price: £10700
  • Manufacturer: KaVaDo
  • Specifications:

Ratings

  • Overall rating: n/a
  • Features: n/a
  • Performance rating: n/a
  • Value for money: n/a
  • Average user rating:
Rate this product

Verdict

Pros:

Platform/application-independent.
Cons: HTTP-based applications only.

  • Have your say
  • Send to a friend
  • Print
  • Digg
  • Reddit
  • Share

Tags:

Advertisements

Do you agree?

See also

Related whitepapers

Most watched

eu flag

V3.co.uk weekly debrief, 6 Nov 09

This week, Europe decides what to do with illegal file sharers

Intel unveils its micro server platform

Small-enclosure systems take aim at hosting market

Analysis and Reports

Remote access - Three steps to getting connected

3.4 million UK professionals now work from home – is your company equipped?

Cost benefits of a global collaboration network

This white paper is a must read for organisations looking for evidence of the bottom-line benefits of high-definition video and voice communications

Poll

Impact of Information Overload poll

Impact of Information Overload poll

What is the biggest problem your firm faces as a result of the data explosion?

View poll results

Advertisement

White paper library

Keep up to date with the latest products, services and technologies from the world's leading IT companies; IThound.com brings you over 6,000 white papers, case studies and analyst reports.

Advertisement

Newsletter signup

Sign up for our range of FREE newsletters:

Existing User

Newsletter user login:

Enter email address to edit your newsletter preferences

Job of the week

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Hiring now on ComputingCareers:

Related IT jobs

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Advertisement

Spotlight

shackleton

Content management tools "barely being used"

Open Text chief predicts more consolidation in ECM market

Scott Totzke

Interview: Scott Totzke, VP global security, RIM

We ask the BlackBerry maker's head of security what CIOs...

Apple Magic Mouse

Review: Apple Magic Mouse

Multi-touch makes an appearance on Apple's latest mouse

clouds

Industry needs to come clean on cloud security

Trend Micro CTO warns of widespread data theft

Primary Navigation