IBM Guardium Data Encryption

Similar documents
BigFix 101- Server Pricing

ISAM Advanced Access Control

ISAM Federation STANDARDS AND MAPPINGS. Gabriel Bell IBM Security L2 Support Jack Yarborough IBM Security L2 Support.

BigFix Query Unleashed!

MSS VSOC Portal Single Sign-On Using IBM id IBM Corporation

SWD & SSA Updates 2018

Threat Intelligence to enhance Cyber Resiliency KEVIN ALBANO GLOBAL THREAT INTELLIGENCE LEAD IBM X-FORCE INCIDENT RESPONSE AND INTELLIGENCE SERVICES

Integrated, Intelligence driven Cyber Threat Hunting

Fabrizio Patriarca. Come creare valore dalla GDPR

Identity Governance Troubleshooting

IBM MaaS360 Kiosk Mode Settings

May the (IBM) X-Force Be With You

IBM Security technology and services for GDPR programs GIULIA CALIARI SECURITY ARCHITECT

IBM Security Guardium: : Sniffer restart & High CPU correlation alerts

IBM Security Identity Manager New Features in 6.0 and 7.0

The New Era of Cognitive Security

Cybersecurity. You have been breached; What Happens Next THE CHALLENGE FOR THE FINANCIAL SERVICES INDUSTRY

Using Buffer Usage Monitor Report & Sniffer must_gather for troubleshooting

Deploying BigFix Patches for Red Hat

IBM Security Guardium: Troubleshooting No Traffic Issues

Be effective in protecting against the cybercrime

Securing global enterprise with innovation

Analyzing Hardware Inventory report and hardware scan files

Ponemon Institute s 2018 Cost of a Data Breach Study

What's new in AppScan Standard/Enterprise/Source version

Introduction to IBM Security Network Protection Manager

IBM Security. Endpoint Manager- BigFix. Daniel Joksch Security Sales IBM Corporation

4 Reasons to Love the New IBM Guardium Data Encryption v3.0

IBM UrbanCode Deploy V6.2 provides the tools needed to automate the application deployment pipeline

QRadar Open Mic: Custom Properties

What's new in AppScan Standard version

IBM Application Security on Cloud

Junction SSL Debugging With Wireshark

Configuring your policy to prevent appliance problems

IBM Security Network Protection

HTTP Transformation Rules with IBM Security Access Manager

How AppScan explores applications with ABE and RBE

IBM Cloud Lessons Learned: VMware Cloud Foundation on IBM Cloud VMworld 2017 We are a cognitive solutions and cloud platform company that leverages th

More on relevance checks in ILMT and BFI

IBM Security Access Manager Single Sign-on with Federation

Remote Syslog Shipping IBM Security Guardium

Interpreting relevance conditions in commonly used ILMT/BFI fixlets

IBM Security Support Open Mic

Let s Talk About Threat Intelligence

Notice on Names and Logos Used in This Presentation

Modern Realities of Securing Active Directory & the Need for AI

IBM BigFix Relays Part 1

IBM United States Software Announcement , dated February 17, 2015

QRadar Feature Discussion IBM SECURITY SUPPORT OPEN MIC

Configuring zsecure To Send Data to QRadar

Optimizing IBM QRadar Advisor with Watson

Continuous Diagnostics and Mitigation demands, CyberScope and beyond

Outsmarting the Smart City DISCOVERING AND ATTACKING THE TECHNOLOGY THAT RUNS MODERN CITIES

IBM WebSphere Service Registry and Repository V8.5.6 offers enhancements to improve REST service support and user productivity

IBM Cloud IBM Cloud for VMware Solutions Zeb Ahmed Senior Offering Manager and BCDR Leader VMware on IBM Cloud VMworld 2017 Content: Not for publicati

IBM BigFix Client Reporting: Process, Configuration, and Troubleshooting

Security Support Open Mic: ISNP High Availability and Bypass

IBM Security Identity Governance and Intelligence Clustering and High Availability

How to Secure Your Cloud with...a Cloud?

XGS: Making use of Logs and Captures

IBM Security Guardium Tech Talk

New SUSE Enterprise Linux offerings for IBM System x, BladeCenter, idataplex, and PureSystems servers

Service Description. IBM Aspera Files. 1. Cloud Service. 1.1 IBM Aspera Files Personal Edition. 1.2 IBM Aspera Files Business Edition

IBM Security Network Protection Open Mic - Thursday, 31 March 2016

XGS & QRadar Integration

IBM Threat Protection System: XGS - QRadar Integration

Disk Space Management of ISAM Appliance

Security Update PCI Compliance

QRadar Support 101: WinCollect Troubleshooting

Staying GDPR Ready with MaaS360. Ankur Acharya Offering Manager, IBM MaaS360

Security Support Open Mic Build Your Own POC Setup

IBM Security Network Protection Solutions

IBM BigFix Compliance

Securing communication between SDS VA and its remote DB2 DB

Oracle Business Intelligence Enterprise Edition and Oracle Business Intelligence Applications Supported Platforms Summary for IBM May 2013

We will see how this Android SDK class. public class OpenSSLX509Certificate extends X509Certificate {

IBM Transparent Data Migration Facility for z/os V5.6 delivers data migration enhancements

GX vs XGS: An administrator s comparison of the two products

IBM WebSphere Cast Iron Live V7.5 delivers key enhancements that include improved security capabilities and increased connectivity options

The McGill University Health Centre (MUHC)

IBM Security AppScan now supports SAP code quality and data loss prevention testing with Virtual Forge CodeProfiler for IBM Security AppScan Source

HPE Security ArcSight. ArcSight Data Platform Support Matrix

Worrying About Your Whitelists

IBM Security Access Manager v8.x Kerberos Part 1 Desktop Single Sign-on Solutions

IBM Security Access Manager

Penetration testing a building automation system

IBM Security Guardium Tech Talk

WebSphere Commerce Professional

We will see how this Android SDK class. public class OpenSSLX509Certificate extends X509Certificate {

Le sfide di oggi, l evoluzione e le nuove opportunità: il punto di vista e la strategia IBM per la Sicurezza

IBM AIX Operating System Service Strategy Details and Best Practices

IBM Transparent Data Migration Facility for z/ OS (TDMF z/os) V5.7 delivers data migration enhancements and the z/vm Agent for TDMF z/os

IBM BigInsights Security Implementation: Part 1 Introduction to Security Architecture

IBM Latin America Software Announcement LP , dated November 13, 2012

IBM Unica Marketing Operations Version Publication Date: June 7, Recommended Software Environments and Minimum System Requirements

Comprehensive Database Security

IBM Europe, Middle East, and Africa Software Announcement ZP , dated October 2, 2012

XGS Administration - Post Deployment Tasks

Accelerating growth and digital adoption with seamless identity trust

IBM Security QRadar. WinCollect User Guide V7.2.7 IBM

Transcription:

IBM Guardium Data Encryption RELEASE TAXONOMY FOR LINUX/AIX/WINDOWS 10-October-2018

GDE Taxonomy Version V.0.0.0 Major V.R.0.0 Mod V.R.M.0 SSE V.R.M.F Fixpack V.R.M.F Cadence 36-48 Months 12-15 Months As per need 1 Month As required Major New Features Architecture Changes New Features Component Changes Support for new OS Versions (major/minor/kernel) X X X X X X X X X New Kernel Updates X X X X X Hot Fixes X X X X X NOTE: All above mentioned release will be available to all IBM GDE Customers. 2 IBM Security

IBM & Version conventions for GDE Numbering convention Type Tests performed by IBM Support period V.0.0.0 Version - Product download experience - Installation of product - New feature validation - Regression of Existing features - Migration Testing - X-Force Security Testing (Pen-Testing) V.R.0.0 Major - Product download experience - Installation of product - New feature validation - Regression of Existing features - Migration Testing - X-Force Security Testing (Pen-Testing) V.R.M.0 Mod - Product download experience - Installation of product - New feature validation - Migration Testing V.R.M.F V.R.M.F SSE (No Enabler software update) Fixpack (No Enabler software update) - Product download experience - Installation of product - Product download experience 3 (Standard) + 2 (Extended) years of support 3 (Standard) + 2 (Extended) years of support 3 (Standard) + 2 (Extended) years of support Supported till 3 + 2 years of support from last V.R.M Supported till 3 + 2 years of support from last V.R.M 3 IBM Security

GDE with respect to Thales e-security Taxonomy Thales Major release Service pack Cumulative Patch IBM Major, Mod or SSE Major, Mod or SSE SSE or FP Timeframe for IBM Support w.r.t Thales 30-45 days of Thales release 30-45 days of Thales release 5-7 days of Thales release Monthly Patch SSE or FP 5-7 days of Thales release Hot Fix FP or Hot fix directly from Thales Immediately Comments Contains major features and Architecture changes Contains new features and component changes Support for new OS versions and some enhancements If patch contains only Kernel fixes then IBM patch will be available immediately Hot fixes NOTE: IBM release is applicable to release of Data Security Manager (DSM), Vormetric Transparent Encryption (VTE), Vormetric Tokenization Server (VTS), Vormetric Teradata Protection (VPTD) and Vormetric Application Encryption (VAE) under IBM brand of Guardium Data Encryption (GDE) 4 IBM Security

GDE Linux Taxonomy for VTE Agents Linux IBM Timeframe for IBM Support w.r.t Thales Example Comments Major release SSE 30-45 days of Thales release RHEL 7, SLES 12, Ubuntu 16.04 Major OS releases typically include significant kernel enhancements, new features and file systems. Minor/Service pack, Update or Point SSE 30-45 days of Thales release RHEL 6.6, SLES 11 SP3, Ubuntu 16.04.1 OS Service pack or update releases don t include significant new features but on occasion break kernel binary compatibility. New/Critical Kernel Security Patch FP Immediately In exceptional cases, when more than 4 days are required, IBM will inform customers of the planned release date. NOTE: 1. IBM GDE is supported by Thales e-security. IBM Version/Major release will take 30-45 days of Thales release. All limitations and conditions by Thales e-security will still apply to IBM GDE. 2. A VTE patch will be released for Linux critical Kernel Security updates that resolve CVEs/vulnerabilities with a score > 7 (critical severity). The VTE patch will be available 4-7 business days after the GA of the Linux kernel security patch. 3. With every new VTE release only the latest 2 major release versions of Linux will be supported. For example, VTE 6.0 will support RHEL 6, 7, SLES 11 and 12. The last VTE v5.x service pack release will continue to support RHEL 5, SLES 10 for 2 years after VTE 6.0 release as per IBM release conventions. 4. Linux security patches rarely break compatibility. These patches can be applied by the customer without having to upgrade VTE software. In rare situations when there are kernel patches that break compatibility, IBM will provide a corresponding patch immediately after Thales patch that will be compatible with the Linux kernel patch. 5. Some major OS functionality may not be supported in a IBM FP/SSE release. They will be called out and planned for in the next IBM major or minor release. 5 IBM Security

GDE Windows Taxonomy for VTE Agents Linux Major release Service packs Security & Cumulative Patches IBM SSE SSE IBM FP or other release are not required Timeframe for IBM Support w.r.t Thales 30-45 days of Thales release 30-45 days of Thales release NA Example Windows 2008, Windows 2008 R2, Windows 2012, Windows 2016 Windows 2008 SP1, Windows 2008 SP2, Windows 2012 SP1 KB-5201652, KB-3143142 Comments Major OS releases typically include significant kernel enhancements, new features and file systems. OS Service pack or update releases don t include significant new features but on occasion break kernel compatibility. Windows patches rarely break compatibility. These patches can be applied by the customer without having to upgrade VTE Software NOTE: 1. IBM GDE is supported by Thales e-security. IBM Version/Major release will take 30-45 days of Thales release. All limitations and conditions by Thales e-security will still apply to IBM GDE. 2. Windows patches rarely break compatibility. These patches can be applied by the customer without having to upgrade VTE software. In rare situations when there are kernel patches that break compatibility, IBM will provide a corresponding patch immediately after Thales patch that will be compatible with the Windows kernel patch. 3. Some major OS functionality may not be supported in a IBM FP/SSE release. They will be called out and planned for in the next IBM major or minor release. 6 IBM Security

GDE AIX Taxonomy for VTE Agents AIX Major release Service pack, Technology level or update release Kernel & security patches or Service pack for Technology level IBM SSE SSE Timeframe for IBM Support w.r.t Thales 30-45 days of Thales release 30-45 days of Thales release Example AIX 8.1 AIX 7.1 TL4 FP Immediately AIX 7.1 TL4 SP4 Comments Major OS releases typically include significant kernel enhancements, new features and file systems. Service pack, Technology level or update releases don t include significant new features but on occasion break kernel binary compatibility. Kernel patches or TL Service pack don t break compatibility. NOTE: 1. IBM GDE is supported by Thales e-security. IBM Version/Major release will take 30-45 days of Thales release. All limitations and conditions by Thales e-security will still apply to IBM GDE. 2. AIX security patches rarely break compatibility. These e-security patches can be applied by the customer without having to upgrade VTE software. In rare situations when there are kernel patches that break compatibility, IBM will provide a corresponding patch immediately after Thales patch that will be compatible with the kernel patch. 3. Some major OS functionality may not be supported in a IBM FP/SSE release. They will be called out and planned for in the next IBM major or minor release. 7 IBM Security

IBM GDE IBM Guardium Data Encryption (GDE) is OEM product developed by Thales e-security. IBM performs testing on top of Thales e-security product before releasing it to customer. This helps keep product sanitized for : Security Vulnerabilities (Zero day vulnerabilities) Installation & deployment issues Major product issues IBM receives the software product for testing and releasing from Thales e-security within 30 days of Thales release. IBM strives to release within 45-60 days from the date of Thales e-security release. However, IBM releases may be delayed as a result of discoveries found during the testing process or consolidation of multiple software components into a single IBM release. If IBM finds issues or security vulnerabilities in Thales release then it may delay in IBM release until issues have been resolved by Thales. 8 IBM Security

THANK YOU FOLLOW US ON: ibm.com/security securityintelligence.com xforce.ibmcloud.com @ibmsecurity youtube/user/ibmsecuritysolutions Copyright IBM Corporation 2016. All rights reserved. The information contained in these materials is provided for informational purposes only, and is provided AS IS without warranty of any kind, express or implied. Any statement of direction represents IBM's current intent, is subject to change or withdrawal, and represent only goals and objectives. IBM, the IBM logo, and other IBM products and services are trademarks of the International Business Machines Corporation, in the United States, other countries or both. Other company, product, or service names may be trademarks or service marks of others. Statement of Good Security Practices: IT system security involves protecting systems and information through prevention, detection and response to improper access from within and outside your enterprise. Improper access can result in information being altered, destroyed, misappropriated or misused or can result in damage to or misuse of your systems, including for use in attacks on others. No IT system or product should be considered completely secure and no single product, service or security measure can be completely effective in preventing improper use or access. IBM systems, products and services are designed to be part of a lawful, comprehensive security approach, which will necessarily involve additional operational procedures, and may require other systems, products or services to be most effective. IBM does not warrant that any systems, products or services are immune from, or will make your enterprise immune from, the malicious or illegal conduct of any party.