FileSure technology
Our fundamental principles are power, flexibility, and ease of operation. Built for Windows environments.
No external database technology
Aside from the obvious boon of not having to manage an external database, here are some other pluses of our highly compressed, encrypted, and unalterable datastore files:
| Performance |
By optimizing for high insert and low access rates we achieve significantly better performance than an external database. For you, it means events aren't lost even under heavy load.
|
| Storage savings |
Our compact data format is extremely efficient. FileSure’s data store is massively compressed getting about 5 million records per GB, so it’s unlikely that you will ever need to purge or restore the data store.
|
| Easy backup |
Audit data is simple files in the file system. Your current file-based backups will handle FileSure data perfectly.
|
| Easy archival |
Each system's data is stored in a separate file, and we start a new file each month. You can offload old data simply just by removing a file while having the ability to restore at any time - without any need to stop FileSure and miss important events! Try to do that with a external database!
|
| Security |
You simply don't have to worry about some other user (or DBA!) modifying your audit data with an accidental query. There's no additional security model to learn, establish, or audit. FileSure even includes reports so you can see what changes were made to FileSure itself!
FileSure Data stores are not only tightly compressed, but also encrypted with powerful 64 bit BlowFish Encryption protecting it from people wishing to hide what they are doing.
|
Patent-pending Venn Technology
Our patent pending “Venn Technology” operates
similarly to real-time virus scanners, intercepting every file
operation and applying heuristics to
determine whether or not the operation should be audited or blocked.
| Ability to Target by Program Access |
The Venn Technology not only sees detailed file operations by users, it also discerns what programs are accessing files. This aids in eliminating auditing noise, but more importantly is a cornerstone of our anti-theft approach. To remove/copy to USB device/email/ftp or otherwise steal a file, the file has to be read or opened by a program other than the one in which it was created. Eliminate the ability for a file to be accessed by programs other than the ones in which it is regularly viewed & edited, and you have elmininated the possibility of file theft.
|
No discernable performance impact
FileSure pushes all non-critical processing to background threads to ensure great performance on both high-end servers and less powerful workstations.
Doesn’t use Windows auditing
Using “wildcard” based rules allows FileSure
to solve the largest
problem with native Windows file auditing - auditing noise. In
other words, there is no longer a need to sift through tens of
thousands of meaningless audit log entries just trying to find
the ones that you care about.
Continuous monitoring - No snapshots
FileSure provides continuous monitoring and
doesn’t suffer the shortcomings of snapshot based
auditing tools. Snapshot based tools take pictures at different
times and compare them to see what is different. Audit specific areas are:
- FileSure intercepts every file access and therefore misses
nothing; snapshot tools will miss all but the last change between snapshots.
- FileSure records WHO performed the file operation. Snapshot tools
can NOT gather WHO accessed or changed a file.
- FileSure records who READS a file. Snapshot tools can’t
gather this information. Tracking data read access is a
key piece of information for compliance with many regulatory
requirements.
Threshold alerting
FileSure delivers alerts when user-defined
thresholds are exceeded. Other products claim to have
alerting by sending you an automatic report every few minutes -
this isn’t alerting but it does fill up your inbox.
FileSure only sends alerts when something noteworthy
happens like someone copying a lot of files.
Central and distributed configuration
In a multi-server environment, you can set FileSure
up with individual server rules or multi-server rules, or a combination.
Define a "master" server and apply rules to selected “slave”
servers, or configure standalone server rules. It's your choice!
| Workstation deployment |
We quickly learned there was a need to have our pinpointed file auditing and protection extended to everywhere your files go--including the places you often can't control. Now you can deploy FileSure or FileSure Defend onto all your workstations including laptops and have the complete picture of the day in a life of all key files. File theft and security protections work even when laptops aren't connected. In a multi-department deployment, each slave-server becomes the master for all the managed workstations in the department.
|
In a multi-department deployment, each slave-server becomes the master for all the managed workstations in the department.