- 27 Sep 2023
- DarkLight
Micro Segmentation
- Updated on 27 Sep 2023
- DarkLight
Service Overview
Micro Segmentation is a network observation and security platform that provides protection against malware spread across both server and desktop endpoints, regardless of location. As a SaaS based platform, management of rules and policies is available from anywhere. Policies can be based on endpoint type (ex. production servers, servers that make up a business application) or end user group (ex. Sales, IT). This allows for an incredibly granular protection structure without manually configuring each endpoint. Expedient will assist with the configuration and deployment of Micro Segmentation, and clients have full access to view network traffic paths, create policies, and deploy agents.
Service Features
- Single sign on and multi-factor authentication to the management portal
- Agent-based deployment
- Network visualization to tailor policies to how traffic actually flows
- Assistance with policy, workload group, and tag creation
- Allow list design
- All non-allowed traffic is blocked
Default Deployment Settings
- Default policies for Expedient managed services
- Assistance with agent deployment
- Agents enabled in observe mode, ensuring no disruption to traffic
- Direction on enabling policies
Use Cases
- Ransomware prevention
- Granular network security
- East-west traffic firewall
- Older operating system threat protection
- Windows
- Linux
- macOS
Responsibility and Accountability Matrix
Micro Segmentation Responsibility Matrix | ||||
Task | Expedient | Client | Co-Managed | Co-Managed tasks can be performed by Expedient or Client based on Client's preference |
Tenant creation | X |
|
|
|
User authentication configuration | X | |||
Agent Installation | X | X | X | Expedient will work with clients on best practices for deployment |
Default policy configuration | X | |||
Tag creation | X | X | X | Expedient will work with clients on best practices for tags |
Workload Group creation | X | X | X | Expedient will work with clients on best practices for workload groups |
Policy creation | X | X | X | Expedient will work with clients on best practices for policies |
Best practice guidance | X | Expedient will provide guidance on the best practices for micro segmentation and policy enforcement | ||
Policy enforcement | X |
Supported Platforms
Applications/Platforms Supported |
---|
Expedient Services
|
Operating Systems (virtual or physical)
|
Hypervisors (support for workload and user OS)
|
Hyperscale Cloud (support for workload and user OS)
|