Garphic Airlock Secure Access Hub

Airlock Gateway 7.6

Airlock Gateway 7.6 breaks new ground in anomaly detection. The Airlock Anomaly Shield is based on machine learning and is trained directly with the data of the application to be protected.

No less important are secure connections to the backend: an absolute must in times of zero trust. Maintaining these is now even easier thanks to a separate section in the configuration of Airlock Gateway.

For the perfect implementation of barrier-free websites, the remaining time until the session expires can now also be sent to the browser. Reliable protection of REST resources makes it necessary to distinguish precisely whether a resource is addressed with or without a slash. A small but subtle difference that Airlock Gateway now knows exactly.

Anomaly Detection using Machine Learning

The latest gateway release marks a new era in the defense against unwanted access. The Airlock Anomaly Shield uses machine learning technologies to detect anomalies in sessions and react to them with appropriate actions. The Anomaly Shield is trained directly on the data of the protected application and is therefore optimally adapted to the protection of these applications. 

Monitoring of the Anomaly Shield is integrated in logging and reporting,  new dashboards show the protection effect. 

Simplified SSL/TLS Settings for Back-ends

The assumption that back-end hosts reside in a secure internal zone and therefore do not need an encrypted connection is outdated. Zero-trust considerations require that traffic between two systems be encrypted. There is now a separate tab for SSL/TLS settings on the back-end groups, making it easy to configure secure connections between Airlock Gateway and the back-end hosts. Client certificates, CAs, ciphers and protocol versions for mutual SSL in the back-end can thus be easily administered. It is now also possible to configure the SSL/TLS version and the cipher suite directly on virtual hosts.

Protecting Microservices

The heart of the Airlock Gateway also drives the Airlock Microgateway. This brings the protection of microservice architectures into focus. Various small improvements ensure a well-rounded solution. This includes, e.g., the distinction between REST resources with and without trailing slashes, the use of role-based access control in a distributed scenario with multiple gateways, and the logging of tracing headers. 

Accessibility and session lifetime

Accessible applications face the challenge of showing users the remaining lifetime of the current session. Since Airlock Gateway manages these sessions, this is not an easy task for applications. With the new rewrite variables containing this timing information, it is now possible to make this data available to the application, for example by writing it to a header.

Airlock Microgateway 2.0 was also published in May 2021.

Information for you

-Our whitepapers-

Whitepaper: How to make cIAM a success

Increasing requirements for security and user-friendliness make Customer Identity and Access Management an essential. Read our whitepaper to find out how you can secure your competitive advantage with the right CIAM strategy.

 

Request whitepaper

Whitepaper: Security for cloud-native applications

You can read about how companies can ensure the security of web applications and APIs in Kubernetes in the white paper "Security for cloud-native applications", which was created in collaboration between heise and Airlock.

 

Request whitepaper

Whitepaper: Zero Trust is a journey

The ongoing digital transformation of the world is progressing and having a profound impact on our personal and professional lives in ways that were difficult to imagine just a few years ago.


This white paper discusses the effects of continuous digitalization and its impact.

Request free of charge

Off to DevSecOps

In this white paper, you will learn the most important insights into how you can implement DevSecOps successfully and efficiently, which security components are required for this and the advantages of a microgateway architecture.

 

Request free of charge

Airlock 2FA - Strong authentication. Simple.

Double security - this is what two-factor authentication offers in the field of IT security.


Find out more about strong authentication and the possibilities offered by Airlock in our white paper.

Download for free

Further whitepapers

We provide you with free white papers on these and other topics:

 

  • Successful IAM projects
  • compliance
  • Data protection (DSGVO)
  • Introduction of PSD2
  • PCI DSS requirementsPCI DSS requirements
Request free of charge