
The Catseye™SPN
design, which was reviewed by CygnaCom, provides additional
security to web server applications that access private
backend databases. It allows removal of the database
responder logic to a more secure location behind a
router and provides protection of that logic from external
access and abuse.
The outbound-only
connectivity it requires is consistent with accepted
firewall configuration guidelines and superior to
alternatives that require inbound access to the backend
systems.
The custom responder
interface presented to the external web server is designed
to provide a significant additional barrier to compromise
of the responder and abuse of the database access methods
via the public network.
CygnaCom
Testing and Security labs
|