JITSEC.NET - Just in Time Security for/from the Internet

by Jiri Janecek

TARGET MARKET:

Small Business Servers - economical solution for protecting Microsoft .NET servers -


Linux box  is designed as an external "firewall" for MS WINDOWS servers. It is I/O interface between Internet (cable, DSL, frame relay, ..permanent connection) and LAN I/O (Intranet) replacing, duplicating, or extending functionality of  ISA server.

The idea is that the Internet users (and hackers) see Linux/Apache on the Internet instead of  Windows operating system. At the same time the Linux box should secure and enhance (speed up) Internet access. To Windows servers/Windows LAN the Linux Box is standard Internet Connection. Interoperate with SBS servers - ISA, Exchange, SQL, WIN OS.

Linux hardware and OS configuration (ideal):

Linux/Apache OS

Connection or network card to the Internet

LAN network card 100Mbps to/from SBS server

PIII 500+ processor (or dual for redundancy)

512+ RAM (caching)

CD and floppy

Two 9 GIG mirrored SCSII HDrives (IDE?)

Older used box can be used -- the cost/price of HW should be in $500 range.

========================================================

Linux Custom software modules/functionality

  1. Secure remote access with granular access control
  2. Remote Web configuration/management
  3. Router - NAT - provide I/O to the Internet and I/O to the LAN
  4. Firewall - IP and URL filtering  (ZoneAlarm, Linux Security products)
  5. Antivirus software management - stop/cure infected files (partner with http://www.alwil.com?)
  6. Anti DOS (Denial of Service bouncer) - challenge the IP address and reject if spoofed
  7. Domain Name Controller (DNS - Bind) - replicating with Windows Active Directory (ADSI script)
  8. Caching HTML/XML pages to/from WIN.NET/IIS server (WIN server is the middle tier - 2nd or 3rd ..serving both the Internet (external) and Intranet (internal) LAN.
  9. Load Balancing
  10. SMTP (Mail Server) -- front end to the Exchange Server ...
  11. others

The system MUST be easily extendable and upgradeable to keep with the evolving security threats (ahead of hackers). First three month are free, then there is $40+ months service contract.

1 -3 software functionality should be priced at $199- additional modules 4 to 6 should cost like $299

=====================================================

Linux/Windows integration

To the Windows Server/Workstation the Linux box should be transparent - but one should be able to manage/control the Linux box via browser. There should be integration via the ADSI (Active Directory scripting).

The target market is MS Small Business Server 2000 or the next "Bobcat" release. But WIN2000 servers, Windows .NET servers (or  XP workstations ?) should be supported

=====================================================

For total (customer cost) of $500 - $999 we should have very economical and competitive product.

 Service contracts - outsourcing the small business security needs should provide steady revenue. Maintaining security and operation stability is a continuing,  technically demanding, and ever changing (race with the hackers)  process. This should be ideal service to outsource in the different time zone (2AM - 4 AM US time zones) and lower labor cost with better IT skills. The projected cost should be $40 - $80/month.

Copyright © 2000, 2001, 2002 Computer Studio - All rights reserved