


News
RSA 2012
RSA 2012
From February 27th to March 2nd 2012, CORISECIO will be part of the world’s largest IT security conference in San Francisco. On the RSA CORISECIO will present Open Source solutions for Cloud Security.
You can find us at booth 1342.
News
SOA Security
SOA Security
Version 1.2 of the SOA Security Gateway is available now. A download of the SSF Gateway is now available for all interested parties at: http://secrt.corisecio.com.
News
Open XML Gateway
Open XML Gateway
CORISECIO released the Open XML Gateway after a successful Public Beta Test. Using it companies may protect their Web Services in an efficient and easy way against threats. It is available as a free download.
The secRT provides basic security services for different areas
The CORISECIO securityRunTime (secRT) is the basic component on which all CORISECIO products are based. It provides the basic functionality in the form of services for the areas Security, Automation, Management and Infrastructure. With the secRT, companies obtain a complete security infrastructure including a “Security Service Bus” complementing Standard ESB implementations with security functionality. Basic functions, especially in the Policy Administration area, as well as automation mechanisms for distribution and provision of the Security Policy, are available. Supplemented with functional adapters, integrated security solutions may be composed.
Security Services
Basic security services like Entity-Access- and Key-Management are implemented ready-made. Additional cryptography functions can be loaded from external libraries. Through an adapter container, additional Security Adapters may be loaded into the system. New functionality is automatically distributed to the runtime environments and is directly available as a service.
Automation Services
The secRT contains the fundamental parts for the automated Security Policy Enforcement. Generated Security Rules contain Workflows (or models) being automatically enforced. The Policy Enforcement may be done locally (e.g. as local proxy) or centrally (e.g. as Security Service).
Infrastructure Services
The secRT is based on the proven Eclipse OSGI framework. The adapter concept is realized via the OSGI framework. It enables e.g. the loading of functionality during runtime. Additionally basic functions for network communication and logging are provided in the infrastructure component.
Management Services
Management combines several functions for the administration of the security solution. An administration enables the configuration of all components and adapters, while modeling defines the sequence of the security processes. On the basis of administration and modeling the Policy Generator creates the system-wide security rules enabling a dynamic Security Policy.
CORISECIO secRT provides a secure runtime for various security solutions in organizations. The secRT is developed as an Eclispe project and provides several advantages in the Enterprise Version, which enhances the security level of the solution.
Using adapter signature, it can be guaranteed that only allowed adapters are executed in the runtime. Additionally the Enterprise Version provides a central administration for all operated secRT entities in the organization, which improves the level of control over the security solution. Find out more about the secRT.
Using adapter signature, it can be guaranteed that only allowed adapters are executed in the runtime. Additionally the Enterprise Version provides a central administration for all operated secRT entities in the organization, which improves the level of control over the security solution. Find out more about the secRT.
The secRT is a security platform for security infrastructures and is developed as an Eclipse runtime project. During development of the secRT, great emphasis was placed to provide a stable basis for security solutions.
To provide this goal, the secRT offers a multitude of basic requirements for security solutions like an Entity & Key Management, a Certificate Authority and a simple tool for the definition of security processes. Using the secRT, organizations may define customized security solutions to fit their requirements.
Take a look at secRT to find out more about this topic.
To provide this goal, the secRT offers a multitude of basic requirements for security solutions like an Entity & Key Management, a Certificate Authority and a simple tool for the definition of security processes. Using the secRT, organizations may define customized security solutions to fit their requirements.
Take a look at secRT to find out more about this topic.
Did you know that CORISECIO security solutions do not require an additional entity management for entities, which are already existing in the directories of an organization? You can enhance every CORISECIO solution using the adapters LDAP and Remote Directory to directly work with entities inside your directories.
You may choose if you want to import the entities in the CORISECIO Security Repository or even using real-time access to the directory. Using this approach, the administration effort required for CORISECIO solutions is lowered and the costs and time required for the organization is lowered, too.
You may choose if you want to import the entities in the CORISECIO Security Repository or even using real-time access to the directory. Using this approach, the administration effort required for CORISECIO solutions is lowered and the costs and time required for the organization is lowered, too.

Did you know that CORISECIO solutions provide the possibility to model your own security processes? To provide this functionality CORISECIO offers a graphical modeling tool, which enables the user to define complex security processes (e.g. doublechecking of certain actions) with a few mouse clicks.
Based on security enhancements for the BPEL standard, the user may assemble security services, which are customized to the organization´s needs. Find out more about this topic in Modeling.
Based on security enhancements for the BPEL standard, the user may assemble security services, which are customized to the organization´s needs. Find out more about this topic in Modeling.


