Kabira Next-Generation Security
The successful design, implementation and management of distributed, high-volume, mission-critical information systems hinges on the absolute security of both data and the critical applications that users access when doing business electronically. Kabira features a powerful and flexible security component and security services that ensure the confidentiality, integrity and security of all data and mission-critical applications deployed on the Kabira Transaction Platform. Taken together, they represent a next-generation platform for development and deployment of secure, distributed applications.
The Kabira Security Services & Components include the following:
Fine-Grained Control Over Rules of Access
Users can choose to secure different types of data, as well as different parts of their data. For example, you may wish to disassociate access to credit card numbers from access to name and address information. Additionally, users can secure the behavior (operations) of an application in conjunction with the data.Add Functionality Retroactively
After the Security Component is enabled, existing, non-secure applications can receive the full range of security functionality while the system is running and without changing a line of code within the application.Highest Degree of Security with Lowest Performance Impact
Kabira offers customers the flexibility to enable security services only for the operations of their choosing. Performance impact does not extend to running operations that are not security-enabled.Support for Existing Security Technologies
Kabira security services provides native services for authentication, access control, cryptography and secure network communications. Kabira also enables access to the repositories of third-party, industry-standard security mechanisms. Users are free to develop applications for secure deployment in environments that utilize various technologies.Ease of Administration
Administer security policy in real time, on a running system. Simply load new deployment specs to alter security policy.Secure Network Communication Services
HTTP and Web Services support secure, encrypted communications by integrating the OpenSSL toolkit, allowing applications to implement all security-based resources used by their application as model elements.Cryptography Services
Allows applications to ensure the confidentiality of user data at the model-level.Credential Services
Provides transparent mapping of model elements to implementation-specific credential data for a wide variety of security system implementations.Authentication Services
Authenticates principals (system users) and their credentials.Access Control Services
Role-based access control and model-level Access Control List (ACL) are used to define fine-grained rules of access to a given resource.Secure Audit Services
Secure event logging, notification and alarming mechanisms create a secure audit trail.

