PortsLock

"An easy-to-use security solution that fully protects corporate networks against attacks from the inside."

PortsLock is a firewall with user-level access controls for Windows NT/2000/XP. Once PortsLock is installed, administrators can assign permissions to TCP/IP connections, just as they would in managing permissions on an NTFS partition of a hard disk. It lets you control which users can access what TCP/IP based protocols (HTTP, FTP, SMTP, POP3, Telnet, etc.) on a local computer, depending on the time of day and day of the week. You can also set allowed/denied TCP/UDP ports and IP addresses for incoming and outgoing connections.

 

Keep in mind that almost 80% of all security breaches come from the inside! PortsLock enhances access control possibilities for system administrators, helps them to build a more secure network environment, and protects corporate networks against attacks from the inside.

PortsLock consists of three parts: PortsLock Driver, PortsLock Service, and PortsLock Manager. PortsLock Driver is the core of PortsLock. It is implemented as a special low-level driver tightly integrated into the system kernel. PortsLock Driver works at the transport (TDI) level. Data is only allowed to leave the local system if PortsLock rules allow it. As packets arrive, they are filtered by their type, source address, destination address, port information contained in each packet, and security context.

PortsLock Service should be installed on each client system that you want to protect. PortsLock Service runs automatically in the background and provides communication with PortsLock Driver.

PortsLock Manager is the control interface Systems Administrators use to manage each network computer that has PortsLock Service.

PortsLock is absolutely transparent to users. Users do not have to set up rules in their applications to use the network. Only administrators are allowed to set rules so users without administrative privileges cannot bypass the PortsLock security. It is important to note that PortsLock works perfectly with other personal firewalls and routers installed on the same computer.