Functional Overview
Accops HySecure is a Secure Access Gateway that:
- Allows trusted remote users to access any application securely over the internet, using secure protocols like TLS 1.2, 1.3 and strong configurable ciphers.
- Supports granular access control for - Application, user, and device level; and various authentication mechanisms such as - Microsoft Active Directory, LDAP, SAML, RADIUS, or local authentication.
- Supports Clientless Access where the access provided through browsers helps hide the details of the application from the remote user.
- Supports client-based application access in case more control is required by the user. The applications can also be accessed through mobile devices like iPads, Android phones, or iOS phones.
- Acts as an IdP (Identity Provider) and interacts with Service Providers using SAML to provide Single Sign-On with applications that are delivered as SaaS like Office 365, Salesforce, etc. Alternatively, it can also be used as an Identity Service Provider by hosting the applications mentioned above. In either case, an Accops proprietary solution, HyID, can be used for Multi-factor Authentication with password authentication being one and the other being sms/e-mail token, biometrics, etc.
The following is a standard deployment and some of the common use cases:
Use Cases
Access to organization resources and applications
This is the core solution HySecure provides and helps the remote users access the company resources like applications, networks, VDI (Virtual Desktop Interface), or hosted applications, in a highly secure manner. Remote users need to have access to the internet and a browser. The network access can be access to a subnet, a range of IP addresses, or a specific IP address.
This kind of access can also be provided to vendors or employees working from home.
Access from Remote Device
The remote users can connect to the organization’s resources using web-based portals, through a client, or using a hybrid portal. The support of pure web-based portals for accessing the organization’s resources helps in seamless access of those resources for remote device users.
Restricted Internet for Remote users
HySecure can also set up the remote user configuration in a way that forces them to route all traffic through the HySecure Gateway. As a result, internet restrictions can be applied to them resulting in better user productivity.
Prevention of Data Leakage
HySecure can also help ensure that the users who connect to the network are not able to print the screen, record the desktop events, or even access the clipboard. This restriction can be applied to selective users.
Replacing existing solutions hassle-free
An existing appliance-based VPN solution can be replaced with Accops HySecure MFA and end-point security, in a relatively seamless manner.