Components
HySecure Components
The core components of HySecure are:
- Gateway
- Management Console
- End-user Access
Gateway
In a typical scenario, a Gateway comprising multiple modules is located at the network’s edge. It accepts requests from remote clients and allows them to access the organization’s resources based on the configured policies. The Gateway, also referred to as HySecure or HyID Server, comes as a part of an ISO image of a security-hardened enterprise-class Linux distribution. The Gateway must be deployed in a cluster with 1 or more nodes.
Access Node
The HySecure Access Node is a gateway for granting access to private applications. It validates and generates app access tokens, maintains an audit log for application access, monitors and terminates idle application sessions, collects data on user activity, requires connectivity with various applications, and operates in an Active-Active mode.
Policy Nodes
The HySecure Policy Node has several responsibilities, including user authentication, establishing a portal or dashboard for users, issuing user session tokens, authorizing application access requests, requiring connectivity with Active Directory (AD) or Identity Provider (IDP), and operating in an Active-Active mode.
Turbo Node
The HySecure Turbo Node operates by running L3 VPN services and functions in an Active-Passive mode.
Load Balancer Node
The HySecure Load Balancer Node provides load balancing capability for Accops services, operates in an Active-Passive mode, and includes a built-in failure module that enables Active-Passive switch-over capability based on a floating Virtual IP address.
Config DB
The HySecure Config Node hosts database and configuration files. It stores configuration data, operates in an Active-Passive mode with data syncing from the Active to Passive nodes, hosts critical housekeeping services, and synchronizes important configuration settings between the Policy server, Access Nodes, and other config nodes.
Management Console
Accops HySecure has a web-based management console for easy and centralized user management, session management, policy management, and server configuration control. The console also provides a graphical dashboard showing live users, license usage, resource usage, and important gateway information. Reports of user activity can be generated and downloaded.
Accops HySecure is a web-based management console portal that can be accessed through only the HySecure Windows clients.
End-user Access
-
Client: Once HySecure Gateway is configured and ready to use, the remote user has to log on to the Gateway to access the organization's resources through the Desktop Clients.
-
Clientless: Clientless login access is allowed through the HTML5-supported web browser. Users can securely access the applications from SSL-enabled web browsers without needing to install any additional software. This is particularly useful when you need to provide access to applications for partners or contractors, and safely enable unmanaged assets, including personal endpoints. The landing page can be customized to provide access to applications based on users and user groups, and also enable single sign-on to SAML-enabled applications.
The user can connect to the Gateway using the HTML5-supported browser.