Maximum Security
AOCC Watchman designed the Integrated IT Software suite with comprehensive security throughout. The AOCC Watchman design team brings over 50 years of experience designing secure systems for government and commercial applications. AOCC Watchman applied this experience to uniquely combine ease of use with high security.
AOCC Watchman Agent
The AOCC Watchman platform architecture is central to providing maximum security. Each computer managed has a small agent installed. The agent initiates all communications back to the server. Since the agent will not accept any inbound connections, it is impossible for a third party application to attack the agent from the network.
Firewalls
AOCC Watchman does not need any input ports opened on client machines. This lets the agent do its job in any network configuration without introducing susceptibility to inbound port probes or new network attacks.
Encryption
AOCC Watchman protects against man-in-the-middle attacks by encrypting all communications between the agent and server with 256-bit RC4 using a key that rolls every time the server tasks the agent (typically at least once per day). Since there are no plain-text data packets passing over the network, there is nothing available for an attacker to exploit.
Secure Access
Administrators access the AOCC Watchman server through a Web interface after a secure logon process. The system never sends passwords over the network and never stores them in the database. Only each administrator knows his or her password. The client side combines the password with a random challenge, issued by the AOCC Watchman server for each session, and hashes it with SHA-1. The server side tests this result to grant access or not. The unique random challenge protects against a man-in-the-middle attack sniffing the network, capturing the random bits, and using them later to access the AOCC Watchman server.
Web Access
The Web site itself is protected by AOCC Watchman Patch Management. The AOCC Watchman Patch scan is run on the AOCC Watchman server every day. As soon as new patches are released, the AOCC Watchman Patch scan automatically detects they are needed and applies all security patches automatically. Finally, for maximum Web security, the AOCC Watchman server Web pages fully support operating as an SSL web site.
BACK TO MANAGED IT SERVICES |