Ecosystem
What is an Ecosystem
An Ecosystem is a dedicated security container for a specific application and all of its associated users, devices, services, and third parties that need to interoperate with that
application.
Your organization can use multiple Ecosystems to secure different applications. For example, a bank could use a separate Ecosystem for each of the following:
- Teller & Platform systems
- Web Site & Mobile Banking
- ATM network
- Video Surveillance
- Keycard Access
- HVAC & Physical Plant
- Guest Wifi
- Banking Ledger Application
Any Device, Any Network, Anywhere
Because Ecosystems are network-agnostic, participating applications, technologies, users, and third parties can be located anywhere and even operate while mobile. Acreto
Ecosystems support any type of network including LTE, 5G, Wifi, Ethernet, Satellite,
Packet Radio and more. This makes it particularly well-suited for highly distributed and
mobile applications.
Per Application Dedicated Infrastructure
Each Ecosystem is a completely independent and dedicated security infrastructure,
separate from all other Ecosystems. Dedicated Ecosystem infrastructure components
include:
- One or more enforcement engines
- Data flows and data paths
- Data set and policies
- Database
- Vault
Beta feature
Beta features are features that are not production-ready yet.
Beta features should be functional, but you can still encounter minor issues.
You can also notice that some important elements of these features are still
not delivered.
Note that we might change or remove beta features (including API endpoints, user
interface, and your configuration and data) at any time.
Gateway
What “Gateway” is?
Gateway is a device that allows you to connect your local network to Acreto and secure whole network traffic and end-user devices without configuring them one-by-one. Take a look at the images below to compare standard network connection with the network secured by Acreto with the Gateway method.
Gateway may be configured in IPsec or vGateway mode. Each of these configurations may be used for different purposes and in different network structures:
- choose vGateway when you want to download a preconfigured Acreto vGateway appliance and install it on a Raspberry Pi device or some virtualization platform (like KVM or VMware)
- choose IPSec if you prefer to manually configure your existing device (like router or Linux machine) which supports IPSec protocol
To create a Gateway, you need to:
- Create a Gateway object inside your Ecosystem
- Create one or more security policies to allow traffic from that Gateway to the Internet