ipLegion
is a web application that simulates an attack on an
IP address and gives a detailed report of the vulnerabilities
found.
The customer is presented with a report that explains
the threats and how to fix them.
The notable difference between this and similar products
is that ipLegion offers:
- a simple web interface that facilitates the use of
the tools even by a low profile IT professional;
- a centrally managed software which is updated immediately
without the shipment of any physical goods;
- scouts can be easily installed on single workstations
across networks to allow internal assessments to be
performed.
- entire sub-networks (groups of IPs) or single IPs
may both be scanned. The sub-networks may be shared
with other users or even groups of users.
- multi-language web interface in English, German,
Spanish and Italian. Japanese in 2003Q3
Detailed description of ipLegion
Technological Modules
Web Server
A web server is used to access and manage the ipLegion
system. The system can be accessed from any workstation
using an internet browser as a single point of access.
All activities are carried out through this single interface.
The data are protected by an HTTPS connection.
Database
This is the RDBMS back end. It stores account information,
user data, host and network preferences, vulnerabilities,
problem fixing/patching information and reports. The
database is SQL compatible. An ODBC interface can be
used to access the database.
Scout
This is the ipLegion Scan Engine. One or more Scouts
can be placed into different networks, as an independent
module, to pick up Master Controller requests and perform
the necessary assessments. The Scout connects back to
the Master Controller using a proxy. No setup or maintenance
is required. The connection between Master and Scout
is protected by SSL/TLS.
Master Controller
This is the central scheduling engine handling all Scout
connections and distributing the scans among the various
Scouts. The Master Controller ensures that the right
scan is run on the nearest Scout. The Master Controller
is the only part visible to the Scouts and acts as a
dispatcher to the database.