Solutions · Micro-Segmentation

Micro-segmentation that does not break production.

WireTrace provides the intelligence, policy intent and continuous validation layer, while integrated network and security platforms execute enforcement.

WireTraceintelligence · intentvalidationMAPwho talks to whomBASELINEapprove normalPROPOSEsegmentation intentVALIDATEtest against trafficENFORCEvia your controlsMONITORviolations · driftENFORCEMENT STAYS WITH YOUR FIREWALL, NAC AND NETWORK TEAMS
A phased programme

Six phases, each one verifiable.

  1. 01

    Map

    Identify the devices in scope and map who talks to whom, by protocol and port.

  2. 02

    Baseline

    Record a window of traffic and approve, monitor or deny each communication pair.

  3. 03

    Propose

    Declare zones, conduits and allowed communication; seed rules from the baseline.

  4. 04

    Validate

    Test the rules against observed traffic and simulate policies before relying on them.

  5. 05

    Enforce

    Export rule proposals for your firewall team; share identity and risk with your NAC through the API.

  6. 06

    Monitor

    Detect violations and drift continuously, with evidence for every finding.

Division of labour

Who does what.

StepYour controlsWireTrace
Know the devicesNot their jobDurable identity, type, role and Purdue level
Know the dependenciesPartial logsObserved communication by protocol and port
Write the intentRule syntaxZones, conduits and allowed services, seeded from approved baselines
Test before changeChange windowsValidation against observed traffic and policy simulation
Block or allow trafficFirewalls, NAC and switches enforceRule proposals, blocklists, identity and risk for them to use
Prove it keeps workingPoint-in-time auditsContinuous violation and drift detection

Start segmentation with evidence.

A WireTrace evaluation runs on a mirror port, on your infrastructure, and shows your own devices, communications and risks.