IBM Secure Proxy V6.0 and Sterling External Authentication Server V6.0 deliver advanced capabilities to improve compliance with security policies, deliver better performance, and enable proactive security measures

IBM United States Software Announcement 219-108
February 12, 2019


Table of contents
OverviewOverviewPublicationsPublications
Key requirementsKey requirementsTechnical informationTechnical information
Planned availability datePlanned availability dateOrdering informationOrdering information
DescriptionDescriptionTerms and conditionsTerms and conditions
Product positioningProduct positioningPricesPrices
Program numberProgram numberOrder nowOrder now


At a glance

Top rule

IBM® Secure Proxy V6.0 and Sterling External Authentication Server V6.0 enhancements:

  • Improved compliance with corporate security policies through expanded authentication single sign-on (SSO) support based on SAML 2.0 specifications
  • Enhanced security and performance with new proxy capabilities to prevent the execution of undesirable programs (blacklisting) and updated technology slack, including support for Microsoft™ Windows™ Server 2016.
  • Improved failover support for high-availability (HA) scenarios for Sterling External Authentication Server


Back to topBack to top

Overview

Top rule

Secure Proxy V6.0, formerly IBM Sterling Secure Proxy, and Sterling External Authentication Server V6.0 deliver several key features to help organizations drive compliance, enable proactive security measures, and improve performance. With new features and enhancements, enterprise security administrators can:

  • Configure single sign-on (SSO) for external authentication providers to conveniently manage authentication capabilities in one place and adhere to organizational security requirements
  • Proactively restrict the login attempts from probing, malicious, or invalid users and reduce resources required to prevent intrusion attempts
  • Deliver simplified integration with your organization's external tools or applications by leveraging RESTful APIs for Sterling External Authentication Server


Back to topBack to top

Key requirements

Top rule

Secure Proxy runs on multiple operating systems, including IBM AIX®, Red Hat Linux®, HP-UX, Solaris, and Microsoft Windows. For the latest system requirements, see the Software Products Compatibility Reports website. Select Detailed system requirements and search for Secure Proxy.

Sterling External Authentication Server is an optional, separately installed component for the following B2B and managed file transfer (MFT) offerings: IBM Secure Proxy, IBM B2B Integrator, IBM File Gateway, and IBM Connect:Direct®.

To take advantage of advanced authentication and validation services provided by Sterling External Authentication Server, Secure Proxy V6.0 users must install Sterling External Authentication Server V6.0. An earlier version of Sterling External Authentication Server will not work.



Back to topBack to top

Planned availability date

Top rule

February 28, 2019



Back to topBack to top

Description

Top rule

Secure Proxy, previously Sterling Secure Proxy, a DMZ-based application software proxy enables secure and high-speed managed file transfer (MFT) file exchanges at the network edge for trusted B2B transactions. Secure Proxy uses multifactor authentication, Secure Sockets Layer (SSL) session breaks, closing of inbound firewall holes, protocol inspection, and other controls to help ensure the security of your trusted zone.

Sterling External Authentication Server, a separately installed optional component, provides advanced authentication and validation services for IBM B2B and MFT offerings. Sterling External Authentication Server supports a flexible configuration to meet a variety of certificate validation and user authentication and authorization needs.

Version 6.0 of Secure Proxy and Sterling External Authentication Server provide key enhancements that improve security for your organization's MFT file exchanges.

  • Single sign-on (SSO) support based on SAML 2.0 specification. This new feature provides the ability to accept SAML 2.0 tokens from external identity providers. SAML 2.0 authentication tokens from external identity providers can be used to access B2B and MFT applications, without the need to re-enter login credentials for each application. B2B and MFT applications that can take advantage of SSO with SAML 2.0 include B2B Integrator, File Gateway, and Connect:Direct.
  • Improved proxy filtering (blacklisting). This feature adds the ability to create and utilize a blacklist filter to quickly block probing, invalid, or suspicious users. These users can be identified by user IDs or by IP addresses and patterns in order to block repeated login attempts and save computing resources.
  • Improved Sterling External Authentication Server cluster failover. This feature lets Sterling External Authentication Server validate tokens generated from one server to another participating server in high-availability (HA) environment. If a Sterling External Authentication Server goes down, its counterpart failover server can continue to grant access through existing tokens.
  • RESTful API support for Sterling External Authentication Server. New RESTful APIs are now available so you can use external tools to configure Sterling External Authentication Server objects, for example, to manage authentication profiles, certificate validations, and so on.
  • Updated technology stack. You now get support for Apache Log4j 2 logging services and Microsoft Windows Server 2016.

Accessibility by people with disabilities

A US Section 508 Accessibility Compliance Report containing details on accessibility compliance can be found on the Product accessibility information website.



Back to topBack to top

Product positioning

Top rule

Secure Proxy belongs to the Watson™ Supply Chain portfolio and B2B Collaboration solutions. B2B Collaboration solutions improve the management and information exchange across business-to-business (B2B) relationships, including MFT and B2B integration offerings. For more information, see Connect and collaborate across your B2B network website.



Back to topBack to top

Reference information

Top rule

For information about IBM Secure Proxy, see

  • Software Announcement 216-121, dated March 22, 2016
  • Software Announcement 215-152, dated July 7, 2015
  • Withdrawal Announcement 915-116, dated May 12, 2015
  • Software Announcement 214-491, dated November 18, 2014


Back to topBack to top

Program number

Top rule

Program number VRM Program name
5725-D03 V6.0 IBM Secure Proxy


Back to topBack to top

Education support

Top rule

IBM training provides education to support many IBM offerings. Descriptions of courses for IT professionals and managers can be found on the IBM Training and Skills website.

Call IBM training at 800-IBM-TEACH (426-8322) for catalogs, schedules, and enrollments.



Back to topBack to top

Offering Information

Top rule

Product information is available on the IBM Offering Information website.

More information is also available on the Passport Advantage® and Passport Advantage Express® website.



Back to topBack to top

Publications

Top rule

Documentation for Secure Proxy can be accessed in IBM Knowledge Center.

Documentation for Sterling External Authentication Server can be accessed in IBM Knowledge Center.

Version 6.0 documentation is available on the planned availability date.



Back to topBack to top

Services

Top rule

Software Services

IBM Software Services has the breadth, depth, and reach to manage your services needs. You can leverage the deep technical skills of our lab-based, software services team and the business consulting, project management, and infrastructure expertise of our IBM Global Services team. Also, we extend our IBM Software Services reach through IBM Business Partners to provide an extensive portfolio of capabilities. Together, we provide the global reach, intellectual capital, industry insight, and technology leadership to support a wide range of critical business needs.

To learn more about IBM Software Services, contact your Lab Services Sales or Delivery Leader.



Back to topBack to top

Technical information

Top rule

Specified operating environment

Hardware requirements

For Secure Proxy, find system requirement information by searching for Secure Proxy on the Software Product Compatibility Reports page.

For Sterling External Authentication Server, find system requirement information by searching for External Authentication Server on the Software Product Compatibility Reports page.

Software requirements

For Secure Proxy, find system requirement information by searching for Secure Proxy on the Software Product Compatibility Reports page.

For Sterling External Authentication Server, find system requirement information by searching for External Authentication Server on the Software Product Compatibility Reports page.

Companion products

Secure Proxy provides critical edge security capabilities for B2B integration and managed file transfer (MFT) solutions. Secure Proxy supports and can be sold with any of the following MFT and B2B products:

  • B2B Integrator
  • Connect:Direct (all platforms, including IBM z/OS®)
  • File Gateway
  • IBM Sterling Connect:Express
  • IBM Control Center

Planning information

Packaging

This offering is delivered through the internet as an electronic download. There is no physical media.



Back to topBack to top

Ordering information

Top rule

For ordering information, consult your IBM representative or authorized IBM Business Partner, or go to the Passport Advantage website.

This product is only available through Passport Advantage. It is not available as shrinkwrap.

These products may only be sold directly by IBM or by authorized IBM Business Partners for Channel Value Rewards.

More information can be found on the IBM Channel Value Rewards website.

To locate IBM Business Partners for Channel Value Rewards in your geography for a specific Channel Value Rewards portfolio, go to the Find a Business Partner page.

No changes are announced to ordering information.

No changes are announced to part numbers.

Charge metric

No changes are announced to charge metrics.



Back to topBack to top

Terms and conditions

Top rule

The information provided in this announcement letter is for reference and convenience purposes only. The terms and conditions that govern any transaction with IBM are contained in the applicable contract documents such as the IBM International Program License Agreement, IBM International Passport Advantage Agreement, and the IBM Agreement for Acquisition of Software Maintenance.

This product is only available through Passport Advantage.

Licensing

IBM International Program License Agreement including the License Information document and Proof of Entitlement (PoE) govern your use of the program. PoEs are required for all authorized use. Part number products only, offered outside of Passport Advantage, where applicable, are license only and do not include Software Maintenance.

This software license includes Software Subscription and Support (also referred to as Software Maintenance).

Software Maintenance

Licenses under the IBM International Program License Agreement (IPLA) provide for support with ongoing access to releases and versions of the program. IBM includes one year of Software Subscription and Support (also referred to as Software Maintenance) with the initial license acquisition of each program acquired. The initial period of Software Subscription and Support can be extended by the purchase of a renewal option, if available. Two charges apply: a one-time license charge for use of the program and an annual renewable charge for the enhanced support that includes telephone assistance (voice support for defects during normal business hours), as well as access to updates, releases, and versions of the program as long as support is in effect.

License Information number

The following License Information document applies to the offering in this announcement:

Program identifier License Information document title License Information document number
5725-D03 IBM Secure Proxy V6.0 L-BCHE-B5LJHT

Follow-on releases, if any, may have updated terms. See the License Information documents website for more information.

Limited warranty applies

Yes

Limited warranty

IBM warrants that when the program is used in the specified operating environment, it will conform to its specifications. The warranty applies only to the unmodified portion of the program. IBM does not warrant uninterrupted or error-free operation of the program or that IBM will correct all program defects. You are responsible for the results obtained from the use of the program.

IBM provides you with access to IBM databases containing information on known program defects, defect corrections, restrictions, and bypasses at no additional charge. For further information, see the IBM Software Support Handbook.

IBM will maintain this information for at least one year after the original licensee acquires the program (warranty period).

Program technical support

Technical support of a program product version or release will be available for a minimum of five years from the general availability date, as long as your Software Subscription and Support (also referred to as Software Maintenance) is in effect.

This technical support allows you to obtain assistance (by telephone or electronic means) from IBM for product-specific, task-oriented questions regarding the installation and operation of the program product. Software Subscription and Support (Software Maintenance) also provides you with access to updates (modifications or fixes), releases, and versions of the program. You will be notified, through an announcement letter, of discontinuance of support with 12 months' notice. If you require additional technical support from IBM, including an extension of support beyond the discontinuance date, contact your IBM representative or IBM Business Partner. This extension may be available for a fee.

For additional information on the IBM Software Support Lifecycle Policy, see the IBM Software Support Lifecycle Policy website.

Money-back guarantee

If for any reason you are dissatisfied with the program and you are the original licensee, you may obtain a refund of the amount you paid for it, if within 30 days of your invoice date you return the program and its PoE to the party from whom you obtained it. If you downloaded the program, you may contact the party from whom you acquired it for instructions on how to obtain the refund.

For clarification, note that (1) for programs acquired under the IBM International Passport Advantage offering, this term applies only to your first acquisition of the program and (2) for programs acquired under any of IBM's On/Off Capacity on Demand (On/Off CoD) software offerings, this term does not apply since these offerings apply to programs already acquired and in use by you.

Volume orders (IVO)

No

Passport Advantage applies

Yes, information is available on the Passport Advantage and Passport Advantage Express website.

Software Subscription and Support applies

Yes. Software Subscription and Support, also referred to as Software Maintenance, is included with licenses purchased through Passport Advantage and Passport Advantage Express. Product upgrades and Technical Support are provided by the Software Subscription and Support offering as described in the Agreements. Product upgrades provide the latest versions and releases to entitled software, and Technical Support provides voice and electronic access to IBM support organizations, worldwide.

IBM includes one year of Software Subscription and Support with each program license acquired. The initial period of Software Subscription and Support can be extended by the purchase of a renewal option, if available.

While your Software Subscription and Support is in effect, IBM provides you assistance for your routine, short duration installation and usage (how-to) questions, and code-related questions. IBM provides assistance by telephone and, if available, electronic access, only to your information systems (IS) technical support personnel during the normal business hours (published prime shift hours) of your IBM support center. (This assistance is not available to your users.) IBM provides Severity 1 assistance 24 hours a day, 7 days a week. For additional details, see the IBM Software Support Handbook. Software Subscription and Support does not include assistance for the design and development of applications, your use of programs in other than their specified operating environment, or failures caused by products for which IBM is not responsible under the applicable agreements.

Unless specified otherwise in a written agreement with you, IBM does not provide support for third-party products that were not provided by IBM. Ensure that when contacting IBM for covered support, you follow problem determination and other instructions that IBM provides, including in the IBM Software Support Handbook.

For additional information about the International Passport Advantage Agreement and the IBM International Passport Advantage Express Agreement, go to the Passport Advantage and Passport Advantage Express website.

Variable charges apply

No

Educational allowance available

Not applicable.



Back to topBack to top

Statement of good security practices

Top rule

IT system security involves protecting systems and information through intrusion prevention, detection, and response to improper access from within and outside your enterprise. Improper access can result in information being altered, destroyed, or misappropriated or can result in misuse of your systems to attack others. Without a comprehensive approach to security, no IT system or product should be considered completely secure and no single product or security measure can be completely effective in preventing improper access. IBM systems and products are designed to be part of a regulatory compliant, comprehensive security approach, which will necessarily involve additional operational procedures, and may require other systems, products, or services to be most effective.

Important: IBM does not warrant that any systems, products, or services are immune from, or will make your enterprise immune from, the malicious or illegal conduct of any party.



Back to topBack to top

Prices

Top rule


Business Partner information

If you are an IBM Business Partner acquiring products from IBM, you may link to Passport Advantage Online for resellers where you can obtain Business Partner pricing information. An IBMid and password are required to access the IBM Passport Advantage website.


Passport Advantage

For Passport Advantage information and charges, contact your IBM representative or authorized IBM Business Partner for Channel Value Rewards. Additional information is also available on the Passport Advantage and Passport Advantage Express website.

IBM Global Financing

IBM Global Financing offers competitive financing to credit-qualified clients to assist them in acquiring IT solutions. Offerings include financing for IT acquisition, including hardware, software, and services, from both IBM and other manufacturers or vendors. Offerings (for all client segments: small, medium, and large enterprise), rates, terms, and availability can vary by country. Contact your local IBM Global Financing organization or go to the IBM Global Financing website for more information.

IBM Global Financing offerings are provided through IBM Credit LLC in the United States, and other IBM subsidiaries and divisions worldwide to qualified commercial and government clients. Rates are based on a client's credit rating, financing terms, offering type, equipment type, and options, and may vary by country. Other restrictions may apply. Rates and offerings are subject to change, extension, or withdrawal without notice.

Financing from IBM Global Financing helps you preserve cash and credit lines, enables more technology acquisition within current budget limits, can help accelerate implementation of economically attractive new technologies, offers payment and term flexibility, and can help match project costs to projected benefits. Financing is available worldwide for credit-qualified clients.



Back to topBack to top

Order now

Top rule

To order, contact the IBM Digital Sales Center, your local IBM representative, or your IBM Business Partner. To identify your local IBM representative or IBM Business Partner, call 800-IBM-4YOU (426-4968). For more information, contact the IBM Digital Sales Center.

Phone: 800-IBM-CALL (426-2255)

Fax: 800-2IBM-FAX (242-6329)

For IBM representative: askibm@ca.ibm.com

For IBM Business Partner: pwcs@us.ibm.com

IBM Digital Sales Offices
1177 S Belt Line Rd
Coppell, TX 75019-4642, US

The IBM Digital Sales Center, our national direct marketing organization, can add your name to the mailing list for catalogs of IBM products.


Note: Shipments will begin after the planned availability date.


IBM Channel Value Rewards

This product is available under Channel Value Rewards (CVR), either directly from IBM or through authorized Business Partners who invest in skills and high-value solutions. IBM clients may benefit from the industry-specific or horizontal solutions, skills, and expertise provided by these Business Partners.

Additions to CVR will be communicated through standard product announcements. To determine what IBM software is available under CVR, see the IBM Passport Advantage Online for IBM Business Partners website.

For questions regarding CVR, see the IBM Channel Value Rewards website.

Trademarks

Watson is a trademark of IBM Corporation in the United States, other countries, or both.

IBM, AIX, z/OS, PartnerWorld, Passport Advantage and Express are registered trademarks of IBM Corporation in the United States, other countries, or both.

Microsoft and Windows are trademarks of Microsoft Corporation in the United States, other countries, or both.

Linux is a registered trademark of Linus Torvalds in the United States, other countries, or both.

Connect:Direct is a registered trademark of IBM International Group B.V., an IBM Company in the U.S. and other countries.

Other company, product, and service names may be trademarks or service marks of others.

Terms of use

IBM products and services which are announced and available in your country can be ordered under the applicable standard agreements, terms, conditions, and prices in effect at the time. IBM reserves the right to modify or withdraw this announcement at any time without notice. This announcement is provided for your information only. Additional terms of use are located at

Terms of use

For the most current information regarding IBM products, consult your IBM representative or reseller, or go to the IBM worldwide contacts page

IBM United States

Share this page

Digg Linked In

Contact IBM

Feedback

-->