Berlin -  Chicago -  Delhi -  Dublin -  Frankfurt -  London -  Madrid -  New York -  Pisa -  Singapore -  Sydney -  Tokyo -  Toronto  
 
 

Security

 

The ION platform is fitted with security features to cover:

  • User authentication
  • Safe platform administration
  • Secure communication protocols

Additionally, the platform is compatible with standard security features, such as the ones related to the setup of secure networks (in particular VPN technology, firewalls/routers NAT configurations, SSH connections).

 

User Management
All components, including
user interfaces and server side components, are required to register to the platform with a user name and password before they can access or provide any service.

User authentication is also typically required by gateways which allow access to external systems such as markets. This is also true even when markets do not provide an authentication service (ION implements one at gateway level in these cases).

To simplify the login process to multiple markets for traders, a specialized component is provided, called the Password Server. In this way, a single login can be executed and all the necessary user and password information is accessed and used automatically to log into the individual markets or services.

 

Administration
Platform administration is performed using the System Administrator Tool, which can only be accessed by privileged (Administrator profile) users. Administrators can be further specialized to allow them to perform specific operations such as starting and stopping components, and creating or deleting connections.

 

Protocols
Administrators can select individual components and make them handle encrypted connections. In this way, communication with critical platform nodes (such as those running on the DMZ or on public networks) can be handled using safe protocols.

 

Storage
Storage of sensitive information, such as passwords, is either done in files which can be protected using usual operating system means (such as file permission or user management) or in a specialized database using encryption protected storage
.