COMSoleMio - Security Console Access via Web Portal
COMSoleMio provides secure console access to your network infrastructure via a web portal, with MFA and optional Single Sign-On (SSO). Terminal servers, connected to the console port of your network devices are equipped with a multi-provider mobile Out-of-Band connection and integrated UPS for up to 12 hours autonomy.
Features
- 24/7 management console access to your network devices
- Multi-Factor Authetication, with optional IdAM and IdP integration
- Managed service - no additional burden to your team
- Mobile network connectivity for encrypted Out-of-Band secure access
- Fast integration with no change required to existing infrastructure
- Private Cloud, Public Cloud and Hybrid delivery models
- Retention of results for historical access and session
- Data encryption at rest and in transit
- Terminal Server in Stealth mode (no inbound access)
- Up to 12 hours power autonomy
Benefits
- Mitigate cost associated with service downtime
- Reduce site visits with out-of-band console access
- Manage your network device regardless of its state or connectivity
- Browser access, no need for additional software.
Pricing
£1,250 a device
- Education pricing available
- Free trial available
Service documents
Request an accessible format
Framework
G-Cloud 13
Service ID
7 6 0 1 9 5 1 9 3 9 0 8 0 2 8
Contact
SMARTER TECHNOLOGIES TRADING LIMITED
Michael Sutherns
Telephone: +447877707362
Email: michael.sutherns@smartertechnologies.com
Service scope
- Software add-on or extension
- No
- Cloud deployment model
-
- Public cloud
- Private cloud
- Community cloud
- Hybrid cloud
- Service constraints
- Planned maintenance arrangements to be agreed prior deployment.
- System requirements
-
- 1U rack space and power for each terminal server
- List of users and contact details for login setup
- Network devices to be connected, and console details.
User support
- Email or online ticketing support
- Email or online ticketing
- Support response times
- Within the hour
- User can manage status and priority of support tickets
- Yes
- Online ticketing support accessibility
- WCAG 2.1 AAA
- Phone support
- Yes
- Phone support availability
- 24 hours, 7 days a week
- Web chat support
- Web chat
- Web chat support availability
- 24 hours, 7 days a week
- Web chat support accessibility standard
- WCAG 2.1 AAA
- Web chat accessibility testing
- Our chat software has been tested with various web browsers which support various assistive technologies, including Dragon and Jaws.
- Onsite support
- Yes, at extra cost
- Support levels
- Monday - Friday 0800-1800 Saturday - Sunday 1000-1600 Technical Account Manager is assigned to the client for initial on boarding and on a regular basis to ensure service satisfaction
- Support available to third parties
- Yes
Onboarding and offboarding
- Getting started
- The onboarding process is provided with online training and demo. Documentation and reference manual are also provided. Service is delivered to cater for your network. Terminal servers can be rename to reflect the location, COM connections to match the network device connected.
- Service documentation
- Yes
- Documentation formats
- End-of-contract data extraction
- Data of session is collected on gateway system. Its extraction will via a support request
- End-of-contract process
- The customer access to the service will be terminate. The customer can return the terminal servers no longer active for free of charge disposal.
Using the service
- Web browser interface
- Yes
- Supported browsers
-
- Internet Explorer 11
- Microsoft Edge
- Firefox
- Chrome
- Safari
- Opera
- Application to install
- No
- Designed for use on mobile devices
- No
- Service interface
- Yes
- User support accessibility
- WCAG 2.1 AAA
- Description of service interface
- Portal access to access terminal servers. Each terminal server will load on a new tab and give access to the COM (serial console ports).
- Accessibility standards
- WCAG 2.1 AAA
- Accessibility testing
- Users can select the terminal server to connect to. once on the terminal server, they can only the COM connection to the network device connected and operate on the CLI of the device.
- API
- No
- Customisation available
- No
Scaling
- Independence of resources
- Sizing of the Gateway is based on the number of Terminal Servers deployed and customisation. Resources consumption is reviewed every quarter.
Analytics
- Service usage metrics
- No
Resellers
- Supplier type
- Not a reseller
Staff security
- Staff security clearance
- Conforms to BS7858:2019
- Government security clearance
- Up to Security Clearance (SC)
Asset protection
- Knowledge of data storage and processing locations
- Yes
- Data storage and processing locations
- United Kingdom
- User control over data storage and processing locations
- Yes
- Datacentre security standards
- Managed by a third party
- Penetration testing frequency
- At least once a year
- Penetration testing approach
- In-house
- Protecting data at rest
-
- Physical access control, complying with CSA CCM v3.0
- Physical access control, complying with SSAE-16 / ISAE 3402
- Physical access control, complying with another standard
- Encryption of all physical media
- Data sanitisation process
- Yes
- Data sanitisation type
- Explicit overwriting of storage before reallocation
- Equipment disposal approach
- A third-party destruction service
Data importing and exporting
- Data export approach
- Raise a request to support
- Data export formats
- Other
- Other data export formats
- JSON
- Data import formats
- Other
- Other data import formats
- N/A
Data-in-transit protection
- Data protection between buyer and supplier networks
-
- Private network or public sector network
- TLS (version 1.2 or above)
- IPsec or TLS VPN gateway
- Other
- Other protection between networks
- IP source white-listing. Optional (at extra cost): Firewall, static/dynamic VPN, micro- segmentation
- Data protection within supplier network
-
- TLS (version 1.2 or above)
- IPsec or TLS VPN gateway
- Other
- Other protection within supplier network
- Firewall, IP source White-listing, micro- segmentation
Availability and resilience
- Guaranteed availability
- Gateway Target Availability/Month (during service hours): 99.85% Terminal Server availability: 98%
- Approach to resilience
- Consolemio service is composed of terminal servers, a the Gateway. Resilience for Terminal Servers is achieved by dual diverse uplinks, and integrated UPS. The Gateway can run on public and private clouds. Resilience is achieved using cloud-native constructs (availability zones, autoscaling, etc.)
- Outage reporting
- Email alerts
Identity and authentication
- User authentication needed
- Yes
- User authentication
-
- 2-factor authentication
- Public key authentication (including by TLS client certificate)
- Identity federation with existing provider (for example Google Apps)
- Username or password
- Other
- Other user authentication
- Additional cost for SSO: OAuth, LDAP, SAML
- Access restrictions in management interfaces and support channels
- InP Source whitelisting, security-group. Additional cost for NGFW, ZTNA, microsegmentatio
- Access restriction testing frequency
- At least every 6 months
- Management access authentication
-
- 2-factor authentication
- Public key authentication (including by TLS client certificate)
- Identity federation with existing provider (for example Google Apps)
- Dedicated link (for example VPN)
- Username or password
Audit information for users
- Access to user activity audit information
- Users contact the support team to get audit information
- How long user audit data is stored for
- User-defined
- Access to supplier activity audit information
- No audit information available
- How long system logs are stored for
- User-defined
Standards and certifications
- ISO/IEC 27001 certification
- No
- ISO 28000:2007 certification
- No
- CSA STAR certification
- No
- PCI certification
- No
- Cyber essentials
- Yes
- Cyber essentials plus
- No
- Other security certifications
- No
Security governance
- Named board-level person responsible for service security
- Yes
- Security governance certified
- No
- Security governance approach
- Security industry standards NCSC guidance Risk assessment Frameworks to design IT and security infrastructure up-to-date cyber security skill
- Information security policies and processes
- NCSC guidance Cyber Essentials
Operational security
- Configuration and change management standard
- Supplier-defined controls
- Configuration and change management approach
- Changes are introduced with a strict 6 steps process: 1. planned with details on the specific part modified and risk associated 2. tested in the development environment 3. documented with findings and any deviation from the plan 4. scheduled with each deployed environment separately 5. implemented according to agreed schedule using blue/green approach 6. observed and accepted or reverted
- Vulnerability management type
- Supplier-defined controls
- Vulnerability management approach
- Potential threats are assessed from design through implementation and operational support for each element of the solution. The deployment is built with minimal exposure resulting in strong security posture - for example, sensors have no inbound connectivity. SLA Sensors/CU Patching Routine: Monthly outside Service Hours Critical Security Patches: Next working day
- Protective monitoring type
- Supplier-defined controls
- Protective monitoring approach
- Terminal Servers are managed and monitored 24/7. Gateway Cloud service is hosted in AWS Virtual Private Cloud (unless privately cloud is required) where instances and traffic are monitored for performance, availability, and threat detection. The response is activated by the alerting mechanism and customer informed.
- Incident management type
- Supplier-defined controls
- Incident management approach
- Incident escalation is via the support team. Incidents are managed by classification: Application or Infrastructure. Application: service not available, data issue, application bug. Infrastructure: system-down (Gateway issue), Terminal Server not responding. Report will be provided on request.
Secure development
- Approach to secure software development best practice
- Conforms to a recognised standard, but self-assessed
Public sector networks
- Connection to public sector networks
- No
Social Value
- Fighting climate change
-
Fighting climate change
Fundamental to our customer proposition is our commitment to help our clients reduce their carbon footprint and reliance on natural resources. The core of our business lies in identifying, recording, and reporting on energy and water usage to deepen our customers’ understanding of their utilities. This understanding leads to changed behaviours within businesses that reduces their impact on the environment as they strive for more sustainable solutions. We can provide every industry with a higher level of insight that will ultimately lead to a greener future, one in which we believe sustainability will be key. - Covid-19 recovery
-
Covid-19 recovery
The COVID-19 pandemic pushed employee health and well-being to the front of the Smarter Technologies business agenda. We looked to play a vital role in protecting our employees from the risk of infection by implementing stringent public health measures and supporting the need to work from home, pivoting our office structure to put employee health and well-being first. Throughout this time, we have taken additional measures in response to COVID-19, such as providing support directly to individual employees’ needs and concerns, ensuring that individuals have a safe space to raise any mental or physical health issues, and by catering to home office requirements. As we continue through the pandemic and its many phases, we remain malleable to the changes that come from putting our employees first. - Tackling economic inequality
-
Tackling economic inequality
Our solutions are designed to help everyone, and by doing so, we are empowering the idea that anyone can make a difference. Smarter Technologies, by its very nature, promotes a future of better opportunity and smarter choices. From the small business owner to the large corporate, from the local government department to the publicly-owned company, from the restaurant owner in England to the farmer in South Africa or South America. Smarter Technologies seeks to serve as much of the business community as we can. We believe that by working together globally, we have the best chance of creating a positive influence on the lives of everyone. - Equal opportunity
-
Equal opportunity
Smarter Technologies are committed to ensuring an inclusive workplace that embraces and promotes diversity. We understand the importance of empowering individuals and enabling everyone to reach their full potential. Successfully managing a diverse workforce means recognising every individual’s contribution. We respect and value the diversity of our people and know that it is a key factor in our ability to make a positive difference to those we work with, each and every day. We aim to provide differently abled employees with the opportunity to develop their career while preventing any negative impact on their health, career sustainability or self-sufficiency. At Smarter Technologies, we respect and accept, and we embrace ambiguity and diversity. We focus on supporting our people by taking action to remove unconscious bias and encouraging honesty in all areas of our business. - Wellbeing
-
Wellbeing
Smarter Technologies believes in the provision of good and safe work for all. We take a proactive approach to providing a workplace environment that enables healthier choices for employees, regardless of position and status. This is carried out by an extensive support system across our business, where employees truly respect and admire each other. Our employees know that a channel of safe communication is available should they have health issues, either now or in the future. This is delivered across the company's HR system in accordance with evidence-based guidance for best practice and achieves the best outcomes for our employees’ health improvement.
Pricing
- Price
- £1,250 a device
- Discount for educational organisations
- Yes
- Free trial available
- Yes
- Description of free trial
- Demo equipment is available (FCFS) for trial at no cost. This include a terminal server and access to demo gateway.