Introducing G2.ai, the future of software buying.Try now
Product Avatar Image

Chaser Systems

Show rating breakdown
2 reviews
  • 1 profiles
  • 2 categories
Average star rating
4.8
Serving customers since
2019
Profile Filters

All Products & Services

Product Avatar Image
DiscrimiNAT Firewall

2 reviews

DiscrimiNAT Firewall by Chaser Systems is a transparent, high-availability NAT gateway alternative designed to enhance egress traffic filtering in cloud environments. It enables organizations to specify and enforce outbound connections based on Fully Qualified Domain Names (FQDNs, addressing the limitations of traditional cloud firewall rules that often lack hostname specificity. By integrating seamlessly with existing cloud infrastructure, DiscrimiNAT ensures secure and compliant outbound traffic management without the need for traffic decryption or complex configurations. Key Features and Functionality: - Out-of-Band DNS Lookups: Performs DNS queries independently to verify that the destination IP addresses correspond to the intended FQDNs, preventing TLS SNI spoofing and enhancing security against sophisticated threats. - Simple Configuration: Allows administrators to define allowed destination FQDNs directly within application outbound rules, simplifying policy management and reducing configuration overhead. - FQDN Discovery: Offers a monitoring mode to identify the FQDNs that applications require for egress connectivity, facilitating the creation of precise allowlists and supporting the principle of least privilege. - Simple Deployment: Provides ready-to-use templates for AWS CloudFormation and Google Cloud Deployment Manager, enabling quick and straightforward deployment with safe defaults and minimal manual setup. - Encryption Standards & Compliance: Enforces contemporary encryption protocols such as TLS 1.2, TLS 1.3, and SSH v2, ensuring compliance with standards like PCI DSS v4.0 and NIST SP 800-53. - Integrated Logging: Logs all allowed and disallowed connections directly into native cloud logging services like AWS CloudWatch or Google Cloud Stackdriver, providing rich metadata for analysis without additional configuration. - Transparent & Fast: Operates without requiring TLS termination or outbound proxy configurations, maintaining end-to-end secure connections with minimal impact on performance and application compatibility. Primary Value and Problem Solved: DiscrimiNAT Firewall addresses the challenge of implementing granular egress traffic control in cloud environments where traditional firewall rules lack the capability to filter outbound connections by hostnames. By enabling FQDN-based filtering, it allows organizations to enforce precise egress policies, reducing the risk of data exfiltration, malware communication, and unauthorized access. Its seamless integration with cloud-native tools and straightforward configuration process empower security teams to implement robust egress controls without disrupting existing workflows or requiring extensive maintenance.

Profile Name

Star Rating

2
0
0
0
0

Chaser Systems Reviews

Review Filters
Profile Name
Star Rating
2
0
0
0
0
Verified User in Manufacturing
AM
Verified User in Manufacturing
02/20/2025
Validated Reviewer
Review source: Organic

Good forward proxy for our egress security on Google Cloud

We like the fact that DiscrimiNAT is doing FQDN filtering on SNI while being a transparent proxy, that it integrates with native firewall rules on GCP and that it's really fast and performant. We deploy it with the Terraform module and it's maintenance-free for us. In addition, we always had really fast feedback and help from the Team anytime we reached out for advice / feedback. Price is also good.
Paul S.
PS
Paul S.
11/18/2021
Validated Reviewer
Verified Current User
Review source: Organic

Secure egress solution with very straightforward rule configuration

We really like the speed and simplicity of deployment using Terraform with the vendor-supplied modules, no need for console access, and authorization determined by security group rule descriptions. We initially used the "see-thru" mode to determine existing outbound traffic without enforcement. We simply replaced our existing NAT Gateways with DiscrimiNAT, added the rules to our security groups, then checked traffic details in CloudWatch logs (AWS) or Cloud Logging (GCP). It's particularly well suited to our organization with a large number of autonomous teams who want a simple, secure egress solution that's easy to configure, no change to application code, and no need for explicit proxy settings. DiscrimiNAT is available via AWS and GCP Marketplaces, so it's easy to procure - as the cost is simply included in the monthly cloud provider bill. There's a high standard of documentation with example Terraform code, and we received a prompt response to a minor technical query.

About

Contact

HQ Location:
Cambridge, GB

Social

@ChaserSystems

What is Chaser Systems?

The trinity of 'developer experience + security standards + operational excellence' is greater than the sum of its parts. We call it 'ergonomic cybersecurity'.

Details

Year Founded
2019