Why VMware thinks you’ve got app security all wrong
How software-defined networking could help secure apps without the headache

Virtualising the network can ease the "root canal" pain of app security, according to VMware.
Instead of separately securing each and every app instance running on your infrastructure, the virtualisation specialist is encouraging IT teams to take a different approach using a software-defined network to define security settings for a whole slew of apps at once.
The latest version of VMware's network virtualisation product announced at VMworld 2015 this week, NSX 6.2, introduces this concept of network encryption.
Apps have become such a common part of IT infrastructure they are a distributed system in their own right, said Martin Casado, chief networking architect, with instances appearing all over the network.
As a result, this makes securing them individually a headache, and their distributed nature leaves IT with little visibility into where problems originate.
"Consider troubleshooting. Two words: root canal," he said at VMworld 2015 in San Francisco this week. "If the user has a problem you get a call, and without end-to-end visibility it's very difficult to know what's going on.
"Because of the complexity of applications, once we've deployed [them] we don't want to touch them. As a result the entire organisation becomes incompliant, or worse, insecure."
Get the ITPro daily newsletter
Sign up today and you will receive a free copy of our Future Focus 2025 report - the leading guidance on AI, cybersecurity and other IT challenges as per 700+ senior executives
Tom Corn, the company's senior VP of security products, added: "We live in a hyper-connected world and in this world the perimeters are too porous, the attack surface is simply too wide."
The challenge, VMware believes, is not in securing individual apps but in encrypting data as it moves across the network between applications.
This is exactly what NSX 6.2 allows IT to do, said Casado, turning encryption from being endpoint-focused to being an "infinite service" that covers the entire network infrastructure.
"It accumulates all the pieces together so that you can configure and troubleshoot the application as a whole," he said.
This means customers can set the security policy for every instance of an app at once, rather than having to tackle each instance of the app on the network.
With NSX, shifting apps from one cloud network to another means their specific security policies shift across, too.
A total 100 customers are already using NSX 6.2 in production, according to VMware, while US broadcaster Tribune Media used the product alongside a VMware hypervisor to deploy 140 apps over five months, getting only nine help desk calls overall.
-
Should AI PCs be part of your next hardware refresh?
AI PCs are fast becoming a business staple and a surefire way to future-proof your business
By Bobby Hellard Published
-
Westcon-Comstor and Vectra AI launch brace of new channel initiatives
News Westcon-Comstor and Vectra AI have announced the launch of two new channel growth initiatives focused on the managed security service provider (MSSP) space and AWS Marketplace.
By Daniel Todd Published
-
Securing your network in every direction with zero trust
Whitepaper Webinar on the evolution of network security
By ITPro Published
-
Turning your log and incident data into real-time security insights
Whitepaper Integrate multiple data sources for a comprehensive security view
By ITPro Published
-
Do more with less: Optimizing servers with HPE to maximize VMware licensing
Whitepaper Your trusted guide through the changes in the virtualization market
By ITPro Published
-
The impact of generative AI on business
Whitepaper Optimal and speedy GenAI computing performance
By ITPro Published
-
Fortify your future with HPE ProLiant Servers powered by Intel
Whitepaper Enhance your security and manage your servers more effectively
By ITPro Published
-
Getting value from generative AI
Whitepaper Become more productive and pursue innovation
By ITPro Last updated
-
The Gorilla Guide To… How HPE ProLiant Gen11 servers powered by Intel deliver trusted security
Whitepaper How systems, software, and connections are protected
By ITPro Published
-
Tech brief security bundle
Whitepaper By Hewlett Packard Enterprise
By ITPro Published