Platform
Traditional client/server sales software solutions are costly in both equipment and IT staff, on both the client and the server side. They are very complex, and subject to rapid obsolescence.
"Software as a Service" providers (aka ASP's) who deliver sales applications via the web may shut their doors and leave you empty handed. They impose forced upgrades and blocks of downtime. They do not let you access the database that holds your data assets, and their fees are often prohibitive.
None of this with Iphen. With us, the applications are Internet-based while the server, software and data remain under your control.
Iphen offers the best of both worlds: managed applications built on robust foundations that can be installed on-site or hosted; a better total cost of ownership, better performances and better security.
Foundation
Iphen's internet-based solutions are built on the most robust and standard Open-Source technologies for optimum performance, cost, dependability and safety. They are platform independent on the server side and are LAN independent and NAT & Firewall friendly on the client side.
- Red Hat Enterprise Linux 5 or equivalent (or Windows Server)
- #1 J2EE Application Server worldwide: JBoss
- #1 Web Server worldwide: Apache
- #1 Open-Source Database worldwide: MySQL (or Oracle 10g)
- Java Enterprise Edition, PHP and Ajax (Web 2.0)
- Internet Explorer 7.x; Firefox 1.5.x, 2.x
Hosting
Iphen's applications may be hosted, installed on-site or delivered as an appliance (server-plus-software turnkey solution). Hosting specifications include:
- Dedicated Server(s) (for data integrity, conflict avoidance, speed)
- Multiple tier-1 network providers (99.99% network uptime)
- 100 MBit Bandwidth (T/E-carrier system lines)
- Full root access via SSH; browser-based control panel; SCP
- IMAP/POP3 Email server with anti-virus and spam filtering
- Instant server reset and 24/7 support
- Comprehensive Security, n+1 redundancy [more]
Security
In today’s global, knowledge-based economy, securing business processes and safeguarding digital assets is essential to business continuity and competitiveness.
Iphen’s comprehensive security measures aim at preserving the confidentiality, integrity, and availability of your information. They fall into 4 main categories:
- Application and OS related security measures
- Freedom from vendor lock-in: open-source or double source
- Mature releases only (Stable n-1): no showstopper-class bugs
- Transparent code (scrutinized, robust, easier to fix or customize)
- 60+ point server OS hardening and periodic report (per CIS Bench.)
- Intrusion Detection via configuration audit
- Security updates (tested prior to rollout)
- 100% web-based, no direct path to server files system (no LAN)
- High scalability and integration capabilities
- Limited use of MS desktop OS and applications [more]
- Network and hardware related security measures
- External firewall
- Hot swappable RAID 1 hard drive configuration
- Daily full hard drive FTP backup
- Failover server in sales support premises (ours or yours)
- Power backup (battery power banks & diesel generators)
- Fingerprint access control to server rooms
- Stringent password and employee screening policies
- Symantec CarrierScan virus scanner, spam filtering / IP tables
- Failover PSTN lines (for voice telecom)
- Data related security measures
- Automated hourly database backup and periodic restoration testing
- Periodic "snapshot" backups per client’s document retention policy
- Encrypted access to server via SSH, files transfers via SCP
- IP address validation (to circumvent session hijacking attempts)
- Deleted records retained and accessible to master users
- Record modification audit trail / Access logs
- Role-based access control to functions & records (r,w,d,e,i)
- Automatic error detection, workflows. E.g.: duplicate entry warning
- Dedicated Iphen associates / One sandbox per application
- User related security measures
- Data, applications, code, and network managed independently
- Freedom from vendor lock-in: use either our associates or your staff
- Data leakage: your competitors won’t "raid" our sales support staff
- ACL and role-based access control to report & export functionalities
- Secured access control to all premises
- Non-compete, non-solicit & confidentiality agreements
- HR procedures & logs: screenings, terminations/hires, roles per user
- IT procedures: password renewal, log reviews, configs, updates
- Segregation of duties between your staff & ours (checks & balances)