Illumio Breach Containment Platform
Micro-segmentation has protected critical applications and now controls lateral movement effectively
What is our primary use case?
My main use case for Illumio Segmentation is implementing it across all the applications in our organization.
A quick specific example of how I use Illumio Segmentation with one of my applications is that when we are trying to change the mode of the applications, we will do the installation on the servers of the applications. Once that is done, we see the traffic flows and write the rules across all the inbound and outbound flows. After that, we validate it with the application team and get the enforcement mode to selective or full.
What is most valuable?
Illumio Segmentation's best features are the labels that allow us to segregate all the applications based on them.
Those labels help me in my daily work and in managing my applications by allowing us to decide the role, the application name for that label, location, OS, environment, and all those things, considering there are hundreds of applications in our organization.
Illumio Segmentation has positively impacted my organization by segregating and stopping hackers from doing lateral movement from one application to another, which is a great feature that Illumio Segmentation micro-segmentation provides.
What needs improvement?
Illumio Segmentation can be improved by further implementing some plugins for tasks such as restart operations for which we don't have the right approvals to get into the server and do that work. Additionally, the GUI can be more modified with back-end operations such as restart and stop.
For how long have I used the solution?
I have been using Illumio Segmentation for the last five years, working in the Illumio domain.
What do I think about the stability of the solution?
Illumio Segmentation is stable.
What do I think about the scalability of the solution?
Illumio Segmentation's scalability is great. Currently, we have about twenty to thirty thousand servers, and we are planning to have Illumio Segmentation installed for about seventy to eighty thousand servers.
How are customer service and support?
The customer support for Illumio Segmentation is actually good. Whenever we have any issues regarding upgrade or installation, we raise it and get good support from Illumio.
Which solution did I use previously and why did I switch?
I did not previously use a different solution; Illumio Segmentation was the only option.
What was our ROI?
Currently, I haven't seen a return on investment, and I cannot share relevant metrics on fewer employees needed.
What's my experience with pricing, setup cost, and licensing?
My experience with pricing, setup cost, and licensing for Illumio Segmentation is good; it was good compared to others.
Which other solutions did I evaluate?
Before choosing Illumio Segmentation, I did not evaluate other options as it was a management-level decision. While I know there is a zero-trust architecture being implemented from other organizations, I have more insight into Illumio Segmentation only.
What other advice do I have?
The advice I would give to others looking into using Illumio Segmentation is that it is best for organizations as a host-based firewall and for lateral movement control, which is the main thing.
I would rate Illumio Segmentation a ten on a scale of one to ten because I don't have any other tools which can compete with Illumio Segmentation micro-segmentation technology, and that's why I rate it a ten, especially at this particular cost.
The reference solution for host-based microsegmentation
Micro-Segmentation That Strengthens Defense-in-Depth
Easy Admin Setup, Lightweight Agent, Solid L4 Access Controls
• Ability to configure Layer 4 (L4) access lists
• Lightweight agent performance
• Equipped with essential and sufficient features
• Logs are aggregated, making them difficult to read.