Ivanti products

Greetings,

I am somewhat confused to the different products of Ivanti.

Whenever a vulnerability arises it is either Secure Access or Secure Policy or Policy Secure or Policy Access. Am I right in assuming these are four different products?

Secure Access - VPN-client?

Secure Policy - ?

Policy Secure - ?

Policy Access - ?

Does anyone have any knowledge or insights into these products and can explain the difference?

My understanding is that the vulnerability announced yesterday is on the server side.

I might be wrong but:

Connect Secure: VPN gateway

Policy secure: is network access control ( https://help.ivanti.com/ps/help/en_US/IPS/22.x/ag/ips_intro_pulse_policy_secure.htm#:~:text=Ivanti%20Policy%20Secure%20(IPS)%20is,management%2C%20visibility%2C%20and%20monitoring. )

You might be confused because of the former Pulse Secure product names which change only slightly when Ivanti acquired Pulse.

Two core products. Connect Secure (ICS) and Policy Secure (IPS). The first is the VPN and the second is NAC. Both solutions use a common server core architecture with different front end applications.

Hopefully this helps:

Ivanti Secure Access Client (ISAC)- This is the VPN client that runs on Windows, Mac, Linux and mobile clients.

Ivanti Connect Secure (ICS) - This is the server appliance that provides VPN (and other) connectivity. It is by far the more common server application. It used to be called Pulse Connect Secure.

Ivanti Policy Secure (IPS) - This is the server appliance that provides NAC-like functionality for an internal network. It used to be called Pulse Policy Secure.

The server appliances share some common code and functionality.

There is also a cloud hosted solution that works in the Ivanti Neurons framework called Ivanti Neurons for Secure Access.

Source: I work for Ivanti. :grinning_face:

Pretty sure no one including Ivanti knows

One of the thousands of reasons why we’re moving away from Ivanti this year, we’ve just got approved budget to go Tanium.