

CHS
Calcom Hardening suite
CalCom Hardening Solution (CHS) is a server hardening automation solution designed to reduce operational costs and increase the server’s security and compliance posture. CHS eliminates outages and reduces hardening costs by indicating the impact of a security hardening change on the production services. It ensures a resilient, constantly hardened and monitored server environment.
Simulates the policy impact
on production
Customer service
hardening mode
Real time access
control protection




Calcom Hardening suite
The CHS learning mode capability:
CHS performs an automated impact analysis on actual production systems. This essentially means zero server outage and zero investment of your engineer’s time in testing.
Further, it indicates the impact of hardening as the following:
CHS automates Hardening of windows server baseline policies for the OS and the application layers. All the policies are created according to the known standards and/or the best custom made Organizational Hardening practices. The CHS hardening management platform enables a drill down to a single server so that a dedicated policy can easily be created for different servers, based on the role and applications installed.
Server Roles Hardening:
Domain Controller, Hyper-V, Member server, Print server, File server, Application server, Web Server, Mail server, Database server, Terminal server, DNS/DHCP/Wins server, Remote access/VPN server.
Internal Applications Hardening:
Due to the advanced cyber threats faced by the enterprises these days, special attention is given to the security controls of critical applications. CHS also provides dedicated rules and policies for hardening management of internal applications, such as:
Active directory, SQL, IIS
Windows Operating System Hardening:
Windows 2000, Windows 2000 Datacenter, Windows server 2003 (32/64 bit), Windows server 2008 (32/64 bit), Windows server 2008 R2(64bit), Windows server 2012(64bit), Windows server 2012 R2(64bit), Windows server 2016, Nano server, Windows server 2019.
HS provides continuous hardening, monitoring and prevention. The monitoring mode prevents user errors and combats malicious activities. It provides access control rules that permit only authorized users to change the hardened baseline. CHS prevents policy object changes and issues configurable warnings and alerts, in real-time.
The CHS monitoring mode capability:
CHS eliminates the cost of creating lab environments for simulating the impact of security policies on servers. With CHS, the impact is analyzed directly on the production environments.
CHS predicts the impact of a policy on production servers. By visualizing the impact, CHS’s smart risk management determines the values that will/will not result in server outage when hardened.
CHS enforces server security policies in real time, thus, ensuring that the servers are proactively protected.
The CHS “policy checker” gives confidence to the IT teams to enforce extensive security policies that eliminate more vulnerabilities and reduce exposures to attacks.
Server hardening is a fundamental step in an enterprise’s security assessment, but deploying the same can prove to be costly, repetitive, and complicated to manage – mainly for two reasons:
While using manual hardening methods or familiar hardening tools, the hardening process may affect the OS or an application’s functionality and cause server downtime. In order to prevent downtime, IT teams spend long hours testing policies in lab environments before deploying them on servers in production environments.
The authorization of multiple privileged users in an enterprise environment makes it difficult to ensure that servers remain hardened, thus, requiring IT teams to repeat the hardening process on a regular basis.