Gallus – Secured Workstations

Votre système d'information pour et par l'humain

LOGO GALLUS

Gallus is an open-source software offered by Eternilab.

We provide security monitoring and specialized services to configure, secure, control, and maintain secure workstations based on Microsoft Windows 11.

Gallus prepares a secure workstation compliant with ANSSI frameworks such as GHI, PAMS, and SecNumCloud. It also implements the recommendations of the CIS Benchmark. The premium version complies with II901 to achieve the Restricted Distribution level.

This workstation is a central element of defense strategies addressing the following points:

  1. Isolation: Create a machine dedicated to sensitive activities.
  2. Strong authentication: Deploy your authentication solutions.
  3. Encryption: Encrypt configurations, passwords, and access keys. Encrypt communications.
  4. Restricted access: Control access to machines and infrastructures through controlled protocols.
  5. Session management: Restrict the use of privileged sessions. Control machine capabilities.
  6. Protection: Fight against malware. Ensure workstation integrity.
  7. Monitoring: Trace and analyze actions performed by administrators.
  8. Updates and patches: Ensure regular updates of the operating system and software.

Gallus enables the deployment of hardening tools and produces a compliance report that can be used as evidence during a qualifying audit.

It is delivered as a Windows 11 installer, without a Microsoft license, accompanied by audit tools for hardening features and report generation tools.
In the premium version, some functionalities are selected from the catalog of ANSSI-certified and qualified solutions and require additional licenses.

From GitHub to Proof

Example Report

After each installation, a report is generated to verify that hardening tools have been properly deployed and that the workstation complies with the selected framework.
A list of non-conformities is highlighted to help teams correct them quickly.

PAW – Privileged Access Workstation

Gallus is an implementation compliant with French security frameworks and corresponds to the Privileged Access Workstation (PAW) concept used in other countries.

The hardening level required in France is among the highest in Europe, and Eternilab develops organizational and technological expertise to offer the best compromises between cost and sovereignty.

Gallus is offered free of charge by Eternilab:
GitHub: https://github.com/Eternilab/gallus

Download the product sheet: Gallus

In addition to the open-source version, Eternilab offers several services:

  • Training on ANSSI or DGA frameworks with a focus on the impact of regulations on workstation hardening
  • Outsourced deployment of Gallus on machines tested according to MIL-STD-810 and rented from a partner
  • Customization to integrate the workstation into your infrastructure
  • Support depending on your subscription level
  • Security Maintenance (MCS) covering workstation hardening according to the selected security frameworks

For more details, contact us: sales@eternilab.com