Perimeter OS · v4 policy engine

Firewall software that understands your industry, not just your ports.

Sentinel pairs a deep-inspection policy engine with vetted baselines for regulated networks. Deploy a defensible perimeter in an afternoon, then prove it to an auditor on the same screen.

14 ms
Added latency at 10 Gbps
6
Regulated industry baselines
100%
Rule changes audit-logged
Network security mesh forming a protective shield over enterprise infrastructure

Capabilities

One control plane for traffic, policy and evidence.

Deep packet policy engine

Layer 3 through layer 7 evaluation with ordered rules, protocol decoders and per-session verdicts.

Live threat detection

Signature and behaviour analysis flags brute force, injection, exfiltration and C2 beaconing as it happens.

Zero-trust segmentation

Carve the network into zones so a compromised endpoint cannot reach the systems that matter.

Policy as change history

Every rule edit is versioned with author and timestamp, so you can prove what changed and when.

Immutable audit log

Tamper-evident event storage sized for retention windows demanded by auditors and insurers.

Compliance mapping

Rules carry the control they satisfy — HIPAA, PCI-DSS, IEC 62443, NIST 800-53 — for instant evidence.

Industry baselines

Start from a policy your sector already accepts.

Each baseline installs an ordered rule set with segmentation, egress control and inspection points mapped to the controls your regulator checks. Apply it in one click, then tune it.

Healthcare

HIPAA / HITRUST

Segments clinical devices from the corporate network and shields patient record systems.

4 rules preconfigured

Financial services

PCI-DSS / SOC 2

Hardens payment paths, isolates trading systems and logs every privileged session.

4 rules preconfigured

Manufacturing / OT

IEC 62443

Purdue-model separation between plant floor controllers and enterprise IT.

4 rules preconfigured

Retail / e-commerce

PCI-DSS

Protects storefront APIs and point-of-sale lanes from bots and card scraping.

4 rules preconfigured

Education

FERPA

Separates student, staff and research networks while keeping campus Wi-Fi open.

4 rules preconfigured

Public sector

NIST 800-53

Default-deny posture with allow-listed citizen services and full session logging.

4 rules preconfigured

Deployment

Inline, out-of-band or cloud edge — same policy file.

Sentinel runs as a bridge in front of your gateway, as a mirror-port sensor while you validate rules, or in front of cloud workloads. The rule set travels with you, so a policy proven in monitoring mode is the policy you enforce.

Create your console
  1. 1 · Pick your industry baseline

    Healthcare, finance, OT, retail, education or public sector. Rules land ordered and documented.

  2. 2 · Run in inspection mode

    Watch verdicts against real traffic patterns before anything is enforced.

  3. 3 · Enforce and monitor

    Flip rules live, watch the threat log and export the audit trail on demand.