Skip to main content
TrustRadius
SUSE NeuVector

SUSE NeuVector

Overview

What is SUSE NeuVector?

SUSE NeuVector is an open source, Zero Trust container security platform, acquired by SUSE in late 2021. It enables users to continuously scan throughout the container lifecycle, remove security roadblocks, and bake in security policies at the start to maximize…

Read more
Recent Reviews

SUSE NeuVector

8 out of 10
February 20, 2023
as SUSE NeuVector is open source so we use it write code and kubernetes-native container security platform
Continue reading
Read all reviews
Return to navigation

Pricing

View all pricing

What is SUSE NeuVector?

SUSE NeuVector is an open source, Zero Trust container security platform, acquired by SUSE in late 2021. It enables users to continuously scan throughout the container lifecycle, remove security roadblocks, and bake in security policies at the start to maximize developer agility.

Entry-level set up fee?

  • No setup fee

Offerings

  • Free Trial
  • Free/Freemium Version
  • Premium Consulting/Integration Services

Would you like us to let the vendor know that you want pricing?

14 people also want pricing

Alternatives Pricing

What is Aqua Cloud Native Security Platform?

The Aqua Platform is an integrated Cloud Native Application Protection Platform (CNAPP), that prioritizes risk and automates prevention while also focussing on detection and response across the lifecycle. It aims to stop current and prevent future cloud native attacks.

Return to navigation

Product Details

What is SUSE NeuVector?

SUSE NeuVector is an open source, Zero Trust container security platform, acquired by SUSE in late 2021. It enables users to continuously scan throughout the container lifecycle, remove security roadblocks, and bake in security policies at the start to maximize developer agility.

It features:

Profile Risk with Vulnerability Management
  • Scanning and admission control during build, test and deployment.
  • Scans containers, hosts, and orchestration platforms during run-time.
  • Audits host and container security with Docker Bench and Kubernetes CIS Benchmark for security tests.
  • Risk Scores and Compliance Reports.

Protect Data in Production
  • Protect containers against attacks from internal and external networks.
  • The only real-time identification and blocking of network, packet, zero day, and application attacks like DDoS and DNS.
  • Identify and block at Layer 7 between container and pod pairs.

Automated Prevention and Policy
  • DevOps teams deploy new apps with integrated security policies to ensure they are secured throughout the CI/CD pipeline and into production.
  • Discover application behavior and services to isolate them from attacks.
  • Streamline communication between security and development.

Integrations and Platforms
  • Runs all major cloud platforms including AWS, Azure and Google Cloud Platform.
  • Integrates with all leading CMPs including SUSE Rancher, and RedHat OpenShift.
  • Supports SYSLOG and webhooks for notifications into alerting systems.
  • LDAP integration and single sign-on with SAML support.

SUSE NeuVector Video

NeuVector Quick Overview - Kubernetes-native Container Security

SUSE NeuVector Technical Details

Operating SystemsUnspecified
Mobile ApplicationNo
Return to navigation

Comparisons

View all alternatives
Return to navigation

Reviews and Ratings

(3)

Reviews

(1-2 of 2)
Companies can't remove reviews or game the system. Here's why
February 20, 2023

SUSE NeuVector

VINIT LAKHOTIYA | TrustRadius Reviewer
Score 8 out of 10
Vetted Review
Verified User
as SUSE NeuVector is open source so we use it write code and kubernetes-native container security platform
  • SUSE NeuVector is the only 100% open source
  • it Scans all your running containers for vulnerable packages.
  • Forbids running unsafe Linux commands in containers.
  • need to spend lot of time to understand how it function. so may be suse come up with some tutorial video.
  • should have some user-friendly information available.
overall experience so far is good with product and its features.good to have such product in the IT industry to go for it when it come to kubernetes-native container security platform it have the ability to have deep visibility into your network which is the critical part of run-time container security.
  • Scans all your running containers for vulnerable packages.
  • Informs you which containers are running under the root user.
  • overall experience so far is good with product and its features.
  • May be found little expensive compared to other vendor.
Edgars Voroboks | TrustRadius Reviewer
Score 10 out of 10
Vetted Review
Verified User
We use SUSE NeuVector:
1) as a Kubernetes firewall to allow containers internal and external network connections which are necessary and block all other connections;
2) to scan our containers for known software vulnerabilities.

In the near future, we also plan to turn on command execution prevention to allow only whitelisted commands in certain containers.
  • Scans containers software for known vulnerabilities
  • Denies command execution in containers
  • Prevents unwanted network connections from/to containers
  • I like everything about NeuVector. They are on the right development path.
SUSE NeuVector is exceptional when you want to make your Kubernetes cluster secure. You can limit network connections, scan containers, container registries and Kubernetes nodes for vulnerable software, forbid running specific commands on certain or all containers. You can enable security for individual containers - when SUSE NeuVector has learned container specifics. That's why you can deploy SUSE NeuVector on production Kubernetes clusters where you are already running conteiners - it will not break anything.
  • Ability to control network connections
  • Container software vulnerability scanner
  • Container registry vulnerability scanner
  • We went from being blind to what happens in the Kubernetes network to seeing everything and being able to control Kubernetes network communications.
  • Now we are able to detect vulnerable containers faster.
SUSE NeuVector is deployed on your Kubernetes, and data does not leave your data center. Sysdig is a cloud platform - you have no full control over what happens with your data. Also, SUSE NeuVector has a capability to prevent specific command execution ir containers, but Sysdig does not have such ability. Sysdig is not an open-source solution, but SUSE NeuVector is.
Return to navigation