IronDiff is built by network engineers, for network engineers. Our focus is on security, automation, and reliability.
Secure by Design
Secret redaction automatically removes passwords and keys before upload. Post-Quantum Zero-Knowledge encryption provides an additional layer of protection for your raw backups, ensuring your most sensitive data is handled with care and ready for the future.
Docker Native
Deploy in seconds with Docker. IronDiff runs in a hardened container environment as a non-root user, ensuring a minimal security footprint. It integrates seamlessly into modern DevOps workflows.
Multi-Vendor Support
Native support for Cisco IOS, Cisco ASA, Aruba, pfSense, MikroTik, Fortigate, and Juniper (routers and switches). Automated scheduled backups ensure you never lose a configuration, providing consistent visibility across your infrastructure.
Intelligent Redaction
Our redaction engine is aware of vendor-specific syntax across all supported platforms. It doesn’t just look for “password”; it understands enable secret on Cisco, sensitive XML tags in pfSense, and specialized export formats in MikroTik. We’ve built these engines to ensure your secrets stay private.
Post-Quantum Zero Trust Encryption
Integrated encryption for your backup archives, providing security resistance against quantum-computing attacks. Use a master key that only you hold, providing high-level protection for your historical configuration data even if your storage environment is compromised.