cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
231
Views
1
Helpful
1
Replies

firewall and Packet Filtering in WAN infrastructures

dhikra-marghli8
Level 1
Level 1

Hello

how to implement firewall and Packet Filtering in WAN infrastructures ?

what are the technologies to allow us implement the firewall to secure wan technology ?

Does SD-WAN technology implement firewall and Packet Filtering?

i wait a reply from expert wan and security wan ? 

1 Accepted Solution

Accepted Solutions

M02@rt37
VIP
VIP

Hello @dhikra-marghli8 

Implementing firewall and packet filtering in WAN infrastructures involves using various technologies to secure the network and control traffic. 

Deploying traditional stateful firewall at the perimeter of the WAN is a common practice. These firewalls inspect network packets and determine whether to allow or block traffic based on predefined rules.

NGFWs provide advanced features beyond traditional firewalls, including deep packet inspection, intrusion prevention, and application-layer filtering. They offer more granular control over applications and user activities.

Don't forget ACL! ACLs are a fundamental tool for packet filtering (stateless). They allow or deny traffic based on defined rules such as source and destination IP addresses, ports, and protocols.

IDPS solution monitor network and/or system activities for malicious exploits or security policy violations. They can detect and respond to threats in real-time.

Note that proxy servers act as intermediaries between clients and servers. They can be used to filter and control web traffic, providing an additional layer of security.

Aq concerned SD-WAN, basicly, it is a technology which optimizes WAN connectivity, providing better performance and cost efficiency. While SD-WAN focuses on optimizing traffic routing, some SD-WAN solutions also include firewall features for basic security. You could go further with micro-segmentation. Micro-segmentation in the context of SD-WAN refers to the ability to divide and secure the network into smaller, isolated segments to enhance security and control over communication between different components. Check the type of SDWAN solution, the level of sophistication may vary among different solutions.

 

Best regards
.ı|ı.ı|ı. If This Helps, Please Rate .ı|ı.ı|ı.

View solution in original post

1 Reply 1

M02@rt37
VIP
VIP

Hello @dhikra-marghli8 

Implementing firewall and packet filtering in WAN infrastructures involves using various technologies to secure the network and control traffic. 

Deploying traditional stateful firewall at the perimeter of the WAN is a common practice. These firewalls inspect network packets and determine whether to allow or block traffic based on predefined rules.

NGFWs provide advanced features beyond traditional firewalls, including deep packet inspection, intrusion prevention, and application-layer filtering. They offer more granular control over applications and user activities.

Don't forget ACL! ACLs are a fundamental tool for packet filtering (stateless). They allow or deny traffic based on defined rules such as source and destination IP addresses, ports, and protocols.

IDPS solution monitor network and/or system activities for malicious exploits or security policy violations. They can detect and respond to threats in real-time.

Note that proxy servers act as intermediaries between clients and servers. They can be used to filter and control web traffic, providing an additional layer of security.

Aq concerned SD-WAN, basicly, it is a technology which optimizes WAN connectivity, providing better performance and cost efficiency. While SD-WAN focuses on optimizing traffic routing, some SD-WAN solutions also include firewall features for basic security. You could go further with micro-segmentation. Micro-segmentation in the context of SD-WAN refers to the ability to divide and secure the network into smaller, isolated segments to enhance security and control over communication between different components. Check the type of SDWAN solution, the level of sophistication may vary among different solutions.

 

Best regards
.ı|ı.ı|ı. If This Helps, Please Rate .ı|ı.ı|ı.
Review Cisco Networking products for a $25 gift card