No video

Lesson 3: Common Mistakes and Best Practices for Designing Network Security Zones

  Рет қаралды 66,937

AlgoSec

AlgoSec

Күн бұрын

Network Segmentation: Lesson 3
In this lesson, Professor Wool examines common missteps when organizations create security zones and best practices to consider for an improved defense.
Learn more about AlgoSec at www.algosec.com and read Professor Wool's blog posts at blog.algosec.com

Пікірлер: 22
@dksmiffs
@dksmiffs 4 жыл бұрын
Excellent video! Helpful to this networking greenhorn who's attempting to design an upgrade to my home network. Thanks very much.
@davhernandez17
@davhernandez17 2 жыл бұрын
Thank you! that was amazingly clear
@cottondai
@cottondai 3 жыл бұрын
Great lesson. Thank you
@johnson554671
@johnson554671 6 жыл бұрын
Man, I'd give you three thumbs up if I could! You explained things so well. Will check out your other vids!
@AxionSmurf
@AxionSmurf 5 жыл бұрын
I don't think he wants your third thumb
@obiobi5794
@obiobi5794 3 жыл бұрын
great job! looking forward to browse the channel
@arshidrashid598
@arshidrashid598 7 жыл бұрын
great job professor thumbs up. explained in a really simple way. thanks for sharing
@esthermdzitiro31
@esthermdzitiro31 4 жыл бұрын
Great explanation, thank you.
@aballesteros5425
@aballesteros5425 4 жыл бұрын
Hi @AlgoSec , at around 4:47 , the connection from the DATA-FW , APP-FW , WEB-FW to the MAIN-FW, are they on the same Network or same broadcast doamin ( eg. are all the Interface peering IPs are on the same /24) OR Do they have their own separate network?
@zomgoose
@zomgoose 5 жыл бұрын
Great explanation! Thank you!
@vpcnetwork3181
@vpcnetwork3181 4 жыл бұрын
Is it possible to do Zones in one firewall rather then virtual firewall contents ?
@leo-rq2ei
@leo-rq2ei 7 жыл бұрын
great video thanks!
@AxionSmurf
@AxionSmurf 5 жыл бұрын
Great video!
@certifiedprogrammer4598
@certifiedprogrammer4598 7 жыл бұрын
Thanks professor you explained clear in it
@makistsiros2783
@makistsiros2783 5 жыл бұрын
And we are back to a single hw firewall box as a single point of failure no?
@AlgoSec
@AlgoSec 5 жыл бұрын
Thank you for you question a) It's possible to use a virtual firewall if your organization prefers to avoid appliances: all major vendors have virtualized their products to work in both private-cloud or public-cloud environments. Also most vendors allow in-product virtualization (having multiple virtual firewalls inside one big hardware chassis). b) All firewall vendors offer clustered high-availability solutions to avoid a single-point-of-failure situations (so do router vendors) c) SDN and cloud platform providers (VMware, Cisco ACI, AWS, Azure, etc) all provide filtering capabilities within their fabric, which is another path to take So you have plenty of options - and in all them the considerations I discussed in the video are relevant . I hope this answers your question.
@mingxindong3150
@mingxindong3150 7 жыл бұрын
Can we just have a switch between the firewall and servers, so we can have Vlan and separate the traffic.
@jeffcojd
@jeffcojd 7 жыл бұрын
If it's a layer 2 switch you can only have one VLAN through it, it's all on the same broadcast domain.
@tempone1015
@tempone1015 5 жыл бұрын
You can use roas "router-on-a-stick" approach if u want to use an L2 switch for the servers, so u can have separate vlans in each server.
@aaltameemi
@aaltameemi 3 жыл бұрын
Yes, you can and this is the best option rather than creating virtual Firewall for each zone. Therefore, simply assign each App, Data, Web systems (phsyical or virtualized servers) into a switch and segreate between them using VLANs. Connect the firewall to the switch as a Trunk and create sub-interfaces, where each sub-interface tagged with a VLAN for each zone. Then in firewall assign each sub-interface into different security zone (Web, App, Data) and start configuring firewall rules between zones.
@rilcoeng
@rilcoeng 7 жыл бұрын
Now the audio it's very nice
@ultimatums1
@ultimatums1 Жыл бұрын
This was nothing about best practices. more like different design examples.
Lesson 4: Data Center Segmentation Best Practices
5:08
AlgoSec
Рет қаралды 20 М.
Understanding Cybersecurity: Network Segmentation
12:03
Intelligence Quest
Рет қаралды 42 М.
The Joker kisses Harley Quinn underwater!#Harley Quinn #joker
00:49
Harley Quinn with the Joker
Рет қаралды 9 МЛН
Whoa
01:00
Justin Flom
Рет қаралды 22 МЛН
لااا! هذه البرتقالة مزعجة جدًا #قصير
00:15
One More Arabic
Рет қаралды 52 МЛН
Network Security Design - Firewall
23:34
Magnus Holmberg
Рет қаралды 3,6 М.
Routers, Switches, Packets and Frames
9:12
NGT Academy
Рет қаралды 511 М.
Webinar: Networking Design and Best Practices
1:02:10
Snap One
Рет қаралды 198 М.
Cybersecurity Architecture: Five Principles to Follow (and One to Avoid)
17:34
Firewall Security Zones - Zone based Policy Firewall ZPF
11:47
GD Networking Newbie
Рет қаралды 10 М.
Home Lab Network Security! - vlans, firewall, micro-segmentation
18:29
VirtualizationHowto
Рет қаралды 47 М.
Cybersecurity Architecture: Networks
27:31
IBM Technology
Рет қаралды 113 М.
Using Zones To Save Your Sanity
6:40
Fortinet Guru
Рет қаралды 31 М.
Understanding Network Architectures: 4 common network designs
9:16