Lesson 3: Common Mistakes and Best Practices for Designing Network Security Zones

  Рет қаралды 68,622

AlgoSec

AlgoSec

Күн бұрын

Пікірлер: 23
@obiobi5794
@obiobi5794 4 жыл бұрын
great job! looking forward to browse the channel
@cottondai
@cottondai 3 жыл бұрын
Great lesson. Thank you
@dksmiffs
@dksmiffs 4 жыл бұрын
Excellent video! Helpful to this networking greenhorn who's attempting to design an upgrade to my home network. Thanks very much.
@johnson554671
@johnson554671 6 жыл бұрын
Man, I'd give you three thumbs up if I could! You explained things so well. Will check out your other vids!
@AxionSmurf
@AxionSmurf 5 жыл бұрын
I don't think he wants your third thumb
@davhernandez17
@davhernandez17 2 жыл бұрын
Thank you! that was amazingly clear
@arshidrashid598
@arshidrashid598 8 жыл бұрын
great job professor thumbs up. explained in a really simple way. thanks for sharing
@aballesteros5425
@aballesteros5425 5 жыл бұрын
Hi @AlgoSec , at around 4:47 , the connection from the DATA-FW , APP-FW , WEB-FW to the MAIN-FW, are they on the same Network or same broadcast doamin ( eg. are all the Interface peering IPs are on the same /24) OR Do they have their own separate network?
@zomgoose
@zomgoose 5 жыл бұрын
Great explanation! Thank you!
@esthermdzitiro31
@esthermdzitiro31 4 жыл бұрын
Great explanation, thank you.
@vpcnetwork3181
@vpcnetwork3181 4 жыл бұрын
Is it possible to do Zones in one firewall rather then virtual firewall contents ?
@AxionSmurf
@AxionSmurf 5 жыл бұрын
Great video!
@leo-rq2ei
@leo-rq2ei 7 жыл бұрын
great video thanks!
@mingxindong3150
@mingxindong3150 7 жыл бұрын
Can we just have a switch between the firewall and servers, so we can have Vlan and separate the traffic.
@jeffcojd
@jeffcojd 7 жыл бұрын
If it's a layer 2 switch you can only have one VLAN through it, it's all on the same broadcast domain.
@tempone1015
@tempone1015 6 жыл бұрын
You can use roas "router-on-a-stick" approach if u want to use an L2 switch for the servers, so u can have separate vlans in each server.
@aaltameemi
@aaltameemi 3 жыл бұрын
Yes, you can and this is the best option rather than creating virtual Firewall for each zone. Therefore, simply assign each App, Data, Web systems (phsyical or virtualized servers) into a switch and segreate between them using VLANs. Connect the firewall to the switch as a Trunk and create sub-interfaces, where each sub-interface tagged with a VLAN for each zone. Then in firewall assign each sub-interface into different security zone (Web, App, Data) and start configuring firewall rules between zones.
@NuraSheikh1
@NuraSheikh1 Ай бұрын
Awesome
@makistsiros2783
@makistsiros2783 5 жыл бұрын
And we are back to a single hw firewall box as a single point of failure no?
@AlgoSec
@AlgoSec 5 жыл бұрын
Thank you for you question a) It's possible to use a virtual firewall if your organization prefers to avoid appliances: all major vendors have virtualized their products to work in both private-cloud or public-cloud environments. Also most vendors allow in-product virtualization (having multiple virtual firewalls inside one big hardware chassis). b) All firewall vendors offer clustered high-availability solutions to avoid a single-point-of-failure situations (so do router vendors) c) SDN and cloud platform providers (VMware, Cisco ACI, AWS, Azure, etc) all provide filtering capabilities within their fabric, which is another path to take So you have plenty of options - and in all them the considerations I discussed in the video are relevant . I hope this answers your question.
@certifiedprogrammer4598
@certifiedprogrammer4598 7 жыл бұрын
Thanks professor you explained clear in it
@rilcoeng
@rilcoeng 8 жыл бұрын
Now the audio it's very nice
@ultimatums1
@ultimatums1 2 жыл бұрын
This was nothing about best practices. more like different design examples.
Lesson 4: Data Center Segmentation Best Practices
5:08
AlgoSec
Рет қаралды 21 М.
Webinar - Network Security Zones and Conduits
35:48
SolutionsPT
Рет қаралды 1,8 М.
To Brawl AND BEYOND!
00:51
Brawl Stars
Рет қаралды 17 МЛН
Cybersecurity Architecture: Networks
27:31
IBM Technology
Рет қаралды 165 М.
What To Consider When Designing a Network
22:06
Skyline ATS
Рет қаралды 12 М.
pfSense Firewall Rules That Make Sense (And How to Use Them)
21:53
Network Security Design - Firewall
23:34
Magnus Holmberg
Рет қаралды 4,4 М.
Webinar: Networking Design and Best Practices
1:02:10
Snap One
Рет қаралды 201 М.
Firewalls and Network Security - Information Security Lesson #7 of 12
34:41
Understanding Cybersecurity: Network Segmentation
12:03
Intelligence Quest
Рет қаралды 45 М.