Response Data Communications Ltd
RSSTwitterFacebookLinkedInYoutube
  • Home
  • Company
    • Newsletter Archive
    • Events
      • CiscoLive 2012 – London
      • Webinar: Network Instruments, Observer v15
      • 10 Top Call Centre Tips Webinar
      • Xmas Soiree
  • Solutions
    • WAN Optimisation
      • WAN Optimisation Overview
      • How We Can Help
      • Virtual WAN Optimisation
      • VX-Xpress
      • Remote File Access
      • SharePoint Collaboration
      • VoIP and Video Quality
      • Disaster Recovery
      • VX-Xpress Get Started in 6 Steps
    • Data Centre Switching
      • Arista Networks Overview
      • Big Data Networking
      • Arista Networks 7500 Series
    • Unified Communications
      • What is Unified Comms?
      • How We Can Help
      • ShoreTel TCO Guarantee
    • Conferencing and IM
    • Enterprise Voice Mobility
      • What is Voice Mobility?
      • How We Can Help
    • Contact Centre
      • What is a Contact Centre?
      • How We Can Help
      • ShoreTel TCO Guarantee
    • Storage Solutions
      • Nimble – a fresh approach to storage
      • Nimble CS-Series
      • EMC Isilon
      • Scale-Out Storage
    • Next Generation Firewalls
      • What is a Next-Gen Firewall?
      • How We Can Help
    • Enterprise WiFi
      • Enterprise WiFi Overview
      • How We Can Help
    • AirTight Enterprise WiFi Security
    • Video Conferencing
      • What is HD Video Conferencing?
      • How We Can Help
    • Network Instruments
    • Infoblox
    • Ethernet Encryption
      • Ethernet Encryption Overview
    • Oaisys Call Recording
  • Vendors
    • Silver Peak
    • ShoreTel
    • Network Instruments
    • Nimble Storage
    • Arista Networks
    • AirTight Networks
    • Oaisys
    • Aerohive
    • Infoblox
    • Isilon
    • VMWare
    • Palo Alto
  • Services
    • ResponseCare
    • Response Telecom
  • Blog
  • Contact Us

what is a next generation firewall ?

 

What is a Next-Generation Firewall?

The Internet now accounts for the majority of traffic traversing enterprise networks. And it’s not just web surfing. The Internet has spawned a new generation of applications being accessed by network users for both personal and business use. Many of these applications help improve user and business productivity, while other applications consume large amounts of bandwidth, pose needless security risks, and increase business liabilities.
Traditional firewalls are unable to identify or effectively control any of these Internet applications. That’s because legacy firewalls classify traffic based only on ports and protocols.
For example, most web traffic would be identified as simply HTTP coming through Port 80, with no information on the specific applications associated with that port and protocol.
But this problem is not limited to Port 80. Internet applications are increasingly using encrypted SSL tunnels on Port 443, and use clever evasive tactics to disguise themselves or use port-hopping to find any entry point through the firewall. Again, legacy firewalls cannot see or control any of that traffic.
Gartner recently published a research note, “Defining the Next-Generation Firewall,” which states that “Changing business processes, the technology that enterprises deploy, and threats are driving new requirements for network security”.  Gartner warns that “To meet these challenges, firewalls need to evolve into what Gartner has been calling ‘next-generation firewalls.”

 

Gartner’s key findings include:

 

  • The stateful protocol filtering and limited application awareness offered by first-generation firewalls are not effective in dealing with current and emerging threats.
  • Using separate firewalls and intrusion prevention appliances results in higher operational costs and no increase in security over an optimized combined platform.
  • NGFWs are emerging that can detect application-specific attacks and enforce application-specific granular security policy, both inbound and outbound.

 

Gartner’s Recommendations

In the same research note, Gartner issues the following recommendations to enterprise clients:

  • If you have not yet deployed network intrusion prevention, require NGFW capabilities at your next firewall refresh point.
  • If you have deployed both network firewalls and network intrusion prevention, synchronize the refresh cycle for both technologies and migrate to NGFW capabilities.
  • Twitter
  • LinkedIn
  • Facebook
  • Digg
  • StumbleUpon
  • del.icio.us
  • Yahoo! Buzz
  • Google Bookmarks
  • Technorati
  • RSS
  • Blog categories

    • All Blog
    • Contact Centre
    • Enterprise Voice Mobility
    • Enterprise WiFi
    • Storage Solutions
    • Team RDC
    • Unified Communications
    • WAN Optimisation
  • Blog archives

    • February 2012
    • January 2012
    • September 2011
    • July 2011
    • June 2011
    • May 2011
    • April 2011
  • twitter feed:

    • Nimble Storage Meeting the Needs of the Modern Datacentre http://t.co/6GfmLvKQ
    • Assessing the Business and Financial Impact of IP Unified Communication Systems @ShoreTel http://t.co/Gbdxp5Gk
    • Risk Analysis Approach for High-Speed Network Link http://t.co/OQZ675WM
    • Virtualization and server consolidation - the answer is.... http://t.co/0znpKntj
    • We're jealous! ;-) One lucky @shoretel employee got to experience the #grammys. In person. http://t.co/kksKm3ku
      Nimble Storage Meeting the Needs of the Modern Datacentre http://t.co/6GfmLvKQ  — ResponseData

      Technologies

      • WAN Optimisation
      • Unified Communications
      • What is Voice Mobility?
      • Contact Centre
      • Scale-Out Storage
      • Next-Generation Firewalls
      • Enterprise WiFi
      • HD Video Conferencing

      Whitepapers

      • Gartner MQ for WAN Optimisation
      • UC Buyer’s Guide
      • Reducing Mobile Spend
      • Improving Call Centre CSAT
      • Next-Gen DC Storage Challenges
      • Next-Gen Firewalls Guide
      • Aerohive Economics
      • LifeSize HD VC Economics

      Services

      • Response Telecom
      • ResponseCare

      Community

      • Response Blog
      • Silver Peak Blog
      • ShoreTel Blog
      • ShoreTel Forums
      • Isilon Blog
      • Palo Alto Networks Blog
      • Aerohive Blog
      • AirTight Networks Blog
      • LifeSize Blog

      Company

      • About Us
      • Contact Us
      • Privacy Policy
      PageLines by PageLines