Perimeter refresh
Existing controls no longer provide the needed context.
Security · Solution
A next-generation firewall combines network control with application awareness and selected threat-prevention capabilities at an enforcement point.
A conceptual sequence used to explain the service—not a customer deployment.
Overview
A firewall platform that can make policy decisions using application, identity and threat context in addition to network addresses and ports.
Application-aware traffic policy
Identity integration where required
Threat-prevention capabilities
Logging, review and policy lifecycle
Right fit
Existing controls no longer provide the needed context.
Internal boundaries require deliberate enforcement.
Rules have grown difficult to understand and maintain.
Outcomes
Policy can use more than addresses and ports.
Traffic treatment follows approved rules.
Events and decisions are available for review.
Rules can be documented and revisited.
Engagement
Assess traffic flows, existing rules and required boundaries.
Define zones, policy, inspection and management requirements.
Move rules and traffic through a controlled change process.
Test access, logging and the approved security behaviour.
Questions, answered directly
It can use application, identity and threat context in addition to traditional network information when applying policy.
Not automatically. A refresh is an opportunity to review purpose, ownership and continued need before migration.
Describe the current environment, the change you are considering and what the result must support.