(1) A popular computer network publication stated at one time that the enterpris
ID: 3848013 • Letter: #
Question
(1) A popular computer network publication stated at one time that the enterprise firewall was dead. It boldly stated that the exterior firewalls of the organization should be torn down and replaced with host-based firewalls instead. Is this insane, or is it the best new practice in security management? Explain your answer.
(2) What is a host-based firewall and how does it provide protection?
(3) What is a enterprise, or network, firewall and how does it provide protection?
(4) What does f5 (see http://www.f5.com/ ) offer related to this week's questions?
Explanation / Answer
a)
Host-based firewall is employing the protection on every VM / machine on the network.
Network based firewall is employed on the top of cloud network.
In case of host-based firewall,if the intruder was able to find out the security vulnerability then he can get all the privileges of that machine.
Where as in case of Network-based firewall its difficult to access the internal VM's because the machines and firewall are separate.
Also it is difficult to portray the traffic of a network firewall for masquerading.
Hence, network-based firewall with efficient security techniques in force is more better than a host-based firewall.
Its better to have both the firewalls in force to provide strong protection.
b)
A host-based firewall is a application software installed on a machine.This is included as part of the Operating system itself.Only the system admin has the access to configure it.
Main advantage of host-based firewall is its custom security settings as well as its ability to be mobile.(i.e. the settings are not only available on the particular network )
c)
In a cloud environment,the network-based firewall is installed for the entire infrastructure.
( Example - Amazon firewall,VMWare ,Cisco etc).
Advantages - provide first & strong level of security at network level unlike host-based where only one level of security is provided directly on host only.
network-based firewalls are can be made scalable for many clients
d) F5.com is the solutions provider( i.e. security enforcement techniques at host & network level, cloud deployment solutions and network infrastructure deployment with customer service)
It is the provider for 49 out of 50 first Fortune companies. It enables them to deploy their applications securely after the setup of the solutions.
Related Questions
Navigate
Integrity-first tutoring: explanations and feedback only — we do not complete graded work. Learn more.