what does a firewall do?
-ensures that all communication between a business’ network and the internet conforms to its’ security policy
reference for security controls best practices
-iso 27002
principle of least privilege
-giving as little access as possible to users, applications, and systems
firewall best practices
change management best practices
static packet filtering
-traditional firewall which controls traffic entering or exiting network interfaces
static packet filtering implementations
- at a network gateway
static packet filtering evaluates what header information?
static packet filtering pros and cons
- low security as it cannot operate above the network layer (3)
stateful packet inspection summary
stateful packet inspection breakdown
stateful packet inspection pros and cons
- requires more resources
next generation firewall
unified threat management (utm)
-the concept of having a single gateway device with a multitude of security controls
utm features
web application firewall (waf)
zero trust model