News

Other articles

Sunday 14 March 2010
Article  Cloud security assessment scheme launched

Sunday 14 March 2010
In Brief  Human element undermines encryption

Thursday 11 March 2010
Article  Digital privacy framework steps closer?

Monday 8 March 2010
Audio Podcast  Web 2.0 and Social Networks in the Enterprise

Sunday 7 March 2010
Article  Digital Economy Bill raises privacy concerns

Wednesday 3 March 2010
Article  Cloud security threats identified by CSA

Tuesday 2 March 2010
In Brief  Vote for your CSO Interchange topics

Thursday 25 February 2010
Article  Cloud Computing : a simple question of supplier risk

Monday 22 February 2010
Article  Most dangerous coding errors outed

Monday 22 February 2010
In Brief  Microsoft IE users to get browser choice update

Friday 19 February 2010
Article  Google Buzz fail highlights privacy expectation rise

Thursday 18 February 2010
In Brief  Annual hacking challenge aims for mobiles and browsers

Wednesday 17 February 2010
Audio Podcast  The Challenges of Cross Border eID

Monday 15 February 2010
Audio Podcast  The Readiness of eID in Europe Part 2

Sunday 14 February 2010
Audio Podcast  The Readiness of eID in Europe Part 1
In Brief

Watchguard Interview: Death of the Firewall

Written by Ben Chai (SecurityVibes.com)
Published on Thursday 28 May 2009
0 comment(s) | Subnetwork United Kingdom
 

In an interview at Infosec 2009 with Chris McKie, VP of Communications for Watchguard, SecurityVibes discussed the issue of whether the firewall was dead. In a statement to Security Vibes, Chris McKie agreed that the old firewall has died but risen again in the form of a unified threat management UTM appliance.

Certainly here at the show we've seen many people claim that the firewall is dead or it needs to be fixed. Our perspective is that the firewall of the old is evolving into a unified device capable of addressing multiple threats rather than just being a basic firewall. So I guess you can say that the Firewall has died but it certainly has risen again as a unified threat management appliance capable of handling web-filtering gateway anti-virus, IPS, and IDS as well as handling extra features such as VPN-SSL.

When confronted on the issues administrators have with maintaining black lists and white lists, Mr McKie talked about how some of the newer features can help with thee issues and how the new evolved firewall can handle multiple vector attacks.

The UTM appliance has a lot more intelligence and can detect visited web-sites that contain for example cross-site scripting attacks, drive-by-down-loads or Web 2.0 attack vectors and ensure appropriate action is taken.

In addition, UTM appliances have a greater amount of flexibility so for example, grey lists can be created. Greylists were defined as sites that organisations were happy for their employees to access but wanted to ban certain applications such as IM or peer to peer or even allow this communication but block attachments being sent within the conversations to prevent data leakage.

Essentially the firewall now has more management, more control and greater risk mitigation. Although the intelligence of the evolved firewall is certainly impressive in detecting attack vectors such as drive-by-downloads, we still could not come to any agreement regarding the issues of maintaining black or white lists. Frankly it seems that more work will now be involved in dealing with grey lists and administrators will have a greater burden in trying to understand just what all these rules in the firewall are trying to do especially when they inherit someone else's set of rules.

References
Security Vibes Interview with Chris McKie

Our members have posted 0 comments about this article. Only members can view and submit new comments.
Related contents
Advertising
Companies
Most commented
Most Popular
+
 
Related companies
Beeware (2 fans)
Read members opinions and rate Beeware too !
Ratings  0
Arkoon Network Security
Read members opinions and rate Arkoon Network Security too !
Ratings  0
Deny All
Read members opinions and rate Deny All too !
Ratings  0
Eset
Read members opinions and rate Eset too !
Ratings  0
Algosec
Read members opinions and rate Algosec too !
Ratings  0
Search
Our RSS Feeds
Subscribe to our RSS feeds for free !
Social Web