Tactical Advice

Next-Gen Firewalls Can Be IT Security "Dimmers"

The latest in firewall technology does a better job of keeping bad data out and letting good data in.
Next-Gen Firewalls Can Be IT Security "Dimmers"
Credit: Tetra images/ThinkStockPhotos

IT security can get a bad rap with users. Firewalls have prevented many an employee from checking on their Facebook friends or posting an enthusiastic tweet about last night’s episode of Game of Thrones. Such moves have sometimes made firewalls the least popular kid on the playground in many workplaces.

But next-generation firewalls offer much more granular control, which can allow certain users at certain times to access sites and applications that companies might otherwise have blocked outright.

You could say that legacy firewall technology had a lights-on or lights-off mentality. But in a post on the CDW Solutions blog, Jeff Falcon, a senior security solutions architect for CDW, says that next-gen firewalls are more like dimmers:

Essentially, by embracing an on-boarding process for Next Generation Firewalls, an organization may now begin to shift from a static ‘on-off’ switch for ports, protocols and known URL’s, to more of a ‘dimmer’ switch strategy for safely on-boarding applications.

This will allow IT to move toward the direction of striking a harmonious balance of safe application enablement and user identification for only approved applications. This strategy is crucial in the evolutionary process as application control now becomes a priority for the formulation and establishment of user-specific policies.

Like other areas in IT, firewalls are shifting from hardware-based models to software-defined technology. According to TechTarget, Citrix and Palo Alto Networks recently announced that they’re combining forces on a new, virtual next-gen firewall solution that allows Citrix’s NetScaler SDX appliance to run Palo Alto’s VM-Series firewall:

The Citrix-Palo Alto combination will allow data center infrastructure engineers to reduce the hardware footprint in their networks and simplify operations, said Rohit Mehra, vice president of network infrastructure research at Framingham, Mass.-based IDC.

Engineers will be able to apply common configurations and settings to their firewall and application delivery services on the SDX platform, he said. The consolidated services will also enable so-called service chaining, which lets traffic be routed through firewall and ADC services within a single box.

In the quest to be viewed as a collaborator and not an obstructionist, leveraging advanced next-generation tools like this will help IT serve the users’ and the company’s interests at the same time.

After all, no one appreciates being left in the dark suddenly and without warning, so IT should keep this “dimmer” approach in mind as they plan future firewall implementations.

Sign up for our e-newsletter

About the Author

Ricky Ribeiro

Online Content Manager

Ricky publishes and manages the content on BizTech magazine's web site. He's a writer, technology enthusiast, social media lover and all-around digital guy. You can learn more by following him on Google+ or Twitter:


Heartbleed: What Should Your... |
One of the biggest security vulnerabilities has almost every user and every industry...
Why Businesses Need a Next-G... |
Devices investigate patterns that could indicate malicious activity.
Review: HP TippingPoint S105... |
Next-generation firewall can easily replace a stand-alone intrusion prevention system....


The New Backup Utility Proce... |
Just getting used to the Windows 8 workflow? Prepare for a change.
How to Perform Traditional W... |
With previous versions going unused, Microsoft radically reimagined the backup utility in...
5 Easy Ways to Build a Bette... |
While large enterprises have the resources of an entire IT department behind them, these...

Infrastructure Optimization

Businesses Must Step Careful... |
Slow and steady wins the race as businesses migrate IT operations to service providers,...
Why Cloud Security Is More E... |
Cloud protection services enable companies to keep up with security threats while...
Ensure Uptime Is in Your Dat... |
Power and cooling solutions support disaster recovery and create cost savings and...


Securing the Internet of Thi... |
As excitement around the connected-device future grows, technology vendors seek ways to...
How to Maximize WAN Bandwidt... |
Understand six common problems that plague wide area networks — and how to address them.
Linksys Makes a Comeback in... |
The networking vendor introduced several new Smart Switch products at Interop this week.

Mobile & Wireless

Mobility: A Foundational Pie... |
Other technologies rely on mobile computing, which has the power to change lives, Lextech...
Now that Office for iPad Is... |
After waiting awhile for Microsoft’s productivity suite to arrive, professionals who use...
Visualization Can Help Busin... |
Companies need to put their data in formats that make it consumable anytime, anywhere.

Hardware & Software

Review: HP TippingPoint S105... |
Next-generation firewall can easily replace a stand-alone intrusion prevention system....
New Challenges in Software M... |
IT trends such as cloud, virtualization and BYOD pose serious hurdles for software...
Visualization Can Help Busin... |
Companies need to put their data in formats that make it consumable anytime, anywhere.