Next Generation
Firewall(NGFW)Feature and
Benefits
Fouad larabi /Obeng samuel
Cyber Security Engineers help businesses by
protecting their computer and networking
systems from potential hackers and cyber-
attacks. They safeguard sensitive data of a
business from hackers and cyber-criminals who
often create new ways to infiltrate sensitive
databases.
Next Generation Firewall(NGFW)
A next-generation firewall (NGFW) is a hardware- or software-based network security system
that is able to detect and block sophisticated attacks
The term next generation This advanced firewall comes with additional useful features
Features of Next Generation
Firewall(NGFW):
Standard firewall features: They include such as stateful port/protocol inspection, and VPN.
Web proxy and URL checking, Sandboxing ,NAT, Geolocation, IDS/IPS, Antivirus/anti-
malware, Load balancing .
Application identification and filtering: This is the chief characteristic of NGFWs.
SSL and SSH inspection:. They can decrypt traffic. This provides additional protection from
malicious applications and activity that try to hide using encryption to avoid the firewall.
Features of Next Generation
Firewall(NGFW):
Intrusion prevention: Being more intelligent and with deeper traffic inspection.
Directory integration: Most NGFWs include directory support (i.e., Active Directory). For
instance, to manage authorized applications based upon users and user groups.
Malware filtering: NGFWs can also provide reputation-based filtering to block applications
that have a bad reputation. This can possibly check phishing, virus, and other malware sites
and applications.
Advantages of Next Generation
Firewall
All-in-one functionality
Greater visibility and control
Simplified management
Better security
Lower total cost of ownership
Comparing Next Generation Firewalls
1. Cisco firepower
2. Check Point Software Technologies
3. Fortinet
4. Palo Alto Networks
• Does the NGFW solution provide protection
against server application attacks and client
application attacks? What is the percentage of
time that it does not?
• Is the device stable and reliable?
• Does the NGFW solution enforce inbound and
outbound application polices?
• Does the NGFW solution enforce inbound and
outbound identity policies?
THANK
YOU