How to implement virtual firewalls in a complex network infrastructure

How to implement virtual firewalls in a complex network infrastructure

Can you tell me how to set up virtual firewalls on the network, as well as the security pros and cons of doing so?

    Requires Free Membership to View

    SearchSecurity.com members gain immediate and unlimited access to breaking industry news, virus alerts, new hacker threats, highly focused security newsletters, and more -- all at no cost. Join me on SearchSecurity.com today!

    Michael S. Mimoso, Editorial Director

    By submitting your registration information to SearchSecurity.com you agree to receive email communications from TechTarget and TechTarget partners. We encourage you to read our Privacy Policy which contains important disclosures about how we collect and use your registration and other information. If you reside outside of the United States, by submitting this registration information you consent to having your personal data transferred to and processed in the United States. Your use of SearchSecurity.com is governed by our Terms of Use. You may contact us at webmaster@TechTarget.com.

Virtual firewalls are a way to maximize your security dollar by consolidating multiple logical firewalls onto a single hardware platform. In Cisco Systems Inc. parlance, they're known as security contexts.

From a security perspective, they're a fine way to save a few bucks, as long as you purchase a product from a reliable vendor and configure it properly. Each virtual firewall has its own rulebase, interfaces and configuration options that make it completely independent from other virtual firewalls running on the same device. The independence of virtual firewalls means that a configuration mistake on one device won't affect the performance of other virtual firewalls.

One additional word of warning: If you're planning to use virtual firewalls, be sure to purchase highly redundant hardware. You don't want a single device failure taking down all of your firewalls!

If you have the complex network infrastructure that would benefit from multiple firewalls, virtual firewalls/security contexts are a great way to go!

For more information:

This was first published in July 2009