Back

Your Firewall to the Internet: Recommendations & Updates

Stay protected online. Watch our video on the latest firewall recommendations and updates for internet and cloud security

3 min read
Published on Jul 27, 2018
Your Firewall to the Internet: Recommendations & Updates

Tech Talks are a weekly opportunity to learn how to do more with your cloud software and services. Each week, we feature a short talk from a subject matter expert, followed by a community driven Q&A where Agile IT customers can ask engineers any of their most pressing questions. This is a free service for our managed service clients. July 26th’s Tech Talk featured Conrad Agramont , Robin Chow, Chris D’Arcy and Adam D’Arcy from XBase who shared a deep dive into things to consider when upgrading your network hardware.

 

Your Firewall to the Internet and Cloud?

When using cloud services, your internet connection is critical. Underpowered equipment or outdated features can reduce the effectiveness of your cloud technologies while outages can completely shut you down. Your network hardware should be able to support redundancy while also being able to manage the protocols to give you the best connection possible to your cloud services.

What are some of the things you need to look for, plan for, and consider when you connect to the cloud?

With greater movement to the cloud, we see there is a greater emphasis that is often overlooked regarding network connectivity on the LAN side and assuring that there is reliability and resilience. Since you are putting your infrastructure in the hands of providers like Microsoft, Google or AWS you business is in the hands of the carriers to assure access to your resources. Making sure there is redundancy as well as the core connectivity capabilities is important.

What Features do modern network hardware devices need?

Route Based VPN: Depending on the manufacturer this can have different names, like VTI Interface From Cisco. With Route based VPN you have additional features such as redundancy, route from multiple subnets

IKEV2: (Internet Key Exchange Version 2) The Latest standards for VPN connectivity. Providers that support VPI and IKEV2: Cisco, Juniper, Sonicwall, Palo Alto.

Policy Based VPNs (your traditional IPSec VPNs) are not advised. They will give connectivity into Azure, but you will not have the same capabilities for redundancy, or having multiple sub-nets reachable through that VPN.

Things to plan before deploying a router

Comparison of IKEV1 and IKEV2

  • Both offer security
  • IKEV 1 only allows a single tunnel
  • IKEV2 allows multi-tunneling
  • VPI allows you to connect multiple sites and to provision for redundancy.

Summary

In this short talk, our partners at Xbase gave a quick walk through on how to select the right hardware for your cloud connected infrastructure.

This post has matured and its content may no longer be relevant beyond historical reference. To see the most current information on a given topic, click on the associated category or tag.

Related Posts

How to Enable Cross-Cloud Collaboration Between GCC High and Office 365

How to Connect GCC High and Office 365 for Cross-Cloud Collaboration

Learn how to securely connect GCC High and Office 365 for cross-cloud collaboration. Explore supported features, limitations, and compliance best practices.

May 22, 2025
6 min read
Key Controls for Achieving CMMC Level 2

Key Controls for Achieving CMMC Level 2 Compliance

Discover the key security controls required for CMMC Level 2 compliance. Learn how to implement NIST 800-171 practices to protect Controlled Unclassified Information (CUI).

May 21, 2025
7 min read
Understanding CMMC Enclaves: A Guide for DoD Contractors

CMMC Enclaves: Your Comprehensive Guide to Protecting CUI

Discover how CMMC enclaves can streamline compliance and bolster security by isolating Controlled Unclassified Information (CUI) within a secure environment.

May 21, 2025
7 min read
How MSPs, RPOs, and C3PAOs Help Organizations Achieve CMMC Compliance

How MSPs Help Organizations Achieve CMMC Compliance

MSPs, RPOs, and C3PAOs play a crucial role in CMMC compliance. Learn how to choose the right consultant, third-party auditor, or provider to meet CMMC certification requirements.

May 20, 2025
8 min read
CMMC Compliance Requirements for Level 1 Level 2 and Level 3

CMMC Compliance Requirements for Level 1 Level 2 and Level 3

CMMC certification requires different cybersecurity controls at each level. Learn the key requirements for Level 1, Level 2, and Level 3 compliance and how they align with NIST 800-171.

May 16, 2025
5 min read
Common Questions About Azure Migration Answered

Common Questions About Azure Migration Answered

Get answers to the most common Azure migration questions. Learn about costs, best practices, security, compliance, and troubleshooting cloud migration challenges.

Apr 29, 2025
3 min read

Ready to Secure and Defend Your Data
So Your Business Can Thrive?

Fill out the form to see how we can protect your data and help your business grow.

Loading...
Secure. Defend. Thrive.

Let's start a conversation

Discover more about Agile IT's range of services by reaching out.

Don't want to wait for us to get back to you?

Schedule a Free Consultation

Location

Agile IT Headquarters
4660 La Jolla Village Drive #100
San Diego, CA 92122

Secure. Defend. Thrive.

Don't want to wait for us to get back to you?

Discover more about Agile IT's range of services by reaching out

Schedule a Free Consultation