Sangfor_NGAF Learning Notes 1
The difference between traditional firewall and NGAF (next generation firewall)
The traditional firewall is based on packet header filtering, can not identify the application and its content, can not distinguish user behavior, can not meet the increasingly complex network environment, so the concept of next-generation firewall is put forward.
Basic functions of next-generation firewalls:
Basic firewall functions, * defense, visual application identification, intelligent firewall, high performance.
Main functions and Features of Sangfor_NGAF
Network security: with identity authentication, NAT, anti-* *, × × and other functions
Visual application identification: distinguish core business, legitimate business and illegal business by identifying applications, thus providing them with bandwidth guarantee, bandwidth speed limit and blocking functions.
Comprehensive application security: with vulnerability protection, WEB protection, virus protection, server protection, identify potential threats and conduct behavior tracking and upload to the cloud.
Can only associate analysis reports: application protection log, application management log, network security log, user analysis report, implementation vulnerability analysis, WEB scan report
The deployment model of Sangfor_NGAF
Route pattern: NGAF is deployed at the exit of the network
Transparent mode: NGAF string in the link
Virtual network cable: NGAF in and out of the string in the link
Mixed mode: there are both routing ports and transparent ports on NGAF
Bypass mode: receives data messages through port mirroring