Firewall design best practices

This document offers best practices as methods proven to optimize success and efficiency in accomplishing various activities, such as infrastructure building, monitoring, etc.

 

A best practice provides a higher-level tactical approach to optimize success and use of time. It's a technique or methodology that, through experience and research, has proven to reliably lead to a desired result.

Go back

What do you want to learn about?

NAT Mappings

NAT, or Network Address Translation, mapping can be added through the command line, if you have a backhaul, or through the Gateway, once your infrastructure is activated (in the Active state). [Tell me more about NAT Mappings]

 

PAT Mappings

PAT, or Port-based Address Translation, mapping can be added so that all outbound traffic appears to come from the PAT address.

 

Inside Interface

Make sure to configure the inside interface on the firewall. By default, the interface denies all traffic. Left in this state, the firewall is entirely closed. If the infrastructure comes up with this configuration, you must update the firewall configuration in the Gateway, and only from the Gateway, prior to using the infrastructure in any way.

 

 See Also

Backhaul best practices

Design best practices

Infrastructure best practices

External subnet best practices

Load balancer best practices

Monitor best practices

Server best practices

Server group best practices

Subnet best practices