A Look at Different Firewall Product Features

Firewall is one of the great features that can beblock their employees from viewing certain websites
incorporated in your system for analyzing incominglike: underground sites, pornography sites, and web
protocols. Based on this, they are capable to take anbased emails. Content filtering features in a firewall
appropriate action. Also, they can perform severalproduct allows you to do just that. It blocks all the
conditional evaluations.sites other than the specified ones.d) Network
These conditional evaluations are also referred to asAddress Translation: - They are often used to map
'rules'. When a fire wall in constructed, it is set withillegal address blocks to valid ones. Even though
rules that will be strictly followed by it. For example, ifNAT's are not security related, devices that make
the company policy demands that only the salesuse of them in corporate world are firewall
department will have the access to the FTP site, theproducts.e) Intrusion Detection: - In general, this term
firewall can be set accordingly.could mean anything. But in this context, some
So, even if any other department wants to accessmanufacturers are beginning to combine different
the site, it will not be possible. In this aspect, Firetypes of products into their firewall offering. Even
walls are to networks what privilege schemes are tothough this in itself doesn't create a problem, users
operating systems. For example, Windows XP willhave to be a bit weary of the work load that might
allow you to specify which users can access abe imposed on their firewall.f) Fault tolerance: - Few
directory or a file. In a similar way, firewalls canhigher end firewall products developed by companies
provide you with access control to your web sites orlike Nokia/Checkpoint combination and Cisco PIX
network work stations.support certain kind of fail-over features.
Some other features included in firewall are asFault tolerance features of firewall products are also
follows:a) Virtual Private Networking: - They are alsoreferred to as High-Availability functionality. Advanced
referred to as VPN's. VPN's are used to move theversions of fault tolerance features allow the firewalls
traffic securely from point A to point B over hostileto run in pairs. In this scenario, while one device is
networks. There are many players in the openfunctioning, the other will act as a stand by.
market offering these services. Many firewallEntertaining the thoughts of managing all these
dedicated products offer both LAN-to-LAN and VPNfeatures in one single product, can be a daunting
functionalities.b) Load Balancing: - It's more of atask. Hence, one has to approach it with a kitchen
generic term and it refers to the art of moving thesink mentality and with a fair amount of skepticism.
traffic in a distributed way. These days, someLet us not forget that they have a played a pivotal
firewalls products also incorporate certain featuresrole in various security models of different
like directing FTP traffic and web in a distributedorganizations as well.
manner.c) Content filtering: - Companies may want to