sanjigerma Lv3Posted 31 Oct 2022 14:31
  
The new design is not maximizing the full feature of security.
Carrot Lv3Posted 31 Oct 2022 14:40
  
Please assess very carefully when changing current design. It should be better
Natsu Dragneel Lv3Posted 31 Oct 2022 14:50
  
Sangfor NGAF
1. interface facing the Router and other Switches
2. interface facing the Servers
NeTSec Lv3Posted 31 Oct 2022 14:56
  
The first topology/diagram is much better and more granular.
damulagski Lv3Posted 31 Oct 2022 15:05
  
Configure the router facing the ISP and the NGAF and the other Switches. Then configure the NGAF and Switch facing Router vice versa.
soneosansan Lv3Posted 31 Oct 2022 15:12
  
Can you tell why you change it to a less secure topology?'
babeshuka Lv3Posted 31 Oct 2022 19:06
  
Do not change your current setup. NGAF alone can do Server Protection and Lateral protection.
nobitachou Lv2Posted 31 Oct 2022 20:22
  
The most of the configuration is on the router but it is all about IP Addressing.
jetjetd Lv5Posted 01 Nov 2022 01:36
  
Stick with the old topology, all the traffic that goes in your network will go to the NGAF first. In your new topology some network is open and exposed in the internet which is dangerous.
arjay Lv3Posted 01 Nov 2022 10:01
  
Much better that all traffics will pass through NGAF for filtering including the endpoint users

I Can Help:

Change

Moderator on This Board

11
7
5

Started Topics

Followers

Follow

1
3
5

Started Topics

Followers

Follow

0
4
5

Started Topics

Followers

Follow

67
20
3

Started Topics

Followers

Follow

3
14
3

Started Topics

Followers

Follow

1
137
3

Started Topics

Followers

Follow

Board Leaders