sanjigerma Posted 2022-Oct-31 14:31
  
The new design is not maximizing the full feature of security.
Carrot Posted 2022-Oct-31 14:40
  
Please assess very carefully when changing current design. It should be better
Natsu Dragneel Lv3Posted 2022-Oct-31 14:50
  
Sangfor NGAF
1. interface facing the Router and other Switches
2. interface facing the Servers
NeTSec Lv3Posted 2022-Oct-31 14:56
  
The first topology/diagram is much better and more granular.
damulagski Posted 2022-Oct-31 15:05
  
Configure the router facing the ISP and the NGAF and the other Switches. Then configure the NGAF and Switch facing Router vice versa.
soneosansan Posted 2022-Oct-31 15:12
  
Can you tell why you change it to a less secure topology?'
babeshuka Lv3Posted 2022-Oct-31 19:06
  
Do not change your current setup. NGAF alone can do Server Protection and Lateral protection.
nobitachou Lv2Posted 2022-Oct-31 20:22
  
The most of the configuration is on the router but it is all about IP Addressing.
jetjetd Lv5Posted 2022-Nov-01 01:36
  
Stick with the old topology, all the traffic that goes in your network will go to the NGAF first. In your new topology some network is open and exposed in the internet which is dangerous.
arjay Lv3Posted 2022-Nov-01 10:01
  
Much better that all traffics will pass through NGAF for filtering including the endpoint users

I Can Help:

Change

Moderator on This Board

1
152
3

Started Topics

Followers

Follow

1009
209
99

Started Topics

Followers

Follow

Board Leaders