Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
Nj
Explorer

Cloudguard network Firewall in AWS

1. I have one AWS account with multiple VPCs in it can I use ONE Cloudguard FW from marketplace to monitor all VPC traffic.

2. Is ONE Cloudguard FW from markeplace sufficient for all multiple accounts in same region

3. Is ONE Cloudguard FW from markeplace sufficient for all multiple accounts in multiple regions

0 Kudos
2 Replies
Bryce_Myers
Collaborator

We are using an autoscale group to create a hub/spoke architecture per region and it's working well.  So, I wouldn't say "ONE Cloudguard FW", but one autoscale group, so you have some resiliency and the ability to support dynamic sized workloads without much work on your end.

0 Kudos
Jeff_Engel
Employee
Employee

Hi @Nj , couple of additional things to look at and consider...

  • Sending traffic across regions comes at a cost so staying within region if possible is typically advised
  • Take a look at the AWS Gateway Load Balancer architecture SK here > https://support.checkpoint.com/results/sk/sk174447
  • CGNS for AWS GWLB Deployment Guide HERE 
  • CGNS for AWS GWLB Workshop with CloudFormation template to build out an entire PoC environment here > https://checkpoint.awsworkshop.io/
  • If you aren't already in contact with your local account team and overlays, please do so...they are happy to help as well

Best Regards!

Jeff

 

0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.