04/07/2023
Newsflash | When the firewall meets the SD-WAN, "with one stone" to achieve manufacturing network security
With the deepening of the application of the new generation of information technology in the manufacturing industry and the acceleration of the process of digital transformation, the network security problems faced by enterprises are endless and affect the whole body.
At present, the manufacturing network security mainly faces three major risks: the level is not clear, inadequate isolation; Unknown system security vulnerabilities, lack of risk and threat intelligence; Extensive access control means, difficult to control and manage effectively. Enterprise security lacks flexibility.
Cisco firewalls contain hundreds of industrial IPS rules and have threat detection capabilities across a wide range of industrial protocols and communication modes, including SCADA, DNP3, CIP, Modbus and other OT protocols. It monitors and identifies network traffic associated with industrial control systems and analyzes potential threats. By deeply understanding the details of industrial protocols and communication patterns, the signature database can detect and prevent attacks against industrial environments in a timely manner, protecting industrial networks from malicious activities.
Cisco recently introduced Cisco Secure Firewall 3105, designed for high-growth enterprise branches. The new 3105 offers up to a 500% performance improvement over past midrange platforms. With a new hardware framework and software, fully enhance the security resilience of partner and user network deployments.
Cisco Secure Firewall 3100 is a family of threat protection-focused security devices that provide superior threat defense and help enterprises build security resilience. Each model delivers excellent performance for multiple firewall usage scenarios, with throughput ranging from the Internet edge to the data center and private cloud to meet the security needs of enterprise business development and operational scale growth.
Cisco's firewall is powered by Snort3, the next generation IPS engine. For more than 20 years, Snort has become the de facto standard by which all network intrusion detection systems are measured. Snort3 is a major upgrade to proven network security tools, providing powerful performance and security capabilities optimizations for Cisco firewalls. More powerful and easier to use, while also reducing the use of system resources. Cisco's firewall with Snort3 provides manufacturing customers with stronger, more efficient, and more resilient security.
In addition, the blessing from Cisco's strong security intelligence team Talos also makes Cisco's firewall series products have more intelligent and more targeted security protection capabilities. The Cisco Talos Intelligence Group, one of the world's largest commercial threat intelligence teams, creates accurate, fast, and actionable threat intelligence for Cisco customers, products, and services, protects customers from known and emerging threats, finds new vulnerabilities in common software, And intercept threats before they further compromise the entire network. Talos leverage its extensive threat intelligence to create a more secure network infrastructure for each customer, significantly enhancing the security capabilities of Cisco customers.
See Chapter for application
With the increase of MPLS dedicated lines required by large manufacturing enterprises, the cost of WAN deployment is also increasing. Traditional WAN networks may suffer from slow cloud application performance and reduce transmission efficiency. The spread of factories and the increase in the number of devices have multiplied the cyber attack surface... These networking challenges can now be easily solved by deploying Cisco Secure Firewall 3105 with an integrated SD-WAN solution.
First, Cisco Secure Firewall 3105 integrates advanced threat detection and defense technologies, including firewalls, intrusion detection and prevention systems (IDS/IPS), and virtual private networks (VPNS), providing powerful security performance to effectively defend against various network threats.
Cisco Secure Firewall 3105 is deployed on the public cloud through the NGFWv, enabling interconnection between virtual private clouds (VPCS) and public cloud service providers (such as AWS and Azure), as well as between branches. When branches connect to the Internet, enterprise IT can observe and analyze network traffic in real time, identify and prevent potential threats, and protect sensitive data and business applications.
The Cisco Secure Firewall 3105 achieves significant performance gains through a hybrid hardware architecture of CPU and FPGA. The new hardware architecture optimizes the processing capabilities of firewalls, encryption, and threat checks, directly increasing the cost performance of Layer 7 security capability by three times, and improving the cost performance of VPN encryption throughput by nearly six times. Its seven-layer throughput capacity of 10Gbps and rich new features are ideal for enterprise network security border access and SDWAN interconnection networking, as well as small data center isolation and policy control.
The Cisco Secure Firewall 3105 Intelligent Routing function dynamically selects the best data transmission path by monitoring and evaluating the performance metrics of different connection paths, such as latency, bandwidth utilization, and packet loss rates. It makes intelligent decisions based on real-time data and application requirements, ensuring that data is transmitted over reliable and efficient network channels. The intelligent routing function combines advanced application identification and traffic analysis technologies to classify and process data flows based on application type and security group label SGT. In this way, business-critical applications can be prioritized, while low-priority traffic can be restricted or redirected to make full use of available bandwidth resources, providing enterprises with greater flexibility and scalability.
Not only that, manufacturing enterprises are increasingly relying on SaaS and IaaS applications for business operations as they transition to the cloud. These applications are scattered across multiple locations and operated by different people. Under traditional WAN, these applications run slowly and inefficiently, with increased latency, poor performance, low network security, and more prone to errors. Cisco Secure Firewall 3105 integrates an SD-WAN solution that dramatically speeds up multi-cloud access for SaaS and IaaS applications. It also automates workflow management for all major public clouds. This means that critical SaaS applications can optimize the visibility and control of smart manufacturing in real time over SD-WAN. Another piece of good news is that Cisco Firewall is coming soon with support for smart routing for SaaS.
Cisco firewalls with highly integrated management features simplify the configuration and management of SD-WAN networks. It provides an intuitive user interface and powerful automation tools that enable administrators to easily manage network performance, security policies, and connection status. This ability to integrate management saves businesses time and effort, allowing them to focus on their core business without worrying about the complexities of network management.
Cybersecurity is one of the most important capabilities of SD-WAN in manufacturing. Cloud-based applications are scattered everywhere, and the cyberattack surface increases, making it difficult to protect. SD-WAN provides the best threat protection and makes it easy to manage malicious activity and policy violations in your network. It also enables enterprises to build a robust Secure Access Service Edge (SASE) architecture that protects network data access and improves network operational efficiency and performance by merging security and network functions into a single cloud delivery service. It uses Zero Trust Network Access, which never defaults to trust, and establishes trust for each access request, ensuring that only the right users and devices can access applications and networks, thus ensuring consistent data protection.
Cisco Greater China Vice President, General manager of the Security business unit, Tony Bu, said:
âWith the emergence of new technologies, new models and new forms of business, the digital environment is changing at an accelerating pace, and manufacturing enterprises in particular need a simple and centralized security platform to manage and protect their expanding and rapidly evolving IT infrastructure. The launch of the new Cisco Secure Firewall 3105 has injected "fresh blood" into the Cisco firewall product family, greatly improving the firewall performance, providing customers with a simplified, secure and consistent experience in complex IT environments, and helping manufacturing enterprises to create a unified security network. Further provide more secure support for customer localization innovation.â