menu
techminis

A naukri.com initiative

google-web-stories
Home

>

Google News

>

Elevate ne...
source image

Cloudblog

2M

read

367

img
dot

Image Credit: Cloudblog

Elevate network security and migrate your legacy VPC firewall rules to Cloud NGFW

  • Google Cloud introduces Cloud NGFW, a network security offering with features such as an intrusion detection and prevention system and TLS inspection.
  • Cloud NGFW is available in Standard and Enterprise tiers and Google Cloud customers are encouraged to transition from legacy VPC firewall rules to Cloud NGFW’s firewall policies.
  • Google Cloud has developed a migration tool that automates most parts of the migration process from legacy VPC firewall rules to Cloud NGFW’s firewall policies.
  • In a straightforward migration scenario where VPC firewall rules do not involve network tags or service accounts, the migration tool scans the configured VPC firewall rules and generates an equivalent firewall policy with corresponding rules.
  • In a complex migration scenario where VPC firewall rules do involve network tags or service accounts, a migration tool identifies all network tags and/or service accounts referenced in the VPC firewall rules, and output a JSON file of tag-mapping.
  • In complex scenarios, migration tool lets users update the JSON file to map network tags and service accounts to the corresponding secure tags and bind these tags to relevant virtual machines manually.
  • Once the firewall policy is created, review the policy and ensure VPC firewall rules are appropriately replaced with the corresponding secure tags. Associate the VPC to the policy and switch the enforcement order.
  • The migration project elevates VPC firewall rules to new network firewall policies and leverages the advanced NGFW feature set like TLS inspection and threat intelligence.
  • Google introduces a VPC firewall rules migration tool demo video and documentation site for the automated migration tool.

Read Full Article

like

22 Likes

For uninterrupted reading, download the app