Firewall Analysis
An expert review of firewall configuration, exposed services, rule hygiene, administrative access, logging and defensive controls.
Know when to bring this work into the program.
Use this analysis after major network changes, provider transitions, acquisitions, or when years of accumulated rules make exposure and intent difficult to understand.
A scope built around the risk.
An expert review of firewall configuration, exposed services, rule hygiene, administrative access, logging and defensive controls.
- Internet exposure and inbound services
- Rule necessity, breadth, age and duplication
- Administrative access, firmware and secure management
- Logging, threat prevention and network segmentation
Useful output for the people who must act.
- Configuration and rule-base findings
- Identification of unnecessary or risky exposure
- Cleanup and hardening recommendations
- Items requiring validation with the network provider
A process designed for firewall analysis.
Establish rule intent
Begin with internet exposure and inbound services and confirm the systems, people and evidence needed to answer the client’s specific questions.
Analyze exposure
Review rule necessity, breadth, age and duplication. Then evaluate administrative access, firmware and secure management to determine whether the relevant controls operate as intended.
Validate necessity
Assess logging, threat prevention and network segmentation and connect the result to credible security, operational and business impact.
Clean and harden
Provide configuration and rule-base findings and identification of unnecessary or risky exposure, then align responsible parties around the next actions.
Move from activity to clarity.
Which rules no longer have a valid business owner?
To answer this, Elteni analyzes internet exposure and inbound services together with rule necessity, breadth, age and duplication. The client receives configuration and rule-base findings, with the evidence, context and next steps needed to act.
Are management interfaces appropriately restricted?
To answer this, Elteni analyzes rule necessity, breadth, age and duplication together with administrative access, firmware and secure management. The client receives identification of unnecessary or risky exposure, with the evidence, context and next steps needed to act.
Does segmentation limit the impact of compromise?
To answer this, Elteni analyzes administrative access, firmware and secure management together with logging, threat prevention and network segmentation. The client receives cleanup and hardening recommendations, with the evidence, context and next steps needed to act.
The result does not have to live in another report.
Relevant findings, evidence, owners and remediation status can be centralized in the Elteni Platform as part of an ongoing relationship.
Explore the Elteni Platform →