TrustRadius: an HG Insights company

Azure Firewall Manager

Score8 out of 10

5 Reviews and Ratings

What is Azure Firewall Manager?

Azure Firewall Manager provides central network security policy and route management for globally distributed, software-defined perimeters. It offers centralized configuration and management of multiple Azure Firewall instances, across Azure regions and subscriptions.

Categories & Use Cases

Top Performing Features

  • Automated Policy Orchestration

    Automatically brings together all security controls in one place, automates changes and collapses risks

    Category average: 7.5

  • Attack Path Simulation Testing

    Simulation of potential attack paths to expose network exposure

    Category average: 7.4

  • Policy Compliance Auditing

    Automatic identification of gaps in compliance, remediation, and generation of compliance reports for auditors

    Category average: 8

Areas for Improvement

  • Firewall Rule Cleanup

    Ability to detect and cleanup rules that are either partially or completely unused, expired or shadowed

    Category average: 8.8

  • Device Discovery

    Ability to automatically find all devices connected to the network

    Category average: 7.9

  • Vulnerability Scans

    Network scans to pinpoint vulnerable locations for remediation

    Category average: 7.8

Its Provide high level of security, responsive support and makes it easy to do policies and deployment.

Use Cases and Deployment Scope

We use Azure firewall Manager to manage central security policies and route management. Most important is that this product provide and addresses the central security policies for deployment and management in our organization. This product is primarily used for platform security.

Pros

  • Anti -Spam and protection against phishing.
  • Endpoint Security.
  • DDOS Protection.

Cons

  • Only we can do one way NATING.
  • Initial setup was not easy.
  • Dashboard Need improvement.

Return on Investment

  • Provide and increased efficiency in security.
  • Price wise it is expensive.
  • Managing and controlling multiple firewall from one centralize portal.

Alternatives Considered

Sophos Intercept X for Server, Sophos XG Firewall and Cisco Wireless LAN Controllers

Other Software Used

Sophos Intercept X for Server, Azure Application Gateway, Azure App Service, Cisco 350X Series Stackable Managed Switches

Azure WAF something that you consider for your web apps.

Use Cases and Deployment Scope

We have implemented the WAF in Azure to secure our internally developed Web Apps that are hosted in Azure. It has allowed us to provide access to users externally from our organization to our Azure apps without compromising security. Using the WAF allows us to funnel traffic into Azure whilst using Conditional Access in Azure AD with Enterprise Apps.

Pros

  • Security
  • Firewall
  • Traffic

Cons

  • Functionality
  • Setup is difficult.
  • Networking

Return on Investment

  • Externally hosted firewall.
  • No cost having on Orem appliance.
  • Cheaper as we only pay for what is use in Azure for it.

Alternatives Considered

Azure Application Gateway

Other Software Used

Azure Application Gateway, Microsoft Azure Active Directory, Microsoft Exchange

Easy to use product to provide central network management

Use Cases and Deployment Scope

Managed multiple sites and their connections into Azure to link multiple regions. It solved the need for having multiple places to visit to setup / troubleshoot network and firewall issues. Gave us DDOS protection and the ability to implement web application firewalls. Gave one dashboard to view and controll all the network

Pros

  • Central Azure Firewall management
  • Automate traffic routing
  • Third Party support

Cons

  • Bulk IP address fails, requires you to split it up smaller
  • Firewall Rules dont always have good descriptions
  • No Traffic Splitting

Return on Investment

  • Reduced time required to manage multiple products
  • Increased network visability
  • Good logs for audits

Alternatives Considered

Juniper Advanced Threat Prevention

Other Software Used

Azure VMware Solution, Veeam Backup for Azure, KnowBe4 PhishER