CloudGuard Solutions

Video Activity
Join over 3 million cybersecurity professionals advancing their career
Sign up with
Required fields are marked with an *
or

Already have an account? Sign In »

Time
2 hours 22 minutes
Difficulty
Beginner
CEU/CPE
2
Video Transcription
00:00
>> [MUSIC]
00:00
Welcome to Check Point Jump Start training series.
00:00
In this training series,
00:00
we'll be looking at different
00:00
Check Point CloudGuard product lines.
00:00
Check Point CloudGuard is
00:00
a suite of products and solutions that
00:00
can secure your data and virtual networks in the Cloud.
00:00
In this training module,
00:00
we'll examine our first CloudGuard capabilities
00:00
called the CloudGuard private
00:00
and public network security.
00:00
CloudGuard network security is used to protect
00:00
both your private and public cloud network assets.
00:00
My name is Manuel Joaquim,
00:00
and I will be your technical trainer
00:00
for this training module.
00:00
But before we get started,
00:00
let's take a quick look at
00:00
the agenda of this training video.
00:00
We're going to break this training video
00:00
into separate lessons.
00:00
Each lesson will be a separate video.
00:00
You can view them all together in
00:00
>> one viewing or consuming
00:00
>> them separately as needed at your own leisure.
00:00
Lesson 1, CloudGuard solutions.
00:00
Here we'll look at
00:00
Check Point CloudGuard security solutions
00:00
to secure your cloud environments.
00:00
We will look at some of the CloudGuard capabilities in
00:00
both the private cloud and also
00:00
the public cloud environment.
00:00
Lesson 2, CloudGuard components.
00:00
In this lesson, we'll take a look at
00:00
the components for CloudGuard;
00:00
the management station,
00:00
the gateway, and now the controller.
00:00
We will break these components down to give
00:00
you a better perspective on how they work.
00:00
Then lesson 3, cloud segmentation.
00:00
CloudGuard can be used
00:00
to protect your cloud environments.
00:00
Here we're going to discuss how to
00:00
use CloudGuard to segment your cloud,
00:00
to give you the ultimate protection with
00:00
north-south and east-west segmentation.
00:00
Let's start this first lesson by discussing
00:00
some of the CloudGuard cloud solutions.
00:00
Here we'll examine
00:00
CloudGuard capabilities that are used to
00:00
protect both your cloud assets and your network assets.
00:00
CloudGuard can be deployed
00:00
in both public and private Clouds.
00:00
Each of the solutions has some pros and cons.
00:00
But we're not going to go into detail here.
00:00
But suffices to say that each Cloud has some advantages.
00:00
In the public cloud,
00:00
you don't need to purchase any equipment,
00:00
so it's cheaper to launch.
00:00
In a private cloud, you own all know the equipment,
00:00
and so it's a more expensive upfront cost.
00:00
In turn, each cloud solution has some disadvantages.
00:00
In a public cloud, your data has to be
00:00
uploaded to the cloud into the public domain.
00:00
Potentially, it could be accessible by anyone.
00:00
You need to make sure that you lock down the access and
00:00
permissions to prevent any data leakage.
00:00
In a private cloud,
00:00
your data is local which means it's a bit more secure.
00:00
But you still need to make sure that you've patched
00:00
any vulnerabilities to prevent any data breaches.
00:00
In the public cloud,
00:00
we currently support six cloud providers.
00:00
AWS, the Amazon Web Services, Microsoft Azure Cloud,
00:00
the Google Cloud Platform,
00:00
Oracle Cloud, Alibaba Cloud, and IBM Cloud.
00:00
All these clouds are currently supported by
00:00
Check Point's CloudGuard network security solutions.
00:00
As far as cloud providers go,
00:00
AWS dominates 40 percent of the market,
00:00
Azure controls about 30 percent of the market,
00:00
and Google has about 20 percent, and the
00:00
rest is split between the other cloud providers.
00:00
CloudGuard not only protects public cloud environments,
00:00
but also private cloud environments.
00:00
There are a few types of private cloud environments.
00:00
We can classify them into two primary types,
00:00
into two primary groups.
00:00
In the first group,
00:00
CloudGuard is supported on
00:00
virtualization software such
00:00
as hypervisor operating system.
00:00
In the second type, in the second group,
00:00
CloudGuard is also supported
00:00
on software-defined networks,
00:00
which can also be referred
00:00
to as software-defined datacenters.
00:00
In the second type,
00:00
normally do we virtualize servers, virtual machines,
00:00
but we can also virtualize the whole gamut of
00:00
network infrastructures like routers
00:00
and switches, firewalls and gateways.
00:00
Let's break this down a little bit further.
00:00
In a hypervisor methodology,
00:00
CloudGuard is currently supported on
00:00
a few hypervisor operating systems.
00:00
We currently support CloudGuard
00:00
running on VMware ESX operating system,
00:00
on Microsoft Hyper-V operating system,
00:00
on Linux KVM, and also on Unix.
00:00
The other class, the other type of
00:00
private cloud is the software-defined networks.
00:00
A software-defined network can
00:00
virtualize the whole network infrastructure.
00:00
CloudGuard can be installed here to
00:00
protect the whole virtualized network infrastructure.
00:00
On a software-defined network,
00:00
CloudGuard is supported on VMware,
00:00
NSX, CISCO, ACI,
00:00
and also Nokia Nuage Networks.
00:00
But about 84 percent of customers are probably running
00:00
a hybrid solution which
00:00
combines both the public and private clouds.
00:00
Most customers need a cloud security solution
00:00
that can run in multiple environments,
00:00
either on a premise, in the cloud,
00:00
or in a multi-cloud or in a hybrid cloud.
00:00
That means that's the security solution must
00:00
offer the best security protection on the market,
00:00
while at the same time,
00:00
it should also be easily configurable and
00:00
have a single unified management solution.
00:00
CloudGuard does exactly that.
00:00
It helps enforce a consistent policy
00:00
throughout all environments and all assets.
00:00
It also helps in reducing operation, training,
00:00
and education costs, which minimize knowledge gaps.
00:00
That brings us to the end of this lesson.
00:00
Let's quickly recap before exiting this video.
00:00
In lesson 1, we discussed that
00:00
CloudGuard can be deployed in
00:00
both the public and private clouds
00:00
and that most customers need
00:00
a solution that can be deployed
00:00
both in a public or a private cloud.
00:00
They also need a solution that can be easily managed when
00:00
deployed in multi-cloud and
00:00
in hybrid clouds environments.
00:00
CloudGuard private and public
00:00
cloud network security product
00:00
is such a solution.
00:00
That completes our first lesson.
00:00
In the next lesson, we will
00:00
discuss different CloudGuard components.
00:00
I'll see you there.
00:00
[MUSIC]
Up Next