Enjoy consistent network security coverage across your NSX environment with a Layer-7 gateway firewall that includes network sandboxing and URL filtering.
Manage NSX Gateway Firewall together with NSX Distributed Firewall for all your public and private cloud firewall needs.
No specialized hardware and simple operations translate to CAPEX and OPEX savings.
Provide Layer-7 firewalling for physical workloads without needing access to the operating system.
Add to your private cloud protections by filtering all traffic at the boundary of designated security zones.
Inspect north-south traffic at the perimeter of your public cloud environment.
Layer 7 internal firewall
AI-powered correlation of events across multiple detection engines
Signature and behavior based detection of ransomware and other threats at every hop
Distributed analytics engine for topology visualization & policy recommendations
Both the Gateway and Distributed Firewall are part of the NSX product family and have similar components. However, the Distributed Firewall is designed to handle east-west network traffic (internal traffic). The Gateway Firewall complements the Distributed Firewall to protect east-west traffic in specialized cases such as securing physical workloads. The Gateway Firewall can also function as a private cloud zone firewall or a public cloud edge firewall (for north-south traffic).