Skip Links

Network World

  • Social Web 
  • Email 
  • Close

Palo Alto integrates firewall with Active Directory

Security policies can link machine, user and application
By Tim Greene , Network World , 10/22/2007

Palo Alto Networks is set to announce at Interop New York the ability to map firewall rules to individual users via integration with Microsoft’s Active Directory.

Palo Alto is introducing a software agent that directly taps Active Directory servers to gather data about users and user groups and pass it along to the firewall. The agent is deployed at the server, and no client agents are required.

The firewall can create an association between a user and an IP address to enforce identity-based rules. So if only the IT department is allowed to use BitTorrent, for instance, the firewall could apply the rule based on the Active Directory information supplied about the user logged in at a particular IP address. That gives tighter controls over access even when users move from machine to machine on the network.

Because Palo Alto’s PA-4000 firewall has visibility into applications themselves, not just the ports an application uses, it can tie application use to individuals, the company says.

Comments (3)
Login
Forgot your account info?

Great for a schoolBy compu_85 on June 6, 2008, 1:31 pmPerhaps in a normal office you don't need to apply rules based on user, but in a school something that can do this is ideal. It makes enforcement of loss of internet...

Reply | Read entire comment

And, that's news!!! Wow!!!By Anonymous on October 24, 2007, 1:32 amAnd, that's news!!! Wow!!! Tim, I thought you were better than this. I guess the standard for newsworthy coverage has really gone down. I'm surprised that Palo Alto...

Reply | Read entire comment

RE: Palo Alto integrates firewall with Active DirectoryBy meatpieandtatters on October 23, 2007, 10:52 amBig deal. A modest configuration feature that does what? Change firewall policy for an individual?! If any administrator is putzing around with this kind of minutia...

Reply | Read entire comment

View all comments

Add comment
Anonymous comments subject to moderator approval. Register here for member benefits.
Have a NetworkWorld account? Log in here. Register now for a free account.

Videos

rssRss Feed
Save The Date!
What They Are Saying

and there is always a but... firebug doesnt work :(- Anonymous

Join the Discussion