Site icon Check Point Blog

Check Point announces its Azure Virtual WAN security solution

open-source software

By Hezi Bahry, Cloud Network Security Product Manager, published August 1, 2022

Azure Virtual WAN, a Microsoft Network-as-a-Service, is already generating significant interest because of its operational improvements and advanced feature sets. Organizations using Azure Virtual WAN’s capabilities need to ensure that deployments are protected, which is where Check Point CloudGuard Network Security can enable multiple scenarios.

Check Point is excited to announce its Azure Virtual WAN security solution, with CloudGuard providing industry-leading threat prevention, zero trust segmentation and North-South and East-West cloud network security.

If you are:

then CloudGuard can help you and your team.

“Protecting your cloud infrastructure must be automated and operationally efficient to meet today’s business needs”, said TJ Gonen, Check Point’s VP of Cloud Security, “The focus on improving the cloud team’s daily operations is at the center of Azure Virtual WAN, and Check Point is excited to partner with Microsoft to make cloud network security quick, easy and intuitive.”

“The partnership between Check Point and Microsoft Azure provides a best-in-class solution that can secure network traffic for cloud deployment. Check Point CloudGuard for Azure Virtual WAN delivers a fully integrated and automated solution allowing customers to seamlessly protect their applications and workloads,” said Reshmi Yandapalli, Principal Product Manager, Azure Core-Networking.

Click here to watch a demo video of CloudGuard for Azure Virtual WAN.

Background

To best serve today’s modernized IT requirements, many organizations choose a distributed environment strategy, which includes the use of different infrastructures serving different business needs. Global organizations may have a large on-premises data center, with tens or hundreds of branch offices around the world, and utilize Azure’s global presence to serve different business needs. Such a decentralized IT environment requires organizations to manage and maintain complex connectivity, and their security needs may vary between these different parts of its global IT environment.

Figure 1: Multiple physical and cloud-based data centers (source: Microsoft)

Maintaining and securing the peering configurations of multiple physical and cloud-based data centers creates operational and security challenges, especially when the different data centers have different requirements and use different security solutions. This complex connectivity and security posture may cause complex security issues and a resulting slowdown in business growth. Because of this added complexity, security teams often need to invest a significant part of their attention and effort on security operations rather than the actual security.

To address these operational and security challenges, Azure developed Azure Virtual WAN, which can be understood as a cloud-native version of the hub and spoke model, see figure 2 below. Connecting decentralized data centers, branch offices, and remote users to Azure’s Virtual WAN simplifies networking connectivity, while providing low latency streaming of traffic.

Figure 2: Azure Virtual WAN architecture (source: Microsoft)

Check Point’s solution for Azure Virtual WAN security

Check Point and Microsoft partnered to integrate CloudGuard Network Security with Azure Virtual WAN, in order to centralize and simplify the security and security operations for Azure and Check Point customers, see figure 3 below.

Figure 3: CloudGuard provides Azure Virtual WAN security

The tight integration of CloudGuard with Azure Virtual WAN has already generated high interest from a number of leading organizations in different industry verticals. The solution has been tested in numerous proof-of-concepts with early design partners, with feedback that the cloud-native security solution is able to meet the enterprise security requirements of highly-regulated, top-tier organizations.

CloudGuard Network Security for Azure Virtual WAN provides the following benefits for industry-leading security and improved security operations:

Figure 4: Traffic flows in Azure Virtual WAN (source: Microsoft)

These benefits will help security engineers and managers to focus on security instead of the overhead of sizing, deployment, configuration and maintenance.

Supported Traffic Flows

The following traffic flows are supported, see also figure 4 above):

Figure 5 below shows a single hub reference design.

Figure 5: Single hub reference design

Figure 6 below shows a reference design for an inter-hub in the same region.

Figure 6: Reference design for inter-hub in the same region

Supported Security Use Cases (Security Technologies)

Next steps

For a demo of the new solution, please watch this video.

CloudGuard Network Security for Azure Virtual WAN is currently in Early Availability. The Early availability program provides a wide range of benefits including VIP support from a Check Point Cloud Security Architect. If you’d like to to join the program, please click here.

If you’d like to learn more about best practices for Azure Virtual WAN security, please register for one of the regional webinars:

To receive a personalized demo of CloudGuard for Azure Virtual WAN, please click here.

If you’d like to discuss this in more detail with your Check Point account team or security engineer, or your Check Point channel partner, please click here.

Additional content for learning and reading

If you are migrating to the cloud and evaluating cloud network security solutions, download the Buyer’s Guide to Cloud Network Security to understand:

Another fascinating document is the Forrester Total Economic Impact of CloudGuard Network Security:

Forrester Research interviewed a $10B+ US-based healthcare company who uses CloudGuard to secure their hybrid-cloud deployment and generated a 169% ROI. To read this document, click here.

Do you want to read more about cloud security?

Download the Check Point cloud security blueprint documents:

Follow and join the conversations about Check Point and CloudGuard on TwitterFacebookLinkedIn and Instagram.

Exit mobile version