TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

AWS Network Firewall – New Managed Firewall Service in VPC

78 pointsby dduarteover 4 years ago

8 comments

coredog64over 4 years ago
Almost $.40&#x2F;hour, you need one per AZ, and it’s $.06&#x2F;GB for network traffic. I’m happy to see the capability (mainly outbound URL filtering), but this looks like it’s going to be a hard sell to my managers.<p>You’re probably looking at a grand per month per account. On the plus side, they don’t double charge for NAT gateway traffic.
评论 #25133073 未加载
评论 #25133049 未加载
评论 #25138905 未加载
therockspushover 4 years ago
Looking at the firewall vendors that are listed as official partners here, this looks like another pretty security-lite, native product for companies that are just looking to check a compliance box and not a real enterprise offering.<p>Similar to the AWS WAF, this seems geared for a smaller team that can&#x27;t afford the time to deploy and manage virtual security appliances.<p>It looks like they&#x27;re following the same formula as the WAF on this one by letting partners provide rulesets.<p>I&#x27;m waiting for AWS to really flesh these products out and eat all these &quot;partners&quot; lunches.
评论 #25136651 未加载
Scorpiionover 4 years ago
This reminds me of Google clouds built in network firewall[1], which is just called &quot;Google Cloud Firewalls&quot;. One difference is that Googles firewall capabilities are built in and part of the platform, no extra service or fees. Just thought it could be an interesting reference for people not so used to GCP.<p>[1] <a href="https:&#x2F;&#x2F;cloud.google.com&#x2F;firewalls" rel="nofollow">https:&#x2F;&#x2F;cloud.google.com&#x2F;firewalls</a>
评论 #25134187 未加载
renewiltordover 4 years ago
Oh man, if I had this a few years ago, I could have used it instead of a nightmarish solution involving proxying all AWS traffic through a datacentre that had Palo Alto devices.
nerdbaggyover 4 years ago
It kinda amazes me how they can deploy this major topology change with no network issues.
评论 #25146216 未加载
nhoughtoover 4 years ago
Hmm transparent proxy, can do 5 tuple and domain filtering, can’t do URL filtering bc doesn’t terminate tls I assume? They Should update the product page and take out “URL filtering” before it confuses other people..
评论 #25134331 未加载
jcimsover 4 years ago
I wonder if they had to build the new Gateway Load Balancer in their implementation of this, so they decided to turn it into a product as well.
评论 #25133350 未加载
russellendicottover 4 years ago
We&#x27;ve been waiting for this one for about a year so we can get rid of some of our home grown solutions. Can&#x27;t wait to implement and see what it can do. Curious to see what other customers think.
评论 #25133058 未加载