AWS Security, Identity & Compliance
AWS Network Firewall
Managed network firewall and intrusion prevention for your VPCs.
What it is used for
- Filtering outbound traffic
- Intrusion prevention
- Central network rules
Equivalent on Google Cloud
The closest Google Cloud service is Cloud Next Generation Firewall: distributed, fully managed firewall with intrusion prevention for your VPC.
How DomainHostly helps with AWS Network Firewall
- Plan: choose the right setup, size and region for your workload and budget.
- Set up securely: configure AWS Network Firewall with least-privilege access, encryption and backups where they apply.
- Migrate: move from shared hosting, your own servers or the other cloud with minimal downtime.
- Run and optimise: monitoring, updates and regular cost reviews so you only pay for what you use.
Security, Identity & Compliance: Identity and access, encryption keys, secrets, firewalls, threat detection and compliance.
What to consider: Security, Identity & Compliance
- Grant the least privilege needed and prefer roles or service accounts over long-lived keys.
- Turn on multi-factor authentication for every administrator account.
- Enable audit logs and threat detection from day one; they are hard to reconstruct after an incident.
Related services: Security, Identity & Compliance
- AWS IAM (AWS)
- AWS IAM Identity Center (AWS)
- AWS Organizations (AWS)
- AWS KMS (AWS)
- AWS Secrets Manager (AWS)
- AWS Certificate Manager (AWS)
- Identity and Access Management (IAM) (Google Cloud)
- Resource Manager & Organization Policy (Google Cloud)
- Cloud Key Management Service (Google Cloud)
- Secret Manager (Google Cloud)