Network Security Equipment
Network security equipment refers to physical devices that control network traffic, filter packets, and protect IT infrastructure from unauthorized access. For IT departments responsible for safeguarding company resources, choosing the right device translates to the organisation's resilience against cyber threats and compliance with regulations such as the NIS2 directive.
This guide explains what the various types of devices are, what parameters to pay attention to, and which manufacturers you will find in Senetic's offering.
What is a firewall used for?
A firewall is a device or software that monitors traffic based on established security rules. It operates at the boundary between the internal network and the outside world: it analyses incoming packets, checks source IP addresses, port numbers, and protocols, and then decides whether to allow or block traffic according to a set of rules defined by the administrator.
Firewalls can be hardware-based, software-based, or cloud-based.
- Hardware firewalls (also known as hardware firewalls or firewalls) are dedicated physical devices with their own processor and memory, independent of the operating systems of computers on the network.
- Software firewalls operate at the host's operating system level and protect individual machines.
- Many organisations use a hybrid firewall model, combining both layers.
A hardware firewall differs from a regular router in that it offers advanced mechanisms:
- stateful inspection packet filtering,
- network address translation (NAT),
- intrusion prevention systems (IPS)
- deep packet inspection (DPI).
A traditional router forwards traffic between networks; a firewall actively analyses this traffic for threats and blocks suspicious activity. Cybersecurity requires a multi-layered approach, and hardware firewalls offer higher performance and reliability than purely software solutions, as they process traffic on dedicated circuits without burdening the resources of servers and workstations.
Types of Network Security Equipment
The choice of network security devices depends on the type of network being protected, the number of users, and the level of security requirements. Below is a discussion of the categories available in Senetic's offering.
Traditional Firewalls
The first generation of firewalls relied on filtering traffic at the network level: analysing IP addresses, protocols, and port numbers. Packet-filtering firewalls are the simplest type of firewall and still work well in small businesses that need basic perimeter protection and blocking traffic from unknown sources. Traditional features include tracking the state of active connections, VPN, and packet filtering at layers 3-4 of the OSI model. Firewalls block unauthorized access to the network and reduce the risk of data breaches, even in this basic configuration.
VPN Gateways and Remote Access Devices
A virtual private network allows secure, encrypted remote connections between company branches or for employees working outside the office. Dedicated VPN gateways support IPsec and SSL/TLS protocols; firewalls with VPN integration provide secure access for remote workers. Encrypting transmissions is crucial for securing data over the network.
Manufacturers
Senetic offers devices from several manufacturers, each addressing different market segments and levels of security requirements.
Fortinet is a leader with a wide portfolio of devices from small offices to data centres. The FortiGate series combines firewall, IPS, application control, and SSL inspection within the Security Fabric platform. Fortinet solutions are scalable and have a high depth of inspection rate.
Zyxel specializes in UTM and ATP solutions aimed at medium-sized businesses. Devices from the USG and ATP series offer an intuitive management interface, content filtering, application-based control, and VPN. The manufacturer offers attractive pricing, which is a significant advantage for organisations prioritising easy configuration and quick deployment. Zyxel actively supports customers in adapting to the requirements of the NIS2 directive by offering devices with incident reporting and network segmentation features.
Ubiquiti
Ubiquiti Networks offers modern solutions such as the Dream Machine and UniFi Security Gateway integrated with the UniFi ecosystem. The initial cost is low, and management is done from a single console covering switches, access points, and security gateways. Ubiquiti Wi-Fi access points support the latest encryption standards. NGFW features and TLS/IPS inspection are less developed than those of Fortinet; the solution works well where protection requirements do not include deep inspection of encrypted traffic.
Cisco
Cisco offers enterprise-level solutions: ASA (Adaptive Security Appliance), Secure Firewall, and the Meraki platform with cloud management. The portfolio includes advanced NGFW features, integration with Talos threat intelligence, and scalable security for large corporations with multiple locations. Licenses and support are more expensive than competitors, but the integration and central management capabilities make Cisco a standard in the IT industry for enterprise organisations.
Meraki GO
Meraki GO is a line of Cisco products aimed at small businesses that need simple deployment and management of firewalls via a mobile app. The devices operate in a cloud model: configuration, monitoring, and updates are done remotely. This provides scalable security for companies without a dedicated IT team.
Planet
Planet provides economical VPN solutions and basic firewalls. The devices support packet filtering, NAT, and IPsec VPN at a low purchase cost. This is an option for companies with limited IT budgets that need basic perimeter protection and secure connections between branches.
Frequently Asked Questions
What is the difference between a hardware firewall and a software firewall?
A hardware firewall is a dedicated device with its own processor, memory, and software; it operates independently of the operating systems of computers on the network. Software firewalls are installed on a server or workstation, which burdens the host's resources. Hardware firewalls offer higher performance and reliability as they process traffic without impacting other applications. Software firewalls are more flexible and cheaper to deploy, which is why many organisations use both solutions simultaneously in a hybrid model.
What does the acronym UTM mean and how does it differ from NGFW?
UTM (Unified Threat Management) is a device that combines a firewall, IPS, antivirus, content filtering, VPN, and anti-spam in one enclosure. NGFW (Next-Generation Firewall) focuses on deep packet inspection, application-level control, SSL/TLS inspection, and integration with threat intelligence. UTM can include NGFW as one of its features, but with high network traffic, NGFW provides better performance as it processes traffic on more specialized mechanisms. UTM is suitable for medium-sized companies looking for a single management point; NGFW is a better choice for organisations with high bandwidth and advanced security requirements.
What throughput should I choose for a firewall?
A good rule of thumb is to choose a device that provides at least 1.5-2x the expected load with all security features enabled. The device's performance decreases when SSL inspection, IPS, and application control are active simultaneously. If a company uses a 1 Gbps connection, a firewall with IPS and SSL inspection should handle a minimum of 2 Gbps in those modes.
Is a subscription required for a hardware firewall?
Yes, if services such as threat signature updates, URL filtering, sandboxing, or malware protection are required. Without an active license, many devices operate solely as a basic firewall with packet filtering, losing access to threat intelligence databases. Outdated device software often leads to breaches as new malware variants are not recognized. Manufacturers like Fortinet offer FortiGuard and FortiCare packages in annual, 3- and 5-year options.
What happens when the device's license expires?
The device continues to operate as a firewall with basic functions (packet filtering, NAT, VPN) but loses access to signature updates, new malware definitions, URL filtering, and sandboxing. Regular updates help manage vulnerabilities in the device's operating systems; without them, the risk of a security breach increases. A single data breach can cost millions.
How many users can a firewall for a small business support?
This depends on the network traffic intensity, the number of concurrent sessions, and the security features used. For a company with 30-100 employees, a UTM device supporting 500-2000 concurrent sessions and a throughput of 1-2 Gbps with full protection is usually sufficient. Effective computer network security uses diverse hardware and best practices; in addition to a firewall, it is advisable to implement network segmentation and access control. A manageable switch allows for port control and traffic monitoring, providing additional features to limit lateral movement in the event of an attack.
What is a VPN gateway and when is it needed?
A VPN gateway is a device that provides encrypted connections between company branches (site-to-site VPN) or for remote employees (remote access VPN). It is needed whenever company data is transmitted over public networks or the Internet. Firewalls with VPN integration provide secure access for remote workers without the need to purchase a separate device. Multi-factor authentication should be used for critical resources accessed via VPN.
What does high availability (HA) mode provide?
HA mode means hardware redundancy: two identical devices operate in parallel, and if one fails, the other takes over the traffic without interruption. For critical entities and public institutions that must ensure continuous protection 24/7, HA eliminates the risk of downtime due to the failure of a single device. HA configuration requires two identical devices with appropriate HA ports and licenses.
Does a firewall replace antivirus protection on computers?
No. A firewall protects data flow at the network level by analysing incoming and outgoing traffic, blocking malicious traffic and unauthorized access. Antivirus software protects endpoints (computers, servers) from infected files, locally executed malware, and attacks within the network. Cybersecurity requires a multi-layered approach, and both solutions play complementary roles. Without network segmentation, malware can spread quickly, even if the firewall at the network edge is correctly configured. It is also essential to regularly update the firmware of routers and access points, as weak passwords are a common cause of breaches and represent a vulnerability independent of the firewall.