Group-Based Policy Analytics

Blog post

Giving SecOps a New Weapon with Security Group Access Control Lists

Segmenting networks using Security Group Access Control Lists (SGACL) reduces the threat surface by limiting the reach of attacks in east-west traffic to within segments. By sending the permit and deny logs generated by the SGACLs to SIEM applications, SecOps can analyze and correlate them with indicators of compromise generated by other security appliances.

October 26, 2020 4 min read