Apply a new rule to multiple firewalls


Here's a problem most security teams have had: what's the fastest way to block a risky service on every firewall in the network? Playbook makes it easy.

Firewall Sync

Playbook is firewall sync. It works by creating a central web console for all your firewalling devices. The console grabs your firewall rules and places them under version control, so your team can work on them with change tracking, review, and rollback. Then, when you’re ready to deploy a change, you click a button and Playbook handles the details.

Now you have all your firewall configurations in front of you, in your browser.

Firewall Rule Analysis

Playbook includes full parse engines for the firewalls it supports. It knows whether your rules are valid, and it knows how to figure out whether they permit or deny traffic, which hosts they refer to, and for what protocols and applications.

Even cooler: because Playbook knows how firewall rules are parsed, you can group firewalls together and allow them to "inherit" rules. All your Internet perimeter firewalls can go in a group, and you can make a single change to the group that will hit every firewall.

Push-Button Deployment

Say you have 25 firewalls. Right now, to make a rule change, you have to log into 25 devices and issue commands. Playbook eliminates that problem. It establishes an authenticated connection to the device, which it uses to deploy changes from authorized users. Firewall rule changes no longer require engineers to directly log in to management consoles.