Understanding security deployment
When implementing security components such as firewalls and anti-malware/anti-virus programs, it's important to understand the various types of deployments and how they affect the monitoring of threats.
A firewall can be deployed either as a network-based firewall or a host-based firewall. A network-based firewall is simply deployed on the network itself and sits in line with inbound and outbound traffic.
The following diagram shows an example of a network-based firewall:
The downside of having only a network-based firewall is that if an internal security attack occurs, such as a user inserting a malware-infected USB flash drive into their computer, the malware will most likely attempt to spread to other systems on the network. A network-based firewall will only be able to filter the malicious traffic if it passes through the firewall appliance. To put it simply, a network...