Context
The firewall environment needed stricter controls to reduce attack surface while maintaining business functionality.
Challenge
- Overly permissive firewall rules
- Growing number of internal services and users
- Risk of lateral movement inside the network
Actions Taken
- Reviewed and cleaned up firewall rules
- Implemented VLANs and inter-VLAN access controls
- Hardened NAT and exposed service configurations
- Improved logging and monitoring visibility
Outcome
- Reduced unnecessary access paths
- Better control over east-west traffic
- More auditable and manageable firewall rule set