Tuesday, July 16, 2019

Am I crazy for not wanting this 'cloud firewall'?

Hey all. I head IT for an agency, and we're about to gain another facility that's being built right now (supposed to move in by 2020). Our ISP (Windstream) is saying that on install to the new site, we will be moving to a cloud firewall for both the current and the new facility. This will mean ditching my current firewall (PFSense build), and letting Windsteam control our open ports, rules, DHCP, etc. I have emailed the engineer that has been discussing this with me and told him I'm not crazy about the idea, and I'm trying to meet with the boss man to let him know I'm not fond of it in the next day or two...am I crazy?

I've never dealt with something like this. In fact my area is very rural, and the new facility is supposed to be getting fiber which is completely new to us hillbillies in this neck of the woods. Is this cloud firewall stuff normal?

My plan was(/is) to set up a site-to-site VPN so that both facilities communicate together. I like having access to my firewall. I don't like the idea of having to call windsteam to ask for changes to be made. I want to see the DHCP leases, monitor the bandwidth, easily capture packets when needed, etc etc.

Anyone else have experience with something like this? I think the boss will listen to me, but I'm wondering if I'm in the wrong for wanting to have control of our firewalls?

Thanks!



No comments:

Post a Comment