Skip to content

Commit ee4d924

Browse files
authored
Merge pull request #211507 from siddomala/updateHarmonyConnect3
Updating Virtual WAN FAQ and Harmony Connect Docs
2 parents 4d16f2f + 54b009e commit ee4d924

File tree

2 files changed

+11
-10
lines changed

2 files changed

+11
-10
lines changed

articles/firewall-manager/check-point-overview.md

Lines changed: 9 additions & 8 deletions
Original file line numberDiff line numberDiff line change
@@ -1,6 +1,6 @@
11
---
2-
title: Secure Azure virtual hubs using Check Point Cloudguard Connect
3-
description: Learn about Check Point CloudGuard Connect to secure Azure virtual hubs
2+
title: Secure Azure virtual hubs using Check Point Harmony Connect
3+
description: Learn about Check Point Harmony Connect to secure Azure virtual hubs
44
author: vhorne
55
ms.service: firewall-manager
66
services: firewall-manager
@@ -9,23 +9,24 @@ ms.date: 10/30/2020
99
ms.author: victorh
1010
---
1111

12-
# Secure virtual hubs using Check Point Cloudguard Connect
12+
# Secure virtual hubs using Check Point Harmony Connect
1313

14-
Check Point CloudGuard Connect is a Trusted Security Partner in Azure Firewall Manager. It protects globally distributed branch office to Internet (B2I) or virtual network to Internet (V2I) connections with advanced threat prevention.
14+
>[!NOTE]
15+
> This offering provides limited features compared to the [Check Point NVA integration with Virtual WAN](../virtual-wan/about-nva-hub.md#partners). We strongly recommend using this NVA integration to secure your network traffic.
16+
17+
Check Point Harmony Connect is a Trusted Security Partner in Azure Firewall Manager. It protects globally distributed branch office to Internet (B2I) or virtual network to Internet (V2I) connections with advanced threat prevention.
1518

16-
With a simple configuration in Azure Firewall Manager, you can route branch hub and virtual network connections to the Internet through the CloudGuard Connect security as a service (SECaaS). Traffic is protected in transit from your hub to the Check Point cloud service in IPsec VPN tunnels.
19+
With a simple configuration in Azure Firewall Manager, you can route branch hub and virtual network connections to the Internet through the Harmony Connect security as a service (SECaaS). Traffic is protected in transit from your hub to the Check Point cloud service in IPsec VPN tunnels.
1720

1821
When you enable auto-sync in the Check Point portal, any resource marked as *secured* in the Azure portal is automatically secured. You don't have to manage your assets twice. You simply choose to secure them once in the Azure portal.
1922

2023
Check Point unifies multiple security services under one umbrella. Integrated security traffic is decrypted once and inspected in a single pass. Application Control, URL Filtering, and Content Awareness (DLP) enforce safe web use and protect your data. IPS and Antivirus protect users from known network exploits. Anti-Bot blocks connections to Command and Control servers and alerts you if a host is infected.
2124

2225
Threat Emulation (sandboxing) protects users from unknown and zero-day threats. Check Point SandBlast Zero-Day Protection is a cloud-hosted sand-boxing technology where files are quickly quarantined and inspected. It runs in a virtual sandbox to discover malicious behavior before it enters your network. It prevents threats before the damage is done to save staff valuable time responding to threats.
2326

24-
>[!NOTE]
25-
> This offering provides limited features compared to the [Check Point NVA integration with Virtual WAN](../virtual-wan/about-nva-hub.md#partners). We strongly recommend using this NVA integration to secure your network traffic.
2627
## Deployment example
2728

28-
Watch the following video to see how to deploy Check Point CloudGuard Connect as a trusted Azure security partner.
29+
Watch the following video to see how to deploy Check Point Harmony Connect as a trusted Azure security partner.
2930

3031
> [!VIDEO https://www.youtube.com/embed/C8AuN76DEmU]
3132

articles/virtual-wan/virtual-wan-faq.md

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -332,9 +332,9 @@ The current behavior is to prefer the ExpressRoute circuit path over hub-to-hub
332332

333333
* Contact the product team to take part in the gated public preview. In this preview, traffic between the 2 hubs traverses through the Azure Virtual WAN router in each hub and uses a hub-to-hub path instead of the ExpressRoute path (which traverses through the Microsoft Edge routers/MSEE). To use this feature during preview, email **[email protected]** with the Virtual WAN IDs, Subscription ID, and the Azure region. Expect a response within 48 business hours (Monday-Friday) with confirmation that the feature is enabled.
334334

335-
### When there's an ExpressRoute circuit connected as a bow-tie to a vWAN hub and a non-vWAN (customer-managed) VNet, what is the path for the non-vWAN VNET to reach a VNet directly connected to the vWAN hub?
335+
### When there's an ExpressRoute circuit connected as a bow-tie to a Virtual WAN hub and a non Virtual WAN (customer-managed) VNet, what is the path for the non Virtual WAN VNet to reach the Virtual WAN hub?
336336

337-
The current behavior is to prefer the ExpressRoute circuit path for non-vWAN VNet to vWAN VNet connectivity. However, this isn't encouraged in a Virtual WAN setup. To resolve this, you can [create a Virtual Network connection](howto-connect-vnet-hub.md) to directly connect the non-vWAN VNet to the vWAN hub. Afterwards, VNet to VNet traffic will traverse through the Virtual WAN router instead of the ExpressRoute path (which traverses through the Microsoft Enterprise Edge routers/MSEE).
337+
The current behavior is to prefer the ExpressRoute circuit path for non Virtual WAN VNet to Virtual WAN connectivity. It is recommended that the customer [create a Virtual Network connection](howto-connect-vnet-hub.md) to directly connect the non Virtual WAN VNet to the Virtual WAN hub. Afterwards, VNet to VNet traffic will traverse through the Virtual WAN router instead of the ExpressRoute path (which traverses through the Microsoft Enterprise Edge routers/MSEE).
338338

339339
### Can hubs be created in different resource group in Virtual WAN?
340340

0 commit comments

Comments
 (0)