Safire Knowledge Base

Enterprise Internal Segmentation

Firewall is placed inside the enterprise network to secure enterprise network by segmenting the corporate LAN and protecting each segment from others against malware and virus usually by means of application control, antivirus, web filtering, DNS filtering, and SSL deep inspection. It is usually referred to as “Zero Trust”. Traffic characteristics are symmetric and west-east. Throughput demand is high since enterprise LAN capacities and speeds are orders of magnitudes higher than at the edge.