You are on page 1of 23

​SMC Overview

​Next Generation Firewall 5.8

Module 2

SMC Overview SMC Overview


Module Objectives
Upon completion of this module, students should be able to:

• Describe the three layers of the NGFW architecture


• List the components that make up the SMC
• Explain the communications channel flow between components (who talks
to who)
• List at least two supported platforms for the SMC
• Describe the user interface components in the status view
• List and explain at least two additional Management Client tools

SMC Overview
Module Topics

NGFW System Architecture

McAfee SMC Components

SMC Supported Platforms

Management Server Properties

Log Server Properties

WebPortal Server Properties

Deployment Options

Status View

Configuration View

Management Client Tools

SMC Overview
Management Center
One Management Center for everything

NGFW FW/VPN IPS L2FW NGFW w/WiFi

Management
Center

NGFW Virtual NGFW NGFW


Appliance Appliance Software

SMC Overview
SMC Key Features

Powerful and user


friendly management Third party device
plateform monitoring
SMC SMC

Real time monitoring Powerful reporting


features
SMC SMC

Intelligent and efficient


Management high group management with
availability Domains
SMC SMC

Visibility to 3rd parties


Role based with Web Portal Server
administration option
SMC SMC
SMC Overview
NGFW Architecture

Customer | Helpdesk Administrator

Web Portal Management Client

Web Portal Management Log


Server Server Server Security
Management
Center (SMC)

3rd Party Device

NGFW NGFW NGFW NGFW

SMC Overview
NGFW Architecture
Centralized management

Site C
Management
Log Servers
Client

FW/VPN
Site A

IPS FW
Management
Client

FW/VPN

Site B
Management
Server
Log Server
Management
Client

SMC Overview
Capacity

• One Management Server can


manage up to 2,000 NGFW
engines
• A Log Server can process more
than 100,000 records per second
• Additional Log Servers can be
added to increase scalability
• High availability option for SMC

• Management Server
• Log Server

SMC Overview
Platforms

• SMC servers can be installed on


the same machine, or on separate
machines
• Windows and Linux operating
systems are supported
• Management Client can also be
run on Apple OS X
• SMC servers can be virtual, or
installed on physical server
hardware

SMC Overview
Management Client Properties

• Provides a user interface for


configuring, controlling, and
monitoring the system. Connects
to the Management Server.
• Can be run on Windows, Linux
and Mac OS X (via Web Start
Client).
• Management Clients can be used
from any location that has
network access to the
Management Server and the Log
Server.

SMC Overview 14
Management Server Properties

• Stores all configuration data, relay


commands to the engines, and
notifies administrators of new alerts
in the system.
• Position in a central site where it is
physically accessible to the
administrators responsible for
maintaining its operation.
• Offers a RESTful API for
customized integration with other
tools.

SMC Overview 15
Log Server Properties

• Stores logs and correlates events


detected by multiple NGFW
engines.
• Place Log Servers centrally and/or
locally at sites as needed based on
log data volume, administrative
responsibilities, etc.

SMC Overview 16
Web Portal Server Properties

• Provide restricted viewing of


configuration information, reports,
and logs.
• The Web Portal Server can be
deployed in any location that has
network access to the
Management Server and the Log
Servers.
• The Web Portal can be
customized, and also made multi-
lingual.

SMC Overview 17
Deployment Options

• Single server deployment


• Distributed deployment
• High availability options

SMC Overview 18
Management Client Overview
Status View

NAVIGATION
TOOLBAR

SUMMARY OF
THE
SYSTEM’S
STATUS

TREE OF
MONITORED
ELEMENTS
DETAILS OF
THE
SELECTED
ELEMENT
(INFO PANEL)

SMC Overview
Management Client Overview
Navigation

BACK / CONFIGURATION ICON STATUS ICON OVERVIEW ICON LOGS


FORWARD ICON
BUTTONS

NEW TAB

BOOKMARKS

SMC Overview
Management Client Overview
Configuration Views

TREE OF
TASK- SELECTED
SPECIFIC ELEMENTS
ELEMENT
TYPES

DETAILS OF
THE
SELECTED
ELEMENTS

SMC Overview
Management Client Tools
Search

Type-ahead filtering available in Reference search shows you where


element lists and policy cells elements are used

SMC Overview
Management Client Tools
Online Help

Available online via browser


Can be locally served also

SMC Overview
Administration Planning Review

Business Owners

Business Objectives

Security Requirements

Product Features

Implementation Process
SMC Overview
SMC Overview Review

Name two NGFW system


components.
What is the primary task of the
Management Server?
The Log Server?
The NGFW Engines?
List three benefits of centralized
management.
What are the two ways to deploy the
Management Client?

SMC Overview SMC Overview


Lab 1: Management Client
Installation

Goal: Install the Security


Management Center – Management
Client
Estimated Time: 10-minutes
Please refer to the Lab Guide for lab
details

SMC Overview SMC Overview


SMC Overview

You might also like