Enable Zero Trust Network Security to get simplified security for thousands of branch offices.
CN-SERIES CONTAINER NGFW

Protect Kubernetes Containers

Keep cloud native applications nimble and secure with the industry’s first ML-Powered Next-Generation Firewall (NGFW) built for Kubernetes® environments.
Forrester Report

Gain visibility and control in Kubernetes environments

See how the CN-Series helps security teams and developers secure containers.

Discover native Kubernetes integration

Flexibility allows firewall provisioning into application CI/CD processes.

See the CN-Series in action

Why wait? Our team of experts is ready to provide you with a personalized demo.

Size and scale – in minutes

Get unmatched flexibility with credit-based licensing so you can size and scale security to match rapidly changing requirements.



Seamlessly deploy firewalls into DevOps workflows

Seamlessly deploy firewalls into DevOps workflows

Container traffic is growing by leaps and bounds – and it’s probably part of your network infrastructure. Or will be soon. Our CN-Series containerized firewalls prevent network-based threats in Kubernetes environments.


Prevent exfiltration

Prevent exfiltration

Block suspicious activity and prevent exfiltration with full outbound traffic content inspection, including encrypted SSL traffic and traffic originating from containerized applications. CN-Series firewalls can inspect all outbound traffic originating from a containerized application – and halt inadvertent access of suspect websites and command-and-control servers.


Dynamically scale without compromise

Dynamically scale without compromise

Enforce Zero Trust with Threat Prevention. Discover Layer 7 visibility and control and protect east-west traffic between pods in different trust zones (such as two namespaces) or between pods and other workload types.


Keep the latest threats from breaching your network

Keep the latest threats from breaching your network

Defend against malware delivery aimed at container exploits and vulnerabilities, including variants not yet seen in the wild, through custom-built signatures based on content instead of hashes.


logo strata

Automated deployment

Leverage Kubernetes orchestration to issue a single command for deploying firewalls on all nodes in a cluster at once.

Extend network security

Get constant and consistent Kubernetes network security to stay competitive and boost regulatory compliance.

  • 100%

    INTEGRATED INTO KUBERNETES

  • 100%

    APPLICATION VISIBILITY

  • 1

    COMMAND FOR DEPLOYMENT

FAQ

Frequently Asked Questions

The CN-Series is a containerized next-generation firewall purpose-built to secure Kubernetes environments against modern application attacks.

It provides full Layer-7 visibility, application-level segmentation, DNS Security, and protection from advanced threats in Kubernetes.

It can be deployed using DevOps-friendly tools like Helm charts and Terraform templates, as a DaemonSet or as a Kubernetes Service.

Yes, CN-Series firewalls can be managed from Panorama, giving network security teams a single pane of glass for their overall security posture.

It supports public cloud and on-premises data center environments, including managed Kubernetes services like GKE, EKS, and AKS.

Meet with us

Contact our team of NGFW experts today. We want to meet with you to help keep your network secure.

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.
Meet with us