• Skip to primary navigation
  • Skip to main content
  • Skip to footer

Cisco Umbrella

Enterprise network security

  • Contact Sales
  • Login
    • Umbrella Login
    • Cloudlock Login
  • Search
Search
  • Why Us
    • Why Cisco Umbrella
      • Why Try Umbrella
      • Why DNS Security
      • Why Umbrella SASE
      • Our Customers
      • Customer Stories
      • Why Cisco Security
    • Fast Reliable Cloud
      • Global Cloud Architecture
      • Cloud Network Status
      • Global Cloud Network Activity
    • Unmatched Intelligence
      • A New Approach to Cybersecurity
      • Interactive Intelligence
      • Cyber Attack Prevention
      • Umbrella and Cisco Talos Threat Intelligence
    • Extensive Integrations
      • IT Security Integrations
      • Hardware Integrations
      • Meraki Integration
      • Cisco Security for Chromebook
  • Products
    • Cisco Umbrella Products
      • Cisco Umbrella Cloud Security Service
      • Recursive DNS Services
      • Cisco Umbrella SIG
      • Umbrella Investigate
      • What’s New
    • Product Packages
      • Cisco Umbrella and Cisco Secure Access Packages
      • – DNS Security Essentials Package
      • – DNS Security Advantage Package
      • – SIG Essentials Package
      • – SIG Advantage Package
      • Umbrella Support Packages
      • Cisco Umbrella for Government Packages
    • Functionality
      • DNS-Layer Security
      • Secure Web Gateway
      • Cloud Access Security Broker (CASB)
      • Cloud Data Loss Prevention (DLP)
      • Cloud-Delivered Firewall
      • Cloud Malware Protection
      • Remote Browser Isolation (RBI)
    • Man on a laptop with headphones on. He is attending a Cisco Umbrella Live Demo
  • Solutions
    • SASE & SSE Solutions
      • Your SSE journey with Cisco
      • Cisco Umbrella SASE
      • Secure Access Service Edge (SASE)
      • What is SASE
    • Functionality Solutions
      • Web Content Filtering
      • Secure Direct Internet Access
      • Shadow IT Discovery & App Blocking
      • Fast Incident Response
      • Unified Threat Management
      • Protect Mobile Users
      • Securing Remote and Roaming Users
      • Umbrella and Duo Layered Protection
    • Network Solutions
      • Guest Wi-Fi Security
      • SD-WAN Security
      • Off-Network Endpoint Security
    • Industry Solutions
      • Government and Public Sector Cybersecurity
      • Financial Services Security
        • – FTC Safeguards Rule Compliance 2023
      • Cybersecurity for Manufacturing
      • Higher Education Security
      • K-12 Schools Security
      • Healthcare, Retail and Hospitality Security
      • Enterprise Cloud Security
      • Small Business Cybersecurity
  • Resources
    • Content Library
      • Top Resources
      • Research Reports
      • Case Studies
      • Videos
      • Datasheets
      • eBooks
      • Solution Briefs
      • Cybersecurity Webinars
    • International Documents
      • Deutsch/German
      • Español/Spanish
      • Français/French
      • Italiano/Italian
      • 日本語/Japanese
    • Security Definitions
      • What is DNS Security
      • What is a Secure Web Gateway
      • What is a Cloud Access Security Broker (CASB)
      • What is Security Service Edge (SSE)
      • What is Secure Access Service Edge (SASE)
      • Cyber Threat Categories and Definitions
    • For Customers
      • Support
      • Customer Success Webinars
      • Free Trial Quick Start Guide
      • Free Trial Help and Tips
  • Trends & Threats
    • Market Trends
      • Generative AI Cybersecurity Risks and Rewards
      • Hybrid Workforce
      • Rise of Remote Workers
      • Secure Internet Gateway (SIG)
    • Security Threats
      • How to Stop Phishing Attacks
      • Malware Detection and Protection
      • Ransomware is on the Rise
      • Cryptomining Malware Protection
      • Cybersecurity Threat Landscape
      • Global Cyber Threat Intelligence
    •  
    • Woman connecting confidently to any device anywhere
  • Partners
    • Channel Partners
      • Partner Program
      • Become a Partner
    • Service Providers
      • Secure Connectivity
      • Managed Security for MSSPs
      • Managed IT for MSPs
    •  
    • Person looking down at laptop. They are connecting and working securely
  • Blog
    • News & Product Posts
      • Latest Posts
      • Products & Services
      • Customer Focus
      • Feature Spotlight
    • Cybersecurity Posts
      • Security
      • Threats
      • Cybersecurity Threat Spotlight
      • Research
    •  
    • Register for a webinar - with illustration of connecting securely to the cloud
  • Contact Us
  • Umbrella Login
  • Cloudlock Login
  • Free Trial
Clearing search keywords

Cloud-delivered firewall for better visibility and control

Why cloud-delivered firewalls are essential

Speak to an expert

Cloud delivered firewall video still
Cloud-delivered firewall (0:24)

Simple, effective cloud-delivered security

Exploding SaaS usage. Proliferating remote locations. Swelling ranks of roaming workers. It’s the new normal. It challenges how organizations work and how they secure users, devices and remote locations. How can a cloud security service, featuring a cloud-delivered firewall, help you reduce complexity and improve your security?

Umbrella’s cloud-delivered firewall

Organizations are embracing direct internet access (DIA) instead of backhauling traffic to the data center. Today organizations seek a cloud-native security service as a simple-to-manage and scalable alternative to costly refresh cycles and maintenance headaches.

Firewall in the cloud is now an essential element of a cloud-delivered security service. It helps you to improve security efficacy, and ensure consistent enforcement everywhere.

Umbrella firewall feature brief

Cloud-delivered firewall illustration


Intelligent traffic routing in the cloud

Security is not one size fits all. Cisco Umbrella intelligently steers different traffic types to the appropriate function to achieve an ideal balance of security efficacy, user performance, and management simplicity.

Traffic originating from a client request to the internet is sent via an IPSec tunnel to Umbrella, where DNS-layer security protects DNS traffic, the cloud-delivered firewall protects non-web traffic, and the secure web gateway protects web traffic over ports 80/443.


Deepen inspection and control without performance issues

Step up your security. With Umbrella cloud-delivered firewall you gain better visibility and control for internet traffic originating from client requests. Layer 7 application visibility and control, intrusion prevention system (IPS), and layer 3 / 4 firewall protect traffic across all ports and protocols without performance degradation.

Forward traffic to the cloud-delivered firewall by simply configuring an IPSec tunnel from any network device. As new tunnels are created, automatically apply security policies for easy setup, consistent enforcement, and protection against malware, phishing, unacceptable use, and more.


ThreatWiseTV: IDS/IPS in Umbrella
ThreatWiseTV: Demo of Umbrella’s firewall IPS/IDS policies and reports (13:38)

Intrusion prevention system

Prevent exploits. Intrusion prevention system (IPS), based on SNORT 3 technology, uses signature-based detection to examine network traffic flows and take automated actions to catch and drop dangerous packets before they reach their target.

An IPS capability is only as effective as the cyberattack dictionaries. Umbrella IPS uses the extensive signatures (40,000+ and growing) from Cisco Talos, the largest private security threat intelligence organization in the world.

Application visibility and control

Umbrella layer 7 application visibility and control recognizes 2,800+ (and growing) non-web applications and per policy, takes action to block/allow them. Deep packet inspection in network based application recognition (NBAR) analyzes and categorizes network traffic by application. This extends and deepens Umbrella’s application visibility and control for DNS traffic and for web traffic on ports 80/443. 

For example, an organization may choose not to allow Microsoft Teams, which uses various ports and protocols. The Umbrella secure web gateway blocks MS Team’s web traffic over ports 80/443 and the cloud-delivered firewall blocks its voice and video traffic.

Layer 7 Application illustration

KCA Deutag moves to cloud firewall
KCA Duetag on cloud firewall (2:20)

KCA Deutag moves firewall from network edge to the cloud

KCA Deutag, a distributed oil and gas services company, relies on Cisco Umbrella to consolidate security services across the globe. Learn how Cisco Umbrella cloud-delivered firewall helped them apply consistent rule sets to all of their sites form a centralized console, providing KCA Deutag with a quicker way to deploy.

Scales with business

Collage of a rocket launching out of a laptop

No performance degradation

Collage of a cheetah running

Better user experience

Collage of a woman looking confident

Cisco Umbrella

Umbrella combines multiple security capabilities in a single, cloud-native service to offer powerful security that is easy to deploy and manage — all backed by the power of Cisco Talos threat intelligence.

You can quickly deploy Umbrella across thousands of devices with a few simple clicks. Your users will be protected against threats like malware, ransomware, and botnets with no added latency.

Only Umbrella optimizes inspection to automatically send traffic to specialized services for industry-leading security efficacy.

Talk to a security expert

Cisco Umbrella security diagram

Follow Us

Facebook X LinkedIn Youtube

Footer Sections

What we make

  • Cloud Security Service
  • DNS-Layer Network Security
  • Secure Web Gateway
  • Security Packages

Who we are

  • Global Cloud Architecture
  • Cloud Network Status
  • Cloud Network Activity
  • OpenDNS is now Umbrella
  • Cisco Umbrella Blog

Learn more

  • Webinars
  • Careers
  • Support
  • Cisco Umbrella Live Demo
  • Contact Sales
Umbrella by Cisco
208.67.222.222+208.67.220.220
2620:119:35::35+2620:119:53::53
Sign up for a Free Trial
  • Cisco Online Privacy Statement
  • Terms of Service
  • Sitemap

© 2025 Cisco Umbrella