DC Distributed Firewall
DFWMicro-Segmentation
The DC Distributed Firewall enforces policy at every VM’s virtual interface on every node — filtering east-west traffic between workloads with the same rigor as perimeter traffic. Tag-based policies express intent once ("app talks to db on 5432, nothing else reaches db") and stay correct as VMs come and go. One-click quarantine isolates compromised workloads during incident response.
Key Features
Enforcement at every VM interface — no traffic hairpinning
Tag-based policies by role and environment
Monitor mode to discover real flows before enforcing
One-click quarantine for incident response
Per-rule allow/deny flow logging
Architecture Overview
Pricing
Priced to your configuration
DC Distributed Firewall is scoped and priced against your workload requirements. Standardized public packages are being finalized.
Common Use Cases
Zero-trust east-west segmentation
Prod/staging isolation
Ransomware lateral-movement containment
Regulated tier separation
Security Features
- Default-deny between tiers
- Flow visibility per rule
- Feeds SOC monitoring
Frameworks Referenced
Our security program is designed with these frameworks in mind — not a certification claim.
Documentation
Related Services
Ready to Use DC Distributed Firewall?
Talk to our team about running it on DAAKYI Cloud.
