One plus One is Not Innovation

Nir Zuk


Category: Firewall


Check out Richard Stiennon’s blog entry on his Threat Chaos blog. I think very highly of Richard – he has never been afraid, even as a Gartner analyst, to say what he thinks even if some of Gartner’s customers did not like it.

But this time, Richard, I have to disagree with you. Putting a firewall and an IPS on the same box is not innovation. I did it as the CTO of NetScreen more than 6 years ago so it’s certainly not new. And even then it was not innovative. Even in U.S. patent law, which sets the bar quite low on what can be patented (as in Sealed Crustless Sandwich), the mere action of putting two things together does not create something that is patentable. But above all that, putting firewall helpers, such as an IPS, on the same box as the firewall, does not make a better firewall. To make a better firewall, one needs to change the firewall itself. Check out my video response to learn more…