---
source_url: "https://www.nutanix.com/products/flow-network-security"
title: "Flow Network Security - Microsegmentation & Data Protection | Nutanix"
mirrored_at: 2026-08-12T01:00:59.363Z
host: www.nutanix.com
cited_in_42a: true
mirror_canonical: "https://index.42a.ai/www.nutanix.com/products/flow-network-security"
---

> **Original source:** https://www.nutanix.com/products/flow-network-security

**Flow Network Security (FNS)**

## Enterprise Network Security for Multicloud Apps and Data

Security is complex, but protecting critical assets shouldn't be. Flow Network Security creates software-based firewalls for your critical apps and data without the management overhead.

![](https://img.youtube.com/vi/6ul9yoMZ0FM/mqdefault.jpg)

## **Simplify, automate, and harden critical data against cyber threats**

Threat actors are relentless, are your security tools? The Nutanix platform establishes a defense-in-depth foundation to help you create a rock-solid foundation for an ever-changing threat landscape.

![graphic to represent App-Centric Policies](https://resources.nutanix.com/is/image/nutanix/icn-agile-4?qlt=85&ts=1778227116925&dpr=off&preferwebp=true&fmt=webp-alpha)

### **App-Centric Policies**

Focus on application business intent. Abstracting the policy config from the network layer

![graphic to represent Granular Control](https://resources.nutanix.com/is/image/nutanix/icn-ncc?qlt=85&ts=1778227117120&dpr=off&preferwebp=true&fmt=webp-alpha)

### **Granular Control**

Granular control over traffic between applications, limiting the spread of threats.

![graphic to represent Dynamic Policy Enforcement](https://resources.nutanix.com/is/image/nutanix/icn-policies?qlt=85&ts=1778227117339&dpr=off&preferwebp=true&fmt=webp-alpha)

### **Dynamic Policy Enforcement​**

Policies can be dynamically enforced as applications move, ensuring continuous protection.

## Turnkey cybersecurity for end-users

![](https://resources.nutanix.com/is/image/nutanix/img-fnsweb?qlt=85&ts=1778227117663&dpr=off&preferwebp=true&fmt=webp-alpha)

### **Understand application communication**

Visually map new or existing application workflows at a port level to better control access or application communications. Leverage this visibility to define and validate least-privilege policies, enabling rapid detection of unexpected flows and potential security anomalies.

### **User-centric identity and malware protection**

Enhance end-user security by leveraging identity to control network access to workloads and data (directory-based) while blocking the spread of malware and ransomware with microsegmentation. Reduce lateral movement risk by eliminating reliance on rigid network constructs that cannot adapt to modern workload mobility.

### **Ensure access compliance**

Easily segment application and data access without physically managing and building compliant networks using ring fencing and audits. Deploy standardized, repeatable policies across environments while generating comprehensive audit evidence with minimal manual intervention.

## **Enterprise-grade defense-in-depth for apps and data**

### **Software-defined firewalls for apps and data**

Easily create Zero Trust-focused tagged firewalls to segment and protect your users, apps, and data from cyber threats without disrupting your current infrastructure.

### **Visibility to help comply and discover**

Gain policy-driven visibility into application communications and security posture from a single dashboard.

### **Network threat protection**

Enforce network-level segmentation between application tiers using ports and protocols, with optional Layer 7 inspection via Flow Network Security partner integrations.

![graphic to represent Application process](https://resources.nutanix.com/is/image/nutanix/img-granular-control?qlt=85&ts=1778227118340&dpr=off&preferwebp=true&fmt=webp-alpha)

## Increase your defense-in-depth strategy with partner integrations

## How it works

![graphic to represent Flow Network Security](https://resources.nutanix.com/is/image/nutanix/img-flow-network-security?qlt=85&ts=1778227118924&dpr=off&preferwebp=true&fmt=webp-alpha)

## **Flow Network Security: Securing Your Databases**

Learn how Nutanix Flow Network Security makes it simple to secure access to your database servers.

![graphic to represent Securing Your Databases](https://resources.nutanix.com/is/image/nutanix/ss-fns-securing-your-databases?qlt=85&ts=1778227119339&dpr=off&preferwebp=true&fmt=webp-alpha)

## Real-World Use Cases for Flow Network Security

### Use Case 1: Virtual Desktop Infrastructure (VDI) Security

**Challenge**: Prevent virtual desktops from infecting each other when users download malware  
**Solution**: Microsegmentation isolates each desktop, limiting the blast radius of infections  

### Use Case 2: Environment Isolation (Dev/Test/Prod)

**Challenge**: Separate Test/Dev from Production without dedicated hardware  
**Solution**: VPCs provide logical network isolation with policy enforcement  

### Use Case 3: Ransomware Mitigation

**Challenge**: Limit lateral movement during ransomware attacks  
**Solution**: Zero trust model with default deny policies prevents unauthorized traffic  

### Use Case 4: Multi-Tenant Service Provider

**Challenge**: Isolate customer workloads while sharing physical infrastructure  
**Solution**: VPCs with overlapping IP address support enable true multi-tenancy  

### Use Case 5: Hybrid Cloud Migration

**Challenge**: Seamlessly connect on-premises VMs with cloud workloads  
**Solution**: Flow Virtual Networking with VPN connects to NC2 on AWS/Azure  

## **How Nutanix Flow Network Security Compares to Alternatives**

Capability

Nutanix Flow

VMware NSX

Standalone Microsegmentation Tools

Deployment Time

Hours (point-and-click)

Weeks (complex setup)

Days to weeks

Management Interface

Unified (Prism Central)

Separate NSX Manager

Separate console

Licensing Model

Included with NCI Pro/Ultimate

Per-CPU or per-VM licensing

Per-VM or per-host fees

Hypervisor Dependency

Integrated with AHV

Requires vSphere

Agent-based (multi-hypervisor)

Learning Curve

Low (familiar interface)

High (new skillset required)

Medium to high

Hardware Requirements

None (software-defined)

Controller VMs required

Appliances may be needed

VPC Support

✓ Native

✓ Via NSX-T

✗ Not applicable

Service Chaining

✓ Supported

✓ Supported

Varies by vendor

## Nutanix is trusted by 29,000+ customers

## Explore our top resources  

## Related solutions

## Try Flow Network Security free in your environment!

Click here to enable your free 60-day evaluation.  

## FAQs