Re: [fw-wiz] PIX vs Checkpoint vs Sonicwall vs Netscreen - comments?

From: John Adams (jna-dated-1028183706.40e9c0@retina.net)
Date: 07/27/02


Date: Sat, 27 Jul 2002 02:35:04 -0400 (EDT)
To: "Erik M. Bataller" <uhguhg@yahoo.com>
From: John Adams <jna-dated-1028183706.40e9c0@retina.net>

On Fri, 26 Jul 2002, Erik M. Bataller wrote:

> There will be several hundred at least and I figure
> that some folks out there may have some interesting
> thoughts or comments on the different platforms that
> may have escaped us. We are looking for the good, the
> bad and the ugly. The critical issues are:
>
> security issues of the individual platform
> management issues (sw, firmware, policy)
> mechanisms for managing virus sw revisions
> dual vs triple interfaces
> we'd like to separate "home" from "work"

Have you considered the Nokia IP120's running Checkpoint? They work
extremely well for branch offices, and you can admin all of the policies
from one place using the checkpoint management server.

I was a big fan of PIX for many years, but after adminstering a 80+
firewall site at a large search engine provider, all of the issues I could
discover with checkpoint were outweighed by the fact that you had true,
functional, central administration.

-john

-- 
J. Adams					http://www.retina.net/~jna

Fiber line / Shine, Enlight the Globe / In Light, communicate / Connect. ~~ Lassigue Bendthaus - Fiber



Relevant Pages