cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
2355
Views
0
Helpful
8
Replies

We are replacing Cisco ASA's with an SD-Wan solution

barryrosenhouse
Level 1
Level 1

Most likely from AT&T - My question is I was tasked with giving my director 2 solutions, either Meraki SD-Wan or Fortinet SD-Wan. Removing the 2 Cisco ASA's (5505 and 5515) at our Headquarters. Does anyone know what devices need to replace those 55XX's or has anyone done this type of cutover before that can help me here? 

1 Accepted Solution

Accepted Solutions

Hello
The meraki MX is a UTM a (security, network, application control), its centrally managed, single gui based dashboard for multiple devices,(UTMs, Switches,APs,,Cameras, etc..) so easy to use, it also supports live troubleshooting(pcaps analytics etc.) from within, A central place for everything.

The SD-WAN function is built into the MX no tricky overlay to work out, it uses your internet BW via ipsec vpns so no expensive WAN MPLS,( lower wan costs but massively increase bandwidth)

The Auto vpn function is very easy,  no acls crytpo maps, just two/three clicks and you have site to site connectivity (active/active, active/passive) for load balancing.

It uses dynamic path selection (likes Cisco’s optimised edge routing) so the mx choose the best path based on the performance condition of your existing egress paths


As for the security, its geo based(so pick what sites you want to apply that security) and includes IPS(snort), Content filtering, AMP via cisco secure formally known as threat grid and best of all the security updates are pushed out as SaaS so you dont need to worry about missing any meraki device not being updated

 

Good kit all round.


Please rate and mark as an accepted solution if you have found any of the information provided useful.
This then could assist others on these forums to find a valuable answer and broadens the community’s global network.

Kind Regards
Paul

View solution in original post

8 Replies 8

balaji.bandi
Hall of Fame
Hall of Fame

ASA  replacement with Firepower is good choice.

 

if you like to choose between Meraki / Fortinet - if you are cisco housem then going with Meraki has advantage.

 

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

Thx Balaji, We are mostly a Cisco house, Is the advantage because of compatibility or price do you know?

 

Is the advantage because of compatibility or price do you know?

More elaborate this will help us to understand,

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

I was tasked with giving my director 2 solutions, either Meraki SD-Wan or Fortinet SD-Wan

Meraki SD-Wan  - is reasonable. not sure Fotinet - (worked on FW , not SD-WAN product ?)

 

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

Hello
The meraki MX is a UTM a (security, network, application control), its centrally managed, single gui based dashboard for multiple devices,(UTMs, Switches,APs,,Cameras, etc..) so easy to use, it also supports live troubleshooting(pcaps analytics etc.) from within, A central place for everything.

The SD-WAN function is built into the MX no tricky overlay to work out, it uses your internet BW via ipsec vpns so no expensive WAN MPLS,( lower wan costs but massively increase bandwidth)

The Auto vpn function is very easy,  no acls crytpo maps, just two/three clicks and you have site to site connectivity (active/active, active/passive) for load balancing.

It uses dynamic path selection (likes Cisco’s optimised edge routing) so the mx choose the best path based on the performance condition of your existing egress paths


As for the security, its geo based(so pick what sites you want to apply that security) and includes IPS(snort), Content filtering, AMP via cisco secure formally known as threat grid and best of all the security updates are pushed out as SaaS so you dont need to worry about missing any meraki device not being updated

 

Good kit all round.


Please rate and mark as an accepted solution if you have found any of the information provided useful.
This then could assist others on these forums to find a valuable answer and broadens the community’s global network.

Kind Regards
Paul

Thanks much for your reply. I will def look into this.

Barry



Paul I appreciate the reply - Very good info. i was lost.

 

Barry

Review Cisco Networking for a $25 gift card