05-22-2012 04:13 PM - edited 03-04-2019 04:26 PM
Hello Expert,
We want to evaluate the firewall with different vendors, what do we need to compare with? The check list is appriciated.
Regards,
Joe
Solved! Go to Solution.
05-22-2012 04:41 PM
Joe you will need to start of with compiling a list of requirement, these requirements are specific to your organisation.
Think in terms of items like:
-scalability
-required throughput
-required interface type
-price
-available service contracts
-is IDS required.
-VPN capabilities
-redundancy
...and the list goes on and on. also ranking your requirements might be helpfull, so you know one is more important than the other.
After that you can verify what the different vendors offer against your requirements list (but you will probably end up with ASA or Checkpoint anyway ;-) ).
goodluck
please rate if useful
05-22-2012 04:53 PM
Hi,
It all depends what you need, for how many users and how large of a device you need, but here a few questions you can start with:
Interface density:
number of 1Gig copper support
number of 1Gig fiber support
number of 10Gig support
HA
Active/Active
Active/passive
Throughput
firewall throughput
VPN throughput
treat prevention throughput
routing protocols support
vitalization support
number of context/vrf support
number of concurent vpn session support
number of concurent session support
SSL offload
managment
GUI support
CLI support
out of band managment port support
and so on......
HTH
05-22-2012 04:41 PM
Joe you will need to start of with compiling a list of requirement, these requirements are specific to your organisation.
Think in terms of items like:
-scalability
-required throughput
-required interface type
-price
-available service contracts
-is IDS required.
-VPN capabilities
-redundancy
...and the list goes on and on. also ranking your requirements might be helpfull, so you know one is more important than the other.
After that you can verify what the different vendors offer against your requirements list (but you will probably end up with ASA or Checkpoint anyway ;-) ).
goodluck
please rate if useful
05-22-2012 04:53 PM
Hi,
It all depends what you need, for how many users and how large of a device you need, but here a few questions you can start with:
Interface density:
number of 1Gig copper support
number of 1Gig fiber support
number of 10Gig support
HA
Active/Active
Active/passive
Throughput
firewall throughput
VPN throughput
treat prevention throughput
routing protocols support
vitalization support
number of context/vrf support
number of concurent vpn session support
number of concurent session support
SSL offload
managment
GUI support
CLI support
out of band managment port support
and so on......
HTH
05-23-2012 06:45 AM
Thank you so much! It helps!
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: