« Dead UPS | Main | Wireless PDAs for Email Access »

Comments

Phillip Renouf

Netscreen is probably one of the best firewall options on the market. I have never used their smaller offerings, but the larger enterprise versions are what I want to see in an enterprise firewall environment so sticking with them is probably your best bet.

Checkpoint based machines are also excellent, a little more complex to setup since most of them are based on a server that you need to setup/maintain, but day to day maintenance isn't too complex. The Nokia appliances are excellent, but not quite up to the same standard as the Netscreens.

Raptor (now Symantec Enterprise Firewall) isn't a bad choice for a small-medium sized business. It is a very easy to setup/manage product, but you pay the price here that it isn't as flexible as the Netscreens or Checkpoints. Personally I don't like Raptor all that much, but I've worked with it and it's a viable option if you are really focused on the product being simple and easy to manage.

Another option that just popped into my head was Alteon. They make a pretty good looking product that we've recommended in the past, but I have never worked with one in a production environment so I won't make any recommendations on how easy it is to work with or it's realworld performance.

Best performance is going to come from the Netscreen and Checkpoint boxes (in that order) and I figure that the Alteon would have similar/better performance than a Checkpoint box (including the Nokias) but I don't have any real world experience to back that up.

Phil

Gary Berg

I've found that the GTA GNATbox is quite good. It has quite a bit of flexibility in setting things up, and requires minimal hardware to run on - almost any old PC will work as long as it has 2-3 network cards in it...

www.gta.com

Alex Scoble

Cool and thanks for the link. I looked them up, Gary. What's funny is that their VPN software is the same package that Netscreen and SonicWall use from SecuRemote.

Jamie Jamison

I am curious if you have looked at Sonicwall in their new iterations. The newer products and firmware are incredibly capable and diverse. I have a number of them deployed at many client locations and am deploying them in more complex environments.

As far as your individual points, natting multiple external services on the same public IP to different internal servers is not very difficult at all - I have this set up myself at home on my own box. The VPN performance of the boxes in your price range (either the Pro 3060 or Pro 4060) is second to none - 75mbps on the 3060 and 190mbps on the 4060 using 3DES or AES encryption.

Keep in mind that Sonicwall does support other clients, like SecureRemote, but they developed their own VPN client some time ago, which I think works MUCH better than the original SecureRemote licensed product. If you would like to discuss it further (I am an IT consultant), shoot me an email - jamie at jamie jamison dot com (no spaces and replace).

Pradeep

I suggest you to go for Sonicwall. They have good high end products like 5060 which has good throughput(go through the product datasheet).Its more simpler in configuring the device.No headaches in remembering the commands...everything is self explainatory..If you want more technical info.. contact their Tech Assistance Center....

Verify your Comment

Previewing your Comment

This is only a preview. Your comment has not yet been posted.

Working...
Your comment could not be posted. Error type:
Your comment has been saved. Comments are moderated and will not appear until approved by the author. Post another comment

The letters and numbers you entered did not match the image. Please try again.

As a final step before posting your comment, enter the letters and numbers you see in the image below. This prevents automated programs from posting comments.

Having trouble reading this image? View an alternate.

Working...

Post a comment

Comments are moderated, and will not appear until the author has approved them.

My Photo

Top Links

May 2009

Sun Mon Tue Wed Thu Fri Sat
          1 2
3 4 5 6 7 8 9
10 11 12 13 14 15 16
17 18 19 20 21 22 23
24 25 26 27 28 29 30
31            

Useful Links

Blog powered by TypePad
Member since 01/2004