Skip to main content

Things happening - Firewalls

We decided to evaluate Sonicwall and Cisco based on our assessment. We are digging into depth in the next week or so. Here is the criteria. These are needed for both hosting/collocation and for our 3 major offices:


 

Requirement

Sub-Feature

Weight

Architecture

  

  

  

Centralized Management

10

  

Clustered Device

8

  

Appliance Model

8

  

QOS management

6

  

Appliance must support up to 2G (external) and 3G (internal)

10

Security

  

  

  

Stateful Firewall

10

  

Full packet inspection and content filtering

10

  

IPSEC VPN Support

10

  

SSL VPN Support

8

  

OpenVPN Support

8

  

PTPP Support

9

  

AD integration for authentication

6

  

Anti virus/Auti Spam/Anti spyware

4

  

IDS/IPS

9

  

Enforce desktop patchlevel and AV, Quarantine user

4

  

Wireless security

4

  

Behavioral analysis

7

Management

  

  

  

Reporting via Web

8

  

Email reporting/Monitoring and alerting of issues

8

  

Usage/compliance reporting per user (AD integration)

6

  

Backup/Restore

8

  

Upgrades

8

General

  

  

  

Ease of administration

10

  

Ease of use

10

  

Configuration and setup

8

  

Documentation quality

5

  

Speed of client

8

  

Resources used by client

8

Company

  

  

  

Viability

10

  

Support

8

  

Price

10

Total Score

  

  

Comments

Popular posts from this blog

Dynatrace Growth Misinformation

For my valued readers: I wanted to point out some issues I’ve recently seen in the public domain. As a Gartner analyst, I heard many claims about 200% growth, and all kind of data points which have little basis in fact. When those vendors are asked what actual numbers they are basing those growth claims on, often the questions are dodged. Dynatrace, recently used the Gartner name and brand in a press release. In Its First Year as an Independent Company, Gartner Ranks Dynatrace #1 in APM Market http://www.prweb.com/releases/2015/06/prweb12773790.htm I want to clarify the issues in their statements based on the actual Gartner facts published by Gartner in its Market Share data: Dynatrace says in their press release: “expand globally with more than three times the revenue of other new generation APM vendors” First, let’s look at how new the various technologies are: Dynatrace Data Center RUM (DCRUM) is based on the Adlex technology acquired in 2005, but was cr

Vsphere server issues and upgrade progress

So I found out that using the host update tool versus Vcenter update manager is much easier and more reliable when moving from ESXi 3.5 to 4.0. Before I was using the update manager and it wasn't working all that reliably. So far I haven't had any issues using the host update tool. I've done many upgrades now, and I only have 4 left, 3 of which I am doing this weekend. Whenever I speak to vmware they always think I'm using ESX, when I prefer and expect that people should move to the more appliance model of ESXi. With 4.0 they are pretty much on par, and I'm going to stick with ESXi. On one of my vsphere 4.0 servers (virtualcenter) its doing this annoying thing when I try to use the performance overview:   Perf Charts service experienced and internal error.   Message: Report application initialization is not completed successfully. Retry in 60 seconds.   In my stats.log I see this.   [28 Aug 09, 22:28:07] [ERROR] com.vmware.vim.stats.webui.startup.Stat

Misunderstanding "Open Tracing" for the Enterprise

When first hearing of the OpenTracing project in 2016 there was excitement, finally an open standard for tracing. First, what is a trace? A trace is following a transaction from different services to build an end to end picture. The latency of each transaction segment is captured to determine which is slow, or causing performance issues. The trace may also include metadata such as metrics and logs, more on that later. Great, so if this is open this will solve all interoperability issues we have, and allow me to use multiple APM and tracing tools at once? It will help avoid vendor or project lock-in, unlock cloud services which are opaque or invisible? Nope! Why not? Today there are so many different implementations of tracing providing end to end transaction monitoring, and the reason why is that each project or vendor has different capabilities and use cases for the traces. Most tool users don't need to know the implementation details, but when manually instrumenting wi