If you look at a point of DR. The PIX will definitely win. CP requires a HDD. Ergo point of failure. Even if you go to an IPSO box, you still have HDD. You will save money on licensing (PIX 515E = unlimited). You get a better 'firewall'. Notice I said Firewall. Not firewall plus a bunch of other stuff. Yes many Fw's do VPN and that's cool (PIX 3DES is now standard and not licensed by user (515E can support 2000 connections). It's wen you add all the fluff/features that you start increasing the chances of exploit or failure.

Go with the PIX, It'll be a great learning experience, you'll have a great FW and if you ever need to start from scratch, you'll be up in less than 10-30 min, compared to an OS build and then install and then patch and then config.

I vote for the more secure solution.

At 12:07 4/1/03, Chinnery, Paul wrote:
We currently use Checkpoint's Firewall-1 v4.1 with Securemote for VPN. However, Checkpoint has announced that they will end support for 4.1 this June.

Consequently, I need to either upgrade to NG or replace it with another solution. The other solution is a Cisco Pix 515E.

I saw some surveys comparing the two but those were limited to 4.1 not the NG solution.

Checkpoint is more in $ but having used it for over 4 years, I am more comfortable with it.

Can someone help me out by relaying your experience with either NG or PIX (or, both).

Thanks,

Paul Chinnery
Network Administrator
Mem Med Ctr



------
You are subscribed as [EMAIL PROTECTED]
Archives: http://www.swynk.com/sitesearch/search.asp
To unsubscribe send a blank email to %%email.unsub%%


------
You are subscribed as [EMAIL PROTECTED]
Archives: http://www.swynk.com/sitesearch/search.asp
To unsubscribe send a blank email to [EMAIL PROTECTED]

Reply via email to