[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index] RE: [FW1] Managing a lot of firewalls
Greg, Sumit is correct, the official you'll-see-it-on-the-test answer is 50 firewall modules. However... Are you going to be managing just FW-1 or will you also, as most instances entail, also managing VPN-1, maybe Floodgate, with the occasional RealSecure management software thrown on the same machine for good measure! Will you be putting up one or two "bricks" per site, I typically am seeing two with a crossover cable for state info and either high availability software(ugggh) or an OPSEC approved layer 4 type load sharing solution(Yeahh). As an aside, I like the Alteon 184 as it is the only box I've seen that does load sharing, allows selectable 10/100/1000 ports, and supports rmon, port mirroring for IDS along with EtherChannel port output to a Cisco router/switch. Two per site adds up quickly, and with the number of sites you are talking you might want to look into Provider-1. If your are under 50 bricks, your deciding factor might be how much processing capability exists or you are willing buy to put into your Management Station(s), and the speed of its NIC and network connection if you will be hitting them over the net using a GUI client. hope this helps. Good luck, Paul Secrest, RCDD CCSE CTO World I.T. Solutions, LLC Washington, D.C. [email protected] [email protected]http://World-IT-Solutions.com ================================================================================ To unsubscribe from this mailing list, please see the instructions at http://www.checkpoint.com/services/mailing.html ================================================================================
|