[nsp] Network Firewall

Gert Doering gert at greenie.muc.de
Wed Jun 16 17:32:25 EDT 2004


Hi,

On Wed, Jun 16, 2004 at 10:35:39AM -0600, Hector R. Barragan wrote:
> Netscreen also has my vote.  Might i add very easy to configure.

Seconded.  Nice boxes.  Logical design.  *Fast*.  3DES IPSEC with 
over 30 Mbit/s on a box that's 1/3rd the price of a Cisco 1700+VPN...

With NAT or without NAT, whatever you want, but stateful filtering in 
any case.  Fairly good debugging capabilities.

No moving parts (as opposed to Checkpoint-on-some-Unix-Hardware or
other PC-based firewalls).

Their first level support sucks.  But that's the same everywhere.

gert

-- 
USENET is *not* the non-clickable part of WWW!
                                                           //www.muc.de/~gert/
Gert Doering - Munich, Germany                             gert at greenie.muc.de
fax: +49-89-35655025                        gert at net.informatik.tu-muenchen.de


More information about the cisco-nsp mailing list