Thursday, May 21, 2020

Palo SD-WAN vs Silver Peak and Check Point

We implemented Silver Peak (SP) SD-WAN last year and it has been fantastic. The SP appliances run in front of our Check Point (CP) firewalls (both on-prem, SP is virtual, CP is physical). CP is up for replacement this year so naturally we are looking at PAN as a potential replacement (we only did a 1-year deal with SP as we knew we wanted to re-evaluate with new firewalls). Looking for feedback in these specific areas:

  1. It appears the general consensus is you can't really go wrong with PAN over CP in terms of a next-gen firewalls, but any feedback from recent switchers?
  2. Sounds like PAN's SD-WAN solution is still in it's infancy and it will be a bit before CloudGenix is integrated. Is it mature/fully featured enough to go all in with PAN and drop SP?
  3. For those of you who have PAN, but utilize a third party SD-WAN solution, why and how do you have it architected (e.g. PAN inside or at the edge of SD-WAN product, BGP, OSPF) ? I found a discussion here, but not a lot of feedback.


No comments:

Post a Comment