Sunday, August 9, 2020

NGFW choice

Hello red. Asking for advice here. Been using pfsense based appliance with snort and suricata with our small business network with some success. Recently security budged was somewhat increased and i started looking around for more advanced solutions. I already own and use PAN PA-200 (without a current license - we are not that big yet). I like advanced functionality like ssh proxying and user/app-id.

But license pricing for those devices puts them out of reach currently.

Now, ebay is rife with used firewalls. So I'm trying to decide, what device to get next - to put it into lab environment and explore. What I would be interested in most is low support/updates cost or even lack of (as with pfsense solutions).

I've been looking at some older Fortinet devices but aren't sure.

Thanks, red.

add: i use pfsense in transparent bridge mode and PA-200 in virtual wire config. also not looking for record speeds - 1gbps interfaces are ok and throughout of 100mbps in ids/ips mode would suffice.



No comments:

Post a Comment