If you already have software version Check Point licenses, I think it makes no sense changing those for UTM-1 appliances. Plus, I agree with Rob on all his points.
Check Point is trying to get more money out of their firewall sells, so far they had missed on that share related with the hardware that other firewall vendors where getting, so their appliances (including licenses) have very good prices when you are going to make a new purchase and make a comparison between buying those versus getting software version licenses + open servers to run the software. Seems to me like a simple marketing strategy. Regards On Mon, Mar 8, 2010 at 3:39 PM, John Lindblom <[email protected]> wrote: > I think your making a good point here. I can't find any detailed specs on > the appliances but these do appear to be small boxes with no disk, cooling > or power redundancy. > > I'm trying to determine what the benefit is going the appliance route but > not much information to be found. I would think as far as support is > concerned, a hardware failure with the appliance would be a next day > replacement requiring a rebuild. A hardware failure with an HP server > wouldn't be as drastic with hardware redundancy, a rebuild would probably > never need to be done. > > One draw back to the HP server is not having the ability to run the HP > management agents for hardware failure notification. Right now the only > way I know of at this point is to look at the server to see hardware has > failed. Unless I'm missing something. > > John > > > > From: > Rob Vuurman <[email protected]> > To: > [email protected] > Date: > 03/08/2010 11:38 AM > Subject: > Re: [FW-1] UTM-1 R70 Software Blades > Sent by: > Mailing list for discussion of Firewall-1 > <[email protected]> > > > > John, > > My honest opinion, why not a HP DL360 or HP DL380 for the upgrade? An > UTM 572 isn't really the best hardware, check the specs. For the same > money, and less, you can have redundant disks and redundant power > supply. > It can handle much more traffic than an UTM. And correct me if I am > wrong, you can upgrade your license and don't have to buy a new one for > the UTM which you must..... > > just my simple thinking. > > regards and good luck. > > Rob > > -----Oorspronkelijk bericht----- > Van: Mailing list for discussion of Firewall-1 > [mailto:[email protected]] Namens John Lindblom > Verzonden: maandag 8 maart 2010 15:57 > Aan: [email protected] > Onderwerp: Re: [FW-1] UTM-1 R70 Software Blades > > Thanks for the reply Sergio. > > After giving it some thought I did come to the same conclusion that the > web filtering shouldn't be done on the UTM-1 for the reasons you pointed > > out. I was looking at the option to use the UTM-1 for web filtering > because I needed to upgrade my Barracuda Web Firewall, I think I will > continue down the path of upgrading it to continue handling the web > filtering. The cost is probably close to the same or probably less then > > using the UTM-1 for web filtering anyway. > > I will probably end up upgrading from my HP DL140 running SPLAT NGX R65 > gateway to the UTM-1 572 or 1073 appliance with R70 to just handle > Firewall and VPN as it is now. > > > > > > From: > Sergio Alvarez <[email protected]> > To: > [email protected] > Date: > 03/07/2010 08:13 PM > Subject: > Re: [FW-1] UTM-1 R70 Software Blades > Sent by: > Mailing list for discussion of Firewall-1 > <[email protected]> > > > > Hello, > > First of all, I wouldn't replace a dedicated web filtering device for > ANY > UTM url filtering feature. It is almost impossible to achieve the same > level > of granularity and robustness. Remember the main function of a UTM > appliance > is being a firewall, anything else are just extra features. > > If you need all the features but don't have enough money or space to get > them in separate devices, get a UTM, otherwise let each device do what > it > was mainly design for. If you are happy with your Barracuda, my very > personal opinion is: keep it. > > Now, in regards of Fortinet, they do offer UTM appliances at a very good > price (pretty lower than CheckPoint), bad thing is, they offer things > their > appliances just can't do, so you might bump into very bad surprises if > you > invest on one of those boxes. We all know all vendors provide numbers in > their datasheets that were taken from lab environments and very > controlled > situations, so those numbers are not achievable in real production > networks, > but Fortinet goes way beyond that and with no shame at all, lie awfully > in > their datasheets, you wouldn't believe the stories I've heard. > > Bare in mind this is just my humble opinion. Hopefully my comments will > still be of use for you at this point. > > Regards > > > On Fri, Feb 19, 2010 at 8:44 AM, John Lindblom <[email protected]> > wrote: > > > I'm preparing for an upgrade from NGX R65 running SPLAT on a HP server > > to > > possibly one of the UTM-1 appliances specifically the 1073/1076 for a > 300 > > user network. I'm currently using a Barracuda Web Filter for URL and > > antivirus/anti -malware filtering that also need to be upgraded soon > so > > I'm considering the UTM options for this. > > > > I'm trying to determine if the web filter could be replaced with the > URL > > Software Blade and the Antivirus & Anti-Malware Software Blade. > Anyone > > have any experience yet with these blades? We are happy with the > > Barracuda Web Filter but it is another piece of hardware, I'm being > told > > this can now be replaced and handled on the UTM appliance. It also > > appears Fortinet is giving Checkpoint a strong run for the money with > the > > FortiGate UTM appliances, my vendor is recommending I take a serious > look. > > > > Any feed back or real world experience with these Checkpoint UTM > Software > > Blades would be appreciated. > > > > John > > > > ------------------------ > > The information contained in this email and any attachments may > contain > > confidential, proprietary, business sensitive, privileged or > controlled > > information. If you are not the intended recipient, any disclosure, > > dissemination, distribution, duplication or other unauthorized use of > the > > information contained in this email or any attachment is strictly > > prohibited. Unauthorized interception of this e-mail is a violation of > > law. If you are not the intended recipient, please notify the sender > by > > reply email and immediately and permanently delete this mail and any > > attachments and any copies of them. > > > > Technical data and/or information provided in this email or any > attachment > > may be subject to U.S. export control laws. Export, re-export, > diversion > > or disclosure contrary to U.S. law is prohibited. It is your > > responsibility to check this email and any attachments for viruses or > > other harmful code before opening or forwarding. > > ------------------------ > > > > > > Scanned by Check Point Total Security Gateway. > > > > ================================================= > > To set vacation, Out-Of-Office, or away messages, > > send an email to [email protected] > > in the BODY of the email add: > > set fw-1-mailinglist nomail > > ================================================= > > To unsubscribe from this mailing list, > > please see the instructions at > > http://www.checkpoint.com/services/mailing.html > > ================================================= > > If you have any questions on how to change your > > subscription options, email > > [email protected] > > ================================================= > > > > > > -- > Sergio Alvarez > +(506)88301342 > > > Scanned by Check Point Total Security Gateway. > > ================================================= > To set vacation, Out-Of-Office, or away messages, > send an email to [email protected] > in the BODY of the email add: > set fw-1-mailinglist nomail > ================================================= > To unsubscribe from this mailing list, > please see the instructions at > http://www.checkpoint.com/services/mailing.html > ================================================= > If you have any questions on how to change your > subscription options, email > [email protected] > ================================================= > > > > > ------------------------ > The information contained in this email and any attachments may contain > confidential, proprietary, business sensitive, privileged or controlled > information. If you are not the intended recipient, any disclosure, > dissemination, distribution, duplication or other unauthorized use of > the > information contained in this email or any attachment is strictly > prohibited. Unauthorized interception of this e-mail is a violation of > law. If you are not the intended recipient, please notify the sender by > reply email and immediately and permanently delete this mail and any > attachments and any copies of them. > > Technical data and/or information provided in this email or any > attachment > may be subject to U.S. export control laws. Export, re-export, diversion > > or disclosure contrary to U.S. law is prohibited. It is your > responsibility to check this email and any attachments for viruses or > other harmful code before opening or forwarding. > ------------------------ > > > Scanned by Check Point Total Security Gateway. > > ================================================= > To set vacation, Out-Of-Office, or away messages, > send an email to [email protected] > in the BODY of the email add: > set fw-1-mailinglist nomail > ================================================= > To unsubscribe from this mailing list, > please see the instructions at > http://www.checkpoint.com/services/mailing.html > ================================================= > If you have any questions on how to change your > subscription options, email > [email protected] > ================================================= > > - -------------------------------------------------- > This inbound message to vuurman.net has been checked for all known > viruses, spam and malicious codes, powered by MessageLabs. > www.messagelabs.com > m -------------------------------------------------- > > Scanned by Check Point Total Security Gateway. > > ================================================= > To set vacation, Out-Of-Office, or away messages, > send an email to [email protected] > in the BODY of the email add: > set fw-1-mailinglist nomail > ================================================= > To unsubscribe from this mailing list, > please see the instructions at > http://www.checkpoint.com/services/mailing.html > ================================================= > If you have any questions on how to change your > subscription options, email > [email protected] > ================================================= > > > > > ------------------------ > The information contained in this email and any attachments may contain > confidential, proprietary, business sensitive, privileged or controlled > information. If you are not the intended recipient, any disclosure, > dissemination, distribution, duplication or other unauthorized use of the > information contained in this email or any attachment is strictly > prohibited. Unauthorized interception of this e-mail is a violation of > law. If you are not the intended recipient, please notify the sender by > reply email and immediately and permanently delete this mail and any > attachments and any copies of them. > > Technical data and/or information provided in this email or any attachment > may be subject to U.S. export control laws. Export, re-export, diversion > or disclosure contrary to U.S. law is prohibited. It is your > responsibility to check this email and any attachments for viruses or > other harmful code before opening or forwarding. > ------------------------ > > ================================================= > To set vacation, Out-Of-Office, or away messages, > send an email to [email protected] > in the BODY of the email add: > set fw-1-mailinglist nomail > ================================================= > To unsubscribe from this mailing list, > please see the instructions at > http://www.checkpoint.com/services/mailing.html > ================================================= > If you have any questions on how to change your > subscription options, email > [email protected] > ================================================= > -- Sergio Alvarez +(506)88301342 ================================================= To set vacation, Out-Of-Office, or away messages, send an email to [email protected] in the BODY of the email add: set fw-1-mailinglist nomail ================================================= To unsubscribe from this mailing list, please see the instructions at http://www.checkpoint.com/services/mailing.html ================================================= If you have any questions on how to change your subscription options, email [email protected] =================================================
