Your Next Generation Firewall?
Use Cases and Deployment Scope
We are using IPS/IDS Firewall, router and SD-WAN capable network security appliance. We currently use the Forcepoint NGFW in our on-premises data center environment, Cloud DR solution, and at all remote locations. We utilize it as a security and routing appliance that can determine the best ISP link to use at any given time or to prioritize types of traffic over specific netlinks.
Pros
- Easy to manage and make changes on - ACL's are done with ease.
- Easy USB initial configuration - The easy initial setup of a new location and firewall saves massive time. Settings are automatically pushed to new nodes upon contact with the controller.
- Low Complexity - This system does not have a lot of complexity requiring extra hours, training, or personnel to manage.
Cons
- Poor Reporting - It exists but even when calling in to support for assistance, they have no idea how to tackle customizing reports or searching for specific data.
Likelihood to Recommend
If you are looking for a smaller network/security team, the ease and low complexity create an easy to manage environment. One engineer can easily manage 100 nodes/locations. If you are just starting to get security conscious and predict regular adjustments to policy, routing, and access, this is a very good system for making easy to understand and low impact changes on a regular basis without operations interruption.