Educause Security Discussion mailing list archives

Re: Firewall replacement


From: "Entwistle, Bruce" <Bruce_Entwistle () REDLANDS EDU>
Date: Mon, 7 Mar 2011 09:20:13 -0800

We have been running a pair of ASA5520s in a failover cluster for firewall, client VPN connections and webvpn 
connections and they have worked well.

Bruce Entwistle
Network Manager
University of Redlands

From: The EDUCAUSE Security Constituent Group Listserv [mailto:SECURITY () LISTSERV EDUCAUSE EDU] On Behalf Of Kellogg, 
Brian D.
Sent: Monday, March 07, 2011 8:15 AM
To: SECURITY () LISTSERV EDUCAUSE EDU
Subject: [SECURITY] Firewall replacement

We are beginning to look at replacing our Sonicwall firewalls.  My experience is mostly with Cisco Pix, which were rock 
solid, and older ASA code running on Pix appliances.  Are the new ASA appliances as stable as the old Pix boxes?

Our needs are simple; stateful firewall, User VPN, site to site VPN, and a handful of SSL VPN connections if possible.  
I prefer appliances, but am open to any suggestions.  Platform stability is my greatest concern.

Anyone out there running a Linux FW appliance like Vyatta?  If so experiences and feedback would be welcome.



Thanks for any suggestions or feedback,
Brian

Current thread: