The SmartCenter has the management for all the firewalls and data centers in a single dashboard." SmartEvent works with the SmartCenter to block a threat attack with a block monitor. When we see a threat, SmartEvent can create a rule for that. The security of the product is excellent, we do not have to do a lot of patching or upgrades because of vulnerabilities." "The detection rate for any cyberattacks/suspicious activity is very high (more than 90%)." "There is a lot of legacy traffic from other vendors that has been migrated to Check Point which has resulted in a lot of stability in our environment." "The centrally managed firewalls are great." "It's quite a stable solution." "The failover from one device to the other has been seamless and we find that we do not lose ongoing SIP calls or Teams chats." "I like the SmartEvent feature. "Its auditing features are good for checking who did what changes and when." "Check Point NGFW is easy to use, flexible and provides good performance. Once you build your matrix, it is very easy to filter in and out on east-west or north-south traffic." "It's quite a capable box for UTM." "Feature-wise, we mostly use IPS because it is a security requirement to protect against attacks from outside and inside. Not only are we doing what is called a service graph on the ACI to make sure that we can filter traffic east-west between two endpoints in the same network, but when we go north-south or east-west, we can then leverage what we have on the network with SGTs on Cisco ISE. One concrete example is with Cisco ACI for the data center. It allows us to see and manage the traffic that is going through the network." "The integration of network and workload micro-segmentation helps a lot to provide unified segmentation policies across east-west and north-south traffic. Checkpoint and Fortinet don't have that functionality directly on the firewall." "The fact that we can use Firepower Management Center gives us visibility. Cisco builds the whole network map of the machines you have behind your firewall and gives you insight into the vulnerabilities and attributes that the host has. It was very easy to manage by using their software in Java." "Collaboration with other Cisco products such as ISE and others is the most valuable feature." "With Cisco, there are a lot of features such as the network map. I would rate them as 10 out of 10." "The configuration was kind of straightforward from the command line and also from the ASDM.
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |