Geekzone: technology news, blogs, forums
Guest
Welcome Guest.
You haven't logged in yet. If you don't have an account you can register now.


View this topic in a long page with up to 500 replies per page Create new topic
1 | 2 
gehenna
8495 posts

Uber Geek

Moderator
Trusted
Lifetime subscriber

  #1968157 5-Mar-2018 10:05
Send private message

@elpenguino call it what you like, enterprise/industrial, it's basically the same thing once you get above SMB kit.  sounds like you're better to invest in a decent firewall and then just get a dumb switch, but if you're getting something unmanaged you're going to have trouble down the line when you have a problem and need to figure out what's going wrong.




BlueOwl
85 posts

Master Geek

Lifetime subscriber

  #1968159 5-Mar-2018 10:09
Send private message

To be honest, a switch to do firewalling is going to be expensive. You'll need a layer-3 switch probably the 3650 to 3850 range of switches - expect a RRP of $4k for one of these. The firewalling capability of these isn't great - they'll do packet filtering between VLANs but not anything stateful or any other firewall functions. The user interface is most likely command line, I can't remember what the web interface looks like.

 

IMHO, you're probably best to look for a Cisco ASA 5506. This is an 8-port firewall which you can configure switching between ports. Inside, it's logically like an 8-port configurable switch with a firewall attached to it. RRP is about $800-$2000 off the top of my head. The cost depends on the licences you want - how many hosts, VPNs, number of networks, extra fancy features like IPS and so on (the ASA licensing is a bit of a nightmare). The user interface is a reasonably good Java app. Note that you'll need a maintenance contract to download the latest firmware (about $120-150 /yr from memory).

 

The Juniper SRX300 for SRX320 boxes are similar, slightly cheaper, and less of a 'mare to license. They also do switching just fine, and have a good web interface. Again, a maintenance contract is needed for latest firmware.

 

Fortigate boxes may also suit well - they also have switching between ports and will be cheaper and easier to manage.

 

I'm just a consultant, so I can't sell any of these. Pricespy is your friend, or if you have a relationship with a reseller that might be better.

 

Regards,
Kerry (Cisco CCNP & Juniper certified)

 

 


elpenguino

3419 posts

Uber Geek


  #1968176 5-Mar-2018 10:22
Send private message

Thanks for the tips @gehenna @BlueOwl.

 

We def want to go 'managed' for the firewalling appliance as each site will be slightly differently configured.

 

I'll take suggestions from the thread to my colleague and add relevant ones into the mix.

 

 





Most of the posters in this thread are just like chimpanzees on MDMA, full of feelings of bonhomie, joy, and optimism. Fred99 8/4/21


1 | 2 
View this topic in a long page with up to 500 replies per page Create new topic





News and reviews »

Air New Zealand Starts AI adoption with OpenAI
Posted 24-Jul-2025 16:00


eero Pro 7 Review
Posted 23-Jul-2025 12:07


BeeStation Plus Review
Posted 21-Jul-2025 14:21


eero Unveils New Wi-Fi 7 Products in New Zealand
Posted 21-Jul-2025 00:01


WiZ Introduces HDMI Sync Box and other Light Devices
Posted 20-Jul-2025 17:32


RedShield Enhances DDoS and Bot Attack Protection
Posted 20-Jul-2025 17:26


Seagate Ships 30TB Drives
Posted 17-Jul-2025 11:24


Oclean AirPump A10 Water Flosser Review
Posted 13-Jul-2025 11:05


Samsung Galaxy Z Fold7: Raising the Bar for Smartphones
Posted 10-Jul-2025 02:01


Samsung Galaxy Z Flip7 Brings New Edge-To-Edge FlexWindow
Posted 10-Jul-2025 02:01


Epson Launches New AM-C550Z WorkForce Enterprise printer
Posted 9-Jul-2025 18:22


Samsung Releases Smart Monitor M9
Posted 9-Jul-2025 17:46


Nearly Half of Older Kiwis Still Write their Passwords on Paper
Posted 9-Jul-2025 08:42


D-Link 4G+ Cat6 Wi-Fi 6 DWR-933M Mobile Hotspot Review
Posted 1-Jul-2025 11:34


Oppo A5 Series Launches With New Levels of Durability
Posted 30-Jun-2025 10:15









Geekzone Live »

Try automatic live updates from Geekzone directly in your browser, without refreshing the page, with Geekzone Live now.



Are you subscribed to our RSS feed? You can download the latest headlines and summaries from our stories directly to your computer or smartphone by using a feed reader.