OT: PIX Firewall Problem

Top Page
Attachments:
Message as email
+ (text/plain)
Delete this message
Reply to this message
Author: Gary Nichols
Date:  
Subject: OT: PIX Firewall Problem
On Thursday, October 23, 2003, at 10:34 AM, Gilbert T. Gutierrez, Jr.
wrote:

> We ended up nating the Public IPs to themselves on the DMZ.


I'm confused - you isolated this as being the problem or the solution?
:-)


> ---RANT---
> I am really disappointed with this purchase. Cisco routers I find are
> very
> buggy and am continually fighting them. PIX firewalls, it looks like
> are
> very similar. If you have a basic setup their equip works usually
> without
> fail (Leased line, frame-relay, isdn). If you are trying to use more
> advanced technologies such as ATM, IMA,..., you run into memory leaks
> and
> missing functionality. The only plus I find with Cisco is the fact
> that
> they have a lot of support. Equipment is also plentiful.


With Cisco, the key is knowing *exactly* what you're buying. They have
made the equipment + IOS feature set puzzle rather frightening as of
late. I've used all cisco gear for the past 7 years, and I love it -
and have done some very complicated configs (especially with the PIX).
The failover in the PIX is one of the best implemented I've ever come
had the pleasure of relying on.

> If I had the budget and the time, I would switch our backbone to
> Juniper
> Networks.


Juniper makes *great* gear, but falls down in a lot of the areas that
Cisco does. I would also argue that Cisco support is much better
though.

Glad you got your issue resolved.