ML
    • Recent
    • Categories
    • Tags
    • Popular
    • Users
    • Groups
    • Register
    • Login

    Looking for recommendations on the best UTM Firewalls for SMB's...

    IT Discussion
    22
    36
    2.5k
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • coliverC
      coliver @CCWTech
      last edited by coliver

      @ccwtech said in Looking for recommendations on the best UTM Firewalls for SMB's...:

      @scottalanmiller said in Looking for recommendations on the best UTM Firewalls for SMB's...:

      @ccwtech said in Looking for recommendations on the best UTM Firewalls for SMB's...:

      Have you looked at Meraki?

      Ewwwwwww

      What don't you like about Meraki?

      Have you used them? Slow and unreliable the support, since Cisco took over, is subpar. On top of that they are incredibly expensive when compared to basically anything in the space except Cisco.

      CCWTechC 1 Reply Last reply Reply Quote 0
      • CCWTechC
        CCWTech @coliver
        last edited by

        @coliver said in Looking for recommendations on the best UTM Firewalls for SMB's...:

        @ccwtech said in Looking for recommendations on the best UTM Firewalls for SMB's...:

        @scottalanmiller said in Looking for recommendations on the best UTM Firewalls for SMB's...:

        @ccwtech said in Looking for recommendations on the best UTM Firewalls for SMB's...:

        Have you looked at Meraki?

        Ewwwwwww

        What don't you like about Meraki?

        Have you used them? Slow and unreliable the support, since Cisco took over, is subpar. On top of that they are incredibly expensive when compared to basically anything in the space except Cisco.

        They are pricey. I have used them and loved them. Very easy to configure. Support has been top notch.

        I have a few Sonicwall devices and that's support I cringe about.

        coliverC 1 Reply Last reply Reply Quote 0
        • coliverC
          coliver @CCWTech
          last edited by

          @ccwtech said in Looking for recommendations on the best UTM Firewalls for SMB's...:

          @coliver said in Looking for recommendations on the best UTM Firewalls for SMB's...:

          @ccwtech said in Looking for recommendations on the best UTM Firewalls for SMB's...:

          @scottalanmiller said in Looking for recommendations on the best UTM Firewalls for SMB's...:

          @ccwtech said in Looking for recommendations on the best UTM Firewalls for SMB's...:

          Have you looked at Meraki?

          Ewwwwwww

          What don't you like about Meraki?

          Have you used them? Slow and unreliable the support, since Cisco took over, is subpar. On top of that they are incredibly expensive when compared to basically anything in the space except Cisco.

          They are pricey. I have used them and loved them. Very easy to configure. Support has been top notch.

          I have a few Sonicwall devices and that's support I cringe about.

          You may want to look at other stuff in the space as well. You can easily get better performance at a significantly lower price from several different vendors.

          CCWTechC 1 Reply Last reply Reply Quote 0
          • CCWTechC
            CCWTech @coliver
            last edited by

            @coliver said in Looking for recommendations on the best UTM Firewalls for SMB's...:

            @ccwtech said in Looking for recommendations on the best UTM Firewalls for SMB's...:

            @coliver said in Looking for recommendations on the best UTM Firewalls for SMB's...:

            @ccwtech said in Looking for recommendations on the best UTM Firewalls for SMB's...:

            @scottalanmiller said in Looking for recommendations on the best UTM Firewalls for SMB's...:

            @ccwtech said in Looking for recommendations on the best UTM Firewalls for SMB's...:

            Have you looked at Meraki?

            Ewwwwwww

            What don't you like about Meraki?

            Have you used them? Slow and unreliable the support, since Cisco took over, is subpar. On top of that they are incredibly expensive when compared to basically anything in the space except Cisco.

            They are pricey. I have used them and loved them. Very easy to configure. Support has been top notch.

            I have a few Sonicwall devices and that's support I cringe about.

            You may want to look at other stuff in the space as well. You can easily get better performance at a significantly lower price from several different vendors.

            I'm always looking for something better, but I have been very happy with Meraki.

            1 Reply Last reply Reply Quote 0
            • PenguinWranglerP
              PenguinWrangler
              last edited by

              I would not recommend Untangle. I have to agree with everyone that is saying to break these things apart. When you mention anti-virus are you talking about something like a gateway antivirus? That is what I am assuming. I have used ipCop as a firewall. I liked it. Basic firewall. Is there a reason why you want UTM verses having these systems on their own?

              DanpD 1 Reply Last reply Reply Quote 0
              • DanpD
                Danp @PenguinWrangler
                last edited by

                @penguinwrangler said in Looking for recommendations on the best UTM Firewalls for SMB's...:

                I would not recommend Untangle.

                Why? Other than that fact that it is a UTM and that is frown upon by most everyone here.

                1 Reply Last reply Reply Quote 0
                • black3dynamiteB
                  black3dynamite @vhinzsanchez
                  last edited by

                  @vhinzsanchez said in Looking for recommendations on the best UTM Firewalls for SMB's...:

                  Also liking pfSense. Once you got the hang of it, its easy-peasy to manage.

                  OPNsense is pretty nice too, especially the UI.

                  1 Reply Last reply Reply Quote 0
                  • R3dPand4R
                    R3dPand4
                    last edited by

                    FortiGate and WatchGuard are the two I have the most experience with and both are pretty solid.

                    1 Reply Last reply Reply Quote 0
                    • brandon220B
                      brandon220
                      last edited by

                      I tend to use Edgerouters everywhere I can. That being said - I have 2 Sophos UTMs because of the web filtering mainly. I realize you can put them in transparent mode behind another router but it seems pointless when it can do everything. The country blocking is another feature that works really well. If I needed just a firewall I would never consider them.

                      thwrT 1 Reply Last reply Reply Quote 1
                      • NerdyDadN
                        NerdyDad
                        last edited by

                        I would just recommend a different strategy all together because if you're UTM is compromised, then where is the rest of your security going to be? This is why I recommend breaking it apart. AV at the firewall might not be a bad idea, but I would recommend breaking out the IDS/IPS behind the firewall. Also, breaking out the proxy just right behind the firewall as well, if you need one.

                        brandon220B 1 Reply Last reply Reply Quote 1
                        • brandon220B
                          brandon220 @NerdyDad
                          last edited by

                          @nerdydad I agree 100%. Web filtering was the reason for the Sophos. For a school it works very well. What would you use for a filter behind a "normal" firewall?

                          black3dynamiteB NerdyDadN 2 Replies Last reply Reply Quote 0
                          • black3dynamiteB
                            black3dynamite @brandon220
                            last edited by

                            @brandon220 said in Looking for recommendations on the best UTM Firewalls for SMB's...:

                            @nerdydad I agree 100%. Web filtering was the reason for the Sophos. For a school it works very well. What would you use for a filter behind a "normal" firewall?

                            Squid (http://www.squid-cache.org/)

                            PiHole (https://pi-hole.net/)

                            Safesquid (https://www.safesquid.com/)

                            Strongarm (https://strongarm.io/)

                            1 Reply Last reply Reply Quote 0
                            • NerdyDadN
                              NerdyDad @brandon220
                              last edited by

                              @brandon220 said in Looking for recommendations on the best UTM Firewalls for SMB's...:

                              @nerdydad I agree 100%. Web filtering was the reason for the Sophos. For a school it works very well. What would you use for a filter behind a "normal" firewall?

                              @black3dynamite said in Looking for recommendations on the best UTM Firewalls for SMB's...:

                              @brandon220 said in Looking for recommendations on the best UTM Firewalls for SMB's...:

                              @nerdydad I agree 100%. Web filtering was the reason for the Sophos. For a school it works very well. What would you use for a filter behind a "normal" firewall?

                              Squid (http://www.squid-cache.org/)

                              PiHole (https://pi-hole.net/)

                              Safesquid (https://www.safesquid.com/)

                              Strongarm (https://strongarm.io/)

                              Just like @black3dynamite said. Squid for proxying, Pi-hole for internal DNS filtering and getting rid of ads, and Strongarm for external DNS. I've never used either Squid or Strongarm, but have heard that they are good products.

                              brandon220B 1 Reply Last reply Reply Quote 0
                              • brandon220B
                                brandon220 @NerdyDad
                                last edited by

                                @nerdydad I use PiHole at home and it is great. SafeSquid looks pretty impressive. May have to fire these up in my lab and test them out.

                                1 Reply Last reply Reply Quote 1
                                • momurdaM
                                  momurda
                                  last edited by

                                  I use a Watchguard XTM515 here it is very nice. You just have to sub to the parts you want, IPS, APT, etc.
                                  0_1518543016178_8f8607a1-2010-4d08-9a30-0d206710b979-image.png
                                  There are software updates all the time. New features added all the time. Their support is great.

                                  1 Reply Last reply Reply Quote 0
                                  • thwrT
                                    thwr @brandon220
                                    last edited by thwr

                                    @brandon220 said in Looking for recommendations on the best UTM Firewalls for SMB's...:

                                    I tend to use Edgerouters everywhere I can. That being said - I have 2 Sophos UTMs because of the web filtering mainly. I realize you can put them in transparent mode behind another router but it seems pointless when it can do everything. The country blocking is another feature that works really well. If I needed just a firewall I would never consider them.

                                    pfBlocker / pfBlockNG on pfSense is great. You'll have a lot fewer kids knocking if you lock out all but the few required countries where you have employees etc. Doesn't make sense for a website maybe, but works great for VPNs for example. Only downside, as with every on-site firewall, is that the traffic already went over your wire, but it helps anyway.

                                    1 Reply Last reply Reply Quote 0
                                    • 1
                                    • 2
                                    • 2 / 2
                                    • First post
                                      Last post