Firewall appliance advice

Soldato
Joined
28 Dec 2003
Posts
16,516
Hi all,

We're a small business but have a fair few servers, both physical and virtual, as we're a software house and thus need more the the average amount of infrastructure for a company our size.

Thus far, we've been using a box running ISA Server 2006 as our Internet gateway. This is the single point of access to the Internet and all traffic flows through it.

It's getting a bit old and clunky and I'm wondering whether, rather than maintaining/upgrading it, I'd be better off just replacing it with a dedicated appliance. My problem is I have no experience of these things at all and have no idea of what they're capable.

I'd also like to improve our systems in some areas, such as VPN access. At present we just use basic PPTP connections but I want to look at implementing something more secure, possibly with two-factor authentication such as SecurID tokens, as I frankly don't trust certain people to use decent passwords.

Another thing we'd like to be able to do is monitor or even filter/throttle web traffic by user or groups of users, so we can easily see if certain people are hogging the connection and so forth.

Looking around, something like the WatchGuard XTM 515 seems to do much of what we need but I still have questions. It provides web filtering and blocking but can it provide the user based monitoring described above? If I want to use something like SecurID tokens, how do I do that and what sort of costs am I looking at? What are the ongoing subscription costs after the initial period has expired? Things like that.

If anyone has any experience with devices like this aimed at the small business sector then I'd be most grateful for any info or pointers on where to read up :)
 
Back
Top Bottom