PIX firewall and CheckPoint

Posted on 2006-03-22
Last Modified: 2013-11-16
I am new to firewall concept.Can anyone explain me how does the Administration of a PIX Firewall differ from a Checkpoint firewall?
Question by:anumit
    LVL 2

    Accepted Solution

    there are many differences between these two firewalls, but I will try... leftside is Checkpoint, rightside PIX

    Rules are configured by GUI <-> Command line, TXT configuration of rules
    "Just configure a rule" <-> Find the correct inbound interface for a rule and configure the rule to that interface
    FW Log searchable with GUI <-> FW Logs are send to SYSLOG, search by "grep", etc.
    Runs under different OSes (Linux, Windows) <-> Runs under Cisco's PIX OS
    Seperate management system with rulesbases and logs, etc. <-> Every thing is contained on the PIX.

    .... and there are many other things!

    Let me tell you my experience (responsible for 10 PIX devices and 20 Checkpoint FWs on Provider-1)

    If you expect to have a somewhat small firewall infrastructure, e.g. 1-2 Firewalls with each of 2-4 Interface and say up to 30  firewall rules, which where - in addition - mostly implemented in a static way (so that they don't change often), then I would say, the PIX is your friend!

    If you have more firewalls with more interfaces, then on the PIX firewall the number of rules can - and often will - rise to a level, where an easy and simple manageability of the rulebase is not give anymore. If there are also often changes to the firewall rules, go on and take Checkpoint on Secureplattform. In this case you will save much time.

    Just me 2c ...

    Cheers, Dirk

    LVL 5

    Expert Comment

    dluetke -

    I've had some experience with Cisco routers and switchs, but no experience at all with PIX. I do not intend to open a flame war (FiReWaLL-1 RuLeZ!!!111), but I'm very intersted in hearing your opinion, as a guy who has experience with both systems, in what areas PIX is superiour to FW-1.

    Price? Reliability? Performance? Security? Ease of use?

    Featured Post

    Looking for New Ways to Advertise?

    Engage with tech pros in our community with native advertising, as a Vendor Expert, and more.

    Join & Write a Comment

    Wikipedia defines 'Script Kiddies' in this informal way: "In hacker culture, a script kiddie, occasionally script bunny, skiddie, script kitty, script-running juvenile (SRJ), or similar, is a derogatory term used to describe those who use scripts or…
    If you are like regular user of computer nowadays, a good bet that your home computer is on right now, all exposed to world of Internet to be exploited by somebody you do not know and you never will. Internet security issues has been getting worse d…
    Excel styles will make formatting consistent and let you apply and change formatting faster. In this tutorial, you'll learn how to use Excel's built-in styles, how to modify styles, and how to create your own. You'll also learn how to use your custo…
    Get a first impression of how PRTG looks and learn how it works.   This video is a short introduction to PRTG, as an initial overview or as a quick start for new PRTG users.

    746 members asked questions and received personalized solutions in the past 7 days.

    Join the community of 500,000 technology professionals and ask your questions.

    Join & Ask a Question

    Need Help in Real-Time?

    Connect with top rated Experts

    18 Experts available now in Live!

    Get 1:1 Help Now