Recommendations to others considering Check Point Quantum Titan:
Before moving to Checkpoint r80.30 from the previous releases, you need to follow through with the procedure, including pre_verifier. Delete nonuse policies and rule bases before the migration. R80.30 is currently somehow an old release; consider using R80.40 or R81.10. Apply the latest fixes before running into production. Install the latest smart consoles for the firewall administrators. Consider MDM for the high number of GWs and different policies. For busy environments, I recommend using the appliances for the management and logging. VM platforms have limitations for the cpus and memory; you need to get a dedicated ESX host for resource assignment, which is nonsense. Using log export for SIM integration is more efficient than the OPSEC LEA. Review collected by and hosted on G2.com.
What problems is Check Point Quantum Titan solving and how is that benefiting you?
We have been using Checkpoint firewalls for more than 20 years. We start with one cluster, than by the years it grows to lots of firewalls and managements. We gave multiple deployments including single management centers and also dedicated MDS for some locations.10 years ago we migrated manu of the security management servers to MDS environment. This transition gives the firewall administrators immense operational capability. They have one screen to manage all the firewalls. Upgrades are straightforward just to start the MDS upgrade, than the CMAs are automatically upgraded. There are also locations which are been managed by the CMS. Smart console is great, and it’s getting many features with the coming releases. Smart logging is very fast and agile. Query language and elasticity give the administrators flexibility in searching. The compliance module is great and automatically integrated with the smart console. It’s unique in terms of usage and compared to other vendors as it’s alerting before applying a policy. Smartevent is used by the SOC team. Integration with the SIEM tools enhances the overall visibility at the network and endpoint layer. We have upgraded some environments a year ago to R80.40 and R81.10 due to tight external list integrations. Review collected by and hosted on G2.com.