EH-Net

Ethical Hacking Discussions and Related Certifications => Hardware => Topic started by: cd1zz on October 03, 2011, 04:09:20 PM



Title: Juniper NSM
Post by: cd1zz on October 03, 2011, 04:09:20 PM
Does anyone have experience with NSM from Juniper? I'm trying to get geek to geek information, not sales speak. I'm trying to figure out if I need this or not. They're telling me that I can only have basic control of the IDP modules without this thing. I'm just trying to figure out what functionality I wont get... Let me know if anyone has experience with this.


Title: Re: Juniper NSM
Post by: tturner on October 03, 2011, 04:15:31 PM
Centralized management and consistency of configuration and rulesets is huge. Just my personal opinion. I've used it in the past and been relatively pleased.


Title: Re: Juniper NSM
Post by: cd1zz on October 03, 2011, 04:21:02 PM
But what if we're talking about 1 SRX to manage, overkill it seems?


Title: Re: Juniper NSM
Post by: tturner on October 04, 2011, 07:30:41 AM
I probably would not for a single device, but I'm not a firewall expert and there may be some functionality I'm missing. What key features were they trying to sell you on?


Title: Re: Juniper NSM
Post by: cd1zz on October 04, 2011, 07:54:53 AM
They were trying to tell me that I only got "basic IDP configuration abilities" on the native device and that if I wanted more advanced configuration abilities I needed NSM. None of their literature states that though. NSM does look awesome I just don't think we can justify it for this client on one device.