Skip Links

Network World

  • Social Web 
  • Email 
  • Close
Clear Choice Test Unified Threat Management Firewalls. All-in-one firewalls show spotty performance: Juniper, Cisco, Check Point lead the way in test of 13 unified threat management devices.
Intro to UTM Testing Testing categories Product Summaries Click tabs to expand

How we tested UTM firewalls

By Joel Snyder , Network World , 11/12/2007
  • Share/Email
  • Comment
  • Print

We invited all major firewall vendors to participate in this Enterprise UTM Firewall test last June. To prepare for the test, we wrote a test methodology, which we circulated to enterprise network managers, other Network World testers and some contacts in the vendor community. Based on their feedback, we constructed a final test plan (.pdf) that accompanied the invitation.

We asked vendors to submit devices that could handle about 1Gbps of throughput, and we warned them that sending “overpowered” devices would not necessarily be to their advantage, because of pricing and other considerations. We asked for a high-availability pair of devices so we could access those options. We also asked each vendor to sent its central management toolkit, whether on a dedicated appliance or as an individual software applications.

In our methodology and invitation, we noted that we would be primarily testing antivirus and intrusion-prevention features, so we asked for devices that could handle one or both of these common UTM features, along with other enterprise features that might be separately licensed, such as dynamic routing.

For each set of devices, we used a combination of commercial test tools from Spirent and Mu Security, standard electrical-engineering measurement products, as well as our own custom-written tests to evaluate the products in 10 categories. We plugged each device into an infrastructure that included a core 10/100/1000 Ethernet switch from Enterasys Networks, KVM switching devices from Avocent and Intel-based servers running VMware server.

  • Share/Email
  • Comment
  • Print
Partner Content

Brilliantly simple security and control solutions for email, web and endpoint

www.sophos.com

Stopping data leakage

Learn how to exploit your current security investment to control the information that flows into, through and out of your network.

Download the white paper.

Why detection rates aren't enough

Evaluating endpoint security products is a time-consuming and daunting task. Learn the six critical questions you need to ask prospective vendors to get the right endpoint solution.

Download the white paper.

Applications: taking back control

Employees installing unauthorized applications is a growing threat to business security and productivity. Cost-effectively reduce this threat by integrating control into your malware protection.

Learn more today.

Comments (3)
Login
Forgot your account info?

Try this one, great valueBy Anonymous on March 15, 2008, 2:48 amGreat article, I came across a new UTM manufacturer that offers the best of both worlds. All applications are included in the hardware cost and their are zero ongoing...

Reply | Read entire comment

Four interfacesBy Joel Snyder on December 11, 2007, 11:26 pmMy apologies for the lack of clarity. I used four interfaces. Because we were re-using the topology from the UTM testbed, the firewalls had 1 interface with many...

Reply | Read entire comment

RE: How we tested UTM firewallsBy Graham on December 11, 2007, 2:51 pmI've combed thru the content and can't seem to find how many interfaces Joel used to max out the test bed for the IBM and Juniper numbers...2.8 over four as opposed...

Reply | Read entire comment

View all comments

Add comment
Anonymous comments subject to approval. Register here for member benefits.
Have a NetworkWorld account? Log in here. Register now for a free account.

Videos

rssRss Feed