OPNsense Forum

English Forums => General Discussion => Topic started by: tomcat667 on February 27, 2018, 02:22:25 PM

Title: Want to migrate from cisco to opnsense
Post by: tomcat667 on February 27, 2018, 02:22:25 PM
Hi @all,


we have a hard discussion in our team about which firewall replace our cisco 5525x.
Some people say: sophos sophos
Another peole say: stay by cisco, all you need, no migration pain etc.


I say i donĀ“t want attempted  nsa software to use. The costs not important at this point.


Someone else's experience with migration from cisco to opnsense?
Title: Re: Want to migrate from cisco to opnsense
Post by: mimugmail on February 27, 2018, 05:02:16 PM
Yep, I triggered lot's of changes to make ASA and OPN even (like multi P1 with remote ANY in IKEv2).
I also did a technical writeup for cheap and easy connecting hundrets of Cisco routers to ASA and successfully migrated this concept to OPN (as a conecentrator) and leave clients at IOS (since 880er hardware is way cheaper than an appliance).

Sophos is good .. we also use it for many customers, but you have to keep an eye on licensing.

Be sure to hardly test HA with OPN since it's different from OPN! If you're using AnyConnect or EasyVPN and redundant ASA .. stick with it. :)