Quote from: bimbar on October 24, 2024, 10:39:24 amWe have some opnsense firewalls in the field.It lacks some critical features for us to roll it out in a wider context.For example:- better firewall rule ui- an easier way to import basic configuration, a cli would be great for thatTo be honest, the firewall rule ui is one of the best I‘ve seen. Don’t like the FortiGate view. There are a couple of small things I would change and some annoyances but nothing deal breaking.Which ui is better in your opinion?The last FortiManager security flaw was really scary.
We have some opnsense firewalls in the field.It lacks some critical features for us to roll it out in a wider context.For example:- better firewall rule ui- an easier way to import basic configuration, a cli would be great for that
You cant even imagine, what support and stupidities I am getting from them. I am currently at my job/company holding a higher rate succession of fixing issues than CISCO TAC support. This is sad.Regards,S.
Yes, yes I can. We used to get fantastic support from Enterasys, now Extreme support is, well, not great. We have over $100k for our support contract with them, it was a 5 year and took them over 2 years to deliver the power supplies to power the switches up... Think they gave us a credit? Yup, a single year on some of the devices.
To me you're on a battle you can't win if the decision maker has to justify it to his/her peers IMHO.OPN is great and used in large environments but like the similarly-named distribution, and other leaning more on the Open source world, they are "unknown" in the world of Corporate IT.Like it or not, the big 'uns have thrown a lot of money into their offerings which include products, services, support, training and certification and more. And they build walls around them to make them a proprietary offering. Then the cheerleaders at Gartner go and put them in their quadrants and your have the CIOs noticing.> he CIO just wants a brand name and easy to use so "any" body can do it.This is one of the big ones to overcome. If he/she is looking for the brand name so "anybody" can do it, we all know it means there are certifications out there where they can go and get a certified engineer when they need to, rather than trying to find someone who knows a particular (in their eyes "niche" product).Same as unix/linux for servers. They won't replace their CentOS app servers with freeBSD ones even if they are a better suit for their purpose. Same reasons.
https://www.max-it.de/wp-content/uploads/2023/12/2023_11_14_maxIT_Success-Story_PME_quer-Thomas-Krenn-FIN.pdfThis is a public success story in German. We manage OPNsense for pme Familienservice. 1 datacenter, 80 branches and 2000 employees, OPN everywhere.