Re: OpenBSD isakmpd and pf vs Cisco PIX or ASA

Previous message: [thread] [date] [author]
Next message: [thread] [date] [author]
To: Brian A Seklecki (Mobile) <bseklecki@...>
Cc: <misc@...>, Martin Toft <mt@...>
Date: Wednesday, November 7, 2007 - 9:34 pm

Brian A Seklecki (Mobile) wrote:

Are you sure PIX 515 and above does not support IPv6. By that do you mean IPv6
routing, if that is the case, yes. But PIX 515E and ASA does support IPv6 fine
when you use 7.X and above version of image.

In addition to your 4th point, PIX and ASA support failover using LAN, only PIX
supports serial based failover.

To the OP:
We use ASA and OpenBSD in our production environment and we spent close to
$10,000 buying twin ASAs (using GigE) for failover, but only $2000 to buy two
dell boxes to put OpenBSD (using GigE) on them and use them as failover i.e. pf
+ pfsync + sasyncd and its being fine for past 11 months.

Where do you see OpenBSD lagging behind, if it is a transfer rate you can tweak
tcp settings using sysctl, you can upgrade to 4.2 as the other post indicated.

And are you willing to spend money to buy expensive gear that is the question?

Previous message: [thread] [date] [author]
Next message: [thread] [date] [author]

Messages in current thread:
OpenBSD isakmpd and pf vs Cisco PIX or ASA, Chris Bullock, (Sun Nov 4, 8:09 pm)
Re: OpenBSD isakmpd and pf vs Cisco PIX or ASA, Karsten McMinn, (Wed Nov 7, 8:50 pm)
Re: OpenBSD isakmpd and pf vs Cisco PIX or ASA, Chris Bullock, (Mon Nov 5, 8:14 pm)
Re: OpenBSD isakmpd and pf vs Cisco PIX or ASA, Todd T. Fries, (Wed Nov 7, 8:09 pm)
Re: OpenBSD isakmpd and pf vs Cisco PIX or ASA, Cabillot Julien, (Sun Nov 4, 8:29 pm)
Re: OpenBSD isakmpd and pf vs Cisco PIX or ASA, Martin Toft, (Mon Nov 5, 2:23 am)
Re: OpenBSD isakmpd and pf vs Cisco PIX or ASA, Brian A Seklecki (Mobile)..., (Mon Nov 5, 3:26 pm)
Re: OpenBSD isakmpd and pf vs Cisco PIX or ASA, Matthew Dempsky, (Thu Apr 10, 3:52 pm)
Re: OpenBSD isakmpd and pf vs Cisco PIX or ASA, Reyk Floeter, (Thu Apr 10, 6:27 am)
Re: OpenBSD isakmpd and pf vs Cisco PIX or ASA, Rod Whitworth, (Thu Apr 10, 7:29 am)
Re: OpenBSD isakmpd and pf vs Cisco PIX or ASA, Claudio Jeker, (Thu Apr 10, 7:04 am)
Re: OpenBSD isakmpd and pf vs Cisco PIX or ASA, Prabhu Gurumurthy, (Wed Nov 7, 9:34 pm)
Re: OpenBSD isakmpd and pf vs Cisco PIX or ASA, José Costa, (Fri Apr 11, 7:32 am)