Thursday, October 27, 2016

Compare TMG functions with Checkpoint, Sophos UTM, Cisco ASA

On this page of my comparisons:

TMG

Cisco ASA

Checkpoint

UTM Sophos

Feature

URL Filtering

- (only regex rule)

+ (blade Application control, Url filter)

+

Web antivirus/anti-malware protection

-

+ (blade Antivirus)

+

HTTPS inspection

+

+

+

Network Inspection System (NIS)

+ (additional module)

+ (blade IPS)

+

Enhanced Network Address Translation (NAT)

+

+

+

Enhanced Voice over IP support

+

+

+

64-bit support

-

+

+

FWC-client

-

-

+ (alternative SAA)

Failover

+ (active/passive)

+ (blade ClusterXL)

+

Internet support docs

+

-

-

Active Directory

+ (agent audit check)

+

+

Firewall Protections

Application layer filtering

-

+

+

Granular HTTP controls

-

+

+

DoS protections

+

+

+

Extensive protocol support

+

+

+

Highly Secure Application Publishing

Highly secure e-mail access from Outlook Client

-

- (1 cert for all pubs)

+ (1 https pub = 1 IP)

Simple Outlook Web Access and Microsoft Office SharePoint Server publishing

- (nat for ip)

alternative - mobile access portal (Blade Mobile Access)

+ (1 https pub = 1 IP)

Highly secure publishing of Web servers, internal servers, and Terminal Services

- (nat for ip)

alternative - mobile access portal (Blade Mobile Access)

+ (1 https pub = 1 IP)

Delegation of basic authentication

-

-

+ (1 https pub = 1 IP)

Link translation to internal servers

-

-

-

SSL bridging support

-

+

+

clip_image003[3]Virtual Private Networks

Remote access VPN

+

+ (no Cyrilic)

+

Inspection of VPN traffic

+

+

+

SecureNAT for VPN clients

+

- (no gw and inet work)

+

Publish VPN servers

+

+

+

Management

Enterprise policy

-

+

+

Easy-to-use wizards

-

-

-

Real-time monitoring and reporting

only monitoring

+

+ (web-console)

Query building

-

+

- (one parameter)

Report creation and publishing

-

+

+

Delegated permissions

+

+ (internal users)

-

Networking and Performance

Network load balancing

-

+ (nat)

+

Network-based configuration

+

+

+

Caching

-

-

-

Background Intelligent Transfer Service (BITS) caching

-

-

-

HTTP compression

-

-

-

Diffserv (Quality of Service)

-

-

-

Two ISP

- (no balancing,  only reserving)

+ (need fix)

+ (route balancing)