hi all .
i dont know if this is the right place , but i try .
i have a fortigate 300c and i am consider to bring in a 200d unit instead. if i buy the 200d i get in a close range price 3 year coverage , and the 300c is looks like overkill in my environment.
i have around 90-120 users (50 voice traffic 50 regular "internet" traffic) and in the top scale we can reach 150 users.
i try to compare this 2 models but didn't find the exact + and - to determine which model to go for .
the big dilemma of course is:
if the 200d is not a big downgrade that effect my network - take in mind 300c for small network like mine 90 users is more than i can ask for:)).
is there anyone who have grater experience to point out the main element to consider when choosing between this models ,and overall recommendation for my network - stay with 300c? or move to 200d ?
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
It really depends on the level of UTM you are wanting to apply. If you are only doing UTM from inside to the internet then I would size based on your internet connection speed.
If not, and you are applying UTM between vlans etc internally, the throughput you are pushing across vlanA to vlanB will be the determining factor.
Mike Pruett
hi mike , thanks for your replay.
basically the UTM features is apply to outgoing traffic only as you mention on your response.
but i applying the utm policy based on vlans as well .
the vlan network is "flat" meaning internal traffic is routed between all the vlans open wide.
i try to work with reports from the analyzer referring to total bandwidth and cpu & memory utilization so i can have bigger picture about the actual load of the unit in certain Time period (1 month for example).
on the network perspective i still didn't find a way to monitor or gathering the info ( not sure what shuld i focus on ) needed for better decision-making means that :
i need a way to detarming firewal throughput needs base on the actual firewall unit ...not fully undersatnd "firewall throughput " meaning ? and how to find how much i use and need the new unit to support ( i belive this is the key factor ).
because main parameter like : number of sessions vpn tunnel traffic and factor similer to those that effect network bandwidth are Relatively low .
so is there a common way to gatther traffic in and out needs ? by find the key factor that make to unit work the most ?
i mean how do i know if it ips that make the pick ? or just standart traffice from spesific vlan?
i hope i was understandable :) and like to thanks you again for you time and explanation.
Now that the 200E is available I'd never consider to buy a 200D...tenfold performance for the same price.
Just my 2 cents...
ede_pfau wrote:Now that the 200E is available I'd never consider to buy a 200D...tenfold performance for the same price.
Just my 2 cents...
Very true statement actually. 200E is boss and for some reason it keeps slipping my mind.
In regards to firewall throughput, it depends on the type of servers etc you have on your network and how they are configured. Chances are the 200E would be just fine for that.
Mike Pruett
thats a good point ( we get a good price on the 200d - the reseller try to get ride of the "old" models) but the 200d have support for 3-5 years somthing like that.
i take it in mind ans compere this models - thanks a lot for the help and the advices
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1720 | |
1093 | |
752 | |
447 | |
234 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.