What is our primary use case?
We primarily use the solution for the management of thousands of rules. partially automated via the well-documented API.
Managing the rules is a day-to-day business that takes a lot of time. It is really good that we can do the management through the dashboard. It is so comfortable, and, in contrast to other manufacturers, is structured much better. The integration of the logs allows a quick jump by mouse click between rules and log entry.
The API reduces the administrative effort so that we can concentrate on the essential things. in addition, it is an enormous advantage for our customers that rules are created automatically and are available immediately.
How has it helped my organization?
The transparency of the rules and the integrated logs makes daily troubleshooting easy and saves a lot of time.
Managing the rules is a day-to-day business that takes a lot of time. The dashboard is great and much better in contrast to other manufacturers.
The integration of the logs allows for a quick click between rules and log entry.
The immediately visible audit logs are also a great advantage. This allows changes to a rule to be tracked quickly and any errors to be corrected.
What is most valuable?
The management API is the best new feature for me. It allows us to further automate our customers' automated server ordering.
The API reduces the administrative effort so that we can concentrate on essential things. It is an enormous advantage for our customers that rules are created automatically and are available immediately.
For our private cloud, we have to stay competitive with the public clouds and the speed on offer is what counts here. It's good.
The new web management tool allows the management in the browser, which is a great feature.
What needs improvement?
The management API can be further developed so that all functions offered by the dashboard are also available via the API (for example, Network Topology).
The new web management tool which allows the management in the browser has to be developed further so that all functions from the dashboard are available. Many of our administrators work with a Mac OS. Until now, the management of rules is only possible on Windows as the Smart Dashboard is only available for Windows. Now, with the first release of the web interface, it is possible in the browser. All functions from the dashboard must still be possible via the web interface.
For how long have I used the solution?
I've used the R77.30 version since 2013.
We've upgraded to R80.10 in 2019. The update was a bit complicated, however, with the pre-check and some cleanup, it went without a problem
We upgraded the R80.10 to R 80.30 in 2020. The update management with the migration of export/import was a remote update and was easy.
We upgraded R80.30 to R80.81 in 2021. The management update was very easy and through the wizard, everything was very clear in terms of the individual steps. The update of the gateways took place at night.
What do I think about the stability of the solution?
We do not have any stability problems.
What do I think about the scalability of the solution?
Check Point Maestro offers the industry a new way to leverage current hardware investments and maximizes appliance capacity. It's in an easy-to-manage hyper-scale network security solution in order to bring our networks and data centers into the world of hybrid clouds.
How are customer service and support?
The case handling is good. If you have experience and know what information the support needs, then the processing time can be minimized.
How would you rate customer service and support?
Which solution did I use previously and why did I switch?
In the past, we have used a Cisco ASA. Our management of the rules was not so good there. We also use FortiGate. This already offers a nice web interface, however, managing a large set of rules is almost impossible there.
How was the initial setup?
The initial setup was very simple. However, the migration of rules from other vendors was challenging.
What about the implementation team?
For large migrations, we always use a service provider or the manufacturer's team (Check Point Professional Services). Here we can fall back on well-trained SE's with a lot of experience.
What was our ROI?
No exact ROI has been calculated.
What's my experience with pricing, setup cost, and licensing?
All of our administrators have previously been on CCSA/CCSE training which provides good insights into the products. After various tests, we were able to carry out most of the setup ourselves in a developer environment. We were able to keep the costs for the migration low by using a lot of our own initiative. However, I would recommend the support of a Check Point certified partner.
Together with a Check Point partner (service provider), the requirements should be evaluated. Here, we were able to draw on the experience of our service provider and develop our environment according to our requirements.
Which other solutions did I evaluate?
We did not evaluate any other options.
What other advice do I have?
I can recommend the Check Point solution.
Which deployment model are you using for this solution?
On-premises
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Other
Disclosure: I am a real user, and this review is based on my own experience and opinions.