TrustRadius: an HG Insights company

Check Point 4000 Appliances

Score7.2 out of 10

16 Reviews and Ratings

What is Check Point 4000 Appliances?

Check Point’s 4000-series appliances is a legacy firewall offering. It also provides IPsec VPN access and intrusion prevention within the offering.

Categories & Use Cases

Top Performing Features

  • Firewall Management Console

    Either command-line or web-based interface for centralized control and management

    Category average: 8.1

  • Reporting and Logging

    Custom and summary reports, and log files enabling analysis of security incidents, application usage and traffic patterns

    Category average: 8.2

  • VPN

    VPN's implement encryption and anonymize IP addresses

    Category average: 9.1

Areas for Improvement

  • Visualization Tools

    Visualization tools present administrators with data on applications traversing the network, who is using them, and the potential security impact.

    Category average: 8

  • Active Directory and LDAP

    Integration with Active Directory and LDAP directories

    Category average: 8.4

  • Proxy Server

    A proxy server changes your IP address and masks the origin of your network traffic

    Category average: 8.5

My detailed review Check Point 4000 Appliances Review

Pros

  • If you have critical data then you can use this firewall for secure your organization
  • You can also use for cloud security
  • If you want the deep packet inspection then this is one of the best firewall for you.

Cons

  • CLI is more complicated
  • GUI is slow . this should be improve
  • Technical support is not good.

Return on Investment

  • Cost effective
  • Easy to install
  • Easy to configure and use

Alternatives Considered

Cisco ASA

Other Software Used

Check Point 12000 Appliances, Cisco Webex Support

Checkpoint 4000 series, still running like a champ!

Pros

  • Management access is difficult to get to and requires a specific client, plus sourcing from a permitted IP address.
  • Anti-malware, anti-spyware, and anti-bot engines do a great job at protecting from malicious content.
  • Anti-spoofing makes certain exploits like the LAND attack vector as null and void.

Cons

  • Steep learning curve for admins
  • No packet tracer application like the ASA to test flows prior to putting in new rules, etc.
  • Policy packages are all or nothing. I cannot uninstall or turn off a piece of the overall policy, it's all or nothing.

Return on Investment

  • We have not seen a zero-day exploit since implementing the anti-spyware, anti-malware, and URL filtering functionality
  • We have not seen a successful intrusion into our systems since the implementation of our checkpoint 4000
  • We have had this firewall for 5+ years, and it still has much life left in it.

Alternatives Considered

WatchGuard NGFW

Other Software Used

WatchGuard NGFW, Juniper Secure Access SSL VPN, Cisco Sourcefire SNORT