Check Point Cloud Firewall with Threat Prevention and SandBlast
Check Point Software TechnologiesExternal reviews
355 reviews
from
and
External reviews are not included in the AWS star rating for the product.
Best Cloud Firewall
What do you like best about the product?
I love the fact, i can just spin up a firewall from an AMI in AWS, makes for a lot easier to deploy firewalls.
What do you dislike about the product?
Nothing at this specific moment in time.
What problems is the product solving and how is that benefiting you?
Deploying firewalls in the cloud and easy integration into different customer infrastructures.
Better than Azure firewall
What do you like best about the product?
All those features blades and logging options
What do you dislike about the product?
traditional dashboard and in scale set routing need to change manually when the new firewall spins up
What problems is the product solving and how is that benefiting you?
better firewall options that are not available in azure firewall or nsg
Good Firewall option to Enforce security on the Cloud
What do you like best about the product?
Very straight forward deployment and a lot of functionalities available.
What do you dislike about the product?
Lack of detailed documentation on how to use the cloud formation templates and the product subscription required for each CF deployment type available.
What problems is the product solving and how is that benefiting you?
Secure cloud environment
Check cloud compliance and secure it
What do you like best about the product?
Easy to use, centralized application, compliant with most cloud provider
What do you dislike about the product?
Nothing for the moment, application seems to be good
What problems is the product solving and how is that benefiting you?
Less security on cloud infrastructure and healh of code
Recommendations to others considering the product:
New product without very concurrent on the market
CloudGuard IaaS by Check Point
What do you like best about the product?
While using the CloudGuard IaaS you will get almost the same experience as with other Check Point firewall solutions. The components of the infrastructure are integrated with each other quite well. All the common Check Point Next Generation FireWall blades are supported - Firewall, IPS, Antivirus, VPN etc. There is not big difference from the usual onprem Gateway from this perspective.
I find it really useful that CloudGuard supports all the main players on the Public Clouds market - AWS, GCP and Azure - as well as some exotic ones like Alibaba Cloud, Oracle Cloud and IBM Cloud. I would say there is about 95% probability that the platform your are using is supported, and I don't know any other solution for now which may provide the same number. Moreover, it integrates with most of the public cloud management solutions, so you could automate modification of the security policies based on some triggers or changes in your the cloud infrastructure.
I also like that different licensing models are supported. For testing/evaluation/PoC projects you could go with the Pay-as-you-go (PAYG) license without wasting a lot of money in case the solution somehow doesn't suit you. And for production you could use the Bring-your-own-license (BYOL) way, applying the license bought earlier.
I find it really useful that CloudGuard supports all the main players on the Public Clouds market - AWS, GCP and Azure - as well as some exotic ones like Alibaba Cloud, Oracle Cloud and IBM Cloud. I would say there is about 95% probability that the platform your are using is supported, and I don't know any other solution for now which may provide the same number. Moreover, it integrates with most of the public cloud management solutions, so you could automate modification of the security policies based on some triggers or changes in your the cloud infrastructure.
I also like that different licensing models are supported. For testing/evaluation/PoC projects you could go with the Pay-as-you-go (PAYG) license without wasting a lot of money in case the solution somehow doesn't suit you. And for production you could use the Bring-your-own-license (BYOL) way, applying the license bought earlier.
What do you dislike about the product?
I see nothing to dislike about CloudGuard IaaS right now, I'm quite happy with the solution.
What problems is the product solving and how is that benefiting you?
We use the common set of blades, literally the same as on-premises -
Firewal and IPS to protect from the common attacks, Application Control for application layer stuff, IPSec VPN to provide connectivity between our environments etc.
Firewal and IPS to protect from the common attacks, Application Control for application layer stuff, IPSec VPN to provide connectivity between our environments etc.
Recommendations to others considering the product:
Don't even try to use it if you somehow don't like the other Check Point products - the experience would be the same =)
Blink of an eye
What do you like best about the product?
CP's Blink GW creation application makes creating new GWs a breeze.
What do you dislike about the product?
I have not come across much that I disklike.
What problems is the product solving and how is that benefiting you?
We are currently using CP CG IaaS along with Aviatrix. Our app teams have multiple VPCs that need to be peered and in order to inspect traffic both north/south and east/west using CG makes it very easy and reliable.
Recommendations to others considering the product:
Ease of creating new GWs is an incredible feature
Risk assessments with barely any overhead
What do you like best about the product?
Sanity check from a third party vendor on our setup.
Risk we didn't even know existed. You cannot be a cloud expert in all clouds and know every single service on every single platform.
Super easy to deploy
Risk we didn't even know existed. You cannot be a cloud expert in all clouds and know every single service on every single platform.
Super easy to deploy
What do you dislike about the product?
The product still is very AWS focussed.
Dashboards accross all cloud accounts should be more interactive and more drill down.
No real single pane of glass but mostly individual assessments per subscription/AWS tenant
Dashboards accross all cloud accounts should be more interactive and more drill down.
No real single pane of glass but mostly individual assessments per subscription/AWS tenant
What problems is the product solving and how is that benefiting you?
Identifying risk accross clouds.
Find potential misconfigurations. We have corrected a ton of s
Find potential misconfigurations. We have corrected a ton of s
Recommendations to others considering the product:
If you have the budget for it, it's really worth it
Best security for cloud platform
What do you like best about the product?
Checkpoint cloudguard provides best security to the cloud platform which is adaptive security for all major vendor at the moment and it prevents attacks in cloud
What do you dislike about the product?
there is too much option which is very difficult to handle and need guide to handle this.
What problems is the product solving and how is that benefiting you?
Securing our cloud infrastructure completely without hassle
Check Point power for your cloud
What do you like best about the product?
Unify management with on-prem Check Point gateway
What do you dislike about the product?
Contraints of public cloud in terms of clustering and redundancy
What problems is the product solving and how is that benefiting you?
Security policy enforcement and trafic visibility
Recommendations to others considering the product:
Existing Check Point customer will benefit a unified management of their on-prem and cloud security.
You can also deploy Cloudguard apart form any existing Check Point management architecture.
You can also deploy Cloudguard apart form any existing Check Point management architecture.
Dome 9 The best Architecture for cloud security.
What do you like best about the product?
With CloudGuard Dome 9 i can review some informations that make a difference in environment public cloud, i can see incorrect configs, status security and other features. i see dome 9 the best tool security public of the marketplace, i dont see other tool similar.
What do you dislike about the product?
if you need to configure a large environment, in dome 9 it can be a little complicated to configure, as it requires advanced knowledge. Sometimes the search for some information is a little hidden in dome 9 for example: visualization of application accesses, access time and others. But nothing that gets in the way of monitoring the environment.
What problems is the product solving and how is that benefiting you?
the improper identification of some access to applications and exploit attempts in some applications. After identification, it was possible to create policies to control access.
Recommendations to others considering the product:
if you are looking for cloud security, control, application monitoring, dome 9 is the best solution, there is no solution on the market that comes close to dome 9.
showing 361 - 370