Firepower rant

I definitely agree with a lot of what's said in that rant. I've seen a lot of shit working with FP over the years. However, the FP team makes a great effort to acknowledge and fix these issue. They are weighed down by the shitty FX-OS team. I also think the product is a security focused product breaking into the networking market. I used Palo Alto and felt like the power and customization for our security team was limited, but it was more stable for the networking team.

  1. Deployments are getting better with every version. Next version has incremental deployments which you can choose what to deploy.
  2. FMC performance has been acknowledged and a solution will soon come. The obvious issue is so many database tables being written to. I'm assuming they will be offloading databases in some way. Side effect of having such a powerful product.
  3. FXOS - No excuse. It's so bad. Not even tac knows how to pivot around in it.
/r/networking Thread