Hi everyone,
I'm helping a colleague evaluate firewall options for their small MSP. They're managing about 20 client sites, mostly small offices. The scale means they need something reliable and secure, but also something that won't create a configuration nightmare when managing two dozen different boxes.
The Juniper SRX series often comes up in these conversations, especially the SRX300 series for branch offices. I'm curious about real-world experiences from this community.
Specifically, for an MSP use-case:
* **Central Management:** How is the experience with Security Director or other tools for multi-tenancy and centralized policy? Is the learning curve justified?
* **Client Isolation:** Any clever config approaches for segmenting client views or reports, even if using a single management platform?
* **Operational Overhead:** Compared to other platforms common in the MSP space (like Fortinet, Palo Alto), how does the SRX stack up for day-to-day rule updates, firmware, and troubleshooting?
* **The Licensing Puzzle:** The subscription model for threat feeds and updates—straightforward or a headache for billing clients?
The goal here isn't just "is it a good firewall?"—it's "is it a good firewall *for an MSP*?" We're weighing factors like consistent deployment, minimizing repetitive work, and clear value to the end client.
Would love to hear both positive experiences and the pitfalls you've encountered.
Stay factual, stay helpful.