Tuesday, August 7, 2012

SonicWALL TZ 190 Wireless Security Appliance Firewall


Price : Too low to display
BUY NOW
SONICWALL TZ 190 3G WLS U/U

This review is from : SonicWALL TZ 190 Wireless Security Appliance Firewall
SonicWall TZ-190 with wireless fallback -- ROCKS! . This TZ-190 Enhanced router is the real deal and this purchase was quite a DEAL! Don't try to figure out how to configure it yourself. Unless you have a least a year of classes in network protocols and network security. The manual is hundreds of pages long. SonicWall's Tech Support is generally very good, especially when you get a Tech who really knows their stuff. They even taught me along the way so that I could fill in gaps in my networking knowledge. We now have three-way VPN tunnels between our 3 geographical locations. We have ports configured for DMZ access to VoIP phone server working with local and remote access VoIP phones. We have load balancing between a T1 line and cable connection. And if those lines go down the (user supplied) PCMCIA broadband card can route internet traffic through the Wide Area Broadband network. We're only utilizes about 15%-20% of the things this firewall can do! A great value with excellent tech support.
SonicWALL TZ 190 Wireless Security Appliance Firewall Reviews
Good Product . Previous 1-star review raises some valid points, but it looks like he just applied the same review to every Sonicwall product Amazon sells and may not have specially used this one. I personally found this unit to be more than acceptable for my situation.

We have a Sonicwall 3060 at HQ. We wanted to create three site-to-site VPNs are our remote branches. Ultimately, the units work very well for this purpose.

VPN - This was the most difficult aspect. I opted not to use the VPN wizard to create the tunnels, so I banged my head for days. The documentation on this issue is lacking... but to their credit they do make KB articles available on their website to address problems. Ultimately, the problem was that I could get the link working but was unable to pass traffic between the sites. But then I deleted my manually created links and opted for the wizard. The wizard ended up silently creating the appropriate firewall rules to pass traffic. Now a really really good network engineer just "knows" to add those rules, but anyone less than that will get stuck because it's not mentioned anywhere to check this.

WAN - This is the absolute strength of the unit. On paper this is a "dual WAN" router, but counting the WWAN slot the TZ190 is (in effect) a triple-WAN. This is a beautiful thing for me because my remote sites have terrible connectivity options. Triple-WAN allows me to overcome this by throwing three semi-reliable WAN links into the unit (WISP, Satellite, & 3G). At one site I ran into a problem because I wanted the WWAN to be the primary and the WAN port to be the backup... but there is no option for this (WWAN only, WAN only, or WAN w/ WWAN failover.) I had to set WWAN-only then create individual Firewall, NAT, and Routing rules for the traffic wanted to route over the WAN port. Cumbersome, Yes... but it works! It's just a little disappointing the developers didn't consider someone might want to do this and make it easier to accomplish.

DDNS - Previous reviewer mentioned the lack of ability to route particular hostnames over specific WAN interfaces. This is true. A possible workaround could be to use one provider (DynDNS) for one host and a different provider for another host. Then create a routing rule forcing DynDNS traffic out one WAN port and the other provider out the other port?

DNS - I also would have like to see a more advanced DNS console. My VPN arrangement only routes LAN traffic across the VPN... internet traffic goes directly out the WAN. This poses a problem because I would like my clients to be able to access my HQ DNS servers but I don't want to point them there because if the VPN goes down they lose their ability to resolve internet host names. A conditional forwarding feature would have been nice, but I'll workaround it by either putting a standalone DNS server at each site or just using primary/secondary DNS server settings.

DHCP - Server is a bit limited, but it's also the most elaborate DHCP server I've ever seen in a device like this. I was able to easily and intuitively make static reservations, create ranges for dynamic addresses, and otherwise accomplish everything I needed to do.

WWAN - The 3G aspect of this unit is very well designed. I am ESPECIALLY fond of the section that keeps track of how much WWAN data you have passed over time... by the day, week, month, year, and billing cycle. This is helpful to know because most providers limit you to 5G per billing cycle. (You can program your billing cycle into the unit.) The unit can even be configured to disable the WWAN interface after you reach your monthly limit. Also, certain providers reset your connection every 12 hours. Many 3G units I've used don't handle the reconnection right. The TZ190 does and auto-reconnects well (so far, at least.)

Configurability - I'm very fond of the granular nature of the Sonicwall. It is very tedious to get everything initially setup. You have to create your address objects, services, and firewall & NAT rules. But once you have it all in there, managing the unit's NAT and Firewall rules is a treat. I have really come to appreciate the beauty of these type arrangements.

Support - Never had to call support, but I wouldn't be surprised if the long wait times and India issues are true.

Overall this unit is an awesome product for what it does. There isn't anything else like it (Enterprise 3G product) in the market at the moment. For my purposes, it's nearly perfect.


Cons Review
Weak features horrible customer service avoid Sonicwall . In a short amount of time working with Sonicwalls, I discovered quite a few issues. I do not recommend Sonicwall as a result. Perhaps the CONS below won't affect you, but at least be aware of them.

PROS:
Small form factor for UTM

CONS:
Horrible customer service (outsourced to India, unless you are certified)
Long wait for customer service
Dynamic DNS client bug that has yet to be resolved (see below)
No DNS proxy intelligence for Split-Brain/Split horizon setup
Very weak DHCP server options, only basics
Poor documentation

Customer Service: First off, understand that level 1 is outsourced to India. I tried opening an incident via their web interface, and after several days without progress, I decided to call. The customer service number I dialed put me on hold right after selecting Tech Support. At some point (30 minutes later) an individual answered, and collected my details, and put me back on hold. About an hour later, the system forced me to leave a message and hung-up. I tried this several times, until I finally did get through to tech support. Now the first person that answers the phone and collects details (to help route the call), fails (or they lack the mechanism) to notify the final tech-support person, so you must repeat the details of your case (I mean seriously, is it terribly difficult to relay such details?). The VOICE quality(of the call) is terrible, I imagine they are using VOIP to backhaul calls to India, and using high compression, bandwidth saving techniques which result in low quality (I specialize in VOIP, and I know what they do to save money). This makes life rather difficult when already dealing with heavily accented/overly polite tech support in India.

The Dynamic DNS bug is quite simple. If you are getting the Enhanced O/S with the hopes of using dual ISP links (active/passive) and plan to use Dynamic DNS to maintain a simple hostname to dynamic ip mapping, you are out of luck. Dynamic DNS client on the Sonicwall is BOUND to the Primary WAN interface (how stupid is that?).

They don't support Split Brain (aka Split horizon) DNS, in fact their DNS capabilities are non-existent. The other major players in this field support this, why not Sonicwall?

DHCP - Where to begin? Its featureless, as weak as you can get it. It supports (options) DNS, WINS, Gateway, and a "callmanager" option. Thats it.

Poor documentation: I was trying to tunnel all my VPN traffic (both inbound to lan, and internet). Getting this done was difficult, because of non-existent documentation on the subject. You need to add some special NAT rules to support this, but NOWHERE is this indicated.

I tried communicating my disappointments to my Sonicwall sales rep, but it seems he can't "do anything about it". Sonicwall does not listen to customers (or at least in my size of business) - simply out of touch. I strongly recommend you consider another vendor (perhaps one of the top 2), as Sonicwall is out of touch with customers, and have a weak offering overall.



Feature SonicWALL TZ 190 Wireless Security Appliance Firewall

  • Nodes Supported: Unrestricted
  • Stateful Throughput: 90+ MBps
  • Standards Supported: 802.11b, 802.11g




Related Post

Product Details

EAN : 0758479068518
UPC : 758479068518
MPN : 01-SSC-6851
Brand : Sonicwall
Weight : 2 pounds
Height : 2 inches
Length : 10 inches
Width : 7 inches
Binding : Personal Computers
Format : CD
Hardware Platform : Pc
Manufacturer : SONICWALL
Model : 01-SSC-6851
Operating System : Windows
Platform : Windows
Publisher : SONICWALL
SKU : DH01SSC6851
Studio : SONICWALL

Where To Buy


You can buy SonicWALL TZ 190 Wireless Security Appliance Firewall on Amazon . Click here to Read More