<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Question about virtual licensing in General Topics</title>
    <link>https://community.checkpoint.com/t5/General-Topics/Question-about-virtual-licensing/m-p/112898#M21215</link>
    <description>&lt;P&gt;The big downside to doing this with VSX is it isn't really virtual in any meaningful sense. All VSs share the same version, the same OS, the same hard drive or SSD, and so on. If the box has a problem, all of the contexts on it also have a problem. It greatly increases the impact domain of failures or maintenance. I have seen some environments still running R67 (end of support before 2014) because they can't get everybody using the firewall to agree to a change window long enough to upgrade.&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;Edited to add&lt;/STRONG&gt;: VSX on a larger box is definitely&amp;nbsp;&lt;EM&gt;vastly&lt;/EM&gt; less expensive than a bunch of separate smaller boxes, though. As long as you're okay with the larger potential impact, it can save ridiculously huge amounts of money. I've got a VSX pair right now running ~$300k worth of licenses on $45k worth of open servers. Replacing those boxes with non-VSX appliances would cost a minimum of $4M, just due to all the different routing tables.&lt;/P&gt;</description>
    <pubDate>Tue, 09 Mar 2021 21:14:49 GMT</pubDate>
    <dc:creator>Bob_Zimmerman</dc:creator>
    <dc:date>2021-03-09T21:14:49Z</dc:date>
    <item>
      <title>Question about virtual licensing</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Question-about-virtual-licensing/m-p/112891#M21212</link>
      <description>&lt;P&gt;Hi there. We've been looking into buying some new appliances, and splitting them up into virtual firewalls. As far as licensing/subscriptions are concerned, are there any cost benefits to doing it this way, rather than just buying new pairs of appliances? In several of our data centers, we've got 5 or 6 pairs of gateways performing important security duties, but they are severely underutilized. Wondering if it would be more cost effective to roll all of these into a pair of larger pair of appliances, and split them out using the virtual technology. The yearly subscription costs are quite high.&lt;/P&gt;</description>
      <pubDate>Tue, 09 Mar 2021 19:11:27 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Question-about-virtual-licensing/m-p/112891#M21212</guid>
      <dc:creator>cdooer</dc:creator>
      <dc:date>2021-03-09T19:11:27Z</dc:date>
    </item>
    <item>
      <title>Re: Question about virtual licensing</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Question-about-virtual-licensing/m-p/112893#M21213</link>
      <description>&lt;P&gt;Interesting thought, but not sure licensing works like that...you could confirm with account services.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Tue, 09 Mar 2021 19:42:54 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Question-about-virtual-licensing/m-p/112893#M21213</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2021-03-09T19:42:54Z</dc:date>
    </item>
    <item>
      <title>Re: Question about virtual licensing</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Question-about-virtual-licensing/m-p/112897#M21214</link>
      <description>&lt;P&gt;As Andy already mentioned,&amp;nbsp; this should be calculated and compared.&amp;nbsp;&lt;/P&gt;&lt;P&gt;If you buy separated appliances,&amp;nbsp; you purchase license ans subscription for all required blades&amp;nbsp; and support for every appliance.&lt;/P&gt;&lt;P&gt;When using VSX you need bigger hardware to cover all systems and in addition a virtual systems package.&amp;nbsp;&lt;/P&gt;&lt;P&gt;I never cared about costs so account services is best address to calculate the best option for your needs.&lt;/P&gt;</description>
      <pubDate>Tue, 09 Mar 2021 20:02:49 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Question-about-virtual-licensing/m-p/112897#M21214</guid>
      <dc:creator>Vincent_Bacher</dc:creator>
      <dc:date>2021-03-09T20:02:49Z</dc:date>
    </item>
    <item>
      <title>Re: Question about virtual licensing</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Question-about-virtual-licensing/m-p/112898#M21215</link>
      <description>&lt;P&gt;The big downside to doing this with VSX is it isn't really virtual in any meaningful sense. All VSs share the same version, the same OS, the same hard drive or SSD, and so on. If the box has a problem, all of the contexts on it also have a problem. It greatly increases the impact domain of failures or maintenance. I have seen some environments still running R67 (end of support before 2014) because they can't get everybody using the firewall to agree to a change window long enough to upgrade.&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;Edited to add&lt;/STRONG&gt;: VSX on a larger box is definitely&amp;nbsp;&lt;EM&gt;vastly&lt;/EM&gt; less expensive than a bunch of separate smaller boxes, though. As long as you're okay with the larger potential impact, it can save ridiculously huge amounts of money. I've got a VSX pair right now running ~$300k worth of licenses on $45k worth of open servers. Replacing those boxes with non-VSX appliances would cost a minimum of $4M, just due to all the different routing tables.&lt;/P&gt;</description>
      <pubDate>Tue, 09 Mar 2021 21:14:49 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Question-about-virtual-licensing/m-p/112898#M21215</guid>
      <dc:creator>Bob_Zimmerman</dc:creator>
      <dc:date>2021-03-09T21:14:49Z</dc:date>
    </item>
    <item>
      <title>Re: Question about virtual licensing</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Question-about-virtual-licensing/m-p/112903#M21216</link>
      <description>&lt;P&gt;The answer is: it depends.&lt;BR /&gt;In some cases, you may want to combine using VSX, in other cases: not.&lt;BR /&gt;If you have gateways with different tolerances/requirements for downtime and such, you may want to keep those separate.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 09 Mar 2021 22:14:53 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Question-about-virtual-licensing/m-p/112903#M21216</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2021-03-09T22:14:53Z</dc:date>
    </item>
  </channel>
</rss>

