Hi,
We're in the process migrating from Juniper SRX to Check Point FWs (we have a combination of both currently). For the policy conversion we're using SmartMove with the help of Check Point Profession Services.
Once the policy is converted, we want to change the policy again to a more 'traditional' CP type of policy my moving away from the zone-based policy the SRX uses.
Has anyone experience of doing this, and if so, can you share some tips on how you did it?
The reason we want to move away from zone-based polices is because of the sheer amount of policy you need to write in. For example, if you have a host in Zone 1 and it needs access to hosts in Zones 2, 3, 4, 5 and 6, you need to write in 5 times the amount of policy as opposed to CP.
In addition, if we stick with the zone-based model, we'll have multiple different types of CP policy on our Mgmt platform and we want standardisation.
Any help you can off is appreciated.
Thanks
Alex