I have few questions regarding Juniper SSG-320M.
We Have 2 Juniper SSG-320M working in Active-Passive mode and its ability to handle 64K concurrent sessions are sometimes not enough.
So I thought to change the configuration to Active-Active.
I do not understand the Con’s from their website since I do not have full knowledge in Firewalling. Your help is appreciated. The con’s are:
Complex to design – Why?
Data path forwarding may affect performance – Why?
No dynamic route synchronization – that I understand :-)
Can I add a third non Juniper brand FW in the current cluster. for example adding Fortinet to the Juniper Cluster?