Why a Dedicated Device?
Lately it seems like everything but the kitchen sink is getting QoS capabilities. Firewalls, VPNs, routers, switches, and even some consumer and small-office products, such as the FortiNet FortiGate (see "FortiGate Fortifies Your Traffic Security") claim to have some form of QoS. However, sometimes the "jack-of-all-trades, master-of-none" syndrome applies--if you plan to use an add-on QoS capability, here are a few things to check:
|
Glossary
CBQA: technique that combines classification and queuing of data packets based on rules defined by an administrator. Packets are divided into a hierarchy of classes based on any combination of IP address, protocol and application type. Each class is assigned a set of bandwidth priorities. Find more on queuing types here.
|
Does the device offer Layer 7 inspection?
Can you set policies per connection and per protocol?
Is reporting available for the most active protocols and users?
Also, remember that performing traffic shaping costs CPU time, and your firewall may be overloaded before performing QoS.
Dedicated traffic shapers, on the other hand, move the overhead of QoS to a separate box and can offer granular control of bandwidth use. The QoS devices we tested support a wide range of speeds, and dedicated systems also have a higher limit on the number of policies you can set. This lets your traffic shaper grow with your WAN. Of course, there are benefits to integrated solutions, aside from price; for example, you're using a single management interface and want to have one less piece of infrastructure to take care of.
In the final tally, Packeteer and Allot ended up in first and second place, respectively, with the PacketShaper 4500 earning our Editor's Choice award. Sitara's solution also performed well but had a confusing interface. Lightspeed's Total Traffic Control has decent reporting capabilities, but its bandwidth control and management interface didn't measure up to those of its rivals. Radware's product is an add-on to its application switch and isn't as feature-rich as the other products we reviewed. However, if you own Radware switches, you can't beat the price.