Thanks, they are kind of putting everything into a "rush mode" which is kind of nice because we've needed upgrades for the longest time....however it's not so nice in the fact that I really don't know how much time I'd get to configure it before they wanted it in place. I suppose we can stick with the 5510 until I felt sufficiently comfortable to put the 240 into production. The main thing that had me worried was vpn configuration for remote users. I just recently finished the config on the asa so that all vpn users authenticate via domain credentials through LDAP and run all acl's through the asa.
I find things that say the SRX's worst feature is it's vpn interface or things like
http://www.evanhoffman.com/evan/2011/05 ... lient-vpn/ that worry me a bit.
Any thoughts on that? Also, how well do they play in a multi vendor environment(ie cisco and Hp)