I'm about to try a demo of smoothwall out at work as we are looking into VPN using IPSEC. Our old NAT router isn't really up to the job as it will only let one VPN tunnel through, and even that is a bit of a bodge as it doesn't seem to udnerstand ipsec properly.
With all security things, you'll always get some smartar5e telling you they know better and pointing out the ficticious 'massive holes' in your system - mainly to show how much tcpip theory they know or sell you flashy uberpricey kit. IMO you need a solution that matches what you ar doing - most manager types rant about wanting' the best firewall' TM without understanding what its for. They're usually the same ones that bitch when it kills their MS messenger feed. For most small offices that just do a bit of browsing and have a mail server (no web servers, VPN etc etc) a simple quality NAT router is perfectly adequate if backed up by sensible anti-virus software and sensible software patching.l.