We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
"You do not have to do everything through a command line which makes it a lot easier to apply rules."
"When it comes to the integration among Cisco tools, we find it easy. It's a very practical integration with other components as well."
"Firepower has been used for quite a few enterprise clients. Most of our clients are Fortune 500 and Firepower is used to improve their end to end firewall functionality."
"The most valuable feature that Cisco Firepower NGFW provides for us is the Intrusion policy."
"The most valuable features of this solution are the integrations and IPS throughput."
"The dashboard is the most important thing. It provides good visibility and makes management easy. Firepower also provides us with good application visibility and control."
"A good intrusion prevention system and filtering."
"The Adversity Malware Protection (AMP) feature is the most valuable. It is also very easy to use. Every technical user can operate this solution without any difficulty. The dashboard of Cisco Firepower has every tool that a security operator needs. You can find every resource that you need to operate through this dashboard."
"The technical is excellent."
"The product is easy to use."
"The hardware is pretty stable. It's also a very good product performance-wise. Initially, it wasn't mature like a firewall and there were other leaders, but now they have included almost all the features of next-generation security. Basically, it's a good product to work with."
"The solution is very user-friendly and easy to deal with."
"One of the main features is that the hardware is extremely reliable."
"What I have used the most and received the most benefit from is the IPsec technology."
"The capabilities for scalability with this product are huge"
"Cisco is head-and-shoulders above all of the competition when it comes to technical support."
"The most valuable features are the centralized management of the firewalls."
"The solution is very stable."
"Fortinet has the option of synchronization in the cloud, so you can manage everything if you have a cloud account."
"For the whole security fabric from Fortinet, with a simple click you can see if some workstations or services are affected by an attack. You can really easily quarantine it, check the solution, and fix it."
"The product is a combination of management and monitoring from the same interface."
"It would normally take us a handful of days to install one FortiGate instance on one site. But with this technology, zero-touch deployment, we need just one hour or maybe as little as 30 minutes to install one site. It is much more efficient."
"There is something called zero-touch provisioning, where you can add a new device without any configuration. You just add it to FortiManager and then forget about it."
"Fortinet FortiManager allows a full view of all the devices on the network from one location."
"FirePOWER does a good job when it comes to providing us with visibility into threats, but I would like to see a more proactive stance to it."
"The initial setup can be a bit complex for those unfamiliar with the solution."
"The central management tool is not comfortable to use. You need to have a specific skill set. This is an important improvement for management because I would like to log into Firepower, see the dashboard, and generate a real-time report, then I question my team."
"The Firepower FTD code is missing some old ASA firewalls codes. It's a small thing. But Firepower software isn't missing things that are essential, anymore."
"It would be great if some of the load times were faster."
"Its interface is sometimes is a little bit slow, and it can be improved. When you need to put your appliance in failover mode, it is a little difficult to do it remotely because you need to turn off the appliance in Cisco mode. In terms of new features, it would be good to have AnyConnect VPN with Firepower. I am not sure if it is available at the moment."
"The initial setup could be simplified, as it can be complex for new users."
"The configuration in Firepower Management Center is very slow. Deployment takes two to three minutes. You spend a lot of time on modifications. Whereas, in FortiGate, you press a button, and it takes one second."
"With respect to user-friendliness, it is a command-line interface and those with such experience will get along just fine, whereas others may struggle."
"The user interface needs to be improved."
"The pricing is the only con for this product."
"There could be a bit more functions on offer that could make it easier to use."
"Signatures and other critical definitions need to be updated more frequently."
"I would love it if it has a link-by-link feature, integration with Unified Threat Management (UTM), and load balancers. They haven't got any link-by-link feature right now, which can be a very attractive option. This link-by-link feature can also be made available for Cisco's UTM firewalls. The link-by-link feature is available in some of the other firewalls. Currently, integration with UTM is missing. Cisco IOS Security also doesn't have the load balancers and a few things that need to be done to get a good UTM firewall. Normally, other firewalls have UTM. As a next-generation firewall, it's good, but as a UTM, it has to do some work."
"I think they should bring back remote VPN for users."
"The configuration should be easier in the solution."
"Performance issues should be improved. We have problems when we have more mobile connections than local devices. Most of us have two to three devices."
"The solution could improve by having better integration with other solutions other than Fortinet."
"Regional support in African countries needs to be improved."
"The GUI could be updated. It's not as good as it could be and is something the solution should improve in an upcoming release."
"The FortiManager is more complex and they can make it easier to use the VPN manager. All other features are okay. However, the VPN manager is more difficult and can cause some issues in the environment, if you do not have the experience to use it."
"Can be difficult to configure."
"We have experienced a series of minor bugs that necessitated contacted technical support on several occasions."
"Fortinet is releasing quite a lot of new versions and I would say that most of the versions are not well tested before they're pushed out. Even the new versions sometimes are a bit buggy before it's all correct."
"I like the Smart Licensing, because it is more dynamic and easier to keep track of where you are at. If we have a high availability firewall pair and they are deployed in active/standby rather than active/active, I would expect that we would only pay for one set of licenses because you are using only one firewall at any one time. The other is there just for resiliency. The licensing, from a Firepower perspective, still requires you to have two licenses, even if the firewalls are in active/standby, which means that you pay for the two licenses, even though you might only be using one firewall any one time. This is probably not the best way to do it and doesn't represent the best value for money. This could be looked at to see if it could be done in a fairer way."
"I am happy with the product in general, including the pricing."
"The price is comparable."
"Cisco is not for a small mom-and-pop shop because of the cost, but if you're in a regulated industry where a breach could cost you a million dollars, it's a bargain."
"When we purchased the firewall, we had to take the security license for IPS, malware protection, and VPN. If we are using high availability, we have to take a license for that. We also have to pay for hardware support and technical support. Its licensing is on a yearly basis."
"Cisco, as we all know, is expensive, but for the money you are paying, you know that you are also getting top-notch documentation as well as support if needed."
"Its pricing is good and competitive. There is a maintenance cost. It includes SecureX that makes it cost-effective as compared to the other solutions where you have to pay for XDR and SOAR capabilities."
"The solution was chosen because of its price compared to other similar solutions."
"It is an expensive solution."
"The pricing is okay. It is competitive. It costs more when you need get more features."
"Price is certainly something that the IOS technology has fallen behind the competition on."
"Palo Alto networks are more expensive than this solution and this is why you will see more products like this one in Mexico."
"The price of the solution should be cheaper, and the license is purchase annually."
"It is necessary to pay for a license in order to use the solution. It is on a yearly basis and the price is high."
"In comparison with other products, the price of FortiManager is reasonable."
"The license model they use depends on the size and is not limited to the users."
"Fortinet is a high-end product and the cost is high. They should consider reducing the price, especially for existing customers."
"The licensing costs depend on how many devices you want to use."
"Fortinet FortiManager is not expensive at all if you compare it with other vendors like Check Point and Cisco. Fortinet products are the least expensive on the market in the category of firewalls."
Cisco NGFW firewalls deliver advanced threat defense capabilities to meet diverse needs, from
small/branch offices to high performance data centers and service providers. Available in a wide
range of models, Cisco NGFW can be deployed as a physical or virtual appliance. Advanced threat
defense capabilities include Next-generation IPS (NGIPS), Security Intelligence (SI), Advanced
Malware Protection (AMP), URL filtering, Application Visibility and Control (AVC), and flexible VPN
features. Inspect encrypted traffic and enjoy automated risk ranking and impact flags to reduce event
volume so you can quickly prioritize threats. Cisco NGFW firewalls are also available with clustering
for increased performance, high availability configurations, and more.
Cisco Firepower NGFWv is the virtualized version of Cisco's Firepower NGFW firewall. Widely
deployed in leading private and public clouds, Cisco NGFWv automatically scales up/down to meet
the needs of dynamic cloud environments and high availability provides resilience. Also, Cisco NGFWv
can deliver micro-segmentation to protect east-west network traffic.
Cisco firewalls provide consistent security policies, enforcement, and protection across all your
environments. Unified management for Cisco ASA and FTD/NGFW physical and virtual firewalls is
delivered by Cisco Defense Orchestrator (CDO), with cloud logging also available. And with Cisco
SecureX included with every Cisco firewall, you gain a cloud-native platform experience that enables
greater simplicity, visibility, and efficiency.
Learn more about Cisco’s firewall solutions, including virtual appliances for public and private cloud.
Networks are constantly evolving due to threats, organizational growth, or new regulatory/business requirements. Traditional management products focus on mitigating company-wide threats through firewall policies, firmware updates, and keeping content security current. FortiManager offers the features to contain threats as well as providing flexibility to evolve along with your ever-changing network.
Cisco IOS Security is ranked 19th in Firewalls with 10 reviews while Fortinet FortiManager is ranked 2nd in Network Management Applications with 15 reviews. Cisco IOS Security is rated 7.8, while Fortinet FortiManager is rated 8.0. The top reviewer of Cisco IOS Security writes "Prevent unauthorized use of network resources and integrate branch offices with reliability". On the other hand, the top reviewer of Fortinet FortiManager writes "Powerful management for deploying configuration to multiple environments with a single click". Cisco IOS Security is most compared with Zyxel Unified Security Gateway, Cisco ASA Firewall, Fortinet FortiGate, pfSense and Juniper SRX, whereas Fortinet FortiManager is most compared with Fortinet FortiGate Cloud, Fortinet FortiOS, SolarWinds Network Configuration Manager, Cisco DNA Center and Zabbix.
We monitor all Firewalls reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.