We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
"Firepower has been used for quite a few enterprise clients. Most of our clients are Fortune 500 and Firepower is used to improve their end to end firewall functionality."
"Another benefit has been user integration. We try to integrate our policies so that we can create policies based on active users. We can create policies based on who is accessing a resource instead of just IP addresses and ports."
"I have experience with URL filtering, and it is very good for URL filtering. You can filter URLs based on the categories, and it does a good job. It can also do deep packet inspection."
"When it comes to the integration among Cisco tools, we find it easy. It's a very practical integration with other components as well."
"The most valuable features of this solution are advanced malware protection, IPS, and IDS."
"We have not had to deal with stability issues."
"It is one of the fastest solutions, if not the fastest, in the security technology space. This gives us peace of mind knowing that as soon as a new attack comes online that we will be protected in short order. From that perspective, no one really comes close now to Firepower, which is hugely valuable to us from an upcoming new attack prevention perspective."
"The dashboard is the most important thing. It provides good visibility and makes management easy. Firepower also provides us with good application visibility and control."
"Sangfor has the best capabilities for securing connections, securing web browsers, securing servers, and general threat protection."
"In four steps one can configure the entire firewall."
"In terms of the most valuable features, the IPS report is quick and updated. Performance is also valuable."
"It's a very simple to use product."
"While the features are not dissimilar to other brands, configuration is much more simple, which works out great for Indonesian people."
"We've found the technical support to be helpful."
"Sophos UTM is the simplest of these products to setup."
"This is a very stable product."
"Monitoring and reporting are areas that need improvement."
"With Sophos, we have not had any incidents this year. The security provided has been good. It has proven to be okay for our needs."
"The most valuable features of this solution are the firewall application and application control."
"The stability, overall, is excellent. I haven't had a problem in the last two years."
"Good basic firewall functions with advanced firewall scanning."
"I would recommend UTM over XG because it's easier to manage."
"The intelligence has room for improvement. There are some hackers that we haven't seen before and its ability to detect those types of attacks needs to be improved."
"The Firepower FTD code is missing some old ASA firewalls codes. It's a small thing. But Firepower software isn't missing things that are essential, anymore."
"The price and SD-WAN capabilities are the areas that need improvement."
"Cisco Firepower NGFW Firewall can be more secure."
"When you make any changes, irrespective of whether they are big or small, Firepower takes too much time. It is very time-consuming. Even for small changes, you have to wait for 60 seconds or maybe more, which is not good. Similarly, when you have many IPS rules and policies, it slows down, and there is an impact on its performance."
"On the VPN side, Firepower could be better. It needs more monitoring on VPNs. Right now, it's not that good. You can set up a VPN in Firepower, but you can't monitor it."
"The solution could offer better control that would allow the ability to restrictions certain features from a website."
"One of the few things that are brought up is that for the overall management, it would be great to have a cloud instance of that. And not only just a cloud instance, but one of the areas that we've looked at is using an HA type of cloud. To have the ability to have a device file within a cloud. If we had an issue with one, the other one would pick up automatically."
"Occasional issues with breaches which are dealt with expediently."
"I believe that IAM and NGFW need to merge into a single box, instead of there being two separate box solutions."
"They need to increase the number of ports in the firewall."
"The solution has too many bugs and these slow down the implementation."
"The web interface needs to be improved, making it more user-friendly."
"Sophos should be more user-friendly, have more dashboards, and an easier implementation."
"The logs are not clear, which means that you need an additional piece of software in order to read them clearly."
"Updates come out agonizingly slowly, a trickle."
"It would be nice if it had basic features, such as DLP (Data Loss Prevention)."
"Sophos should improve its ability to check something like bandwidth consumption for users or something more real-time."
"The classification segregation of applications lacks sufficient definition."
"The integration capabilities could be better."
"We need to speed up the support."
"Cisco, as we all know, is expensive, but for the money you are paying, you know that you are also getting top-notch documentation as well as support if needed."
"When we purchased the firewall, we had to take the security license for IPS, malware protection, and VPN. If we are using high availability, we have to take a license for that. We also have to pay for hardware support and technical support. Its licensing is on a yearly basis."
"I am happy with the product in general, including the pricing."
"This product requires licenses for advanced features including Snort, IPS, and malware detection."
"The price for Firepower is more expensive than FortiGate. The licensing is very complex. We usually ask for help from Solutel because of its complexity. I have a Cisco account where I can download the VPN client, then connect. Instead, I create an issue with Solutel, then Solutel solves the case."
"This product is expensive."
"We normally license on a yearly basis. The hardware procurement cost should be considered. If you're virtual maybe that cost is eradicated and just the licensing cost is applied. If you have hardware the cost must be covered by you. All the shipping charges will be paid by you also. I don't thing there are any other hidden charges though."
"For me, personally, as an individual, Cisco Firepower NGFW Firewall is expensive."
"Sangfor is cheaper than competing vendors."
"The price is unmatcheable."
"When it comes to the price of firewall solutions, Sangfor NGAF takes the cake."
"It is the cheapest product available. It's good if you have a low budget."
"This product is free for home users. The more expensive products have better performance."
"We pay for the service on a yearly basis. The last time we paid was in June, for a year. At the time, it was about $20,000."
"It's reasonably priced."
"Our licensing fees are paid on a monthly basis."
"It is necessary to pay for a licence to use the solution, but it is not very expensive."
"I think the pricing of Sophos is very fair."
"The solution is very low cost compared to competitors. You have a good firewall, a lot of functions for less than the price of some omni firewall competitors."
Cisco NGFW firewalls deliver advanced threat defense capabilities to meet diverse needs, from
small/branch offices to high performance data centers and service providers. Available in a wide
range of models, Cisco NGFW can be deployed as a physical or virtual appliance. Advanced threat
defense capabilities include Next-generation IPS (NGIPS), Security Intelligence (SI), Advanced
Malware Protection (AMP), URL filtering, Application Visibility and Control (AVC), and flexible VPN
features. Inspect encrypted traffic and enjoy automated risk ranking and impact flags to reduce event
volume so you can quickly prioritize threats. Cisco NGFW firewalls are also available with clustering
for increased performance, high availability configurations, and more.
Cisco Firepower NGFWv is the virtualized version of Cisco's Firepower NGFW firewall. Widely
deployed in leading private and public clouds, Cisco NGFWv automatically scales up/down to meet
the needs of dynamic cloud environments and high availability provides resilience. Also, Cisco NGFWv
can deliver micro-segmentation to protect east-west network traffic.
Cisco firewalls provide consistent security policies, enforcement, and protection across all your
environments. Unified management for Cisco ASA and FTD/NGFW physical and virtual firewalls is
delivered by Cisco Defense Orchestrator (CDO), with cloud logging also available. And with Cisco
SecureX included with every Cisco firewall, you gain a cloud-native platform experience that enables
greater simplicity, visibility, and efficiency.
Learn more about Cisco’s firewall solutions, including virtual appliances for public and private cloud.
Sangfor Next Generation Firewall (also known as NGAF) is a converged security solution providing protection against advanced threat, malware, viruses, ransomware and web-based attacks using integrated security features like firewall, IPS, anti-virus, anti-malware, APT, URL filtering, Cloud Sandbox, and WAF. As the world's first AI-enabled and fully integrated Next Generation Firewall & Web Application Firewall (WAF), NGAF offering the security visibility, real-time detection and response, simplified operation and maintenance and high-performance application layer security needed to operate an enterprise network in total security. Tested and proven to provide cutting-edge network security by ICSA Labs and endorsed by Gartner Inc., NGAF harnesses the power of Sangfor’s Neural-X threat intelligence and analytics platform and Engine Zero’s innovative malware detection to provide next-generation protection for today’s enterprise.
Sangfor NGAF is ranked 23rd in Firewalls with 6 reviews while Sophos UTM is ranked 2nd in Unified Threat Management (UTM) with 20 reviews. Sangfor NGAF is rated 8.2, while Sophos UTM is rated 8.4. The top reviewer of Sangfor NGAF writes "Great pricing, reliable stability, and easy to deploy". On the other hand, the top reviewer of Sophos UTM writes "Great web and email filtering with reasonable pricing". Sangfor NGAF is most compared with Fortinet FortiGate, Sophos XG, Fortinet FortiOS, pfSense and SonicWall NSa, whereas Sophos UTM is most compared with Fortinet FortiGate, pfSense, Sophos XG, Untangle NG Firewall and Palo Alto Networks NG Firewalls.
We monitor all Firewalls reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.