Try our new research platform with insights from 80,000+ expert users
it_user540339 - PeerSpot reviewer
Security Specialist with 1,001-5,000 employees
Vendor
Oct 31, 2016
It has improved the way we handle risky rules on firewalls.

What is most valuable?

Policy management.

How has it helped my organization?

It has improved the way we handle risky rules on firewalls.

Security Firewall Policy; Firewall Performance; Firewall Hardening.

What needs improvement?

The Tighten Permissive Rules Function could be better, we need more specific information about source, destination and service on the rule we will handle.

For how long have I used the solution?

About 1 year.

Buyer's Guide
AlgoSec
January 2026
Learn what your peers think about AlgoSec. Get advice and tips from experienced pros sharing their opinions. Updated: January 2026.
879,768 professionals have used our research since 2012.

What was my experience with deployment of the solution?

Nope.

What do I think about the stability of the solution?

Nope.

What do I think about the scalability of the solution?

Nope.

How are customer service and support?

Customer Service:

They have replied fast to all my concerns.

Technical Support:

Excellent.

Which solution did I use previously and why did I switch?

I used to use Firemon before but switched to AlgoSec because the AlgoSec product and User Interface are more friendly than Firemon.

What about the implementation team?

The AlgoSec vendor in Vietnam is Misoft, I rate them excellent in experience and support.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
it_user494103 - PeerSpot reviewer
Information Security Analyst, Team Lead Network Security Assesment at a financial services firm with 1,001-5,000 employees
Vendor
Oct 26, 2016
It has helped us manage PCIDSS compliance.

Valuable Features

  • Risk management for the rules
  • Policy optimization suggestions

AlgoSec allows me to understand the inside of the firewall and brings simplicity to very complex firewall setups.

Improvements to My Organization

It has helped us manage PCIDSS compliance and also improved the overall network security.

Room for Improvement

The product has several compliance checks built in for PCIDSS, ISO, SOX, etc., and also a baseline security policy. It would be nice to allow customers to build their own policy, based on the customer’s own customization and business needs.

Use of Solution

I have used it for four years.

Deployment Issues

The application is easy to deploy in an hour and can be done via a user guide.

Customer Service and Technical Support

Support needs are rare. I only require support around twice a year. Upgrades are easily done by the user but when support is required, it is great.

Initial Setup

Initial setup is easy because it is a virtual appliance with its own OS.

Implementation Team

I have expertise in implementation and prefer to do it myself rather than invoke the support contract. I believe it helps me stay knowledgeable and besides, AlgoSec implementation is a breeze.

Pricing, Setup Cost and Licensing

The license is perpetual but support is periodic.

Other Solutions Considered

I tried the ManageEngine firewall analyzer. AlgoSec has a superior firewall policy optimization algorithm.

Other Advice

It’s a good buy for simplifying large networks.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
it_user3396 - PeerSpot reviewer
it_user3396Team Lead at a healthcare company with 10,001+ employees
Top 5Real User

Cool review

Buyer's Guide
AlgoSec
January 2026
Learn what your peers think about AlgoSec. Get advice and tips from experienced pros sharing their opinions. Updated: January 2026.
879,768 professionals have used our research since 2012.
it_user456096 - PeerSpot reviewer
Network Engineer at a comms service provider with 1,001-5,000 employees
Vendor
Aug 31, 2016
Implementation of new rules without the need for manual configuration of rules on all firewalls in the traffic path has been good for us.

Valuable Features:

Firewall analyzer and traffic simulation based on configuration analyzer of all rules on the firewall. Implementation of new rules without the need for manual configuration of rules on all firewalls in the traffic path.

Improvements to My Organization:

It helped to improve our automation and simplified the configuration of new access rules.

Room for Improvement:

In our experience, AlgoSec need to improve the integration of firewall vendors, because at the moment they don't support all vendors that are out there. 

Algosec Firewall Analyzer has a feature called 'Implement on device' which automatically creates access rules based on your request and sends it to the appropriate device. At the moment, this feature can not be implemented on Fortigate firewalls or Juniper EX switches which act as a layer three device with ACL's etc. I mean they need to improve interoperability with more vendors in order to automate access rules modification on these unsupported yet equipment.

Use of Solution:

I've used this solution for approximately five months.

Deployment Issues:

According to my colleagues who implemented it, there were some problems during the implementation. They contacted their support team who provided us with good support and we were able to get it implemented.

Stability Issues:

We had no issues with the performance.

Scalability Issues:

It's been able to scale for our needs.

Initial Setup:

I wasn't involved in the original implementation.

Other Advice:

It's an amazing product for those admins who have huge variety of firewall vendors and would like to be able to automate the implementation of new firewall rules for access across the network.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
it_user495018 - PeerSpot reviewer
Sr. IT Security Engineer at a pharma/biotech company with 10,001+ employees
Vendor
Aug 31, 2016
We use it to clean up unused objects. The risk team uses it to validate existing traffic flow.

Valuable Features

  • Firewall rule monitoring
  • Consolidated report on unused objects and rules

Improvements to My Organization

We use this tool for rule monitoring and cleaning up the unused objects to improve performance. The risk team uses this tool to validate the existing traffic flow for their approval.

Room for Improvement

It is currently unable to export the report to a CSV file, and I look forward to seeing it in the next version/release.

Use of Solution

I have used it for more than four years.

Deployment Issues

Deployment was very easy; the vendor-provided documentation was good.

Customer Service and Technical Support

Technical support is 8/10.

Implementation Team

I was able to implement it on my own.

Other Advice

It's a very useful product and I highly recommend everyone having this product in place on their security infrastructure.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
it_user497694 - PeerSpot reviewer
Network Security Engineer at a aerospace/defense firm with 1,001-5,000 employees
Vendor
Aug 31, 2016
It provides policy optimization reports, is easy to install on your own, and runs smoothly.

Valuable Features

The reports for the policy optimization are the product’s most valuable feature.

Improvements to My Organization

It provides better performance on our firewalls.

Room for Improvement

  • Filtering in the reports
  • Adjusting parameters for reports
  • To be able to generate custom-made reports

For example, it would be nice if you could define a report to show the unused objects for a specific timeframe. Now, it’s for the whole log period. Or, another example would be: deny rules that have been adjusted in the last 90 days.


Use of Solution

I have used it for about two years.

Stability Issues

I have not encounter any deployment, stability or scalability issues. It runs very smoothly.

Customer Service and Technical Support

Technical support is very good, providing fast responses and good knowledge of their product.

Initial Setup

Initial setup is very straightforward and it is easy to implement.

Implementation Team

We did it in-house, as it’s easy to install on your own.

Other Advice

Just try it and you’ll see where the problems are in your firewall. You can easily request trial licenses.


Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
it_user326337 - PeerSpot reviewer
it_user326337Customer Success Manager at a tech services company with 51-200 employees
Real User

If the product allowed you to generate those reports, how do you expect it would improve your workflow?

it_user494187 - PeerSpot reviewer
Security and Network Architect at a tech services company with 10,001+ employees
Consultant
Aug 31, 2016
For FireFlow, workflow customization and active change are the best features. Interaction with a lot of vendors results in a lot of options and bugs.

What is most valuable?

With a network like ours - more than 100 routing points with around 6 VRF on each - traffic simulation query is one of the most valuable feature on AFA.

For FireFlow, workflow customization and active change are the best features.

In BusinessFlow, the ability to simulate documented flow against configuration by AFA is the best feature to limit differences between documentation and production.

How has it helped my organization?

This product allowed us to identify unused rules more easily and doing this simplifies policies in our firewall. We now have documentation of our application with objects sync with real configuration. Our approval in change management has been improve through FireFlow and errors have been reduced through change advised and active change. We also save time by identifying earlier than usual routing issues associated to a change request.

What needs improvement?

A lot of areas have room for improvement!! This product is still young and in constant development. Interaction with a lot of vendors generates a lot of firewall options (specifically, a timer on services, application control, and so on...). This interaction also generates a lot of bugs in the product. Every new version contains about 10 to 20 bugs for our environment. This is partially explained by the fact it has to understand all of the architecture and specificity associated with all of the supported vendors.

A few of the bugs are:

  • Services composed with something else other than TCP or UDP are not well-handled and not working in simulation queries. (For example, AH or ESP or EthernetOverIP.)
  • Traffic with same objects in source and destination are not working.
  • When NAS is used to store reports, we have had a lot of bugs associated with wrong URL encoding.
  • Role assignment with multiple LDAP issues.
  • Some file cleanup not working as expected.
  • Active change is available for only a few vendors.
  • BusinessFlow doesn't offer auditing regarding object management and with a lot of application and managers, it quickly becomes an issue with duplicated objects and so on.
  • There are also gaps in access right management.

For how long have I used the solution?

I have been using it nearly two years.

What do I think about the stability of the solution?

Every version came with its bug bundle... In two years, we opened 50 cases and about 40 of them escalated to development for resolution. This situation is also explained by complexity of our architecture.

What do I think about the scalability of the solution?

I have not encountered any scalability issues. Each version usually improves performance and the amount of required disk space.

How are customer service and technical support?

Technical support is 7/10; quick to give a new version solving the issue but long to identify the issue, even when it seems to be identified from the beginning.

For example, more than a month ago, we identified a wrong link associated to NAS configuration. We can clearly see that the wrong link was being generated, pointing from the NAS directly to the NAS repository, instead of a symlink. It took more than a month for support to accept this and to escalate the case to dev. After dev escalation, we are expecting a fix on Monday. So, it took four weeks to acknowledge the issue and two weeks to be fixed by development.

Which solution did I use previously and why did I switch?

We did not previously use a different solution.

How was the initial setup?

Initial setup is straightforward; some custom options can be tricky to set up, but will not be used by most customers.

What's my experience with pricing, setup cost, and licensing?

Be careful with VRFs. One router with two VRFs consumes two licenses. So a new VRF configured on all routers will double the number of licenses required on routing elements.

Which other solutions did I evaluate?

We benchmarked Tufin before choosing AlgoSec. We chose AlgoSec over Tufin for its capacity to be more customized and its support for MPLS and VRF.

What other advice do I have?

Offer me a job. ;) I will help you set it up.

More seriously, test it with caution through a POC to be sure that all your architecture specifics are addressed. If not all of them are addressed, ask for a commitment regarding support of missing features and ask for those commitments to be written down before ordering.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
PeerSpot user
Senior IT Security Consultant at a tech services company with 501-1,000 employees
Consultant
Aug 25, 2016
Valuable features include FireFlow, traffic simulation and the network map.

Valuable Features:

* Network map - to see how firewalls and routers are connected.

* Traffic simulation - to emulate traffic through the rule-base and see if you need to open additional ports/services.

* FireFlow - to order new firewall openings.

Improvements to My Organization:

* Less overhead on the network security department since the user can verify the rules themselves.

* Risk profiles helps find disallowed traffic.

* Policy cleanup feature is really good for removing unused rules, etc.

Room for Improvement:

* More unified UI

Use of Solution:

Since 2013

Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
PeerSpot user
PeerSpot user
Information Security Manager at a financial services firm with 10,001+ employees
Real User
Jun 16, 2016
You can observe risk trends, regulatory and baseline compliance, as well as live changes and change history.

What is most valuable?

AlgoSec AFA provides visibility and enhancement opportunities on the firewalls. You can observe risk trends, regulatory and baseline compliance, as well as live changes and change history.

How has it helped my organization?

AlgoSec improved our firewall visibility and related control points.

What needs improvement?

Needs continuous improvements in all areas since firewall vendors are improving their products and the IT security industry is definitely improving itself.

For how long have I used the solution?

3 years

What was my experience with deployment of the solution?

Deployment is easy, no issues at all.

What do I think about the scalability of the solution?

No issues so far.

How are customer service and technical support?

Customer Service:

8/10

Technical Support:

8/10

Which solution did I use previously and why did I switch?

No previous solution

How was the initial setup?

Initial setup and deployment was straightforward.

What about the implementation team?

We got help from a partner, 8/10

Which other solutions did I evaluate?

We evaluated two other vendors in addition to AlgoSec.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Buyer's Guide
Download our free AlgoSec Report and get advice and tips from experienced pros sharing their opinions.
Updated: January 2026
Buyer's Guide
Download our free AlgoSec Report and get advice and tips from experienced pros sharing their opinions.