Try our new research platform with insights from 80,000+ expert users
Chief Technology Officer at Future Point Technologies
Reseller
Top 5
Good performance, documentation, and support but is lacking a few features
Pros and Cons
  • "The hardware is pretty stable. It's also a very good product performance-wise. Initially, it wasn't mature like a firewall and there were other leaders, but now they have included almost all the features of next-generation security. Basically, it's a good product to work with."
  • "I would love it if it has a link-by-link feature, integration with Unified Threat Management (UTM), and load balancers. They haven't got any link-by-link feature right now, which can be a very attractive option. This link-by-link feature can also be made available for Cisco's UTM firewalls. The link-by-link feature is available in some of the other firewalls. Currently, integration with UTM is missing. Cisco IOS Security also doesn't have the load balancers and a few things that need to be done to get a good UTM firewall. Normally, other firewalls have UTM. As a next-generation firewall, it's good, but as a UTM, it has to do some work."

What is our primary use case?

We basically use it for security. It can be used as the internet as well as the data center security firewall.

What is most valuable?

The hardware is pretty stable. It's also a very good product performance-wise. 

Initially, it wasn't mature like a firewall and there were other leaders, but now they have included almost all the features of next-generation security. Basically, it's a good product to work with. 

What needs improvement?

I would love it if it has a link-by-link feature, integration with Unified Threat Management (UTM), and load balancers.

They haven't got any link-by-link feature right now, which can be a very attractive option. This link-by-link feature can also be made available for Cisco's UTM firewalls. The link-by-link feature is available in some of the other firewalls. 

Currently, integration with UTM is missing. Cisco IOS Security also doesn't have the load balancers and a few things that need to be done to get a good UTM firewall. Normally, other firewalls have UTM. As a next-generation firewall, it's good, but as a UTM, it has to do some work.

For how long have I used the solution?

We have been working with this solution for around 15 years now.

Buyer's Guide
Cisco IOS Security
June 2025
Learn what your peers think about Cisco IOS Security. Get advice and tips from experienced pros sharing their opinions. Updated: June 2025.
856,873 professionals have used our research since 2012.

What do I think about the stability of the solution?

Cisco IOS Security is very stable.

What do I think about the scalability of the solution?

It's pretty scalable. The hardware is good, and it's scalable.

How are customer service and support?

The main reason for going with Cisco is their support. They have very skilled people and a very good support structure as compared to many other companies. They invest heavily in support maintenance. 

We are pretty comfortable with Cisco technical support, but with the new acquisitions, they also need to ramp up their support. For the older Cisco IOS and other stuff, they have very mature teams, but with the new acquisitions, sometimes it takes time to do the transition up to that level. For example, when Cisco acquired Sourcefire for the firewall, it took some time for Sourcefire to act like Cisco's other products. So, support is good, but still, there is a learning curve involved with new acquisitions and their support.

How was the initial setup?

The initial setup was complex when we compare it with some other vendors.

The setup is easy if you have good knowledge. As compared to the earlier types, it is very easy now, and the major stuff is graphical. It's pretty easy, and we don't need a lot of people, at least one to two people for backup are good enough to manage the firewalls.

What's my experience with pricing, setup cost, and licensing?

Cisco IOS Security is for medium and large enterprises. When we talk about the price as well, it's more suitable for medium and large enterprises, but recently they included a few good SMB options. They have introduced a cheaper version of it in the last year with SMB option, which can be looked into for small enterprises, but it's more suited towards the large enterprises and medium enterprises.

Which other solutions did I evaluate?

We prefer selling Cisco firewalls. We also sell Fortinet. Because Cisco's presence in our country is very good as compared to Fortinet and Palo Alto, the local customers seem comfortable with Cisco.

When we talk about Cisco, definitely the hardware is more reliable and scalable as compared to others. The support is also pretty good. These are the two good things. Definitely, Cisco Firewall is all around pretty good as compared to Fortinet.

What other advice do I have?

We work with Cisco, and we top-rate Cisco firewalls to be sold and deployed. This is because they have good trading and expertise available. Cisco IOS Security is pretty reliable, and it also has really good documentation.

It sometimes requires a slightly higher technical expertise to implement all the features as compared to other firewalls. Therefore, users definitely have to be trained first to get proper knowledge. Definitely, IOS security is well-documented, and it's pretty reliable. I'd advise just to make sure that they have adequate knowledge. 

The learning curve is slightly longer because it's a slightly complex product as compared to Fortinet, but feature-wise, it's very good.

I would rate Cisco IOS Security a seven out of ten. It is a good product with scope for features such as link-by-link, integration with UTM, and load balancers.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
PeerSpot user
SeniorEn2e68 - PeerSpot reviewer
Senior Engineer Data Center at a comms service provider with 1,001-5,000 employees
Real User
A straightforward initial setup with good technical support
Pros and Cons
  • "Technical support for this solution is very good."
  • "In the next release of this solution, we would like to see support for the 100BT and 7000 models."

How has it helped my organization?

This has improved the way our organization operates very well.

What is most valuable?

The most valuable feature is the support that we get.

What needs improvement?

In the next release of this solution, we would like to see support for the 100BT and 7000 models.

We have experienced bugs in the solution.

What do I think about the stability of the solution?

This solution is stable.

What do I think about the scalability of the solution?

I would rate the scalability of this solution at about eighty percent.

How are customer service and technical support?

Technical support for this solution is very good.

How was the initial setup?

The initial setup of this solution is straightforward.

What about the implementation team?

We deployed this solution ourselves.

What was our ROI?

There is a return on investment with this solution. 

What's my experience with pricing, setup cost, and licensing?

The licenses for this solution are expensive.

What other advice do I have?

This is a good solution, and one that I recommend, but sometimes we have bugs.

I would rate this solution a nine out of ten.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Buyer's Guide
Cisco IOS Security
June 2025
Learn what your peers think about Cisco IOS Security. Get advice and tips from experienced pros sharing their opinions. Updated: June 2025.
856,873 professionals have used our research since 2012.
Director Network Engineer at Therap Services
Real User
Offers good security and is easy to use
Pros and Cons
  • "The stability of this solution is excellent."

    What is our primary use case?

    Our primary use case for this solution is internet security at the edge.

    How has it helped my organization?

    Cisco IOS Security gives us a level of trust at the edge as far as being the first line of defense for anything that's trying to get into our network.

    What is most valuable?

    The feature I find most valuable is that the solution doesn't really change from year to year. The basics are there and I have so much experience with it that it's easy to use. I also like the security this solution offers.

    What needs improvement?

    External threats are changing every day, so there are new features coming in. We're more into the command line interface rather.

    For how long have I used the solution?

    Offers good security and is easy to use

    What do I think about the stability of the solution?

    The stability of this solution is excellent. 

    What do I think about the scalability of the solution?

    We are very satisfied with the scalability of this solution.

    How are customer service and technical support?

    The technical support is excellent. We've contacted the tech team a few times and the turnaround time was always almost immediately.

    Which solution did I use previously and why did I switch?

    We've always been using this solution and we haven't seen a need to change from it so we haven't looked at other vendors in quite a while because we are totally satisfied with what we have.

    How was the initial setup?

    The initial setup was straightforward and we did the deployment ourselves. We could go on the internet for any reference that we needed.

    What's my experience with pricing, setup cost, and licensing?

    We have to renew our license every three years.

    What other advice do I have?

    My rating for this solution is a ten out of ten because it does everything I need and it is easy enough to use. My advice to others is to definitely have it on their list of vendors to take a look at. I really recommend this solution.

    Disclosure: My company does not have a business relationship with this vendor other than being a customer.
    PeerSpot user
    Senior Pre Sales Engineer at IKUSI
    MSP
    Gives us better efficiency and is a secure option for platforms and gateways
    Pros and Cons
    • "Cisco IOS allows us to keep the same security features as our principal offices."
    • "I think setup could be one area for improvement, because sometimes we don't have people inside so we have to move to the place."

    What is our primary use case?

    We use this solution to connect branch offices and keep the security on each one.

    How has it helped my organization?

    Cisco IOS allows us to keep the same security features as our principal offices.

    What is most valuable?

    We can access control lists and VPN tunneling.

    It gives us better efficiency.

    What needs improvement?

    I think setup could be one area for improvement.

    I would also like to see them add integration with cloud solutions like Umbrella, as well as some monitoring improvements. This would let us connect a new platform and cloud solution for a site.

    What do I think about the stability of the solution?

    Cisco's high stability is a well known feature.

    What do I think about the scalability of the solution?

    It is scalable. We can go to another platform and keep the same functionality.

    How are customer service and technical support?

    I think we have great support from Cisco for this. I haven't used it personally, but I have heard good things.

    Which solution did I use previously and why did I switch?

    I think we used Firepower. We work specifically with Cisco.

    What about the implementation team?

    I think the initial setup was simple. We have a lot of documentation and a guide that we can follow.

    What was our ROI?

    Thinking about the ease of managing these platforms and the technical support that we have, we can avoid extra costs and investments. We've saved time allowing our staff to work on other things that have saved money overall.

    What other advice do I have?

    My advice is that this is a very secure option for platforms and gateways using the Cisco IOS security feature.

    I would rate Cisco IOS as ten out of ten.

    Disclosure: My company has a business relationship with this vendor other than being a customer: Partner.
    PeerSpot user
    Network Engineer at PART
    Real User
    Has good routing features and is easy to use
    Pros and Cons
    • "I've found their network routing to be very good."
    • "I wish it would be more like the next generation firewall technology. There should be more selection between the application and filtering."

    What is our primary use case?

    We use Cisco IOS for security prevention. It enables us to check the network.

    How has it helped my organization?

    I didn't think that they would put servers in the DMZ. It also protects us from hackers; we haven't had any issues with them.

    What is most valuable?

    I've found their network routing to be very good.

    It is also stable, has good scalability and is easy to use. 

    What needs improvement?

    I wish it would be more like the next generation firewall technology. There should be more selection between the application and filtering.

    I would appreciate updates to reporting, in terms of data entry.

    For how long have I used the solution?

    We have been using Cisco IOS for more than eight years.

    What do I think about the stability of the solution?

    We don't have any issues with stability. Cisco is always stable.

    What do I think about the scalability of the solution?

    Scalability is easy.

    How are customer service and technical support?

    We have a contract with the representative of DEO support, not just Cisco. So we have local support. If we have any issue, they respond to us directly by phone.

    How was the initial setup?

    The initial setup was easy. There are step-by-step instructions, like many of their other products.

    What was our ROI?

    The solution is definitely valuable for us.

    What's my experience with pricing, setup cost, and licensing?

    The licensing is on a subscription basis, and it is fairly costly. I would prefer a one-time payment.

    What other advice do I have?

    My advice is to take this firewall. It is really good. I would rate Cisco IOS as eight out of ten.

    The next-generation firewalls, like UTM, have paper-thin single boxes. They should follow the same projects, like the next-generation firewall. They have everything like 40GBs in a single box, along with filtering applications, like VPN and SSN. They also have reporting features.

    Disclosure: My company does not have a business relationship with this vendor other than being a customer.
    PeerSpot user
    it_user783219 - PeerSpot reviewer
    Product Manager - Wireless / IT Support Manager at a tech services company with 51-200 employees
    Real User
    Straightforward initial setup and good scalability
    Pros and Cons
    • "You can scale it when you need to."
    • "If they could increase the performance a little better because the device sometimes gets slow."

    What is our primary use case?

    Since we do system integration, we have a lot of clients we deploy. There is not really a single case to point to because we have multiple clients. It depends and can vary from customer to customer.

    What is most valuable?

    Defending the business processes.

    What needs improvement?

    If they could increase the performance a little better because the device sometimes gets slow. If they could increase the performance it would be great.

    For how long have I used the solution?

    I've been using this solution for between seven and eight years.

    What do I think about the stability of the solution?

    The solution's stability is quite good. We have about six hundred users.

    What do I think about the scalability of the solution?

    The scalability is quite good. You can scale it when you need to. As you go, you can scale it. It's quite scalable. It's quite good.

    How are customer service and technical support?

    I haven't used technical support yet.

    Which solution did I use previously and why did I switch?

    We have been using this solution for six or seven years; we didn't use another solution before.

    How was the initial setup?

    The initial setup was very straightforward. It only took a couple of hours, it doesn't take long.

    What other advice do I have?

    In terms of advice, I would suggest others should use it. It is quite a good product, it is one of the market leaders. I believe it could be as good as other solutions. There are two things you require: one is support and the other one is credibility. Both are there with this product.

    I would rate this solution eight out of ten.

    Disclosure: My company does not have a business relationship with this vendor other than being a customer.
    PeerSpot user
    PeerSpot user
    Network Engineer at Banque des Mascareignes
    Real User
    Scalability suits all enterprise needs, but it could use a better interface
    Pros and Cons
    • "The VPN is the most valuable feature."
    • "The routers, don't have like long-term tendency features, or higher availability features available for the IOS. It could also use a better user interface."

    What is most valuable?

    The VPN is the most valuable feature. 

    What needs improvement?

    With Cisco IOS, especially the routers, don't have like long-term tendency features, or high availability features available for the IOS. Also, it could use a better user interface.

    For how long have I used the solution?

    I've been using the solution for 8 years.

    What do I think about the stability of the solution?

    The solution is extremely stable. It's one of the best. It's a stable solution.

    What do I think about the scalability of the solution?

    In terms of scalability, it definitely suits all enterprise needs. The product is all we need for today's enterprise, for the client. For me, in terms of scalability, Cisco has the full package.

    How are customer service and technical support?

    Technical support is very good.

    Which solution did I use previously and why did I switch?

    I have used FortiGate and Palo Alto.

    How was the initial setup?

    In terms of initial setup, it depends on the one doing it, but I never had any difficulties or struggled to integrate. For me, Cisco is always easy to set up. It's straightforward. Deployment is pretty fast, but sometimes it takes time to implement and to put into production. Deploying, confirmation, and then setting up the devices is straightforward. The most important part is migrating to production. This is sometimes the most important. Again, that depends on the criticality of the environment. It can be done in hours or sometimes weeks. 

    Under my supervision, for at least a hundred parts, one other person and I are needed for deployment. That's it. Two people.

    What about the implementation team?

    I implemented the solution myself. I am an integrator.

    What's my experience with pricing, setup cost, and licensing?

    The pricing is very expensive. Normally I do a yearly contract; I don't know the exact pricing, but it's around $75,000 USD per year. That's the standard licensing.

    What other advice do I have?

    Cisco is one of the greatest. The Cisco stack is the best. If you don't know it, don't go for the solution because it gets very complex. If you are new to the security, don't go for Cisco. But if you are experienced and you know how to do it, it's one of the greatest solutions.

    I would rate this solution 7 out of 10. The solution is always stable, but there are many security features that Cisco is behind on today. 

    Disclosure: My company does not have a business relationship with this vendor other than being a customer.
    PeerSpot user
    reviewer1074924 - PeerSpot reviewer
    Networks Lead Engineer at a mining and metals company with 1,001-5,000 employees
    Real User
    Increased endpoint security but is overall a very complicated product
    Pros and Cons
    • "Previously, anyone in the organization would see any data point in the wall. They could just go and connect their machine with that data point and could access the network. But now, even if someone came and tried that, they will not be given access."
    • "We have a very bad experience on the support. They take too much time requesting logs, and they are not coming directly online to resolve the issues."

    What is our primary use case?

    We use it for endpoint security, to control access to our edge level. Basically, Cisco IOS checks the identity of each endpoint (printers, etc.). There's a specific group allowing the printer to immediately connect to the network. Also, if there is a laptop, for example, then the IOS will tell you, okay this is a laptop, please add the user name and password to access the network. Once it gets authenticated with IOS, they will still do something like posturing, checking the compliance list. For example, if a laptop doesn't have an updated antivirus or updated patches - if it's non-compliant with any one of those things, the system will reject it and isolate it in a special network, so it cannot access our network. 

    How has it helped my organization?

    Previously, anyone in the organization would see any data point in the wall. They could just go and connect their machine with that data point and could access the network. But now, even if someone came and tried that, they will not be given access. Because Cisco IOS will ask for the identity. So, you will now need to give your identity. If you are not part of the organization, you will not be given access.

    What needs improvement?

    I think it's a complicated product. It is very complicated, especially in the design. If in some way you mess up the logic and design, you can really mess up and you will hate your life. The dashboard is actually very complicated. There's a lot of options. They don't need to do this. They need to make it more simple. Going to the direct point, showing what to do, where to configure, how to make the policy. They need to simplify the dashboard management more. Also, they need to improve the dashboard statistics. We need to see the statistics in a more organized way and clear. Reporting features, I think are also missing. It should be there.

    Maybe they need to add in posturing. Cisco is able to check if a device is updated or not. Taking action to isolate it outside the network, and then requesting automatically for the updates to that system would be helpful. It's something in automation they can improve.

    For how long have I used the solution?

    I have been using the solution for 1 year.

    What do I think about the stability of the solution?

    Initially, we faced some stability problems with the wifi systems. And sometimes it authenticates, sometimes it doesn't. But, overall, it's 90% stable. It's not causing many problems, because, no one is touching that. No one is touching that box.

    How are customer service and technical support?

    Their support was very bad. We have a very bad experience on the support. They take too much time requesting logs, and they are not coming directly online to resolve the issues. They keep asking about a lot of things. And they know that we are not expert in the system. So, we are wasting our time. And it takes time to respond. Sometimes one single issue will stay on the stack for three weeks, just to resolve it. The last ticket for me reached six weeks, not three weeks even. They are not like that in all products. Just this product.

    How was the initial setup?

    The initial setup was very complicated. For the initial setup, you need to configure the TAC servers and assigning the password, user name and the group for authenticating, etc. The deployment took more than three months.

    What about the implementation team?

    We used a vendor. We are not doing anything ourselves except for the basic things. We are using the vendors to do this. Not everything is handled by vendors; only, again, for the complicated products. We try to approach the integrators to do it.

    Which other solutions did I evaluate?

    I did not evaluate other options. I was thinking maybe Aruba might be a good option, but I did not switch over to it actually because Cisco's a big company and known in the market.

    What other advice do I have?

    Even now, we are not fully utilizing the features because it'll add complicated things. I would rate this solution 7 out of 10 because of both support and interface. After this experience, next time in any project we are going to go more secure. 

    Disclosure: My company does not have a business relationship with this vendor other than being a customer.
    PeerSpot user
    Buyer's Guide
    Download our free Cisco IOS Security Report and get advice and tips from experienced pros sharing their opinions.
    Updated: June 2025
    Buyer's Guide
    Download our free Cisco IOS Security Report and get advice and tips from experienced pros sharing their opinions.