Support Engineer at a tech services company with 51-200 employees
Reseller
We can shift traffic, block certain content, or redirect policies
Pros and Cons
  • "We can shift traffic, block certain content, or redirect policies."
  • "We would like to see MS Word BPM as a feature."

What is our primary use case?

It's primarily for managing our employees. So far, it has been working great. We don't have many problems.

How has it helped my organization?

It gives us all the features that we need.

What is most valuable?

We can shift traffic, block certain content, or redirect policies.

What needs improvement?

We would like to see MS Word BPM as a feature. 

Buyer's Guide
Cisco Secure Firewall
May 2024
Learn what your peers think about Cisco Secure Firewall. Get advice and tips from experienced pros sharing their opinions. Updated: May 2024.
769,976 professionals have used our research since 2012.

For how long have I used the solution?

Three to five years.

How are customer service and support?

We don't use the technical support too much. It is not good, especially for Latin America. Therefore, we employ people who have skills or certifications, using them for technical support.

Which solution did I use previously and why did I switch?

We started with Cisco Firepower.

How was the initial setup?

It was a bit complex to set up. However, after some practice, it was not too difficult.

What's my experience with pricing, setup cost, and licensing?

It is a great solution for medium or big enterprises, not so much for small businesses, mainly due to the financial costs. Cisco Firepower is a great solution, but it is expensive compared to others that can provide similar benefits for much less.

What other advice do I have?

Most important criteria when selecting a vendor:

  • Quality of the product
  • Cost.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Business Development Executive at CBI
Reseller
Though not NextGen, it is a good firewall
Pros and Cons
  • "The firewall and policy side are easy to use."
  • "Make the IPS baked-in."
  • "It is a good firewall, though not NextGen."

What is our primary use case?

The gateway firewall is where we use it the most.  

How has it helped my organization?

The firewall and policy side are easy to use. 

What is most valuable?

IDS.

What needs improvement?

Make the IPS baked-in. It is a good firewall, though not NextGen.

For how long have I used the solution?

One to three years.
Disclosure: My company has a business relationship with this vendor other than being a customer: CBI is a VAR for these products.
PeerSpot user
Buyer's Guide
Cisco Secure Firewall
May 2024
Learn what your peers think about Cisco Secure Firewall. Get advice and tips from experienced pros sharing their opinions. Updated: May 2024.
769,976 professionals have used our research since 2012.
it_user850275 - PeerSpot reviewer
Pre-sales engineer with 51-200 employees
Reseller
Provides visibility as well as management and administration capabilities

What is our primary use case?

We use it as a perimiter firewall and do VPNs and filtering.

How has it helped my organization?

As a reseller, because Cisco includes different companies like Sourcefire, Meraki, and Talos, I think Cisco has a good portfolio for the security business, with their own devices too. For example, we have our firewall, we have a Web security appliance, things like OpenDNS with Umbrella. I think Cisco can cover with all the platforms.

What is most valuable?

All the visibility the device gives us as well as management and administration facilities.

What needs improvement?

It needs better documentation for when we present solutions to non-technical people. They need to bring together all the information, across the various firewalls, so that we can more clearly explain them.

Also, pricing could be better.

What do I think about the stability of the solution?

It's very stable. 

What do I think about the scalability of the solution?

When we implement a firewall we need to be aware of whether it is growing over a short time period or a long time period. I think the scalability, from our implementation, is good because you can use the same configuration for another platform. If you implement on a small platform, it It is easy to implement the same configuration to another, bigger device.

How are customer service and technical support?

I think tech support is a large part of Cisco. It's good, it provides support around the clock, answers problems. I would rate it nine out of 10.

Which solution did I use previously and why did I switch?

SonicWall.

How was the initial setup?

For some things it is very easy, but configuring other things is a little complex. It depends on the use case.

What's my experience with pricing, setup cost, and licensing?

Cisco may be a little expensive but it has everything, and they support very well.

Which other solutions did I evaluate?

Juniper, Fortinet.

What other advice do I have?

I think Cisco has all the solutions: switching, routing, security, they have wireless. You can cover all the devices with Cisco. They have all the network and engineered tools to help resolve the issues that we have. They are really very good devices.

In terms of advice, I would say Cisco is the best company. They're very stable, there aren't too many issues. And when there is an issue they have many engineers who can solve the problem.

Disclosure: My company has a business relationship with this vendor other than being a customer: Reseller.
PeerSpot user
PeerSpot user
Sr Network Engineer at a tech services company with 501-1,000 employees
Consultant
Valuable features are its ​VPNs and reliability.

What is most valuable?

VPNs, reliability.

How has it helped my organization?

Connectivity with client Telcos works perfectly way and administration is simple.

What needs improvement?

I think it's the perfect Firewall for SME.

For how long have I used the solution?

Five years.

What do I think about the stability of the solution?

No.

What do I think about the scalability of the solution?

No.

How are customer service and technical support?

10 out of 10.

Which solution did I use previously and why did I switch?

Version 5515 is better than 5510 or 5505.

How was the initial setup?

If you know how to use Cisco IOS, it's easy. Otherwise, you will find no way
of configuring it with ease.

What's my experience with pricing, setup cost, and licensing?

Go for the complete bundle, it's a one time investment only. Otherwise, in the future you will have to buy other tools as licenses for some add-on services.

Which other solutions did I evaluate?

FortiGate 100D.

What other advice do I have?

I would go for bundle licenses and hire a Cisco engineer for implementation.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
it_user293883 - PeerSpot reviewer
System/Network administrator at a computer software company with 501-1,000 employees
Vendor
We have issues with some versions of Java, but it does amalgamate the firewall and VPN.

What is most valuable?

It's a great solution that amalgamates a firewall and VPN into one device. It also has a well organized GUI- ASDM.

How has it helped my organization?

  • Easy to setup VPNs
  • Firewall ACL
  • Easy to modify
  • Easy to perform maintenance

What needs improvement?

The ADSM is incompatible with different versions of Java.

For how long have I used the solution?

I've used it for six years.

What do I think about the stability of the solution?

I have issues with some versions of Java and ASDM.

How are customer service and technical support?

Customer Service:

It's high.

Technical Support:

It's high.

Which solution did I use previously and why did I switch?

I used a Cisco 881 router as a firewall and VPN solution. ASA allows conformity and various amounts of functionality in work.

How was the initial setup?

It can be complex, since a lot of CLI commands are different with respect to the CLI of IOS routers.

What about the implementation team?

We implemented ASA without vendor support. For first time implementation, it is good to have someone with ASA experience involved.

What's my experience with pricing, setup cost, and licensing?

Prices could be a little bit lower to make the product more accessible.

Disclosure: My company has a business relationship with this vendor other than being a customer: We're a Cisco Partner.
PeerSpot user
PeerSpot user
Business Development Director with 51-200 employees
Vendor
UTM features need to be improved, but it's a full inspection firewall.

What is most valuable?

The fact that it's a full inspection firewall.

How has it helped my organization?

In fact there is no relevant improvement, but this is the kind of device that every company must have.

What needs improvement?

  • Recognition of appliances
  • UTM features

For how long have I used the solution?

I've used it for five years.

What was my experience with deployment of the solution?

It was mainly issues regarding the management and VPN setup.

What do I think about the stability of the solution?

No issues encountered.

What do I think about the scalability of the solution?

No issues encountered.

How are customer service and technical support?

Customer Service:

8/10.

Technical Support:

8/10.

Which solution did I use previously and why did I switch?

We previously used IPtables, and switched because there was a lack of technical support, RMA, etc.

How was the initial setup?

It was an easy initial set-up.

What about the implementation team?

We did it in-house.

Which other solutions did I evaluate?

No other options were looked at.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Solution Architect at a tech services company with 11-50 employees
Real User
Powerful features include Snort and IPS, it is easy to deploy, and the technical support is good
Pros and Cons
  • "I like the firewall features, Snort, and the Intrusion Prevention System (IPS)."
  • "This product is managed using the Firepower Management Center (FMC), but it would be better if it also supported the command-line interface (CLI)."

What is our primary use case?

We are a solution provider and Cisco NGFW is one of the products that we implement for our clients. My clients use it for internet access within the enterprise.

What is most valuable?

I like the firewall features, Snort, and the Intrusion Prevention System (IPS). 

What needs improvement?

This product is managed using the Firepower Management Center (FMC), but it would be better if it also supported the command-line interface (CLI). Cisco's FTD devices don't support the command-line interface and can only be configured using FMC.

For how long have I used the solution?

We have been using this product for the past four years.

What do I think about the stability of the solution?

This is a stable product and we plan to continue implementing it for clients in the future.

What do I think about the scalability of the solution?

Cisco NGFW is a scalable firewall. My client has more than 100 users.

How are customer service and technical support?

We have support from Cisco's TAC, the Technical Assistance Center, and they support this product well. We haven't had any issues with them.

Which solution did I use previously and why did I switch?

Prior to the Next Generation firewall, my clients were using Cisco ASA for more than 10 years.

How was the initial setup?

The initial setup is easy, with the installation and configuration taking about two hours.

What about the implementation team?

I did the deployment myself.

What's my experience with pricing, setup cost, and licensing?

This product requires licenses for advanced features including Snort, IPS, and malware detection.

What other advice do I have?

In summary, this is a good product and I recommend it.

I would rate this solution a ten out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Implementer
PeerSpot user
PeerSpot user
Network Engineer at Banque des Mascareignes
Real User
Its VPN and ASN features are very stable. They are behind the market leaders for next-generation capabilities.
Pros and Cons
  • "Its VPN and ASN features are very stable."
  • "The setup was straightforward. I was happy with the configuration and deployment of the solution, as it was quick."
  • "In terms of next-generation capabilities, Cisco is a little behind, and it is way behind the market leaders."

What is our primary use case?

I have deployed Cisco ASA as a terminator firewall. Normally, I would have preferred to have a sandwich configuration for firewalls: One possible firewall that would make an internal firewall and another for an external firewall. 

How has it helped my organization?

Cisco ASA is best suited for our external firewall protection.

What is most valuable?

  • Its VPN and ASN features are very stable. 
  • It is easy to configure. 

What needs improvement?

In terms of next-generation capabilities, Cisco is a little behind. It is way behind leaders like Palo Alto, Check Point and Fortinet. While Cisco is headed in the right direction, it will take several years for it to get there.

For how long have I used the solution?

More than five years.

How is customer service and technical support?

When I need support, Cisco has provided quality support. I like working with them because of their support system.

How was the initial setup?

The setup was straightforward. I was happy with the configuration and deployment of the solution, as it was quick.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Buyer's Guide
Download our free Cisco Secure Firewall Report and get advice and tips from experienced pros sharing their opinions.
Updated: May 2024
Buyer's Guide
Download our free Cisco Secure Firewall Report and get advice and tips from experienced pros sharing their opinions.