We use this solution, in conjunction with the Cisco Firepower 4000 series, for security in our data center. We also use it with a Cisco Firepower 2000 series for our VPN and internet access firewall.
Network Engineer at Arab Islamic Bank
A straightforward setup, and flexible enough to activate based on any rule that I want
Pros and Cons
- "The whole solution is very good, and stable."
- "The customization of the rules can be simplified."
What is our primary use case?
What is most valuable?
The most valuable feature of this solution is support for everything in the same box, including IPS, High Availability, etc.
What needs improvement?
This solution needs to be more customizable.
The customization of the rules can be simplified.
For how long have I used the solution?
We have been using this solution for about five months.
Buyer's Guide
Cisco Sourcefire SNORT
June 2025

Learn what your peers think about Cisco Sourcefire SNORT. Get advice and tips from experienced pros sharing their opinions. Updated: June 2025.
857,028 professionals have used our research since 2012.
What do I think about the stability of the solution?
This is a stable solution.
What do I think about the scalability of the solution?
This is a scalable solution that I can apply to any rule I want.
We have approximately five hundred and fifty employees who are protected by this solution.
How are customer service and support?
We contacted technical support many times during our deployment, but none of them were directly related to Sourcefire SNORT.
Which solution did I use previously and why did I switch?
Prior to this solution, we used McAfee. We switched because we replace our firewalls every five or six years.
How was the initial setup?
The initial setup of this solution is straightforward.
The deployment took approximately two days, which included applying the IPS rules in the Sourcefire policy.
One person is suitable for deployment and maintenance.
What about the implementation team?
A support company assisted us with the deployment.
What's my experience with pricing, setup cost, and licensing?
We have a three-year license for this solution.
Which other solutions did I evaluate?
We evaluated Fortinet FortiGate and Palo Alto before choosing this solution.
What other advice do I have?
We are satisfied with this solution. The whole solution is very good, and stable.
There are three modes that can be configured. The first is collectivity over security, the second is security over collectivity, and the third is a balanced mode. We have implemented a balanced mode, and it works just fine.
I would rate this solution an eight out of ten.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.

Chief technology officer at Next Generation Systems Nigeria Limited
A great firewall with advanced malware protection and URL filtering
Pros and Cons
- "Cisco technical support is unbeatable. It offers a premium service every time."
- "The pricing needs to be improved. We have lots of low-budget clients around us. Budget constraints are always a deterrent in our market."
What is our primary use case?
We primarily use the solution as security on either side of the VPN.
What is most valuable?
The ability to roll out the services is an excellent aspect of the solution. They have advanced malware protection for URL filtering. I like working with both of these features.
What needs improvement?
The pricing needs to be improved. We have lots of low-budget clients around us. Budget constraints are always a deterrent in our market.
For how long have I used the solution?
I've been using the solution for eight years.
What do I think about the stability of the solution?
The solution has a considerable amount of stability.
What do I think about the scalability of the solution?
The solution is very scalable.
How are customer service and technical support?
Cisco technical support is unbeatable. It offers a premium service every time.
What other advice do I have?
We typically work with the on-premises deployment model.
Cisco Sourcefire is a great solution when it was packaged into the AMP giving it the ability to do URL filtering. However, Meraki seems to be going in the cloud direction. If the cloud is not interesting, then Cisco's firewall, Sourcefire, is great a great on-premises solution when it comes to advanced malware protection, URL filtering, etc. It's a great product.
I would rate the solution nine out of ten.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Buyer's Guide
Cisco Sourcefire SNORT
June 2025

Learn what your peers think about Cisco Sourcefire SNORT. Get advice and tips from experienced pros sharing their opinions. Updated: June 2025.
857,028 professionals have used our research since 2012.
Network Engineer at a individual & family service with 10,001+ employees
Enables us to prevent and detect intrusion in our network and actually decrease our SLA
Pros and Cons
- "Solid intrusion detection and prevention that scales easily in very large environments."
- "Integration with other components — even Cisco's own products — can be enhanced to improve administrative experience."
What is our primary use case?
Our primary use for the solution is security, mostly in intrusion prevention.
How has it helped my organization?
With Cisco Sourcefire SNORT, we've been able to prevent and detect intrusion in our network and actually decrease our SLA (Service Level Agreement).
What is most valuable?
For us, the scalability of the solution is really useful. We were able to rebuild our network recently and we plan to add another 500 nodes throughout South America.
What needs improvement?
One addition to the current product that I think would be helpful is if it was integrated into the Cisco DNA Center. Between their security side, their routing, and the wireless side, they kind of have a gap. If they could bridge the gap and integrate all those in the DNA Center, I think that would be a good goal and something useful to users.
What do I think about the stability of the solution?
We haven't had any problem with the stability of the solution so far. It's been a solid platform and considering how quickly we scaled without any major issues, the stability really speaks for itself.
What do I think about the scalability of the solution?
When we recently upgraded our network the scalability of the product became obvious. We're planning to add about 500 extra nodes throughout South America and we're able to scale the platform to be able to utilize the solutions.
How are customer service and technical support?
I honestly haven't had to use technical support that much because we haven't had that many issues. I guess that says something about the quality of the product when you don't need to use tech support in an installation as large as ours.
Which solution did I use previously and why did I switch?
The main reason why we switched to this solution had to do with growth. We were growing at a very high rate at the time so we needed a solution that could handle a much larger architecture reliably. This was just one of the options that we were looking at and we really thought we'd benefit from the top-notch solution that the platform was.
How was the initial setup?
The initial setup was fairly simple. We did it a couple of years ago but I remember it went well. It was, I think, a three-month project and rolled over pretty easily into our expansion.
What about the implementation team?
The initial implementation was done with the assistance of a consultant. I don't remember the name of the group but it was a good experience. We enjoyed their experience and assistance very much.
Which other solutions did I evaluate?
There were a couple of other products that we considered at the time. None of them made it very far in the process because they just didn't have a lot of the capabilities that we were looking for. Cisco came out on top.
What other advice do I have?
I'd give the product a nine out of ten because it is excellent in scalability, ease of management, and ease of use.
The only reason it isn't a ten out of ten is some of the gaps in integration. I think if they could improve integration with other platforms to make it more fluid to connect between the different platforms and platform management, that would make it a much better solution. The integration issues are probably the only knock off I have on the product so far.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.

Buyer's Guide
Download our free Cisco Sourcefire SNORT Report and get advice and tips from experienced pros
sharing their opinions.
Updated: June 2025
Product Categories
Intrusion Detection and Prevention Software (IDPS)Popular Comparisons
Darktrace
Vectra AI
Splunk User Behavior Analytics
Trend Micro Deep Discovery
Palo Alto Networks Advanced Threat Prevention
Trend Micro TippingPoint Threat Protection System
ExtremeCloud IQ
Check Point IPS
Fortinet FortiGate IPS
Palo Alto Networks URL Filtering with PAN-DB
Cisco Secure IPS (NGIPS)
Trellix Intrusion Prevention System
Fortra's Tripwire Enterprise
Zscaler Cloud IPS
WatchGuard Intrusion Prevention Service
Buyer's Guide
Download our free Cisco Sourcefire SNORT Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- What are the threats associated with using ‘bogus’ cybersecurity tools?
- When evaluating Intrusion Detection, what aspect do you think is the most important to look for?
- What is your recommended cost-effective solution to detect and prevent APT attacks?
- What product do you recommend for a Campus IPS appliance implementation?
- How do you use the MITRE ATT&CK framework for improving enterprise security?
- What are the pros and cons of Darktrace vs CrowdStrike Falcon vs alternative EPP solutions?
- Which alternative solutions (other than Darktrace) do you recommend for an SMB?
- Which is the best intrusion detection and prevention solution?
- What is the best IDPS security tool and why?
- What is Cognitive Cybersecurity and what is it used for?