Try our new research platform with insights from 80,000+ expert users

Cisco Secure Firewall vs GajShield Next Generation Firewall comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Sep 16, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Fortinet FortiGate
Sponsored
Ranking in Firewalls
1st
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
574
Ranking in other categories
Secure Web Gateways (SWG) (2nd), Intrusion Detection and Prevention Software (IDPS) (1st), Software Defined WAN (SD-WAN) Solutions (1st), WAN Edge (1st), ZTNA (2nd), Unified Threat Management (UTM) (1st)
Cisco Secure Firewall
Ranking in Firewalls
7th
Average Rating
8.2
Reviews Sentiment
7.4
Number of Reviews
429
Ranking in other categories
Cisco Security Portfolio (3rd)
GajShield Next Generation F...
Ranking in Firewalls
39th
Average Rating
7.8
Reviews Sentiment
5.7
Number of Reviews
7
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of September 2025, in the Firewalls category, the mindshare of Fortinet FortiGate is 20.7%, up from 18.6% compared to the previous year. The mindshare of Cisco Secure Firewall is 6.0%, up from 5.3% compared to the previous year. The mindshare of GajShield Next Generation Firewall is 0.1%, up from 0.1% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Firewalls Market Share Distribution
ProductMarket Share (%)
Fortinet FortiGate20.7%
Cisco Secure Firewall6.0%
GajShield Next Generation Firewall0.1%
Other73.2%
Firewalls
 

Featured Reviews

Vasu Gala - PeerSpot reviewer
A stable solution with an intuitive interface and quick customer service
I have been working with Fortinet FortiGate, WatchGuard, Sophos, and SonicWall. I'm not as comfortable with SonicWall because of their UI and limitations. I prefer Fortinet above all other options. When it comes to configuration, I am confident in my ability to handle various tasks, including creating policies such as firewall rules, web policies, and application policies. Additionally, I can configure VPNs and implement load balancing, among other tasks. Overall, I feel much more comfortable working with Fortinet. Fortinet has made significant improvements by integrating AI with firewalls for threat analysis and prevention. In the past 2-3 years, they have launched FortiSASE and SIEM, and they also provide SOC services. Both Palo Alto and Fortinet FortiGate are excellent. While Fortinet FortiGate comes at higher prices, the functionality and support justify the cost. They promptly resolve firmware issues and inform all support providers about configuration changes.
Phil Shiflett - PeerSpot reviewer
Unified policies streamline network management but complex licensing requires attention
Cisco Secure Firewall has some growth opportunities in terms of visibility and control capabilities regarding managing encrypted traffic. It has the ability to analyze encrypted traffic, and there is potential for more integration with APIs and AI to enhance these capabilities. Cisco Secure Firewall needs improvement in deployment time and the capability to access the CLI during support calls. I often encounter issues when technical support uses a CLI that is not familiar to me while troubleshooting through the GUI. My ongoing complaint for the last six years has been the lack of CLI functionality, which hinders my ability to work on the firewall, alongside concerns regarding deployment time. For the next release, they should look at the features offered by competitors such as Fortinet, including the ability to perform packet capture directly from the interface. If they enhanced their troubleshooting efficiency related to packet capture for each specific rule, it would simplify the process significantly.
Nazish Sameer Shaikh - PeerSpot reviewer
Simplifies the management of complex data networks, but its technical support could be improved
Sometimes, we have to use SD-WAN support for the solution, which can be improved by adapting some features that will help our approach to network services. The solution can adapt some of the tools where we, as network engineers, can adjust to the changing application needs. Also, the solution can provide us with multiple support, allowing us to create a network segment. The solution’s technical support could be improved.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The threat prevention is the solution's most valuable aspect."
"The SD-WAN function is very developed. It has SD-WAN functionality with security features in one device. We can manage from one single console SD-WAN and the security policy."
"It performs very well."
"The solution is stable."
"FortiGate's web and URL filtering are unlike any other firewall I've used. The functionality of URL filtering in those solutions is problematic because everything is encrypted, and firewalls can't break that encryption protocol. Fortinet has an SSL proxy, so the encryption is done before the packet ever leaves the FortiGate. The URL filter is definitely one of the most helpful features."
"This version is stable. I don't have any issues with this solution, in our environment, it works well."
"The most valuable features are the enterprise modeling and the simple interface."
"Fortinet FortiGate's most valuable features are the UTM package which provides internet blocking restrictions and load balancing. Additionally, the solution is easy to use and the security reporting is good. The security fabric which they have launched Fortinet FortiGate IPS, it's very good in terms of giving details."
"We can shift traffic, block certain content, or redirect policies."
"The traffic inspection and the Firepower engine are the most valuable features. It gives you full details, application details, traffic monitoring, and the threats. It gives you all the containers the user is using, especially at the application level. The solution also provides application visibility and control."
"The features I appreciate the most about Cisco Secure Firewall are the policies, ACLs, and traffic behavior analytics."
"Cisco offers a great educational series to train users on their devices."
"I have found the most valuable feature to be the access control and IPsec VPN."
"The solution is used for the protection of the mobile data network. It is protecting 3G/4G Internet customers and the Private APN."
"The stability of the solution is very good. We can see that it gets even better with every release."
"It's got the capabilities of amassing a lot of throughput with remote access and VPNs."
"It is an easily scalable solution...The initial setup was very easy."
"Gajshiled's enterprise cloud and DLP-level features give it an advantage over other products."
"GajShield has improved our mobile device-based connectivity."
"GajShield Next Generation Firewall's best feature is the network DLP."
"It is a stable solution."
"The most valuable feature of the GajShield Next Generation Firewall is the user-friendly settings, dashboards, and anti-threat protection. Additionally, the solution upgrades frequently which is good because we receive new features."
"The solution's outcome is very high, and we often use it in a very high-traffic environment."
 

Cons

"The updates Fortinet provides are sometimes unstable."
"It could use more templates for third-party site-to-site VPN setups other than FortiGate and Cisco."
"Fortinet FortiGate can improve the integration with Active Directory. Additionally, I would like to have a Cloud Controller, such as they do in the Cisco Meraki solution."
"The product does need better support in the cloud environment. It's not exactly cloud-native right now."
"We have experienced a number of failures when trying to upgrade firmware and the process takes a long time. We only experienced this when doing major upgrades between versions."
"The feature which gives us a lot of pain is ASIC architecture."
"The pricing could be reduced or include the first year warranty."
"We are pretty happy with it. If anything, I believe the web interface could be simpler, especially for someone who has limited networking experience."
"I work for a school, so getting licensing and getting the budget for Cisco Secure Firewall for certain products is a challenge. It's good to have them, however, it costs us a lot."
"The Sandbox and the Web Censoring in this solution need to be improved."
"Cisco provides us with application visibility and control, although it's not a complete solution compared to other vendors. Cisco needs to work on the application behavior side of things, in particular when it comes to the behavior of SSL traffic."
"We would really like to see dual dual power supplies for some Cisco Firewall products."
"I would like for the user interface to be easier for the admin and network admin. I would also like to be able to access everything from the GUI interface. The way it is now, it needs somebody experience in iOS to be able to operate it. I would like to have a GUI interface."
"The only con that I have really seen with it is the reporting structure. FirePOWER is good. It has been a great help because, before that, it was not good at all."
"FlexConfig is there as a bridge for features that are not yet natively integrated into Firepower. It is a way of allowing you to be able to configure things that wouldn't otherwise be possible until the development team can add them into Firepower's native capability. There is still some work that needs to be done around FlexConfig. There are still quite a few complex things, like policy-based routing, that have to be done in FlexConfig, and it doesn't always work perfectly. Sometimes, there are some glitches. It is recommended that you configure FlexConfig policies with Cisco TAC. It would be good to see Cisco accelerate some of those configurations that you can only do in FlexConfig into the platform, so that they are there natively."
"The use of it has really bogged down our response time for certain problems, given we have to go through AT&T for everything."
"GajShield Next Generation Firewall would be improved with the addition of a load-balancing feature."
"The firewall configuration and administration screens could use some improvement."
"Sometimes, we have to use SD-WAN support for the solution, which can be improved by adapting some features that will help our approach to network services."
"Gajshield can improve SD-WAN compatibility at an enterprise cloud level."
"We raised a support ticket, and the project didn't get a proper response. There was a skill issue in TAC support."
"GajShield Next Generation Firewall could improve the flow of the settings. If somebody's using a Cisco firewall or any other brand and they want to use GajShield Next Generation Firewall the platform's UI is a bit different. If it was more similar to the others it would be better."
"We face issues with some configuration parts that we don't understand in the solution, and sometimes we face issues with the VPN connection."
 

Pricing and Cost Advice

"The licensing costs are very low."
"I would rate pricing to be about four or five out of ten, it is reasonable."
"We pay about $4,000 for a yearly license, and there aren't any additional fees."
"The price of Fortinet FortiGate is reasonable for an SME."
"My experience with the pricing, setup cost, and licensing for Fortinet FortiGate is quite good. I don't have a public site, such as in Azure, where I can see the pricing. I always have to go through the distributor, and that could take some time to get the real price for each appliance."
"Setup costs and pricing depends on many variables, but it's mostly affordable."
"The pricing for this solution is reasonable."
"The price of Fortinet FortiGate is affordable. Most of our customers are on a three-year license to use the solution. All the features and support are included in the price."
"The pricing was pretty comparable to other solutions when we purchased it."
"I have to admit that the price is high. But I think it's worth it if the stability of your solution counts for you."
"The solution’s pricing is competitive."
"The pricing was fairly reasonable. It was competitive and was slightly more than Check Point was. However, when we looked at the usability and the features that we would get out of Firepower, it was certainly reasonable. Licensing is complex, and I'd like it to be simplified."
"It's pretty competitive. If they could make it cheaper, it would be great. You always want cheaper, but relative to the performance capabilities of the firewall and relative to what you get, it's fair. It's not the cheapest in the world, but you get an excellent product for that price."
"Firepower has a very high cost and you have to pay for the standby as well, meaning that the cost is doubled."
"It is pay-as-you-go, so it much cheaper than buying in the plants."
"Licensing, recently, has been getting more complicated. In particular, the Smart Licensing that came out is quite complicated. I don't know what's going on.... They call it Smart, but it's complicated. I prefer the traditional license where you buy it once."
"GajShield Next Generation Firewall is cheaper than the other products in the market. The licensing costs for the solution are on a yearly basis."
"The price of the GajShield Next Generation Firewall is very attractive when compared to other solutions."
"GajShield Next Generation Firewall is not that expensive, and its pricing is better than Palo Alto."
"GajShield is a cheaper solution as of now. The subscription is yearly."
"It was about 15% cheaper compared to Sophos."
"GajShield Next Generation Firewall is reasonably priced."
report
Use our free recommendation engine to learn which Firewalls solutions are best for your needs.
867,497 professionals have used our research since 2012.
 

Comparison Review

it_user206346 - PeerSpot reviewer
Mar 11, 2015
Cisco ASA vs. Palo Alto Networks
Cisco ASA vs. Palo Alto: Management Goodies You often have comparisons of both firewalls concerning security components. Of course, a firewall must block attacks, scan for viruses, build VPNs, etc. However, in this post I am discussing the advantages and disadvantages from both vendors concerning…
 

Top Industries

By visitors reading reviews
Computer Software Company
15%
Comms Service Provider
9%
Manufacturing Company
8%
Financial Services Firm
6%
Computer Software Company
20%
University
8%
Manufacturing Company
7%
Comms Service Provider
6%
Media Company
28%
Manufacturing Company
10%
Outsourcing Company
8%
Energy/Utilities Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business350
Midsize Enterprise129
Large Enterprise187
By reviewers
Company SizeCount
Small Business180
Midsize Enterprise126
Large Enterprise212
By reviewers
Company SizeCount
Small Business3
Midsize Enterprise1
Large Enterprise3
 

Questions from the Community

Which is the better NGFW: Fortinet Fortigate or Cisco Firepower?
When you compare these firewalls you can identify them with different features, advantages, practices and usage a...
What is the biggest difference between Sophos XG and FortiGate?
From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know...
What are the biggest technical differences between Sophos UTM and Fortinet FortiGate?
As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite ...
Which is better - Fortinet FortiGate or Cisco ASA Firewall?
One of our favorite things about Fortinet Fortigate is that you can deploy on the cloud or on premises. Fortinet Fort...
How does Cisco's ASA firewall compare with the Firepower NGFW?
It is easy to integrate Cisco ASA with other Cisco products and also other NAC solutions. When you understand the Cis...
Which is better - Meraki MX or Cisco ASA Firewall?
Cisco Adaptive Security Appliance (ASA) software is the operating software for the Cisco ASA suite. It supports netw...
What do you like most about GajShield Next Generation Firewall?
The solution's outcome is very high, and we often use it in a very high-traffic environment.
What needs improvement with GajShield Next Generation Firewall?
Sometimes, we have to use SD-WAN support for the solution, which can be improved by adapting some features that will ...
What is your primary use case for GajShield Next Generation Firewall?
GajShield Next Generation Firewall helps us with security solutions and platforms. It helps us configure the network....
 

Also Known As

No data available
Cisco Adaptive Security Appliance (ASA) Firewall, Cisco ASA NGFW, Adaptive Security Appliance, Cisco Sourcefire Firewalls, Cisco ASAv, Cisco Firepower NGFW Firewall
GajShield NGFW
 

Overview

 

Sample Customers

Amazon Web Services, Microsoft, IBM, Cisco, Dell, HP, Oracle, Verizon, AT&T, T-Mobile, Sprint, Vodafone, Orange, BT Group, Telstra, Deutsche Telekom, Comcast, Time Warner Cable, CenturyLink, NTT Communications, Tata Communications, SoftBank, China Mobile, Singtel, Telus, Rogers Communications, Bell Canada, Telkom Indonesia, Telkom South Africa, Telmex, Telia Company, Telkom Kenya
There are more than one million Adaptive Security Appliances deployed globally. Top customers include First American Financial Corp., Genzyme, Frankfurt Airport, Hansgrohe SE, Rio Olympics, The French Laundry, Rackspace, and City of Tomorrow.
Zodiac Clothing
Find out what your peers are saying about Cisco Secure Firewall vs. GajShield Next Generation Firewall and other solutions. Updated: September 2025.
867,497 professionals have used our research since 2012.