No more typing reviews! Try our Samantha, our new voice AI agent.

Cisco Secure Firewall vs Stormshield Network Security comparison

Sponsored
 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Fortinet FortiGate
Sponsored
Average Rating
8.4
Reviews Sentiment
6.8
Number of Reviews
591
Ranking in other categories
Secure Web Gateways (SWG) (2nd), Firewalls (1st), Intrusion Detection and Prevention Software (IDPS) (1st), Software Defined WAN (SD-WAN) Solutions (1st), WAN Edge (1st), ZTNA (1st), Unified Threat Management (UTM) (1st)
Cisco Secure Firewall
Average Rating
8.2
Reviews Sentiment
7.0
Number of Reviews
459
Ranking in other categories
Firewalls (5th), Cisco Security Portfolio (3rd)
Stormshield Network Security
Average Rating
7.8
Reviews Sentiment
5.4
Number of Reviews
18
Ranking in other categories
Unified Threat Management (UTM) (13th)
 

Featured Reviews

Abhinandan Yadav - PeerSpot reviewer
Network Security Engineer at Arrow PC Network Pvt Ltd
Unified security and sd-wan have improved uptime and cut wan costs for multi-site branches
Users report stability issues in certain versions, which requires regular updates. Real-world attacks have also highlighted the need for urgent patching of vulnerabilities.Fortinet FortiGate, while a powerful and feature-rich web firewall, could improve in areas like firmware stability, documentation, and ease of use. The learning curve can be steep for some users. For beginners, support quality can vary, and frequent updates with occasional vulnerabilities call for careful patch management. However, once Fortinet FortiGate is configured, it remains highly reliable and efficient. Customer support needs improvement, as I find it very slow, with reports from other users reflecting that customer support is inadequate.
Phil Shiflett - PeerSpot reviewer
Senior Manager, Network Engineering at TTi Power Equipment
Unified policies streamline network management but complex licensing requires attention
Cisco Secure Firewall has some growth opportunities in terms of visibility and control capabilities regarding managing encrypted traffic. It has the ability to analyze encrypted traffic, and there is potential for more integration with APIs and AI to enhance these capabilities. Cisco Secure Firewall needs improvement in deployment time and the capability to access the CLI during support calls. I often encounter issues when technical support uses a CLI that is not familiar to me while troubleshooting through the GUI. My ongoing complaint for the last six years has been the lack of CLI functionality, which hinders my ability to work on the firewall, alongside concerns regarding deployment time. For the next release, they should look at the features offered by competitors such as Fortinet, including the ability to perform packet capture directly from the interface. If they enhanced their troubleshooting efficiency related to packet capture for each specific rule, it would simplify the process significantly.
Zsolt Jónás - PeerSpot reviewer
System Administrator at NaxoNet
Advanced GUI and layered security have supported compliance and simplified intrusion prevention
I haven't had a task that I couldn't solve with Stormshield Network Security. The active-active high availability solution would be beneficial because currently, if you build a high availability solution with Stormshield Network Security, you have a main device and another one is a backup device. The HA can switch between them, but it would be good to have a master-master solution, not just a master-slave one. I could set a URL that I can call to update the DNS record. Currently, Stormshield Network Security devices support DynDNS, which is not a usual feature request from a server environment. I have my own solution instead of DynDNS because I don't prefer it, so I have my own service for that. However, the GUI does not support using a custom service instead of DynDNS. I had to solve it in the console on Stormshield Network Security device, but it would be much better if it was reachable on the GUI. I had to figure out a trick for the IPsec configuration. In the IPsec config, we have to provide the remote side's IP address, but it's always changing. This means that an office, for example a company that has an office but without a fixed IP address, cannot be used with IPsec VPN.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The most valuable features of the FortiGate firewall include SSL inspection, VPN functionality, and threat intelligence features for preventing threats."
"Fortinet FortiGate has positively impacted my organization by centralizing the way to access all of our network firewalls."
"FortiGate Next Generation Firewall can be described as the most complete solution."
"The solution is easy to implement and easy to configure. The most valuable feature is FortiGate’s content filtering."
"FortiGate SWG's most valuable feature is integration with vulnerability management."
"I find Fortinet FortiGate to be quite stable, as I have never heard of any issues where they broke or malfunctioned; they are always working."
"FortiGate Next Generation Firewall has IBS/IPS systems"
"The dynamic segmentation feature in Fortinet FortiGate is pretty good."
"The ability to block threats is its most valuable aspect."
"They provide DDoS protection and multi-factor authentication. That is a good option as it enables work-from-home functionality."
"It has a good security level. It is a next-generation firewall. It can protect from different types of attacks. We have enabled IPS and IDS."
"Cisco ASA Firewall has improved our organization by allowing connectivity to the outside world and into different places, and the firewall is the first line of defense in protecting the network."
"It is a comprehensive suite and complete package."
"I find the integration with Cisco products in Cisco Secure Firewall most valuable because the majority of the features are equivalent to other OEMs, and the ecosystem integration with Cisco is what I prefer."
"The product has saved us a lot of time, and once we deployed the solution, it worked."
"The most valuable features of this solution are the integrations and IPS throughput."
"Ease of use is the best feature of the product."
"The performance of this solution is good."
"This solution is quick and easy to configure."
"I can see what traffic is going on. I can easily block any programs from attacks."
"The multi-layered security approach of Stormshield Network Security is a good one and has helped with compliance."
"The scalability of the solution is good."
"The StormShield solution has enabled us to fully implement best practices from Microsoft in the cloud : the hub and spoke architecture."
"The most valuable features are the IPS, the firewall function, and the price."
 

Cons

"At the moment, if you don't integrate any third-party solution with a simple Fortinet FortiGate box, the box would not function as expected for superb protection."
"The solution is not scalable."
"I wish Fortinet FortiGate's UI updates would be done in a more simplified way to improve it."
"The monitoring and the visibility, in this proxy, is very weak. I would for them to develop better visibility, monitoring, and reporting."
"FortiGate is really good. We have been using it for quite some time. Initially, when we started off, we had around 70 plus devices of FortiGate, but then Check Point and Palo Alto took over the place. From the product perspective, there are no issues, but from the account perspective, we have had issues. Fortinet's presence in our company is very less. I don't see any Fortinet account managers talking to us, and that presence has diluted in the last two and a half or three years. We have close to 1,500 firewalls. Out of these, 60% of firewalls are from Palo Alto, and a few firewalls are from Check Point. FortiGate firewalls are very less now. It is not because of the product; it is because of the relationship. I don't think they had a good relationship with us, and there was some kind of disconnect for a very long time. The relationship between their accounts team and my leadership team seems to be the reason for phasing out FortiGate."
"The Web-filter in this solution is not very good."
"I would like reporting to be improved and should offer a lot more tools to monitor the products."
"Fortinet FortiGate can improve the integration with Active Directory. Additionally, I would like to have a Cloud Controller, such as they do in the Cisco Meraki solution."
"The installation and integration of Cisco ASA with FirePOWER can be improved. The management with Fortigate is easier than Cisco ASA on FirePOWER. The management side of Cisco ASA can be improved so it can be more easily configured and used."
"There could be some improvement in the way FMC displays the policy."
"They call it a smart license which means that your device will connect to the internet. This is a little bit of a headache for some customers."
"Intrusion prevention, we currently need to apply deep bracket inspection manually to use web filtering."
"The product would be improved if the GUI could be brought into the 21st Century."
"Most of the time, when I try to run Java, it is not compatible with ASA's current operating systems."
"Cisco Secure Firewall's integration with cloud providers has room for improvement. We could do more in terms of integration, for example, if we had a tag on an instance."
"Since most features are license based and some licenses are time-based, there should be a way for the device to alert via SNMP that licenses are about to expire."
"A more user-friendly interface would be helpful."
"An application firewall like other next generation firewalls have."
"A more user-friendly interface would be helpful."
"It could be better if it were more user-friendly. It's too complicated for us to use it. The price could be better as well."
"Improvement is also needed in terms of the technical support of the manufacturer, they're not very responsive when it comes to technical support."
"The technical support for this solution in Poland is not good."
"The pricing is increasing, and I would say it is a bit expensive."
"This solution has a big problem with web filtering and it needs to be improved."
 

Pricing and Cost Advice

"It is expensive. You need to pay for the subscription every year, which is very expensive. The subscription includes technical support and hardware exchange in case of failure."
"It is a good product from a price perspective versus functionality."
"The pricing is better compared to other solutions like Check Point, Arista, or Cisco."
"The price of Fortinet FortiGate is affordable. Most of our customers are on a three-year license to use the solution. All the features and support are included in the price."
"It is cost-effective, and provides a good value for your money. The pricing, and license renewal, is very reasonable for us."
"The price is relatively expensive compared to other solutions which are providing similar features."
"The product is not very expensive."
"Fortinet prices are around $600 for the small 40F model, and for licenses, the simplest option is about $300 for a year. They sell licenses that can last for 1, 2, 3, or 5 years."
"Acquiring licensing for Cisco Secure Firewall can be a bit cumbersome, therefore a more straightforward licensing process would be preferable."
"Watch out for hidden licensing and incredibly high annual maintenance costs."
"The product is expensive."
"There is room for improvement in the pricing when compared to the market. Although, when you compare the benefits of support from Cisco, you can adjust the value and it becomes comparable, because you usually need very good support. So you gain value there with this device."
"The cost of this solution is high."
"Firepower has a very high cost and you have to pay for the standby as well, meaning that the cost is doubled."
"Cisco's prices are more or less comparable to those of other products."
"Spec the right hardware model and choose the right license for your needs."
"I think the price is good."
"We bought a three-year license, and we renew it whenever it expires. The price could be better. It's always very expensive."
"The pricing could be better."
"We chose Stormshield for its price, as the Azure firewall was too expensive."
"For mid-sized companies, they sell their appliances for good prices."
"The price of this solution and the price of support are ok."
"The SN200 series costs between $500 USD and $600 USD per year, whereas the SN700 series costs approximately $1,000 annually."
report
Use our free recommendation engine to learn which Firewalls solutions are best for your needs.
893,244 professionals have used our research since 2012.
 

Comparison Review

it_user206346 - PeerSpot reviewer
Security Consultant at Webernetz.net - Network Security Consulting
Mar 11, 2015
Cisco ASA vs. Palo Alto Networks
Cisco ASA vs. Palo Alto: Management Goodies You often have comparisons of both firewalls concerning security components. Of course, a firewall must block attacks, scan for viruses, build VPNs, etc. However, in this post I am discussing the advantages and disadvantages from both vendors concerning…
 

Top Industries

By visitors reading reviews
Computer Software Company
10%
Comms Service Provider
10%
Manufacturing Company
9%
Financial Services Firm
7%
Computer Software Company
10%
Manufacturing Company
9%
Financial Services Firm
7%
Comms Service Provider
7%
Comms Service Provider
16%
Computer Software Company
12%
Manufacturing Company
10%
Financial Services Firm
10%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business367
Midsize Enterprise135
Large Enterprise193
By reviewers
Company SizeCount
Small Business190
Midsize Enterprise129
Large Enterprise232
By reviewers
Company SizeCount
Small Business10
Midsize Enterprise5
Large Enterprise2
 

Questions from the Community

Which is the better NGFW: Fortinet Fortigate or Cisco Firepower?
When you compare these firewalls you can identify them with different features, advantages, practices and usage a...
What is the biggest difference between Sophos XG and FortiGate?
From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know...
What are the biggest technical differences between Sophos UTM and Fortinet FortiGate?
As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite ...
Which is better - Fortinet FortiGate or Cisco ASA Firewall?
One of our favorite things about Fortinet Fortigate is that you can deploy on the cloud or on premises. Fortinet Fort...
How does Cisco's ASA firewall compare with the Firepower NGFW?
It is easy to integrate Cisco ASA with other Cisco products and also other NAC solutions. When you understand the Cis...
Which is better - Meraki MX or Cisco ASA Firewall?
Cisco Adaptive Security Appliance (ASA) software is the operating software for the Cisco ASA suite. It supports netw...
What needs improvement with Stormshield Network Security?
I haven't had a task that I couldn't solve with Stormshield Network Security. The active-active high availability sol...
What is your primary use case for Stormshield Network Security?
I already use Stormshield Network Security, and I am now looking for a new solution. I am already working with Storms...
What advice do you have for others considering Stormshield Network Security?
The pricing is increasing, and I would say it is a bit expensive. Palo Alto and others are much more expensive, but S...
 

Also Known As

Fortinet FortiGate Next-Generation Firewall
Cisco Adaptive Security Appliance (ASA) Firewall, Cisco ASA NGFW, Adaptive Security Appliance, Cisco Sourcefire Firewalls, Cisco ASAv, Cisco Firepower NGFW Firewall, Cisco Secure Firewall ASA Virtual - BYOL
NETASQ Firewalls
 

Overview

 

Sample Customers

Amazon Web Services, Microsoft, IBM, Cisco, Dell, HP, Oracle, Verizon, AT&T, T-Mobile, Sprint, Vodafone, Orange, BT Group, Telstra, Deutsche Telekom, Comcast, Time Warner Cable, CenturyLink, NTT Communications, Tata Communications, SoftBank, China Mobile, Singtel, Telus, Rogers Communications, Bell Canada, Telkom Indonesia, Telkom South Africa, Telmex, Telia Company, Telkom Kenya
There are more than one million Adaptive Security Appliances deployed globally. Top customers include First American Financial Corp., Genzyme, Frankfurt Airport, Hansgrohe SE, Rio Olympics, The French Laundry, Rackspace, and City of Tomorrow.
ACESUR group, Ministry of Education Oman, Anios Laboratories, Zain, DLM Location
Find out what your peers are saying about Cisco Secure Firewall vs. Stormshield Network Security and other solutions. Updated: April 2026.
893,244 professionals have used our research since 2012.