"I have integrated it for incidence response. If there is a security event, the Cisco firewall will automatically block the traffic, which is valuable."
"It has a good security level. It is a next-generation firewall. It can protect from different types of attacks. We have enabled IPS and IDS."
"Web filtering is a big improvement for us. The previous version we used, the AC520, did not have that feature included. It was not very easy for us, especially because the environment had to be isolated and we needed to get updates from outside, such as Windows patches. That feature has really helped us when we are going outside to pull those patches."
"If you compare the ASA and the FirePOWER, the best feature with FirePOWER is easy to use GUI. It has most of the same functionality in the Next-Generation FirePOWER, such as IPS, IPS policies, security intelligence, and integration and identification of all the devices or hardware you have in your network. Additionally, this solution is user-friendly."
"The feature set is fine and is rarely a problem."
"The dashboard is the most important thing. It provides good visibility and makes management easy. Firepower also provides us with good application visibility and control."
"The most important feature is the intensive way you can troubleshoot Cisco Firepower Firewalls. You can go to the bit level to see why traffic is not handled in the correct way, and the majority of the time it's a networking issue and not a firewall issue. You can solve any problem without Cisco TAC help, because you can go very deeply under the hood to find out how traffic is flowing and whether it is not flowing as expected. That is something I have never seen with other brands."
"The most valuable feature is the Intrusion Prevention System."
"The Forcepoint Next Generation Firewall is a scalable product."
"It is stable and scalable. In addition, their support is great. When you ask them for something, they provide support, and if required, they also involve the R&D team to help you to resolve the issues in your configuration."
"The VPN is great."
"I like the Firewall and the IPS."
"We like the scalability of Forcepoint because with the Forcepoint NGFW solution, we can scale anything. The solution has central management, so we can manage all the branches and devices centrally in one controller."
"Forcepoint Next Generation Firewall is very simple, easy to use, and flexible."
"Forcepoint is a good, stable solution."
"When comparing this solution to others this one has better reporting, user management, and is easy to use."
"Its user interface is good, and it is always working fine."
"The most valuable features are the policies, filtering, and configuration."
"Fortinet FortiGate protects against internet-based threats, both internal and external. It is scalable, stable, easy to use, and easy to install."
"The web tutor and automatic rules by schedule are good features."
"Offers good security and filtering."
"The web filtering facility and application control are the most valuable features from the point of view of our clients. The VPN feature is also quite popular amongst our clients. Two-factor authentication is one of the good features in Fortinet. These features are important for the current scenario of security. Security has become a necessity nowadays. With cyber-attacks becoming more common, protecting an organization's data is one of the major tasks. It is also very stable and scalable, and it is very straightforward to configure. Their technical support is also good."
"All of the features of Fortinet FortiGate are useful and the security protection is good."
"The most valuable feature is the SSL VPN, as it allows us to connect and it separates this product from other firewalls."
"Most of the features don't work well, and some features are missing as well."
"It's mainly the UI and the management parts that need improvement. The most impactful feature when you're using it is the user interface and the user experience."
"The change-deployment time can always be improved. Even at 50 seconds, it's longer than some of its competitors. I would challenge Cisco to continue to improve in that area."
"FlexConfig is there as a bridge for features that are not yet natively integrated into Firepower. It is a way of allowing you to be able to configure things that wouldn't otherwise be possible until the development team can add them into Firepower's native capability. There is still some work that needs to be done around FlexConfig. There are still quite a few complex things, like policy-based routing, that have to be done in FlexConfig, and it doesn't always work perfectly. Sometimes, there are some glitches. It is recommended that you configure FlexConfig policies with Cisco TAC. It would be good to see Cisco accelerate some of those configurations that you can only do in FlexConfig into the platform, so that they are there natively."
"This product is managed using the Firepower Management Center (FMC), but it would be better if it also supported the command-line interface (CLI)."
"Its interface is sometimes is a little bit slow, and it can be improved. When you need to put your appliance in failover mode, it is a little difficult to do it remotely because you need to turn off the appliance in Cisco mode. In terms of new features, it would be good to have AnyConnect VPN with Firepower. I am not sure if it is available at the moment."
"I believe that the current feature set of the device is very good and the only thing that Cisco should work on is improving the user experience with the device."
"The application detection feature of this solution could be improved as well as its integration with other solutions."
"Something that I've noticed that Forcepoint lacks, is the training that they offer to their end-customers"
"When it comes to a complex deployment, the rules, firewall features, SD-WAN core features, and auto-scaling can cause the device to be not quite stable."
"They need to work on stability, it has not been the best in our experience."
"We feel the product's technical support could be better, as this relates to the solution itself, to the installation of the product, and to having a proper understanding of the case."
"Its interface is complex when compared with a firewall like FortiGate. Forcepoint Next Generation Firewall needs a management console, whereas FortiGate doesn't need any console. When you have a few devices, a console is not really necessary. It's good to have a private console only when you have a lot of devices."
"Forcepoint is a little difficult to configure compared to its competitors."
"The solution needs to add an antivirus profile and anti-spyware profile, not just policies and VPN."
"The ability to dynamically change policies could be improved."
"The user interface could be improved."
"It would be good if they had fewer updates."
"Fortinet FortiGate can improve the integration with Active Directory. Additionally, I would like to have a Cloud Controller, such as they do in the Cisco Meraki solution."
"The integration with third-party tools may be something that they should work on."
"You do need some IT knowledge in order to effectively work with the solution."
"The stability could be a bit better."
"The way everything is set up could be easier. Currently, people need a lot of experience and knowledge to administer it and to link it to devices."
"I think there could be more QoS features"
More Cisco Firepower NGFW Firewall Pricing and Cost Advice →
More Forcepoint Next Generation Firewall Pricing and Cost Advice →
Forcepoint Next Generation Firewall is ranked 5th in WAN Edge with 18 reviews while Fortinet FortiGate is ranked 1st in WAN Edge with 166 reviews. Forcepoint Next Generation Firewall is rated 7.8, while Fortinet FortiGate is rated 8.4. The top reviewer of Forcepoint Next Generation Firewall writes "A good and simple solution, but becomes unstable when more features, like auto-scaling are introduced". On the other hand, the top reviewer of Fortinet FortiGate writes "Stable, easy to set up, and offers good ROI". Forcepoint Next Generation Firewall is most compared with Palo Alto Networks Threat Prevention, Cisco SD-WAN, Check Point NGFW, Darktrace and pfSense, whereas Fortinet FortiGate is most compared with pfSense, Cisco ASA Firewall, Sophos XG, Check Point NGFW and SonicWall TZ. See our Forcepoint Next Generation Firewall vs. Fortinet FortiGate report.
See our list of best Software Defined WAN (SD-WAN) Solutions vendors, best WAN Edge vendors, and best Firewalls vendors.
We monitor all WAN Edge reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.