"A good intrusion prevention system and filtering."
"The most valuable feature that Cisco Firepower NGFW provides for us is the Intrusion policy."
"It's got the capabilities of amassing a lot of throughput with remote access and VPNs."
"It is one of the fastest solutions, if not the fastest, in the security technology space. This gives us peace of mind knowing that as soon as a new attack comes online that we will be protected in short order. From that perspective, no one really comes close now to Firepower, which is hugely valuable to us from an upcoming new attack prevention perspective."
"One of the most valuable features is the AMP. It's very good and very reliable when it comes to malicious activities, websites, and viruses."
"You do not have to do everything through a command line which makes it a lot easier to apply rules."
"There are no issues that we are aware of. It does its job silently in the background."
"We get the Security Intelligence Feeds refreshed every hour from Talos, which from my understanding is that they're the largest intelligence Security Intelligence Group outside of the government."
"The SD-WAN function is very developed. It has SD-WAN functionality with security features in one device. We can manage from one single console SD-WAN and the security policy."
"It's user-friendly and easy to operate."
"Fortinet FortiGate is easy to use."
"The interface is very user-friendly and I like it very much."
"Its stability is the most valuable."
"The ease of setting the solution up is a valuable aspect for us."
"It's super reliable. I don't think I've ever had a reliability issue with it."
"The solution can scale well."
"The graphic user interface is very good and it is user-friendly which makes the product easy-to-use."
"The interface and the dashboard are the most valuable features of this solution."
"The most valuable features are reporting, the Sensei plugin, and firewall capabilities."
"The system in general is quite flexible."
"I have found the solution has some great features overall, such as guest access capabilities, dashboards, and ease of use. There is plenty of documentation and support and it has the plugins that I needed."
"We have found pretty much all the features of the solution to be valuable."
"The initial implementation process is simple."
"The solution is good for a basic firewall for a small business or for home use."
"Cisco Firepower NGFW Firewall can be more secure."
"They need a VTI. I know it's going to be available in the next software version, which is the 6.7 version. However, the problem with that is that the 6.7 is going to deprecate all the older IKEv1 deployment tunnels. Therefore, the problem is that we have a lot of customers which are using older encryptions. If I do that, update it, it's not going to work for me."
"The visibility for VPN is one big part. The policy administration could be improved in terms of customizations and flexibility for changing it to our needs."
"It's mainly the UI and the management parts that need improvement. The most impactful feature when you're using it is the user interface and the user experience."
"I believe that the current feature set of the device is very good and the only thing that Cisco should work on is improving the user experience with the device."
"When you make any changes, irrespective of whether they are big or small, Firepower takes too much time. It is very time-consuming. Even for small changes, you have to wait for 60 seconds or maybe more, which is not good. Similarly, when you have many IPS rules and policies, it slows down, and there is an impact on its performance."
"We cannot have virtual domains, which we can create with FortiGate. This is something they should add in the future. Additionally, there is a connection limit and the FMC could improve."
"Web filtering needs improvement because sometimes the URL is miscategorized."
"Sometimes you do need to know some CLI commands, so it's a bit harder for technicians or new people that don't know it."
"There are just some services that aren't available. For example, the Ethernet or point-to-point protocols. They could add these services to their product offering - especially services for ISPs."
"The support system could be improved."
"The solution needs to improve its integration with cybersecurity."
"The pricing could be a bit better, especially when you consider how they have the most basic offering priced."
"The captive portal could be improved."
"You do need some IT knowledge in order to effectively work with the solution."
"The license renewal process, annual renewal price, and the web application firewall features should be improved."
"The logging could improve in OPNsense."
"The interface needs to be simplified. It is not user-friendly."
"I would like to see better SD-WAN performance."
"There are issues with stability and reliability."
"The ability to set the VPN IP address would be a welcome addition."
"There should be more technical documentation."
"The only thing that I would like to see improved is the Insight or the NetFlow analysis part. It would be good to have the possibility to dig down on the Insight platform. Right now, we can easily do only a few analyses. If this page becomes more powerful, it surely will be a well-adopted platform."
"The solution could be more secure."
Cisco NGFW firewalls deliver advanced threat defense capabilities to meet diverse needs, from
small/branch offices to high performance data centers and service providers. Available in a wide
range of models, Cisco NGFW can be deployed as a physical or virtual appliance. Advanced threat
defense capabilities include Next-generation IPS (NGIPS), Security Intelligence (SI), Advanced
Malware Protection (AMP), URL filtering, Application Visibility and Control (AVC), and flexible VPN
features. Inspect encrypted traffic and enjoy automated risk ranking and impact flags to reduce event
volume so you can quickly prioritize threats. Cisco NGFW firewalls are also available with clustering
for increased performance, high availability configurations, and more.
Cisco Firepower NGFWv is the virtualized version of Cisco's Firepower NGFW firewall. Widely
deployed in leading private and public clouds, Cisco NGFWv automatically scales up/down to meet
the needs of dynamic cloud environments and high availability provides resilience. Also, Cisco NGFWv
can deliver micro-segmentation to protect east-west network traffic.
Cisco firewalls provide consistent security policies, enforcement, and protection across all your
environments. Unified management for Cisco ASA and FTD/NGFW physical and virtual firewalls is
delivered by Cisco Defense Orchestrator (CDO), with cloud logging also available. And with Cisco
SecureX included with every Cisco firewall, you gain a cloud-native platform experience that enables
greater simplicity, visibility, and efficiency.
Learn more about Cisco’s firewall solutions, including virtual appliances for public and private cloud.
The FortiGate family of NG firewalls provides proven protection with unmatched performance across the network, from internal segments, to data centers, to cloud environments. FortiGates are available in a large range of sizes and form factors and are key components of the Fortinet Security Fabric, which enables immediate, intelligent defense against known and new threats throughout the entire network.
OPNsense is an open source, easy-to-use and easy-to-build FreeBSD based firewall and routing platform. OPNsense includes most of the features available in expensive commercial firewalls, and more in many cases. It brings the rich feature set of commercial offerings with the benefits of open and verifiable sources.
Fortinet FortiGate is ranked 1st in Firewalls with 102 reviews while OPNsense is ranked 13th in Firewalls with 11 reviews. Fortinet FortiGate is rated 8.4, while OPNsense is rated 8.0. The top reviewer of Fortinet FortiGate writes "Stable, easy to set up, and offers good ROI". On the other hand, the top reviewer of OPNsense writes "A solution that detects and blocks malicious content with good reporting and visibility, but the reliability needs improvement". Fortinet FortiGate is most compared with Cisco ASA Firewall, pfSense, Check Point NGFW, Meraki MX and SonicWall TZ, whereas OPNsense is most compared with pfSense, Untangle NG Firewall, Sophos XG, Sophos UTM and Cisco ASA Firewall. See our Fortinet FortiGate vs. OPNsense report.
See our list of best Firewalls vendors.
We monitor all Firewalls reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.