"I have integrated it for incidence response. If there is a security event, the Cisco firewall will automatically block the traffic, which is valuable."
"You do not have to do everything through a command line which makes it a lot easier to apply rules."
"With Cisco, there are a lot of features such as the network map. Cisco builds the whole network map of the machines you have behind your firewall and gives you insight into the vulnerabilities and attributes that the host has. Checkpoint and Fortinet don't have that functionality directly on the firewall."
"I'm a big fan of SecureX, Cisco's platform for tying together all the different security tools. It has a lot of flexibility and even a lot of third-party or non-Cisco integration. I feel like that's a really valuable tool."
"I like the firewall features, Snort, and the Intrusion Prevention System (IPS)."
"When it comes to the integration among Cisco tools, we find it easy. It's a very practical integration with other components as well."
"The most important feature is the intensive way you can troubleshoot Cisco Firepower Firewalls. You can go to the bit level to see why traffic is not handled in the correct way, and the majority of the time it's a networking issue and not a firewall issue. You can solve any problem without Cisco TAC help, because you can go very deeply under the hood to find out how traffic is flowing and whether it is not flowing as expected. That is something I have never seen with other brands."
"The implementation is pretty straightforward."
"The installation is easy, we have not had any complaints from our customers."
"Very reliable solution with good scalability and straightforward implementation."
"This solution has two main features that we find very valuable; a threat-intelligence option, and a web/application filtering option. The technical support team are very good and very quick."
"Five out of five ROI."
"The most valuable feature of Palo Alto Networks K2-Series is the configuration, it is very clear."
"The company is inventive and always adds a lot of great features."
"We've found the solution offers us good stability."
"The most valuable feature of Palo Alto Networks K2-Series is the performance which is above their competitors. The throughput they have delivered is good. When we used other solutions they failed the deployment when we were using different rules. They have a theory perform performance light and performance degradation. However, Palo Alto Networks K2-Series never fails in that scenario."
"Palo Alto's App-ID is what differentiates it from other competitors."
"One of the most valuable features is Palo Alto's firewall management. We find it easier to manage the firewall centrally."
"I have found that Palo Alto Networks K2-Series has the best security. They are more user-friendly, older firewalls used to have to be configured using the command-line interface, but in this solution, it can be done in the GUI."
"As long as the solution is kept updated, it's pretty stable."
"Licensing is complex, and I'd like it to be simplified. This is an area for improvement."
"Implementations require the use of a console. It would help if the console was embedded."
"One of my colleagues is using the firewall as an IPS, but he is worried about Firepower's performance... With the 10 Gb devices, when it gets to 5 Gbps, the CPU usage goes up a lot and he cannot manage the IPS."
"There is limited data storage on the appliance itself. So, you need to ship it out elsewhere in order for you to store it. The only point of consideration is around that area, basically limited storage on the machine and appliance. Consider logging it elsewhere or pushing it out to a SIEM to get better controls and manipulation over the data to generate additional metrics and visibility."
"They could improve by having more skilled, high-level engineers that are available around the clock. I know that's an easy thing to say and a hard thing to do."
"The application detection feature of this solution could be improved as well as its integration with other solutions."
"We only have an issue with time sync with Cisco ASA and NTP. If the time is out of sync, it will be a disaster for the failover."
"I would like to see improvement when you create policies on Snort 3 IPS on Cisco Firepower. On Snort 2, it was more like a UI page where you had some multiple choices where you could tweak your config. On Snort 3, the idea is more to build some rules on the text file or JSON file, then push it. So, I would like to see a lot of improvements here."
"SSL VPN license cost is not cheap."
"The current usage reporting is very basic."
"When it comes to renewing the solution, they tend to try to jack up the pricing."
"Palo Alto has many other products. It would be nice for these products to be centralized under one tool"
"The scalability of Palo Alto Networks K2-Series is good. It is good for larger environments over smaller ones."
"The licensing cost is a typical complaint with many clients. The solution is expensive."
"It is recommended that the Palo Alto Networks K2-Series be implemented step by step for the Panorama. Sometimes we can't overwrite the configurations because it fails."
"If we have issues, they take anywhere from two days to a week to respond. I even wrote to their CEO because there was no response. When it comes to support, this is the worst company."
"In the past, we've had trouble with Palo Alto's application filtering not getting it right. I would not be recommending layer 7 application filtering yet."
"I'd like to see more data protection on the system."
More Cisco Firepower NGFW Firewall Pricing and Cost Advice →
Hillstone E-Series is ranked 27th in Firewalls with 3 reviews while Palo Alto Networks K2-Series is ranked 20th in Firewalls with 13 reviews. Hillstone E-Series is rated 9.6, while Palo Alto Networks K2-Series is rated 8.4. The top reviewer of Hillstone E-Series writes "Efficient call processor and overall amazing ROI". On the other hand, the top reviewer of Palo Alto Networks K2-Series writes "Stable with great deep inspection functionality and good scalability". Hillstone E-Series is most compared with Fortinet FortiGate, Sophos XG, Hillstone T-Series, Palo Alto Networks NG Firewalls and Palo Alto Networks WildFire, whereas Palo Alto Networks K2-Series is most compared with Juniper SRX, Fortinet FortiGate-VM, Meraki MX and Stormshield Network Security. See our Hillstone E-Series vs. Palo Alto Networks K2-Series report.
See our list of best Firewalls vendors.
We monitor all Firewalls reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.