"Web filtering is a big improvement for us. The previous version we used, the AC520, did not have that feature included. It was not very easy for us, especially because the environment had to be isolated and we needed to get updates from outside, such as Windows patches. That feature has really helped us when we are going outside to pull those patches."
"The most valuable features of this solution are advanced malware protection, IPS, and IDS."
"Since the product is stable, we do not have to spend additional money to buy other firewalls. Once deployed, we can use the product for a long time. Thus, it is cost effective."
"Provides good integrations and reporting."
"It's got the capabilities of amassing a lot of throughput with remote access and VPNs."
"I have access to the web version of Cisco Talos to see the reputation of IP addresses. I find this very helpful. It provides important information for my company to obtain the reputation of IP addresses. The information in Talos is quite complete."
"When it comes to the integration among Cisco tools, we find it easy. It's a very practical integration with other components as well."
"IPS and Snort are very important because they also differentiate Cisco from other vendors and competitors."
"It has been stable so far."
"The only firewall able to monitor traffic from a CCTV network. Can detect unauthorized devices plugged into the network, which standard firewalls can't do."
"It does what it says it is going to do."
"It protects against intrusion while allowing needed access."
"The most common feature in the firewall, apart from that traditional firewall, would be the security services, like application control, URL filtering, Gateway Anti-Virus, and IPS protection. These are the essential features in the firewalls which I think, has to be enabled and properly used at every network infrastructure."
"The general feature is the antivirus policy, followed by the ransomware protection, and these are the features I was looking at."
"It is very user-friendly, and there is no problem in using its interface."
"We are able to block whatever we want to block by using this product. It provides all required security features, such as content filtering, VPN, in one box. Before switching to SonicWall, we had specified all required features."
"SonicWall TZ is very user-friendly and has network MAC binding. Additionally, the firewall works well."
"It's been very easy to implement and deploy."
"The initial setup could be simplified, as it can be complex for new users."
"Implementations require the use of a console. It would help if the console was embedded."
"This product is managed using the Firepower Management Center (FMC), but it would be better if it also supported the command-line interface (CLI)."
"I would like it to have faster deployment times. A typical deployment could take two to three minutes. Sometimes, it depends on the situation. It is better than it was in the past, but it could always use improvement."
"I'm not a big fan of the FDM (Firepower Device Manager) that comes with Firepower. I found out that you need to use the Firepower Management Center, the FMC, to manage the firewalls a lot better. You can get a lot more granular with the configuration in the FMC, versus the FDM that comes out-of-the-box with it. FDM is like Firepower for dummies."
"They need a VTI. I know it's going to be available in the next software version, which is the 6.7 version. However, the problem with that is that the 6.7 is going to deprecate all the older IKEv1 deployment tunnels. Therefore, the problem is that we have a lot of customers which are using older encryptions. If I do that, update it, it's not going to work for me."
"The price and SD-WAN capabilities are the areas that need improvement."
"The initial setup can be a bit complex for those unfamiliar with the solution."
"Licensing is not cheap."
"They have a very good technical support team, but I think there are some communication issues due to language differences."
"I would like to see lower antivirus pricing."
"We have experienced some issues with SonicWall TZ and they are lacking some advanced features other vendors have."
"Its reporting can be improved. Currently, we cannot directly get the user names. It only shows the IP, which makes it a bit confusing because we need to use the IP to find the user. If we could directly get the name of the user, it would be better."
"The log sections could be done more clearly."
"SonicWall TZ can improve the UI application and when you create any net policies or any new policy, it will not sync or work properly."
"Needs more robust self-help documentation along with examples and things to watch out for."
"Support for SonicWall TZ needs improvement, particularly the time it takes before you're able to speak to a support person, e.g. you have to wait for at least 30 minutes on the phone."
"GUI interface could be improved."
Cisco Firepower Next-Generation Firewall (NGFW) is a firewall that provides capabilities beyond those of a standard firewall and delivers comprehensive, unified policy management of firewall functions, application control, threat prevention, and advanced malware protection from the network to the endpoint.
Cisco NGFW Firewalls include advanced threat defense capabilities to meet diverse needs, from small offices to high-performance data centers and service providers, and are deployed in leading private and public clouds. Available in a wide range of models, Cisco NGFW can be deployed as a physical or virtual appliance. Cisco NGFW firewalls are also available with clustering for increased performance, high availability configurations, and more.
Key Features of Cisco NGFW Firewalls
Reviews from Real Users
Cisco NGFW stands out among its competitors for a number of reasons. Two major ones are its extensive discovery abilities that enable you to constantly see what is happening on your network and take action when necessary, and the high level of protection it provides.
Mike B., a director of IT security at a wellness & fitness company, writes, "It is one of the fastest solutions, if not the fastest, in the security technology space. This gives us peace of mind knowing that as soon as a new attack comes online that we will be protected in short order. From that perspective, no one really comes close now to Firepower, which is hugely valuable to us from an upcoming new attack prevention perspective."
Zhulien K., the lead network security engineer at TechnoCore LTD, notes, " The most valuable feature that Cisco Firepower NGFW provides for us is the Intrusion policy. Again, with that being said, I cannot shy away from giving kudos to all of the other features such as AVC (Application Visibility and Control), SSL Decryption, Identity policy, Correlation policy, REST API, and more. All of the features that are incorporated in the Cisco Firepower NGFW are awesome and easy to configure if you know what you are doing. Things almost always work, unless you hit a bug, which is fixed with a simple software update. "
Hillstone’s T-Series intelligent Next-Generation Firewall (iNGFW) uses three key technologies to detect advanced attacks and provide continuous threat defense for today’s networks. First, it uses statistical clustering to detect unknown malware, leveraging the patented Hillstone Advanced Threat Detection engine (ATD). Second, it uses behavioral analytics to detect anomalous network behavior, which is based on the Hillstone Abnormal Behavior Detection engine (ABD). Finally, it leverages the Hillstone threat correlation analysis engine to correlate threat events detected by disparate engines – including ATD, ABD, Sandbox and other traditional signature-based threat detection technologies – along with context information to identify advanced threats.
Hillstone T-Series is ranked 32nd in Firewalls with 2 reviews while SonicWall TZ is ranked 14th in Firewalls with 37 reviews. Hillstone T-Series is rated 7.0, while SonicWall TZ is rated 8.2. The top reviewer of Hillstone T-Series writes "Customizable reports with advanced threat protection". On the other hand, the top reviewer of SonicWall TZ writes "Multifeatured firewall solution with a user-friendly interface, high availability, scalability, and stability". Hillstone T-Series is most compared with Fortinet FortiGate, Hillstone E-Series, Cisco ASA Firewall, Sangfor NGAF and Palo Alto Networks WildFire, whereas SonicWall TZ is most compared with Fortinet FortiGate, Sophos XG, Cisco ASA Firewall and pfSense. See our Hillstone T-Series vs. SonicWall TZ report.
See our list of best Firewalls vendors.
We monitor all Firewalls reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.