"The most valuable feature would be ASDM. The ability to go in, visualize and see the world base in a clear and consistent manner is very powerful."
"The integration of network and workload micro-segmentation helps a lot to provide unified segmentation policies across east-west and north-south traffic. One concrete example is with Cisco ACI for the data center. Not only are we doing what is called a service graph on the ACI to make sure that we can filter traffic east-west between two endpoints in the same network, but when we go north-south or east-west, we can then leverage what we have on the network with SGTs on Cisco ISE. Once you build your matrix, it is very easy to filter in and out on east-west or north-south traffic."
"We have not had to deal with stability issues."
"The customer service/technical support is very good with this solution."
"The main thing that I love the most is its policy and objects. Whenever I try to give access to a user, I can create an object via group creation in the object fields. This way, I am not able to enter a user in the policy repeatedly."
"The content filtering is good."
"It's got the capabilities of amassing a lot of throughput with remote access and VPNs."
"The most important feature is the intensive way you can troubleshoot Cisco Firepower Firewalls. You can go to the bit level to see why traffic is not handled in the correct way, and the majority of the time it's a networking issue and not a firewall issue. You can solve any problem without Cisco TAC help, because you can go very deeply under the hood to find out how traffic is flowing and whether it is not flowing as expected. That is something I have never seen with other brands."
"It's fine, and it's good. It's very stable."
"One of Juniper SRX's most valuable features is the site-to-site VPN."
"The most powerful feature in Juniper SRX is definitely NCLS."
"The firewall features and the routing capability are the most valuable."
"I like the Junos OS, which has been very good for me. It's very clever."
"It is very fast and very easy to maintain. Another nice part of it is that you can easily extract the logs and move them over to a security operations center."
"Technical support is good. They quickly respond, and they even have local help here. They can actually give you an answer very quickly."
"Juniper supports their products very well."
"It's a very powerful solution and the firewalls offer high performance"
"The dashboard, customization, API, and pricing are good."
"This solution works well. Their switches and firewall are good."
"The hardware is stable."
"The most valuable features are application filtering, content filtering, the intrusion prevention system (IPS), and definitely the application firewall."
"It's basic functionality is probably the most valuable feature."
"It is deployed on the customer site, and we manage the firewalls on this side."
"The initial setup is pretty simple."
"When you make any changes, irrespective of whether they are big or small, Firepower takes too much time. It is very time-consuming. Even for small changes, you have to wait for 60 seconds or maybe more, which is not good. Similarly, when you have many IPS rules and policies, it slows down, and there is an impact on its performance."
"It's mainly the UI and the management parts that need improvement. The most impactful feature when you're using it is the user interface and the user experience."
"My team tells me that other solutions such as Fortinet and Palo Alto are easier to implement."
"Report generation is an area that should be improved."
"They need a VTI. I know it's going to be available in the next software version, which is the 6.7 version. However, the problem with that is that the 6.7 is going to deprecate all the older IKEv1 deployment tunnels. Therefore, the problem is that we have a lot of customers which are using older encryptions. If I do that, update it, it's not going to work for me."
"I believe that the current feature set of the device is very good and the only thing that Cisco should work on is improving the user experience with the device."
"The ability to better integrate with other tools would be an improvement."
"In a future release, it would be ideal if they could offer an open interface to other security products so that we could easily connect to our own open industry standard."
"Sometimes committing configurations takes a lot of time in Juniper because of the connections, and it could be a little bit faster."
"Junos Space should be improved to be on par with FortiGate's solution for managing firewalls and routing."
"I think Juniper SRX should have a GUI. Some of the competitors are already implementing GUI for the firewall."
"Its logging is very good, but we would like to have an easier way of creating more reports. We would like to be able to manipulate the reports or manage the way the reports are coming out."
"While the GUI is pretty good on the Juniper side, there can still be tweaks made to it that will make it even better."
"The capacity can be limiting. We have outgrown its capacity. You can only scale up to a certain extent, depending on the device purchased."
"I've noticed that the management interface could use some updates and upgrades."
"J-Web, Juniper Web, is sometimes not working great when users are increasing their internet use. Additionally, they need to improve the GUI, graphical user interface, and the firewall management needs to improve. Their CLI is good, but sometimes the GUI is very slow."
"I would like to see an activity sensor for malicious content or sensor for viruses and malware."
"It is pretty complex to manage and could be easier."
"The GUI really needs a lot of work, and it has got worse with successive version updates."
"Some people complain that the solution tends to have a steep learning curve. It could be because most people have basic familiarity with Cisco or other similar products and maybe have never worked closely with Juniper products."
"VPN access is an area that needs improvement."
"The reporting can be improved."
"There are too many types of licenses, which can be confusing."
"We experienced some technical issues during implementation"
More Cisco Firepower NGFW Firewall Pricing and Cost Advice →
Juniper SRX is ranked 16th in Firewalls with 37 reviews while Juniper vSRX is ranked 25th in Firewalls with 9 reviews. Juniper SRX is rated 7.8, while Juniper vSRX is rated 7.2. The top reviewer of Juniper SRX writes "Scalable with good technical support and works well for larger organizations". On the other hand, the top reviewer of Juniper vSRX writes "Good filtering capabilities, supports SSL inspection, helpful technical support". Juniper SRX is most compared with Fortinet FortiGate, Cisco ASA Firewall, Palo Alto Networks WildFire, pfSense and Sophos XG, whereas Juniper vSRX is most compared with Azure Firewall, pfSense, Fortinet FortiGate-VM, Palo Alto Networks VM-Series and Cisco ASA Firewall. See our Juniper SRX vs. Juniper vSRX report.
See our list of best Firewalls vendors and best Unified Threat Management (UTM) vendors.
We monitor all Firewalls reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.