Try our new research platform with insights from 80,000+ expert users
it_user685407 - PeerSpot reviewer
Firewall Engineer at a tech services company with 10,001+ employees
Real User
We have been able to solve a lot of connectivity issues with these firewalls that the bigger name devices didn’t handle so well.

How has it helped my organization?

I can’t really say a firewall improves anything other than security, but we have been able to solve a lot of extranet connectivity issues with these firewalls that the bigger name devices didn’t handle so well.

It is bomb proof as seen by the fact they are still in production use today. A simple human friendly command structure, making CLI edits and debug sessions easy and quick, means that they just don’t fail.

The SRX is a different device. It is much more sensitive to unexpected power loss so we had to RMA several after unexpected site power outages. The command structure is also different so that I always need my cheat sheet when debugging on them.

The NSM is its own beast. It's a 10 when it’s running properly, gives you all the info you need easily to make and document edits and monitor status of devices, but keeping it running well is almost a job in itself. It doesn’t manage its own database very well and it gets slow and unresponsive, often requiring user intervention on the server backend.

What is most valuable?

Currently we use Juniper products, SSG and SRX firewalls in about a 50/50 mix both standalone and in HA clusters. We also use their NSM for device management and logging.

The SSG models are mostly EOL and are being replaced with new “Next Gen” firewalls. The SRX models will likely continue to be used internally as support will remain available for some time.

We only use the firewall and virtual router options and they do what we need:

  • The firewall is easy to configure and testing shows we are blocking the threats.
  • The virtual routers make this solution a one box answer for our needs and simplify our internal networking. As they are built into the devices, they allow you to move and separate traffic in a number of ways on one set of hardware.

They constitute a solid working solution that has been able to cope with any of the unique challenges that have come up.

What needs improvement?

While the OS supports a pretty full UTM option, we found in testing that the hardware was not powerful enough to run with all the bells and whistles turned on for the amount of traffic we process. So we use other hardware for those services meaning it’s not a deal breaker for us.

What do I think about the stability of the solution?

We have had no issues at all with the SSG models and the SRX model only had problems with sudden power loss occasionally.

Buyer's Guide
Juniper vSRX
May 2025
Learn what your peers think about Juniper vSRX. Get advice and tips from experienced pros sharing their opinions. Updated: May 2025.
853,960 professionals have used our research since 2012.

What do I think about the scalability of the solution?

The only issue was that the Network Security Manager (which is EOL) was sold as supporting over 125 devices. That may be true if you are just managing the configurations but once you add in monitoring and logging it’s really only happy with fewer than 40 devices, as the database grows too big to deal with and needs constant maintenance.

How are customer service and support?

I would rate the technical support as average, as the calls were responded to quickly but as usual it depends on who you happen to get on the phone that day. Some were very good, others times I had to ask for a different engineer to join the call.

Which solution did I use previously and why did I switch?

This solution was in place when I started so I cannot answer this question.

How was the initial setup?

The setup was straightforward and to get into a cluster consists of about ten commands. The hardest part is deciding on active/active or active/passive for your solution.

What's my experience with pricing, setup cost, and licensing?

I’m not involved in the financial side of the purchase. Our buyers handle that. Support and licensing comes in the usual tiers, SLA for repairs and/or options turned on in the device.

Which other solutions did I evaluate?

I know they left Check Point and looked at Cisco products before choosing Juniper, but that decision pre-dates my involvement.

What other advice do I have?

I would say get an SSG but they are EOL so for the SRX make sure you have the recovery boot system configured and a way to remote console the device.
I know this sounds like a major problem but it’s not been that big an issue. We run HA and have same day replacement on them so if we lose one it’s not a major outage, just more work to do.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.

PeerSpot user
Chief Technology Officer at Flex Group
Reseller
Top 5
Secures applications and modifies the firmware quickly to respond to the threats
Pros and Cons
  • "One of Juniper vSRX's most valuable features is its integration with safety applications. It keeps the software secure from developers without relying on third-party solutions."
  • "The biggest downside of Juniper vSRX is its pricing, which may be too high for smaller organizations. While it's a decent solution, the cost may limit its accessibility to smaller customers."

What is our primary use case?

One of Juniper vSRX's most valuable features is its integration with safety applications. It keeps the software secure from developers without relying on third-party solutions.

What needs improvement?

The biggest downside of Juniper vSRX is its pricing, which may be too high for smaller organizations. While it's a decent solution, the cost may limit its accessibility to smaller customers.

For how long have I used the solution?

I have been working with the product for five to six years. 

What do I think about the stability of the solution?

The solution's stability is good. It responds very quickly in crisis situations, which might be partly because I know the team there and how to get the information I need.

What do I think about the scalability of the solution?

The tool's scalability is good. 

How are customer service and support?

I've seen really fast response times with Juniper vSRX. When there's a problem, it modifies the firmware quickly to respond to the threat. With Cisco, it can take months to make changes because their architecture is more complicated. Juniper vSRX and Fortinet are straightforward. 

How would you rate customer service and support?

Positive

What other advice do I have?

I rate the overall solution a nine out of ten. 

Disclosure: My company has a business relationship with this vendor other than being a customer: Reseller

PeerSpot user
Buyer's Guide
Juniper vSRX
May 2025
Learn what your peers think about Juniper vSRX. Get advice and tips from experienced pros sharing their opinions. Updated: May 2025.
853,960 professionals have used our research since 2012.
IT Manager at Alpha Group
Real User
Excellent dashboard system with a straightforward initial setup
Pros and Cons
  • "We like the solution’s protocol and its dashboard system."
  • "The solution should consider improving its licensing policies."

What is our primary use case?

We use the solution to block unwanted sites on our internal platform.

What is most valuable?

We like the solution’s protocol and its dashboard system.

What needs improvement?

The solution should consider improving its licensing policies. It would be better if we could make a one-time payment for the hardware.

For how long have I used the solution?

Our organization has been using the solution for about three and a half years.

What do I think about the stability of the solution?

The solution is stable. I rate the stability a nine out of ten.

What do I think about the scalability of the solution?

It is not a scalable solution since it depends on the hardware. In our organization, 500 people use the solution. We have no plans to increase the number of users.

How was the initial setup?

The initial setup is straightforward.

What about the implementation team?

It took about three to four days to deploy the solution. We hired third-party consultants to deploy the solution the first time.

The deployment model depends on our operations. We needed only one engineer to deploy the solution.

What's my experience with pricing, setup cost, and licensing?

We have purchased a one-year license for the solution. The solution could have been cheaper.

What other advice do I have?

I would recommend the solution to others. Overall, I rate the solution a nine on ten.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.

PeerSpot user
Expert - architect of ICT systems at NASK
Real User
Cost-effective with easy deployment and high scalability

What is most valuable?

The tool could be used without additional work. It is easy to implement.

What needs improvement?

The IDs of interfaces that are implemented inside of the vSRX maybe should be extended in some cases because there is the imitation of virtual interfaces.

For how long have I used the solution?

I have been using Juniper vSRX as an end user for five years.

What do I think about the stability of the solution?

The product is stable.

I rate the solution’s stability a ten out of ten.

What do I think about the scalability of the solution?

The solution’s scalability is high because more than 4000 elements can be deployed.

Around 100 users are using this solution.

How are customer service and support?

Technical support is fine.

How was the initial setup?

The initial setup is easy. We use the special scripts to configure it. It is automatic to configure and implement. 

Documentation.

What's my experience with pricing, setup cost, and licensing?

The tool is sold in a package. Hence, the individual price is very low.

What other advice do I have?

I recommend the Juniper vSRX solution. Its effectiveness depends on the architect's expertise. We've encountered no issues with its deployment in our system. Our collaboration with Juniper has been satisfactory in terms of quality. However, it's essential to consider cloud technology within such architectures. The current solution lacks scalability and might need to be reevaluated based on emerging trends in security with the increasing shift toward cloud technology.

Overall, I rate the solution an eight out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.

PeerSpot user
Buyer's Guide
Download our free Juniper vSRX Report and get advice and tips from experienced pros sharing their opinions.
Updated: May 2025
Buyer's Guide
Download our free Juniper vSRX Report and get advice and tips from experienced pros sharing their opinions.