We performed a comparison between Cisco Secure Firewall and Palo Alto Networks K2-Series based on real PeerSpot user reviews.
Find out in this report how the two Firewalls solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI."The security fabric is excellent."
"The most valuable features are the policies, filtering, and configuration."
"Its performance in fulfilling our requirements has been satisfactory."
"The most valuable feature of Fortinet FortiGate is security. They are known for efficiency and are on the top of Gartner Quadrant reviews. Fortinet FortiGate has an easy-to-use platform with a good graphical interface. The configuration is simple and the solution provides an overall good layer of security."
"The usage in general is pretty good."
"The SD-WAN is the most valuable feature."
"The most valuable features are simplicity, management, and that it's constantly evolving."
"We are a visual effects company, and there have been a number of high profile security issues in our industry. This has brought us to a higher standard of security, which our clients are very keen on these days."
"The integration of network and workload micro-segmentation helps a lot to provide unified segmentation policies across east-west and north-south traffic. One concrete example is with Cisco ACI for the data center. Not only are we doing what is called a service graph on the ACI to make sure that we can filter traffic east-west between two endpoints in the same network, but when we go north-south or east-west, we can then leverage what we have on the network with SGTs on Cisco ISE. Once you build your matrix, it is very easy to filter in and out on east-west or north-south traffic."
"I would say the Firepower module is most valuable. I'm trying more to transition to this kind firewall. I had to study a little on Palo Alto Networks equipment. There is a lot I have to learn about the difference."
"Logging is great. It will show when it reaches its capacity before it is too late, unless you have bursts of traffic."
"We get the Security Intelligence Feeds refreshed every hour from Talos, which from my understanding is that they're the largest intelligence Security Intelligence Group outside of the government."
"Web filtering is a big improvement for us. The previous version we used, the AC520, did not have that feature included. It was not very easy for us, especially because the environment had to be isolated and we needed to get updates from outside, such as Windows patches. That feature has really helped us when we are going outside to pull those patches."
"Its ability to discover attacks is a valuable feature. All of the other features that have to do with security are good."
"A stable, reliable solution used to protect the network's perimeter."
"The IP filter configuration for specific political and Static NAT has been most valuable."
"The solution is reliable and scales well."
"I like the tool's WildFire feature."
"Palo Alto has better and finer controls than, say, Cisco or Check Point."
"We've found the solution offers us good stability."
"The most valuable feature of Palo Alto Networks K2-Series is the performance which is above their competitors. The throughput they have delivered is good. When we used other solutions they failed the deployment when we were using different rules. They have a theory perform performance light and performance degradation. However, Palo Alto Networks K2-Series never fails in that scenario."
"Palo Alto firewalls are scalable enough. We have about 110 employees in our company, and we are about to expand to 130."
"As long as the solution is kept updated, it's pretty stable."
"I have found that Palo Alto Networks K2-Series has the best security. They are more user-friendly, older firewalls used to have to be configured using the command-line interface, but in this solution, it can be done in the GUI."
"It should be more stable. There should be full integration within Fortinet products themselves as well as with other third-party products. Especially when you're not dealing with SIEM and the correlation of the security box, we want Fortinet to be able to share that information with as many other products as it can."
"Lacks training for new features."
"The inability to scale the FortiAnalyzer to match our growth necessitates the purchase of new hardware."
"The central management for the FortiGate Fortinet Firewall needs improvement. They have the manager to do the essential management for both SD-WAN and for the security policy. They should also improve the SD-WAN function."
"You do need some IT knowledge in order to effectively work with the solution."
"Stability and technical support are the two major issues I have found with Fortinet."
"The monitor and the visibility, in this proxy, is very weak."
"In the future, I would like to see improvements made to cloud-based management."
"It can probably provide a holistic view of different appliances because many customers do not have only one brand, besides the traditional SNMP protocols, to cover all their devices. There are some specific requirements in terms of configurations or actions that sometimes have to be done in a very manual way because of the different versions or brands in a customer's infrastructure. It could also have some additional analytics capabilities. It has some very interesting ways to monitor the traffic and identify false positives from the architecture and the environment. It would be good if there is a way to patch with some other industry-specific solutions and synchronize some of the information, such as what other customers experience in their operations and probably share some additional information that could be leveraged or shared among the industry. Such information would be something interesting to see. It could have AI capabilities related to how the appliances could benefit from learning the current environment and different exposures."
"The throughput highlighted on the datasheet (10Gbps) should be reviewed. This throughput is only for a UDP running environment, which you will never find in the real world. Rather consider a multiprotocol throughput."
"Usually, the customers are satisfied, but I am going to recommend that all clients upgrade to FirePOWER management. I want Cisco to improve the feature called anti-spam. We use a Cisco only email solution, that's why we need the anti-spam on email facility."
"It is hard to collaborate with our filtered environment."
"There are always vulnerabilities that come up and there was one in early 2018 but this was patched with software updates."
"The solution's deployment is time-consuming, which should be minimized and made more user-friendly for us."
"I would like to see the inclusion of a protocol that can be used to protect databases."
"Deploying configurations takes longer than it should."
"They should implement the features that the other firewalls have."
"I would like to see the threat intelligence capability integrated with other vendors such as Cisco and Forcepoint."
"In the past, we've had trouble with Palo Alto's application filtering not getting it right. I would not be recommending layer 7 application filtering yet."
"Palo Alto doesn't have extended visibility to the end point in their firewalls."
"The solution needs a series of OS changes."
"Palo Alto has many other products. It would be nice for these products to be centralized under one tool"
"It would be really helpful to have dashboards that provide information on IOC blockings such as where and how many. It will also be good to know how many hashing files have been reported. It would also be nice to have easy access to this information. Otherwise, it's a painful, manual task."
"The ease of management and configuration should be improved."
Cisco Secure Firewall is ranked 4th in Firewalls with 404 reviews while Palo Alto Networks K2-Series is ranked 28th in Firewalls with 28 reviews. Cisco Secure Firewall is rated 8.2, while Palo Alto Networks K2-Series is rated 8.4. The top reviewer of Cisco Secure Firewall writes "Highlights and helps us catch Zero-day vulnerabilities traveling across our network". On the other hand, the top reviewer of Palo Alto Networks K2-Series writes "Easy to implement and manage, and the documentation is good". Cisco Secure Firewall is most compared with Palo Alto Networks WildFire, Netgate pfSense, Meraki MX, Sophos XG and Palo Alto Networks NG Firewalls, whereas Palo Alto Networks K2-Series is most compared with Palo Alto Networks NG Firewalls. See our Cisco Secure Firewall vs. Palo Alto Networks K2-Series report.
See our list of best Firewalls vendors.
We monitor all Firewalls reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.