We performed a comparison between Cisco Secure Firewall and Forcepoint Next Generation Firewall based on real PeerSpot user reviews.
Find out in this report how the two Firewalls solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI."Whenever we raise a complaint with FortiGate, their response and resolution times are minimal."
"It performs very well."
"The most valuable features of the solution are SD-WAN, filtering testing applications, web filtering, and the new VPN."
"FortiGate SD-WAN facilitated a smooth transition for our customers between their two internet service providers, ensuring uninterrupted connectivity without any downtime."
"The most valuable feature of Fortinet FortiGate is URL filtering."
"I like that they have given me a solution at a fair price."
"With FortiClient, you can easily connect when you are home, check out what you want to do, and connect to your network when you are not at work. You can switch on servers and you can check what is wrong."
"The most valuable features are the possibility of having one fabric for switching on security."
"I have found the stability of this solution really good. This is why I use it."
"When it comes to the integration among Cisco tools, we find it easy. It's a very practical integration with other components as well."
"The high-availability and remote VPN features are most valuable."
"When I was managing these firewalls, I found them easy to understand, easy to deploy, and easy to maintain as compared to some of the other firewalls I have been involved with earlier. The opinion of my coworkers is that it's easy and quick to establish new zones, expand, and maintain."
"Its in-depth monitoring and analysis help us to make better decisions and policies."
"AnyConnect has been very helpful, along with the ability to use LDAP for authentication."
"The stability of Cisco ASA is excellent compared to other products on the market. Because of our customer experience as an integrator company, our clients never report any performance problems. We have a good performance reputation with Cisco ASA."
"This solution helped us to identify the key areas where we need to focus to block traffic that is malicious to our organization."
"Technical support has been quite helpful in the past."
"I found the initial setup process to be very simple and straightforward."
"The Forcepoint Next Generation Firewall is a scalable product."
"It is a stable solution, and there are no issues so far."
"When comparing this solution to others this one has better reporting, user management, and is easy to use."
"The most valuable feature is SD-WAN."
"The most valuable feature is the console management."
"It is a scalable product. I know a customer who has deployed more than 4,000 firewalls in a single deployment."
"The integration with third-party tools may be something that they should work on."
"One issue that I have had is that sometimes I need to monitor the traffic, so I need to filter it according to the user and which user is using it the most. I experience a bottleneck most of the time, particularly at the peak time when the number of contracts and users are at maximum."
"FortiLink is the interface on the firewall that allows you to extend switch management across all of your switches in the network. The problem with it is that you can't use multiple interfaces unless you set them up in a lag. Only then you can run them. So, it forces you to use a core type of switch to propagate that management out to the rest of the switches, and then it is running the case at 200. It leaves you with 18 ports on the firewall because it is also a layer-three router that could also be used as a switch, but as soon as you do that, you can't really use them. They could do a little bit more clean up in the way the stacking interface works. Some use cases and the documentation on the FortiLink checking interface are a little outdated. I can find stuff on version 5 or more, but it is hard to find information on some of the newer firmware. The biggest thing I would like to see is some improvement in the switch management feature. I would like to be able to relegate some of the ports, which are on the firewall itself, to act as a switch to take advantage of those ports. Some of these firewalls have clarity ports on them. If I can use those, it would mean that I need to buy two less switches, which saves time. I get why they don't, but I would still like to see it because it would save a little bit of space in the server rack."
"I'm not sure if it's something that they already have or are developing something, however, we need some dedicated features for container security."
"Quality control on their firmware versions needs improvement. When they introduce new firmware, there tend to be bugs."
"Technical support for this solution can be improved."
"The Wi-Fi controller needs a lot of improvement."
"It should have a better pricing plan. It is too expensive. It should also have a more granular view of the attack. I don't have FortiAnalyzer, and it is difficult for me to have a complete view when there is an attack on my server."
"In NGFW, Cisco should be aligned with the new technology and inspection intelligence because Cisco is far behind in this pipeline."
"I would like to see more configurable feature parity with Cisco ASA, which is the legacy product that Cisco is moving away from. When configuring remote access VPN, not all of the options are there. You have to download another tool, which means that the configuration takes a little bit longer with Cisco Secure Firewall. Though it's getting there, there are still some features lagging behind."
"The dashboard can be improved."
"More intuitive support for SIP services are needed. This took a long time to configure properly for the user."
"When you make any changes, irrespective of whether they are big or small, Firepower takes too much time. It is very time-consuming. Even for small changes, you have to wait for 60 seconds or maybe more, which is not good. Similarly, when you have many IPS rules and policies, it slows down, and there is an impact on its performance."
"It can probably provide a holistic view of different appliances because many customers do not have only one brand, besides the traditional SNMP protocols, to cover all their devices. There are some specific requirements in terms of configurations or actions that sometimes have to be done in a very manual way because of the different versions or brands in a customer's infrastructure. It could also have some additional analytics capabilities. It has some very interesting ways to monitor the traffic and identify false positives from the architecture and the environment. It would be good if there is a way to patch with some other industry-specific solutions and synchronize some of the information, such as what other customers experience in their operations and probably share some additional information that could be leveraged or shared among the industry. Such information would be something interesting to see. It could have AI capabilities related to how the appliances could benefit from learning the current environment and different exposures."
"HTTPs inspection and higher throughput/spec would be good."
"It is not the newest, cutting-edge technology"
"Configuration is not easy because it has an old-fashioned interface. The configuration interface is highly complex, and it's been the same for years. They have to change the interface."
"If I want to allow access to Facebook, yet not allow the user to access videos, then I am not able to do it with this product."
"Its interface is complex when compared with a firewall like FortiGate. Forcepoint Next Generation Firewall needs a management console, whereas FortiGate doesn't need any console. When you have a few devices, a console is not really necessary. It's good to have a private console only when you have a lot of devices."
"They should have a local vendor who can provide support. Most of the support is overseas, so the time zones can be a problem."
"You do need knowledge of the solution in order to set the product up properly."
"They need to work on stability, it has not been the best in our experience."
"We feel the product's technical support could be better, as this relates to the solution itself, to the installation of the product, and to having a proper understanding of the case."
"Forcepoint would be improved if there were more training available."
More Forcepoint Next Generation Firewall Pricing and Cost Advice →
Cisco Secure Firewall is ranked 4th in Firewalls with 404 reviews while Forcepoint Next Generation Firewall is ranked 25th in Firewalls with 40 reviews. Cisco Secure Firewall is rated 8.2, while Forcepoint Next Generation Firewall is rated 7.6. The top reviewer of Cisco Secure Firewall writes "Highlights and helps us catch Zero-day vulnerabilities traveling across our network". On the other hand, the top reviewer of Forcepoint Next Generation Firewall writes "Provides decent protection for the LAN but complicated interface". Cisco Secure Firewall is most compared with Palo Alto Networks WildFire, Netgate pfSense, Meraki MX, Sophos XG and Palo Alto Networks NG Firewalls, whereas Forcepoint Next Generation Firewall is most compared with Palo Alto Networks Advanced Threat Prevention, Check Point NGFW, Sophos XG, Netgate pfSense and Darktrace. See our Cisco Secure Firewall vs. Forcepoint Next Generation Firewall report.
See our list of best Firewalls vendors.
We monitor all Firewalls reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.