We performed a comparison between Cisco Secure Firewall, Fortinet FortiGate, and Juniper SRX Series Firewall based on real PeerSpot user reviews.
Find out what your peers are saying about Netgate, Fortinet, OPNsense and others in Firewalls."The integration and configuration were pretty straightforward."
"The solution's dashboard is fine, and in terms of support, Cisco is better than other OEMs in the market."
"The firewall power that comes with Cisco ASAv is the most valuable asset. They are are very easy to manage."
"A good intrusion prevention system and filtering."
"It's a flexible solution and is well-known in the community."
"The best features are stability and scalability."
"I have experience with URL filtering, and it is very good for URL filtering. You can filter URLs based on the categories, and it does a good job. It can also do deep packet inspection."
"For our very specific use case, for remote access for VPN, ASAs are very good."
"It is user friendly, and has all the features you need."
"Fortigate's most valuable feature is that it doesn't need a push policy when writing rules."
"The solution is stable."
"I am "headache free" that I don't have to categorize all the websites and that security has been pre categorized by the people, and that the services are getting updated. At least one part of my problem is over."
"There are great templates, so you don't have to customize them if you don't want to. You do have the option to custom create some folders and some reports, however, with what is there, you don't really need to go through extra effort, as they already give you a lot of predefined views of reports and so forth."
"We purchased Fortinet because of the pricing, its functionality, because it met our requirements, and the total cost of ownership over five years was quite reasonable. In the market, Fortinet is rated quite well."
"There is an easy process for configuring it, and it is straightforward to implement the device from scratch."
"The VPN is the most valuable feature."
"The setup is pretty straightforward."
"The most valuable feature is robustness."
"I have used technical support quite a bit, and they are really good."
"The firewall features and the routing capability are the most valuable."
"Juniper has the "recovery safety feature", so if you perform a "commit confirmed" and the new configuration disconnects you. then there is no "confirmed" command with X mins (default = 10 mins). It automatically reverts (recovers) to the previous configuration. This is handy for when you do not want to make that trip down range just to reboot a router."
"Technical support is good. They quickly respond, and they even have local help here. They can actually give you an answer very quickly."
"Troubleshooting with the solution is quite easy. If you compare the process to, for example, Fortigate, Juniper is much easier."
"It is a complete security bundle. The cloud-based Sky Advanced Threat Prevention feature is very valuable. I am 100% satisfied with the performance of the Juniper firewall. It has a very good throughput. It works very fine. We use our firewall as a site-to-site VPN or Software-Defined Wide Area Network (SD-WAN). In both cases, it has a very good and optimum performance. Their service support is very good in India. I get really good support from the Juniper team."
"There are always vulnerabilities that come up and there was one in early 2018 but this was patched with software updates."
"The Cisco ASA device needs overall improvement, as configurations alone do not completely secure my network."
"I would like it to have faster deployment times. A typical deployment could take two to three minutes. Sometimes, it depends on the situation. It is better than it was in the past, but it could always use improvement."
"There is huge scope for improvement in URL filtering. The database that they have is not accurate. Their content awareness and categorization for URL filtering are not that great. We faced many challenges with their categorization and content awareness. They should improve these categorization issues."
"Cisco is not cheap, however, it is worth investing in these technologies."
"We would like to see MS Word BPM as a feature."
"Usually, the customers are satisfied, but I am going to recommend that all clients upgrade to FirePOWER management. I want Cisco to improve the feature called anti-spam. We use a Cisco only email solution, that's why we need the anti-spam on email facility."
"I would like the ability to drill down into certain reports because currently, that cannot be done."
"The firewall engine is not so strong as of now, in my opinion... My second concern is that, while they have Zero-day vulnerability and anti-malware features, the threat engine needs to be strengthened, its efficiency can be increased."
"The room for improvement is about the global delivery time period. Usually I need to wait for almost one month to deliver it overseas. So if you can shorten the deliver time it'd be great."
"The solution lacks sufficient filtering."
"There are SD-WAN network monitoring, SD-WAN features, Industrial Databases, Internet of Things, Detection, etc., however, we do have not licenses for those features. We thought that if you bought a product, you should have all of the features it offers. Why should you need to make so many extra purchases to enable features? They should have one price for the entire offering."
"It needs more available central management."
"There is one big configuration file with no separations for the unique VDOMs. Maybe they could separate individual VDOM configuration files with the root VDOM configuration file referencing the individual VDOM config files."
"The product does need better support in the cloud environment. It's not exactly cloud-native right now."
"The performance could be a bit better. Right now, I find it to be lacking. Having good performance is very important for our work."
"It could be more secure."
"The Juniper SRX product needs to improve in terms of innovation."
"IPS is one that I would definitely want to be improved. I would also like SSL VPN to be integrated."
"I would like to see endpoint control and endpoint testing security."
"It would be good if Junos had "unique commands" between all hierarchical levels, discarding the use of the "Run" command."
"In comparison to other enterprise-level firewalls, such as Cisco FTD, Cisco has improved significantly. In the past, I believed that Juniper SRX was superior, but after seeing the advancements in the FTD platform, Cisco has better functionality. I have not recently explored Juniper SRX's next-generation firewall capabilities as we only use basic firewall filtering in our enterprise network."
"Junos Space should be improved to be on par with FortiGate's solution for managing firewalls and routing."
"The solution could cost less. It's a bit expensive right now."