Most Helpful Review
The most valuable feature is the IPsec VPN.
The Smart Dashboard and other user interfaces are very easy to use and can be handled without any significant IT skills.
After introducing this NGFW, we have improved our security posture, and now, have peace of mind.
It filters unwanted traffic.
The most valuable features are the IPsec VPN and web filtering.
We can shift traffic, block certain content, or redirect policies.
The GUI is among the most valuable features,
Valuable features include DMZ segmentation, and IDS and IPS.
It is easy to create interfaces and routing, which all can be done at the GUI level.
Management Console and user profiling to define activities.
Check Point Smart Dashboard does not support my Apple MacBook Air. It only supports Windows versions.
Check Point Smart Dashboard does not support my Apple MacBook Air.
We looked very closely at ArcSight's solution because it's a multi-vendor solution. With ArcSight we could have Check Point, we could have RSA, we could have any brand and integrate several brands, from a security point of view. With Check Point, you cannot do so, you can integrate with Check Point products.
There are some issues compared to other products. Ease of use is one.
Stability issues. I built out this firewall in a cluster, and I had stability issues day one. Needs to be rebooted frequently. Tunnels need to be bounced frequently. Their hardware compatibility guide, when I built out the servers to host them on, was not accurate.
It seems very clunky and slow. I would like to be able to tune it to be a more efficient product.
I would like the ability to pick and choose different features of it to run in a packaged infrastructure or modules, therefore I would like to have more customizability over it.
The use of it has really bogged down our response time for certain problems, given we have to go through AT&T for everything.
We would like to see MS Word BPM as a feature.
It could use a web-based portal for VPN. Earlier they had it in the ASA model, but currently they don't have it.
It's lacking one feature: VPN. Also, the 2100 Series lacks a DDoS feature. If they could add that to those platforms, that would be good.
Cisco suffers from some integration issues with other products... There is a problem with the Cisco Catalyst Switches in terms of assembling bursts and having them interact properly with the Cisco Firepower.
The product needs real-time logs to be able to monitor our services, so we can know if any our services have been blocked via the firewall or on the application side.
Pricing and Cost Advice
Check Point solutions are very expensive here. They're good, but they're expensive... Check Point is only useful for customers that have a big IT budget.
I don't think the product's pricing is a good value. I feel it's very overpriced. I feel a lot of the features for a next gen firewall are there. But I feel it's overpriced, because of the stability issues. As far as support goes, I really can't speak to direct Check Point support, but the third-party was pretty terrible... As far as the licensing goes, it's pretty complex. If anybody was to purchase the Check Point product, definitely make sure they have an account rep come on site, and explain it line by line, what each thing is. It's not straightforward. It's very convoluted. There's no way you could just figure it out by looking at it.
We pay a lot of money for it.
It is a great solution for medium or big enterprises, not so much for small businesses, mainly due to the financial costs.
Cisco Firepower is a great solution, but it is expensive compared to others that can provide similar benefits for much less.
In terms of scalability, it is really expensive. It is scalable, but when it comes to pricing, the upgrading is a bit high.
All our requirements which we need performed by the firewall (e.g. VPN, URL white-listing, or IP based white-listing, etc.) have separate licenses and costs.
|Top Comparisons||See more Check Point Next Generation Firewall competitors »|
Compared 27% of the time.
Compared 16% of the time.
See more Cisco Firepower NGFW competitors »
Compared 13% of the time.
Also Known As
|Also Known As||Check Point NGFW||Cisco Firepower Next-Generation Firewall, FirePOWER|
Your network is under constant threat. To secure it, you need the most advanced firewall protection. Check Point Next Generation Firewall identifies and controls applications by user and scans content to stop threats.
Block more threats and quickly mitigate those that do breach your defenses with the industry’s first threat-focused NGFW. Our Cisco Firepower NGFW appliances combine our proven network firewall with the industry’s most effective next-gen IPS and advanced malware protection. All so you can get more visibility, be more flexible, save more, and protect better.
Learn more about Check Point Next Generation Firewall
Learn more about Cisco Firepower NGFW
Information Not Available
|Shawnee Mission School District|
No Data Available
VISITORS READING REVIEWS