We performed a comparison between Cisco Sourcefire SNORT and Rapid7 Metasploit based on real PeerSpot user reviews.
Find out what your peers are saying about Darktrace, Vectra AI, Check Point Software Technologies and others in Intrusion Detection and Prevention Software (IDPS)."I like most of Cisco's features, like malware detection and URL filtering."
"The most valuable features of Cisco Sourcefire SNORT are the dashboard for monitoring events."
"Solid intrusion detection and prevention that scales easily in very large environments."
"The most valuable feature of this solution is the filtering."
"It is quite an intelligent product."
"The URL filtering is very good and you can create a group for customized URLs."
"The solution is stable."
"The solution is rather easy to use."
"It allows us to concentrate solely on identified vulnerabilities without the hassle of additional setup."
"It's not possible to do penetration testing without being very proficient in Metasploit."
"The Search Engineering feature is good."
"The greatest advantage of Rapid7 Metasploit is that it is the only system that can directly exploit vulnerabilities on the Metasploit platform."
"I use Rapid7 Metasploit for payload generation and Post-Exploitation."
"The most valuable feature for us is the support for testing Linux-based web server components."
"It is scalable. It's in line with our needs."
"It contains almost all the available exploits and payloads."
"If the price is brought down then everybody will be happy."
"I don't think this solution is a time-based control system, because one cannot filter traffic based on time."
"While the alerts they offer are good, it could improve it in the sense that they should be more detailed to make the alerts more useful to us in general. Sometimes the solution will offer up false positives. Due to the fact that the alerts aren't detailed, we have to go dig around to see why is it being blocked. The solution would be infinitely better if there was just a bit more detail in the alert information and logging we receive."
"The main dashboard of Cisco Sourcefire SNORT could improve."
"There are problems setting up VPNs for some regions."
"To be frank, the product is not really stable, although they're working on that. Whenever I go to the technical community with an issue, they will usually say that it is not there yet, but the technical team are working on it. The issues are not insolvable. I think they should just keep working on the product to make sure that the product can become very stable. The technical support is great. I appreciate that. We have a lot of communities supporting Firepower now, so you can find help for whatever issue you have."
"With the next release, I would like to see some PBR, so that you can do the configuration with the features."
"The cloud can be improved."
"The solution is not very scalable, it does not provide any automation to be able to scale it."
"If your company's patch is not up to date, but you have other detection or defense solutions such as endpoint detection and response and antivirus software, the product exploit may not work effectively. This is because its exploit database update process is slow and not real-time. For zero-day vulnerabilities or new security threats, relying on Rapid7 Metasploit alone may not be effective."
"Metasploit cannot be installed on a machine with an antivirus."
"The solution should improve the responsiveness of its live technical support."
"Better automation capabilities would be an improvement."
"I think areas with shortcomings that need improvement are more integration and automation."
"I would like to see more capabilities, more functions, and more features. More types of attack vectors."
"The initial setup was a bit "tweaky" for the open-source version."
Cisco Sourcefire SNORT is ranked 15th in Intrusion Detection and Prevention Software (IDPS) with 17 reviews while Rapid7 Metasploit is ranked 14th in Vulnerability Management with 18 reviews. Cisco Sourcefire SNORT is rated 7.6, while Rapid7 Metasploit is rated 7.6. The top reviewer of Cisco Sourcefire SNORT writes "The solution provides visibility across virtual environments, protects internal networks, and is scalable to meet organizational needs". On the other hand, the top reviewer of Rapid7 Metasploit writes "Directly exploit vulnerabilities, is stable, and scalable". Cisco Sourcefire SNORT is most compared with Fortinet FortiGate IPS, Cisco NGIPS, Check Point IPS, Palo Alto Networks Advanced Threat Prevention and Darktrace, whereas Rapid7 Metasploit is most compared with Tenable Nessus, Pentera, Rapid7 InsightVM, Acunetix and Nucleus.
We monitor all Intrusion Detection and Prevention Software (IDPS) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.