Most Helpful Review
Features we most use are the SD-WAN and auto failover for dual ISP connections. Seem to work in harsh environments...
Find out what your peers are saying about Fortinet FortiGate vs. Meraki MX Firewalls and other solutions. Updated: March 2019.
333,153 professionals have used our research since 2012.
We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
We moved from a legacy firewall to the ASA with FirePOWER, increasing our Internet Edge defense dramatically.
The Cisco ASA NGFW can easily scale. If you want, you can scale it to a lot of traffic. It's an X file, so all of our users are going through it.
Right now, Cisco ASA NGFW has given us a lot of improvement. We are planning to move to a new facility and will be a much larger organization.
The feature that I found most valuable is the overall stability of the product.
The stability of Cisco ASA is excellent compared to other products on the market. Because of our customer experience as an integrator company, our clients never report any performance problems. We have a good performance reputation with Cisco ASA.
I would say the Firepower module is most valuable. I'm trying more to transition to this kind firewall. I had to study a little on Palo Alto Networks equipment. There is a lot I have to learn about the difference.
We have multiple secure internal networks linked with our plants. We are from a oil company, so we have multiple plant areas which need to have restricted network access. Therefore, we are using it for restricting access to the plant area.
The initial setup was completely straightforward.
The most important features with FortiGate are the web filter and application controls. We can control our internet usage and use the web filter for application purposes.
It is user friendly, and has all the features you need.
We are very happy with the general bandwidth agility we have seen from one website to another website.
The most important features of Fortinet FortiGate are the Intrusion Prevention System (IPS) and firewall control applications.
Fortinet FortiGate is scalable for our users. Right now, we have almost 70 users. We do not have any plan to increase our usage of FortiGate. For maintaining the firewall solution, one staff member is enough.
This solution made it very easy to manage our bandwidth.
The features that prevent internet connections, the filtering are the most valuable because we did not have any internet protection before.
Fortinet FortiGate is a security device. It can optimize security on the networks of a company. It actually protects the company from attacks from outside. With FortiGate, you can categorize the users. You can create a group of users that can access all of the websites for their work. You can limit other users' access.
Point-to-point VPNs can dynamically follow IP changes with no need for static IPs.
Dual WAN connections are greatly simplified and point-to-point VPNs automatically connect regardless of what WAN connection is active.
The security level of our organization has changed by using Meraki MX Firewalls. We didn't have the UTM before, but now we have sandboxing, tray scanning, attack preventions and monitorization. Our security level has improved.
It is very easy to configure.
It is very fast to implement.
In a week, we can make new policy and view what all our users did.
The dashboard is very intuitive and easy to understand.
Simple to manage.
The product would be improved if the GUI could be brought into the 21st Century...
Cisco could possibly improve upon their user interface design. There is a deep learning curve to the product if you are a newcomer.
There is no support here in Georgia. If something goes wrong, support is not always very helpful with the other firewalls or other products.
One of my main concerns, an area that could use improvement is in adjusting the need to buy a license to enable features.
Usually, the customers are satisfied, but I am going to recommend that all clients upgrade to FirePOWER management. I want Cisco to improve the feature called anti-spam. We use a Cisco only email solution, that's why we need the anti-spam on email facility.
The installation and integration of Cisco ASA with FirePOWER can be improved. The management with Fortigate is easier than Cisco ASA on FirePOWER. The management side of Cisco ASA can be improved so it can be more easily configured and used.
Most of the time, when I try to run Java, it is not compatible with ASA's current operating systems.
We have to rely on Cisco ASDM to access the firewall interface. This needs improvement. Because we have a web-based interface, and it is a lot more user-friendly.
Some features of Fortinet FortiGate are actually fee enabled that are inconvenient for deploying in production. Other issues relate to isolation with Cisco products and your server.
I feel that the reporting needs to be improved.
I have to say that the initial setup was complex. The deployment took a few days to get set up. Initially, we were using an IPVanish. We switched to this tool since we thought it would be easier. But it turns out it wasn't easier to set up and run.
The main aspect of FortiGate that could be improved is load balancing. Our management team does not want to buy another appliance for only load balancing.
One issue that I have had is that sometimes I need to monitor the traffic, so I need to filter it according to the user and which user is using it the most. I experience a bottleneck most of the time, particularly at the peak time when the number of contracts and users are at maximum.
Compared to some other products, the DLP is not at par for the moment.
Fortinet could improve the windows opener or the virtual IP solutions for opening windows. The virtual IP settings need improvement as firewalls are trending in new development directions.
Scalability is one of the disadvantages. When it comes to scalability, you have to actually change the box. If you want to upgrade it, you need to actually change the existing box and probably you take the system off to other sites.
Meraki tech support staff have a lot more visibility into your network than you do, which is frustrating at times. I understand the approach is to keep the dashboard easier to understand. This will frustrate more advanced users at times.
We feel that Cisco provides smaller features, with fewer possibilities versus other solutions out there.
We could have more reporting options and the ability to send alarms to the administrator.
More detail needed for configuration of the VPN.
It would be great if the Meraki devices let us see, in real time, the internet demand on a single device.
The only stability issue is in Content Filtering. Sometimes we need to report these types of issues to Cisco support.
Pricing and Cost Advice
We paid about $7,000 for the Cisco firewall, plus another small Cisco router and the lead switch. It was under the combined license. It's a final agreement.
The cost is a big factor for us. This is why we are using it only in our restricted area. They are very much higher than their competitors in the market.
Licensing is expensive compared to other solutions.
Pricing is high, but it is essentially a corporate decision.
The cost is a bit high compared to other solutions in the market.
Cisco recently has become very expensive.
The cost is a bit higher than other competitive solutions on the market.
It is considered on the "high end" of the spectrum.
Each feature costs money, so it is important to study your needs.
I would say that all things considered, the pricing is pretty good.
Fortinet is reasonable in pricing and licensing. Overall, FortiGate is affordable. The licensing fee can be a little high, depending on the budget for your project.
Our licensing costs are on a yearly basis.
Compared to Palo Alto, which we have used in the past, pricing and licensing are okay.
Setup cost may be not so low, as you expect, because it depends on different factors, but TCO for 5 years may pleasantly surprise you.
The initial setup is super straight forward and as far as the licensing goes for the small product that we have, the pricing was pretty competitive. It wasn't as simple and as cheap as a SonicWall but for the service we would get it was a good price.
It is a good product from a price perspective versus functionality.
Other content filtering solutions that I have used had more bells and whistles, but given the cost, complexity, and management overhead, I am very pleased with Meraki’s solution.
It is more expensive than other solutions, but it is a cloud-managed network solution and support is given at the moment you call. That give a very big plus.
The Meraki UTM is excellent when you buy the Advanced Security license. If you buy a different license you lost all the valuable functions.
It can always improve pricewise regarding throughput.
Answers from the Community
Compared 34% of the time.
Compared 10% of the time.
Compared 8% of the time.
Compared 17% of the time.
Compared 12% of the time.
Compared 9% of the time.
Compared 31% of the time.
Compared 16% of the time.
Compared 6% of the time.
Also Known As
|Cisco ASA, Adaptive Security Appliance, ASA||FortiGate 60b, FortiGate 60c, FortiGate 80c, FortiGate 50b, FortiGate 200b, FortiGate 110c, FortiGate||MX64, MX64W, MX84, MX100, MX400, MX600|
Adaptive Security Appliance (ASA) is Cisco's end-to-end software solution and core operating system that powers the Cisco ASA product series. This software solution provides enterprise-level firewall capabilities for all types of ASA products, including blades, standalone appliances and virtual devices. Adaptive Security Appliance provides protection to organizations of all sizes, and allows end-users to access information securely anywhere, at any time, and through any device.
Adaptive Security Appliance is also fully compatible with other key security technologies, and so provides organizations with an all-encompassing security solution.
Block more threats and quickly mitigate those that do breach your defenses with the industry’s first threat-focused NGFW.
The FortiGate family of NG firewalls provides proven protection with unmatched performance across the network, from internal segments, to data centers, to cloud environments. FortiGates are available in a large range of sizes and form factors and are key components of the Fortinet Security Fabric, which enables immediate, intelligent defense against known and new threats throughout the entire network.
|With the proliferation of modern applications and mixed-use networks, host and port based security is no longer sufficient. Cisco Meraki's layer 7 "next generation" firewall, included in MX security appliances and every wireless AP, gives administrators complete control over the users, content, and applications on their network.|
Learn more about Cisco ASA NGFW
Learn more about Fortinet FortiGate
Learn more about Meraki MX Firewalls
|There are more than one million Adaptive Security Appliances deployed globally. Top customers include First American Financial Corp., Genzyme, Frankfurt Airport, Hansgrohe SE, Rio Olympics, The French Laundry, Rackspace, and City of Tomorrow.||Pittsburgh Steelers, LUSH Cosmetics, NASDAQ, Verizon, Arizona State University, Levi Strauss & Co. Whitepaper and case studies here||Hyatt, ONS|
Financial Services Firm19%
Comms Service Provider11%
Comms Service Provider23%
Financial Services Firm16%
Financial Services Firm12%
Real Estate/Law Firm10%
Comms Service Provider10%
Comms Service Provider9%
Writing And Editing Position8%
Financial Services Firm7%
Comms Service Provider21%