Anonymous UserInformation Systems Infrastructure Manager at a comms service provider
Shashidhara B NDirector - Technology Solutions & Services at Connectivity IT Services Private Limited
We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
"The IPS (In-plane switching) is the most valuable feature."
"I like the user interface because the navigation is very easy, straightforward on your left side pane you have all the sites that you need to browse. Unlike any other firewalls, it's pretty straightforward."
"We have multiple secure internal networks linked with our plants. We are from a oil company, so we have multiple plant areas which need to have restricted network access. Therefore, we are using it for restricting access to the plant area."
"The initial setup was completely straightforward."
"I would say the Firepower module is most valuable. I'm trying more to transition to this kind firewall. I had to study a little on Palo Alto Networks equipment. There is a lot I have to learn about the difference."
"The feature that I found most valuable is the overall stability of the product."
"The stability of Cisco ASA is excellent compared to other products on the market. Because of our customer experience as an integrator company, our clients never report any performance problems. We have a good performance reputation with Cisco ASA."
"Right now, Cisco ASA NGFW has given us a lot of improvement. We are planning to move to a new facility and will be a much larger organization."
"I had no difficulty using the Huawei NGFW."
"The mapping features and traffic logging are good."
"The security is good. It's as effective as anything else on the market."
"The user interface is very, very good."
"Huawei was able to assist us in the installation of their product. The installation was very fast."
"It protects from distributed denial-of-service attacks with Screen Options."
"Most of our clients use it as a traditional firewall, blocking Layer 3 and Layer 4, blocking by transport."
"The virtualization feature is the most valuable feature. Sometimes customers are requesting a private connection using mobile data when they are connecting to remote sites."
"On a scale from one to ten, one being the worst and ten being the best I'd give Juniper SRX an overall rating of eight because of its' competitive price."
"There is a lot of flexibility in how you can commit, check, and back out of a configuration."
"The most valuable feature is the virtualization because it can be used for customers who are using the mobile data network to request a private connection to a remote site."
"The deployment is quite easy and fast."
"I've found the security features, such as IDS and the VPN most valuable."
"At times the product is sluggish and slow"
"If I need to download AnyConnect in a rush, it will prompt me for my Cisco login account. Nobody wants to download a client to a firewall that they don't own."
"Most of the time, when I try to run Java, it is not compatible with ASA's current operating systems."
"We have to rely on Cisco ASDM to access the firewall interface. This needs improvement. Because we have a web-based interface, and it is a lot more user-friendly."
"The installation and integration of Cisco ASA with FirePOWER can be improved. The management with Fortigate is easier than Cisco ASA on FirePOWER. The management side of Cisco ASA can be improved so it can be more easily configured and used."
"One of my main concerns, an area that could use improvement is in adjusting the need to buy a license to enable features."
"Usually, the customers are satisfied, but I am going to recommend that all clients upgrade to FirePOWER management. I want Cisco to improve the feature called anti-spam. We use a Cisco only email solution, that's why we need the anti-spam on email facility."
"There is no support here in Georgia. If something goes wrong, support is not always very helpful with the other firewalls or other products."
"I would like to see an antivirus solution included with the product."
"Wi-Fi scanning and Wi-Fi analysis would be useful features to include in the future."
"The solution requires a more interactive dashboard. That would make it easier than playing with configurations the way we have to now."
"The solution doesn't seem to be very mature. Our networking team says they are experiencing a lot of issues in the firewalls and some routers."
"The documentation needs to be improved. When they retire old models, they also retire the documentation. However, if you are still using an older model, you still need access to that documentation. And yet, they go ahead and removed it. It's gone. You are therefore stuck with a device with no documentation and technical support that isn't very helpful as they also remove support assistance as well."
"The GUI needs to be easier and more helpful for users who don't have security experience."
"it would be more powerful if Juniper brought out a security product other than the firewall, like anti-spam, endpoint protection, etc. Customers who want to deploy security solutions are not just thinking about firewalls... Juniper should have an end-to-end solution, from the endpoint to the network level."
"The Juniper SRX product needs to improve in terms of innovation."
"Improvements can be made to the GUI. The GUI can be improved by creating policies to handle IPS requirements. The configuration should be a one-step process. This would make it easier to complete the setup to register the time of operation."
"It's a good stable firewall, but it's nowhere near what it needs to be for a next-generation type firewall."
"The Juniper product has to improve in terms of innovation."
"The GUI needs improvement."
"In terms of other features, I'd like to see a web filter, 10 point control, application control and a DNA filter in the next release."
"Licensing is expensive compared to other solutions."
"The cost is a big factor for us. This is why we are using it only in our restricted area. They are very much higher than their competitors in the market."
"We paid about $7,000 for the Cisco firewall, plus another small Cisco router and the lead switch. It was under the combined license. It's a final agreement."
"Watch out for hidden licensing and incredibly high annual maintenance costs."
"I bought a license for three years and it was really affordable."
"With AnyConnect, it depends on your license. It depends on the number of concurrent users you want to connect."
"This solution might be expensive, but it is economical in the long run."
"Some of our customers would be more likely to standardize on Cisco equipment if the cost was lower because a lot of people install cheap equipment."
"Licensing fees are billed on an annual basis."
"In terms of pricing, Juniper is in the middle. The most expensive firewall is Palo Alto. If a customer wants the cheapest price they should go for FortiGate. Juniper is in between these products."
"The direct support with Juniper is expensive. When you stop using the solution and miss one year of payments, if you want the support back on a specific node, they ask you to pay for the year that you haven't used the node."
"The pricing is perhaps half, probably forty percent, of Cisco."
"While the price of support is expensive, the price of the solution, itself, is not."
"The price of this solution is more than other products, but it's stable, and the technical support is better than I have seen with others."
"There was no additional licensing cost because there were no IPS services. It was just a firewall IP circuit router so they have the default licensing. We just need to renew the support yearly."
"Compared to other vendors, the pricing of this solution is good."
"The product itself is costly and the price of migration is very high."
Cisco ASA firewalls deliver enterprise-class firewall functionality with highly scalable and flexible VPN capabilities to meet diverse needs, from small/branch offices to high performance data centers and service providers. Available in a wide range of models, Cisco ASA can be deployed as a physical or virtual appliance. Flexible VPN capabilities include support for remote access, site-to-site, and clientless VPN. Also, select appliances support clustering for increased performance, VPN load balancing to optimize available resources, advanced high availability configurations, and more.
Cisco ASAv is the virtualized version of the Cisco ASA firewall. Widely deployed in leading private and public clouds, Cisco ASAv is ideal for remote worker and multi-tenant environments. The solution scales up/down to meet performance requirements and high availability provides resilience. Also, Cisco ASAv can deliver micro-segmentation to protect east-west network traffic.
Cisco firewalls provide consistent security policies, enforcement, and protection across all your environments. Unified management for Cisco ASA and FTD/NGFW physical and virtual firewalls is delivered by Cisco Defense Orchestrator (CDO), with cloud logging also available. And with Cisco SecureX included with every Cisco firewall, you gain a cloud-native platform experience that enables greater simplicity, visibility, and efficiency.
In addition to all the functions of conventional firewalls, Huawei NGFW also provides more advanced security functions, such as IPS and anti-malware functions, to identify applications and prevent application-layer threats. Huawei NGFW provides a global context awareness architecture for granular controls based on application, content, time, user, attack, and location (ACTUAL). The innovative SmartPolicy technology and management interfaces that can be easily integrated simplify the O&M management. The Intelligence Awareness Engine (IAE) uses an integrated architecture to perfectly balance security and performance. Huawei NGFW provides next-generation security featuring comprehensive protection, granular control, and OM simplicity to meet the requirements of enterprise networks on access control, scope of protection, usability, and performance in the new ICT landscape.
Huawei NGFW is ranked 25th in Firewalls with 5 reviews while Juniper SRX is ranked 12th in Firewalls with 30 reviews. Huawei NGFW is rated 6.6, while Juniper SRX is rated 7.6. The top reviewer of Huawei NGFW writes "Good interface and easy to set up but needs more documentation". On the other hand, the top reviewer of Juniper SRX writes "This best in class Next-Gen firewall is elegant in its ease-of-use and architecture". Huawei NGFW is most compared with Fortinet FortiGate, Sophos XG, Palo Alto Networks NG Firewalls, Cisco Firepower NGFW Firewall and Palo Alto Networks VM-Series, whereas Juniper SRX is most compared with Fortinet FortiGate, Palo Alto Networks WildFire, pfSense, Meraki MX and Cisco Firepower NGFW Firewall. See our Huawei NGFW vs. Juniper SRX report.
See our list of best Firewalls vendors.
We monitor all Firewalls reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.