Ahmed El-GhawabiTechnical Consultant at Zak Solutions for Computer Systems
Anonymous UserInformation Systems Infrastructure Manager at a comms service provider
Anonymous UserExecutive Cyber Security Consultant at a tech services company
We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
"Cisco ASA NGFW significantly improves our bank. It protects any high-value products that we use from hackers, viruses, malware, and script-bots. It gives us metrics on network traffic as well as what kind of attacks we are getting from the outside."
"We moved from a legacy firewall to the ASA with FirePOWER, increasing our Internet Edge defense dramatically."
"Integration with all the other Cisco tools is valuable."
"The firewall power that comes with Cisco ASAv is the most valuable asset. They are are very easy to manage."
"The web interface was easy for me. The configuration is logical, so it's easy to use and easy to understand how to protect, how to open a port, how to manage and how to route a device. That's why I prefer Cisco. It's robust and I never have issues with the hardware. That's why I choose Cisco and not another vendor."
"The features I found most valuable in this solution, are the overall security features."
"The basic setup is fine. We're just one person. It's only when you want to do some more sophisticated setup like channeling and stuff like that that it's more complicated."
"We are using the Cisco AnyConnect for our end-user VPN with the ASA."
"I had no difficulty using the Huawei NGFW."
"The mapping features and traffic logging are good."
"The security is good. It's as effective as anything else on the market."
"The user interface is very, very good."
"Huawei was able to assist us in the installation of their product. The installation was very fast."
"The most valuable aspects of this solution are that it's simple and stable. It has better security aspects compared to other similar solutions."
"The most valuable features are security and support."
"The interface with Panorama makes it very easy to use."
"The most valuable features are web control and IPS/IDS."
"In Palo Alto the most important feature is the App-ID."
"The most valuable feature is the Posture Assessment."
"The most valuable feature is that you can control your traffic flowing out and coming it, allowing you to apply malware and threat protection, as well as vulnerability checks."
"The Palo Alto VM-Series is nice because I can move the firewalls easily."
"Cisco should improve its user interface design. There is a deep learning curve to the product if you are a newcomer."
"The product would be improved if the GUI could be brought into the 21st Century."
"With regards to stability, we had a critical bug come out during our evaluation... not good."
"We found it difficult to publish an antennae sidewalk with the ASDM. I think Cisco should improve this by creating a simpler interface for the firewall."
"The service could use a little more web filtering. If I compare it to Cyberoam, Cyberoam has more the web filtering, so if you want to block a website, it's easier in other solutions than in Cisco."
"It could also use a reporting dashboard."
"The user interface is old fashioned."
"I would like to see them release a patch for ASAv with cross-platform FirePower integration."
"I would like to see an antivirus solution included with the product."
"Wi-Fi scanning and Wi-Fi analysis would be useful features to include in the future."
"The solution requires a more interactive dashboard. That would make it easier than playing with configurations the way we have to now."
"The solution doesn't seem to be very mature. Our networking team says they are experiencing a lot of issues in the firewalls and some routers."
"The documentation needs to be improved. When they retire old models, they also retire the documentation. However, if you are still using an older model, you still need access to that documentation. And yet, they go ahead and removed it. It's gone. You are therefore stuck with a device with no documentation and technical support that isn't very helpful as they also remove support assistance as well."
"In the next release, I would like for them to develop an anti-malware functionality in which it checks for malicious files like Cisco has."
"There should be an option for direct integration with the Azure platform."
"The command-line interface is something that some people struggle with and I think that they should have an option to go straight to the GUI."
"I would like to have automatic daily reporting, such as how many users have connected via SSL VPN."
"The solution needs to have more easily searchable details or documentation about it online, so it's easier to Google if you have queries."
"In the next release, I would like to see better integration between the endpoints and the firewalls."
"The disadvantage with Palo Alto is that they don't have a cloud-based solution that includes a secure web gateway."
"The product needs improvement in their Secure Access Service Edge."
"Watch out for hidden licensing and incredibly high annual maintenance costs."
"I bought a license for three years and it was really affordable."
"With AnyConnect, it depends on your license. It depends on the number of concurrent users you want to connect."
"This solution might be expensive, but it is economical in the long run."
"Some of our customers would be more likely to standardize on Cisco equipment if the cost was lower because a lot of people install cheap equipment."
"The cost of this solution is high."
"It would be nice if pricing could do more to reflect the economy of the country where the product is being implemented."
"The program is very expensive."
"Licensing fees are billed on an annual basis."
"The price of this solution is very high for some parts of Africa, which makes it a challenge."
"Palo Alto can be as much as two times the price of competing products that have twice the capabilities."
"The cost of this product varies from customer to customer and the relationship with IBM, including how many offerings from IBM are already being used."
"Because I work for a university and the URL is for the institution, it's a free license for us."
"It is not the cheapest on the market. The total cost for two firewall instances is $75,000. This includes licenses, deployment fees, and support for two years."
Cisco ASA firewalls deliver enterprise-class firewall functionality with highly scalable and flexible VPN capabilities to meet diverse needs, from small/branch offices to high performance data centers and service providers. Available in a wide range of models, Cisco ASA can be deployed as a physical or virtual appliance. Flexible VPN capabilities include support for remote access, site-to-site, and clientless VPN. Also, select appliances support clustering for increased performance, VPN load balancing to optimize available resources, advanced high availability configurations, and more.
Cisco ASAv is the virtualized version of the Cisco ASA firewall. Widely deployed in leading private and public clouds, Cisco ASAv is ideal for remote worker and multi-tenant environments. The solution scales up/down to meet performance requirements and high availability provides resilience. Also, Cisco ASAv can deliver micro-segmentation to protect east-west network traffic.
Cisco firewalls provide consistent security policies, enforcement, and protection across all your environments. Unified management for Cisco ASA and FTD/NGFW physical and virtual firewalls is delivered by Cisco Defense Orchestrator (CDO), with cloud logging also available. And with Cisco SecureX included with every Cisco firewall, you gain a cloud-native platform experience that enables greater simplicity, visibility, and efficiency.
In addition to all the functions of conventional firewalls, Huawei NGFW also provides more advanced security functions, such as IPS and anti-malware functions, to identify applications and prevent application-layer threats. Huawei NGFW provides a global context awareness architecture for granular controls based on application, content, time, user, attack, and location (ACTUAL). The innovative SmartPolicy technology and management interfaces that can be easily integrated simplify the O&M management. The Intelligence Awareness Engine (IAE) uses an integrated architecture to perfectly balance security and performance. Huawei NGFW provides next-generation security featuring comprehensive protection, granular control, and OM simplicity to meet the requirements of enterprise networks on access control, scope of protection, usability, and performance in the new ICT landscape.
The VM-Series is a virtualized form factor of our next-generation firewall that can be deployed in a range of private and public cloud computing environments based on technologies from VMware, Amazon Web Services, Microsoft, Citrix and KVM.
The VM-Series natively analyzes all traffic in a single pass to determine the application identity, the content within, and the user identity. These core elements of your business can then be used as integral components of your security policy, enabling you to improve your security efficacy through a positive control model and reduce your incident response time though complete visibility into applications across all ports.
In both private and public cloud environments, the VM-Series can be deployed as a perimeter gateway, an IPsec VPN termination point, and a segmentation gateway, protecting your workloads with application enablement and threat prevention policies.
Huawei NGFW is ranked 25th in Firewalls with 5 reviews while Palo Alto Networks VM-Series is ranked 10th in Firewalls with 15 reviews. Huawei NGFW is rated 6.6, while Palo Alto Networks VM-Series is rated 8.6. The top reviewer of Huawei NGFW writes "Good interface and easy to set up but needs more documentation". On the other hand, the top reviewer of Palo Alto Networks VM-Series writes "An excellent solution for the right situations and businesses". Huawei NGFW is most compared with Fortinet FortiGate, Cisco Firepower NGFW Firewall, Sophos XG, Palo Alto Networks NG Firewalls and Sophos UTM, whereas Palo Alto Networks VM-Series is most compared with Azure Firewall, Fortinet FortiGate, Fortinet FortiGate-VM and Juniper SRX. See our Huawei NGFW vs. Palo Alto Networks VM-Series report.
See our list of best Firewalls vendors.
We monitor all Firewalls reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.