Try our new research platform with insights from 80,000+ expert users
IT Operation Manager at a retailer with 11-50 employees
Real User
Jun 29, 2017
Provides software updates for known bugs and vulnerabilities.
Pros and Cons
  • "Any security vendor with a user-friendly interface, with good support, on-time updates for known vulnerabilities, and reliable hardware, is acceptable for an organization."
  • "Cisco FTD software is not ready for production, due to a lack of many basic NGFW features."

What is most valuable?

  • Hardware reliability
  • Software stability
  • Quick software updates for known bugs/vulnerabilities

These are very important in an enterprise environment.

How has it helped my organization?

It is small. Nobody knows where it is or what it is. It works silently. As there ar no issues, it is good for businesses and organizations.

What needs improvement?

  • License politics
  • License price
  • Precise vendor roadmap for this product

For how long have I used the solution?

I have used Cisco ASA for five years.

Buyer's Guide
Cisco Secure Firewall
March 2026
Learn what your peers think about Cisco Secure Firewall. Get advice and tips from experienced pros sharing their opinions. Updated: March 2026.
884,976 professionals have used our research since 2012.

What do I think about the stability of the solution?

We have not had stability issues.

How are customer service and support?

I would give them a high rating.

Which solution did I use previously and why did I switch?

We were using TippingPoint as an IPS and ZyXEL ZyWALL as a VPN server.
Cisco has good documentation and it is easy for Cisco certified engineers.

How was the initial setup?

The initial setup was straightforward.

What's my experience with pricing, setup cost, and licensing?

Our experience last year showed us that there is no full security, so why should we pay more? Any security vendor with a user-friendly interface, with good support, on-time updates for known vulnerabilities, and reliable hardware, is acceptable for an organization.

Which other solutions did I evaluate?

We did not evaluate any alternatives.

What other advice do I have?

The Cisco ASA product line will be replaced by Cisco FTD. Cisco FTD software is not ready for production, due to a lack of many basic NGFW features. Maybe only the high-performance Firepower 41xx/21xx/90xx Series is good as an IPS, because it is using a stable Sourcefire engine.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
it_user477366 - PeerSpot reviewer
Security Technical Architect at a tech services company with 10,001+ employees
Real User
Jun 29, 2017
It provides detection of zero day infections. The feature sets are great when there are no software bugs.
Pros and Cons
  • "With FirePOWER, you can enhance security, have effective management, and a good reporting engine."
  • "We have had a number of bugs on the FirePOWER software across several clients which have been very inconsistent and have affected our ability to deliver."

What is most valuable?

The feature sets are great when there are no software bugs. With FirePOWER, you can enhance security, have effective management, and a good reporting engine.

How has it helped my organization?

It provides detection of zero day infections through FirePOWER AMP.

What needs improvement?

Well tested software releases. We have had a number of bugs on the FirePOWER software across several clients which have been very inconsistent and have affected our ability to deliver.

For how long have I used the solution?

I have used the ASA portion for over eight years and the FirePOWER portion for about three years.

What do I think about the stability of the solution?

We did have stability issues with the FirePOWER software.

What do I think about the scalability of the solution?

We did not have scalability issues with the high end devices.

How are customer service and technical support?

I give technical support a rating of 5/10.

Which solution did I use previously and why did I switch?

We are part of the integrator space. When we changed products, it was to displace a product that no longer met the client’s requirements.

How was the initial setup?

The setup was reasonably straightforward.

What's my experience with pricing, setup cost, and licensing?

Get a clear understanding of what the licensing entails before committing.

Which other solutions did I evaluate?

We checked out Check Point and FortiGate.

What other advice do I have?

Plan very well in order to have a seamless project implementation and transition.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Buyer's Guide
Cisco Secure Firewall
March 2026
Learn what your peers think about Cisco Secure Firewall. Get advice and tips from experienced pros sharing their opinions. Updated: March 2026.
884,976 professionals have used our research since 2012.
IT Operation Manager at a retailer with 11-50 employees
Real User
Jun 29, 2017
​NGFW features software stability, quick software updates for known bugs/vulnerabilities.
Pros and Cons
  • "It is small, nobody knows where it is, nobody knows what it is, it works silently."
  • "Yes, FirePower is not stable, because every new software version comes with many features that cause problems."

What is most valuable?

NGFW features software stability, quick software updates for known bugs/vulnerabilities. Why no hardware reliability (see Clock Signal Component Issue -Cisco)? Because without NGFW features it is basically like a home router.

How has it helped my organization?

It is small, nobody knows where it is, nobody knows what it is, it works silently. So, as there is no issue, it is good for business and organization.

What needs improvement?

License politics, license price, precise vendor roadmap for this product.

For how long have I used the solution?

Two years.

What do I think about the stability of the solution?

Yes, FirePower is not stable, because every new software version comes with many features that cause problems. Cisco has to do it because other vendors have already added these features.

What do I think about the scalability of the solution?

No.

How are customer service and technical support?

High.

Which solution did I use previously and why did I switch?

3Com TippingPoint as IPS, Zyxel ZyWALL ZyXEL ZyWALLas VPN server. Cisco has good documentation and it is easy for Cisco certificated engineers.

How was the initial setup?

Complex, because of non-ready Firepower service software setup.

What's my experience with pricing, setup cost, and licensing?

The last years' experience showed that there is no full security, so why pay more. Any security vendor with a user-friendly interface, with good support, on-time updates for known vulnerabilities and reliable hardware, is acceptable for an organization.

Which other solutions did I evaluate?

No.

What other advice do I have?

Cisco's ASA product line will be replaced by Cisco FTD. And Cisco FTD software is not ready for production (lack of many basic NGFW features). So, maybe only high-performance Firepower 41xx/21xx/90xx Series is good as IPS.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
PeerSpot user
Security Consultant at Accenture
Real User
Jun 29, 2017
Cisco doesn't have many features but only basic firewalls. Technical support and documentation is great.
Pros and Cons
  • "Technical support and documentation is great."
  • "Cisco doesn't have many features but only basic firewalls."

What is most valuable?

Cisco doesn't have many features but only basic firewalls.

How has it helped my organization?

No improvement. My clients have been using this product and moving to other products.

What needs improvement?

This product should have moved towards making UTMs.

For how long have I used the solution?

Eight years.

What do I think about the stability of the solution?

No.

What do I think about the scalability of the solution?

No.

How are customer service and technical support?

Technical support and documentation is great.

Which solution did I use previously and why did I switch?

No, I worked with this product by working for a client.

How was the initial setup?

It is easy to set up and implement.

What's my experience with pricing, setup cost, and licensing?

Never worked on pricing and licensing.

Which other solutions did I evaluate?

I would always prefer to evaluate other products when I have been asked for advice on firewall solutions.

What other advice do I have?

Evaluate other product before using this product.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
it_user470943 - PeerSpot reviewer
ICT Manager - Network Operations at a healthcare company
Vendor
Jun 29, 2017
​Pricing is competitive and licensing cost is on the higher side for non-profit organizations​.
Pros and Cons
  • "Firewall, VPN and Single Sign On."
  • "Pricing is competitive but licensing cost is on the higher side for non-profit organizations."

What is most valuable?

Firewall, VPN and Single Sign On.

How has it helped my organization?

Remote Access and SSO Authentication.

For how long have I used the solution?

One year.

What do I think about the stability of the solution?

No.

What do I think about the scalability of the solution?

Not yet.

How are customer service and technical support?

Good.

Which solution did I use previously and why did I switch?

Watchguard Firewall. Switched due to license cost.

How was the initial setup?

A bit complex compared to Watchguard Firewall.

What's my experience with pricing, setup cost, and licensing?

Pricing is competitive but licensing cost is on the higher side for non-profit organizations.

Which other solutions did I evaluate?

If so, which ones? Yes, Checkpoint, Juniper, Cyberoam.

What other advice do I have?

Cisco is good. Look at your requirements and create a matrix to figure out the best option.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
PeerSpot user
Sr Network Engineer at a tech services company with 501-1,000 employees
Consultant
Jun 29, 2017
Valuable features are its ​VPNs and reliability.
Pros and Cons
  • "Connectivity with client Telcos works perfectly and administration is simple."

    What is most valuable?

    VPNs, reliability.

    How has it helped my organization?

    Connectivity with client Telcos works perfectly way and administration is simple.

    What needs improvement?

    I think it's the perfect Firewall for SME.

    For how long have I used the solution?

    Five years.

    What do I think about the stability of the solution?

    No.

    What do I think about the scalability of the solution?

    No.

    How are customer service and technical support?

    10 out of 10.

    Which solution did I use previously and why did I switch?

    Version 5515 is better than 5510 or 5505.

    How was the initial setup?

    If you know how to use Cisco IOS, it's easy. Otherwise, you will find no way
    of configuring it with ease.

    What's my experience with pricing, setup cost, and licensing?

    Go for the complete bundle, it's a one time investment only. Otherwise, in the future you will have to buy other tools as licenses for some add-on services.

    Which other solutions did I evaluate?

    FortiGate 100D.

    What other advice do I have?

    I would go for bundle licenses and hire a Cisco engineer for implementation.

    Disclosure: My company does not have a business relationship with this vendor other than being a customer.
    PeerSpot user
    PeerSpot user
    IT Manager at a manufacturing company
    Real User
    Jun 29, 2017
    Valuable features are Cisco IPSec VPn , VPN Client, Port Restrictions .​
    Pros and Cons
    • "Cisco price-performance is very successful."
    • "I need application user-IP blocking, Intrusion Prevention, QoS; I can't do these with Cisco and have to change it."

    What is most valuable?

    • Cisco IPSec VPn
    • VPN Client
    • Port Restrictions

    How has it helped my organization?

    We could connect data securely from outside the company.

    What needs improvement?

    I need application user-IP blocking, Intrusion Prevention, QoS; I can't do these with Cisco and have to change it.

    For how long have I used the solution?

    Five years.

    What do I think about the stability of the solution?

    No.

    What do I think about the scalability of the solution?

    No.

    How are customer service and technical support?

    I have never needed support from Cisco.

    Which solution did I use previously and why did I switch?

    I couldn’t meet all my needs with the Cisco 5505 so I changed it with a next-generation firewall.

    How was the initial setup?

    Actually it was simple, making port based policies more simple than PA.

    What's my experience with pricing, setup cost, and licensing?

    Cisco price-performance is very successful.

    Which other solutions did I evaluate?

    I evaluated Sophos UTM, Checkpoint, Cisco and PA. PA is the best fit for my company because Sophos acquired Cyberoam and their software wasn’t successful for domain user restrictions. Checkpoint was very slow for me and too many licences and it was complicated. Cisco acquired Sourcefire and they need to improve next-gen features. So I chose PA.

    What other advice do I have?

    I know that Cisco acquired Sourcefire and they re-introduced next-generation firewall features and I think they’ll improve NX features.

    Disclosure: My company does not have a business relationship with this vendor other than being a customer.
    PeerSpot user
    it_user400626 - PeerSpot reviewer
    Senior Network & Data Communication Engineer at a tech services company with 201-500 employees
    Consultant
    Jun 29, 2017
    ​Most valuable features are Security, Routing and NAT.
    Pros and Cons
    • "Gives flexibility and several deployment options."
    • "Some default inspection rules need better tuning."

    What is most valuable?

    Security, Routing and NAT.

    How has it helped my organization?

    Gives flexibility and several deployment options.

    What needs improvement?

    Some default inspection rules need better tuning. Focus development on CLI version.

    For how long have I used the solution?

    11 years.

    What do I think about the stability of the solution?

    Rarely.

    What do I think about the scalability of the solution?

    Yes, before Clustering was introduced.

    How are customer service and technical support?

    Nine out of 10.

    Which solution did I use previously and why did I switch?

    Yes. We changed for no special reason, just to mix things up.

    How was the initial setup?

    Yes, but you need to read and understand how the device functions before deployment.

    What's my experience with pricing, setup cost, and licensing?

    Like with all vendors, know what options you require and request the proper license accordingly. Prices are on the same level as competitors.

    Which other solutions did I evaluate?

    Not really, as all firewalls do most of what enterprises look for. What matters most is the after sales support.

    What other advice do I have?

    Read, read, read and understand your requirements beforehand.

    Disclosure: My company does not have a business relationship with this vendor other than being a customer.
    PeerSpot user
    Buyer's Guide
    Download our free Cisco Secure Firewall Report and get advice and tips from experienced pros sharing their opinions.
    Updated: March 2026
    Buyer's Guide
    Download our free Cisco Secure Firewall Report and get advice and tips from experienced pros sharing their opinions.