Cisco Secure Firewall and Fortinet FortiGate-VM are two major players in the cybersecurity space, focusing on network protection. Data comparisons suggest that Fortinet FortiGate-VM holds an advantage in features, while Cisco Secure Firewall is commendable for its pricing and support.
Features: Cisco Secure Firewall is appreciated for advanced threat intelligence, seamless integration with other Cisco products, and comprehensive network security. Fortinet FortiGate-VM offers a wide range of features including intrusion prevention, deep packet inspection, and effective security measures which provide a broader feature set.
Room for Improvement: Cisco Secure Firewall could expand on features to compete with Fortinet’s diverse offerings. Enhanced user interface and more flexible integration could also be beneficial. Fortinet FortiGate-VM, despite its feature richness, might work on reducing initial costs, improving support for non-Fortinet environments, and enhancing ease of use without reducing its features.
Ease of Deployment and Customer Service: Fortinet FortiGate-VM provides flexible deployment models and strong customer support, ideal for varied environments. Cisco Secure Firewall offers reliable support and a straightforward setup but is more aligned with existing Cisco ecosystems, which could be limiting for non-Cisco environments.
Pricing and ROI: Cisco Secure Firewall is recognized for competitive pricing and solid ROI, especially when integrated within Cisco ecosystems. In contrast, Fortinet FortiGate-VM may incur higher initial costs; however, its comprehensive feature offerings can justify the investment, providing favorable long-term ROI.
Clients are now comfortable and not wasting productive hours on IT support.
The automation part is giving us a cost benefit and speed; we can react faster.
It's a very useful tool to mitigate and protect your enterprise.
The biggest return on investment when using Cisco Secure Firewall is that there's no waste in any infrastructure cost and licensing costs for us.
From my point of view, the biggest return on investment when using Cisco Secure Firewall is the single pane of glass, which is a huge plus for us.
The biggest return on investment for me when using Cisco Secure Firewall is reliability and robust network design.
I observed a fifty to sixty percent reduction in operational costs after migrating to FortiGate VM.
They have a platform that organizes their networks and access effectively.
We haven't used MPLS for over five years now, and it was extremely beneficial to see the changes from MPLS to SD-WAN using Fortinet FortiGate.
They offer very accurate solutions.
The quick resolution of issues with Fortinet FortiGate is due to the support of the company and the fact that the equipment is easy to work with.
I would rate the technical support for Fortinet FortiGate a ten out of ten.
I have to provide many logs, yet problems remain unresolved, often requiring workarounds rather than solutions.
I have been working with them on firewalls, wireless, switching, and routing, and the support is the best.
They have expertise and provide solutions for the most difficult problems.
The speed of Fortinet's technical support is significantly faster compared to Palo Alto.
Their support is helpful and effective.
The end-user support is delayed at levels L2 and L3.
They scale up really well from smaller models like the FortiGate 40 and 50 to bigger sites with the FortiGate 100 for more throughput - up to enterprise datacenters.
The variation comes in terms of the interfaces and throughputs, but from a security perspective, you get the same benefit, irrespective of whether you have an entry-level unit or an enterprise.
We determine sizing based on multiple factors: number of users, available links, traffic types, server count, services in use, and whether services will be published.
Scalability presents a challenge.
Compared to FortiGate and Palo Alto, it lags in configuration and other aspects.
Even with the highest one, the 4600, we still face issues, particularly when transitioning between screens; it becomes very slow.
Scalability is well-supported, with the notable ability to implement features easily.
It can start with a single core and scale up to a 32-core license for a robust deployment.
We currently have a little over 2,000 users working with Fortinet FortiGate in our environment.
We're experiencing 99.999% availability consistently.
I would rate the stability of Fortinet FortiGate a ten out of ten.
Currently, we are experiencing a general outage of one of the main internet service providers of the Dominican Republic, and we have not been impacted in our operations because with SD-WAN, we have another internet service provider and we are working with the second WAN connection without any disruption.
We have often encountered split-brain scenarios during failover processes and code upgrades, which have been persistent problems for us.
We work with a cluster with high availability, so if something goes wrong, we have it functioning.
Cisco Secure Firewall offers exceptional performance and stability.
The product has been very stable, based on my ten to eleven years of experience.
In the past couple of years, they started releasing numerous new features, and things have become somewhat unstable.
The traffic is stable and seamless.
Investing in a solution that can accommodate such growth would be more cost-effective than repeatedly purchasing new hardware.
While Fortinet claims to offer a comprehensive network solution, it falls short in addressing computer application issues, particularly server security.
When considering Sophos XG, which we also use, the logging and reporting functionality is notably more efficient.
My ongoing complaint for the last six years has been the lack of CLI functionality, which hinders my ability to work on the firewall, alongside concerns regarding deployment time.
Firepower Management Center is quite out of date compared to other vendors.
The integration between Cisco products themselves presents difficulties, such as SD-WAN configuration.
The constant daily revisions necessitate meticulous identification of the relevant documents to prevent the use of outdated information that could jeopardize our environment.
I am concerned about Fortinet's ability to help us meet regulatory compliance because its optimal functionality requires deploying all solutions within the mesh as Fortinet products.
The API needs better integration to match accounts and objects more effectively.
Last year, I renewed the support for three years, which can sometimes be expensive but depends on the security benefits and how it helps us.
It offers cost savings as it is generally cheaper than the competition.
It is about 20% cheaper.
It's good to have them, however, it costs us a lot.
It's considered a premium, but people pay that price for Cisco.
There are a lot of in-place contracts for us that provide the benefit of discounts.
FortiGate is priced lower than Palo Alto.
The license for Fortinet FortiGate-VM costs 100K to 150K Philippine pesos per year for VM1 or VM2.
They could be slightly cheaper, however, Fortinet offers a good cost-benefit ratio.
In terms of security, we have not experienced any security flaws or loopholes, and it has proven to be quite stable.
FortiGate has helped reduce the risk of cyberattacks that might disrupt our client's production.
These features help reduce our downtime, manage the ISPs, and deploy SLAs for all the website traffic.
What stands out positively about Cisco is their training and support, which has effectively prepared engineers to work with their products.
This is very important to my organization, as we work extensively with security because we are a bank, so we can keep the data safe.
Cisco Secure Firewall allows me to safeguard Layer 7 or Layer 3 and manage the security rules with the business needs of my organization.
The more integrated we become, the less we spend on solving bugs and issues, allowing us to reduce time focusing on understanding and improving our network.
Fortinet is the only provider to have successfully set up a unified operating system on all its products in the network security ecosystem.
I appreciate FortiGate's flexibility, which allows for centralized management through FortiManager.
Product | Market Share (%) |
---|---|
Fortinet FortiGate | 20.4% |
Cisco Secure Firewall | 6.2% |
Fortinet FortiGate-VM | 1.9% |
Other | 71.5% |
Company Size | Count |
---|---|
Small Business | 350 |
Midsize Enterprise | 130 |
Large Enterprise | 187 |
Company Size | Count |
---|---|
Small Business | 180 |
Midsize Enterprise | 126 |
Large Enterprise | 212 |
Company Size | Count |
---|---|
Small Business | 68 |
Midsize Enterprise | 30 |
Large Enterprise | 33 |
Fortinet FortiGate excels in providing integrated VPN, firewalling, and Unified Threat Management (UTM) with centralized management and high availability. It supports remote access and comprehensive threat protection, making it a preferred choice for securing networks.
Fortinet FortiGate offers a robust security platform with features such as strong intrusion prevention, application control, and web filtering. Its integration with Active Directory and SD-WAN functionality provides scalable solutions for large networks. Users appreciate its ease of use through centralized management interfaces, ensuring robust security with flexible configurations. However, FortiGate could enhance its graphical interface and technical support responsiveness, address firmware bugs and costly licensing, improve logging, integrate better with third-party tools, and strengthen scalability and memory for log storage. Complexity in configuration and the need for intuitive features are noted challenges, and there's a demand for advanced security, zero-trust capabilities, and AI integration.
What are the key features of Fortinet FortiGate?Fortinet FortiGate is widely implemented across industries like education, finance, and government. Companies use it for firewall protection, VPN, and SD-WAN capabilities, ensuring secure perimeter and data center security. It facilitates remote access management and traffic routing optimization, offering reliable security and connectivity solutions.
Cisco Secure Firewall provides comprehensive network security with advanced features such as application visibility, URL filtering, and malware protection. It combines a user-friendly interface with robust VPN capabilities, making it a reliable choice for varying network environments and industry applications.
Cisco Secure Firewall offers exceptional protection with its integration into Cisco's broader ecosystem, ensuring enhanced threat detection and policy unification. Despite its complexity in command-line interfaces and management, Cisco Secure Firewall remains a potent tool for safeguarding data. It is widely adopted for edge security, VPN services, perimeter defense, and traffic segmentation, especially in hybrid settings. Essential sectors like banking and telecom benefit from its stable connectivity and centralized security management. Though there are challenges with costs and support for third-party APIs, the firewall's scalability and high availability provide comprehensive support for protecting network assets.
What are the key features of Cisco Secure Firewall?Cisco Secure Firewall is widely implemented across sectors like banking, education, ISPs, and telecoms. It fortifies data centers and network edge security, delivering strong protection for client access, hybrid environments, and intrusion prevention. In these industries, firewall solutions ensure secure connectivity and manage RTU traffic effectively, leveraging centralized management and integration with Cisco's security tools.
FortiGate Virtual Appliances allow you to mitigate blind spots by implementing critical security controls within your virtual infrastructure. They also allow you to rapidly provision security infrastructure whenever and wherever it is needed. FortiGate virtual appliances feature all of the security and networking services common to traditional hardware-based FortiGate appliances. With the addition of virtual appliances from Fortinet, you can deploy a mix of hardware and virtual appliances, operating together and managed from a common centralized management platform.
We monitor all Firewalls reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.