Try our new research platform with insights from 80,000+ expert users

Cisco Secure Firewall vs Hillstone E-Series comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Jan 4, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Fortinet FortiGate
Sponsored
Ranking in Firewalls
1st
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
580
Ranking in other categories
Secure Web Gateways (SWG) (2nd), Intrusion Detection and Prevention Software (IDPS) (1st), Software Defined WAN (SD-WAN) Solutions (1st), WAN Edge (1st), ZTNA (1st), Unified Threat Management (UTM) (1st)
Cisco Secure Firewall
Ranking in Firewalls
7th
Average Rating
8.2
Reviews Sentiment
7.4
Number of Reviews
429
Ranking in other categories
Cisco Security Portfolio (3rd)
Hillstone E-Series
Ranking in Firewalls
38th
Average Rating
9.2
Reviews Sentiment
7.7
Number of Reviews
10
Ranking in other categories
SSL VPN (11th), Enterprise Infrastructure VPN (23rd)
 

Mindshare comparison

As of January 2026, in the Firewalls category, the mindshare of Fortinet FortiGate is 18.8%, down from 20.7% compared to the previous year. The mindshare of Cisco Secure Firewall is 7.0%, up from 5.5% compared to the previous year. The mindshare of Hillstone E-Series is 0.4%, up from 0.3% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Firewalls Market Share Distribution
ProductMarket Share (%)
Fortinet FortiGate18.8%
Cisco Secure Firewall7.0%
Hillstone E-Series0.4%
Other73.8%
Firewalls
 

Featured Reviews

Vasu Gala - PeerSpot reviewer
Manager, Information Technology Operation/Presales at TechMonarch
A stable solution with an intuitive interface and quick customer service
I have been working with Fortinet FortiGate, WatchGuard, Sophos, and SonicWall. I'm not as comfortable with SonicWall because of their UI and limitations. I prefer Fortinet above all other options. When it comes to configuration, I am confident in my ability to handle various tasks, including creating policies such as firewall rules, web policies, and application policies. Additionally, I can configure VPNs and implement load balancing, among other tasks. Overall, I feel much more comfortable working with Fortinet. Fortinet has made significant improvements by integrating AI with firewalls for threat analysis and prevention. In the past 2-3 years, they have launched FortiSASE and SIEM, and they also provide SOC services. Both Palo Alto and Fortinet FortiGate are excellent. While Fortinet FortiGate comes at higher prices, the functionality and support justify the cost. They promptly resolve firmware issues and inform all support providers about configuration changes.
Phil Shiflett - PeerSpot reviewer
Senior Manager, Network Engineering at TTi Power Equipment
Unified policies streamline network management but complex licensing requires attention
Cisco Secure Firewall has some growth opportunities in terms of visibility and control capabilities regarding managing encrypted traffic. It has the ability to analyze encrypted traffic, and there is potential for more integration with APIs and AI to enhance these capabilities. Cisco Secure Firewall needs improvement in deployment time and the capability to access the CLI during support calls. I often encounter issues when technical support uses a CLI that is not familiar to me while troubleshooting through the GUI. My ongoing complaint for the last six years has been the lack of CLI functionality, which hinders my ability to work on the firewall, alongside concerns regarding deployment time. For the next release, they should look at the features offered by competitors such as Fortinet, including the ability to perform packet capture directly from the interface. If they enhanced their troubleshooting efficiency related to packet capture for each specific rule, it would simplify the process significantly.
TahirMahmood - PeerSpot reviewer
IT Manager at Zubair Feeds
Offers good features like URL filtering, IPS, and IDS to users
We received an update for the tool in July. The update was provided for the tool as there was a problem with the firewall, where too much memory was consumed, and the firewall was hanging a lot. When we updated the tool's features, everything became okay. The tool only had some memory-related problems. It took the tool a month to fix the issues.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The next-gen features, the unified threat management capabilities are something that just about everybody is interested in at this point."
"Since deploying FortiGate 3401E clusters, we have observed: Dramatic Reduction in Risk Exposure—blocked peer-to-peer and unauthorized applications (e.g., BitTorrent) at the perimeter and east-west segments, eliminating a major source of malware and bandwidth abuse."
"Fortinet FortiGate meets all the security demands of my industry. It covers endpoint security, including web interface, DNS security, and ELP. I'm currently using the latest version. The features that have most improved our network security are Web Control, filtering, application control, IDS, IPS policies, and Deep SSL inspection."
"Fortigate is very scalable to serve our customers' needs. We have scaled already from fifty to more than a hundred instances of Fortinet FortiGate. Around 20 staff are required for deployment and maintenance, mostly engineers."
"The FortiGate controls the user's activities and maximizes my bandwidth use overall."
"The simplicity of the product is great. It's very easy to use, which is a compliment we get all the time in terms of feedback."
"The stability and scalability of this solution are satisfactory. Its SD-WAN, VPN, and URL filtering features are very useful."
"The dynamic segmentation feature in Fortinet FortiGate is pretty good."
"The web interface was easy for me. The configuration is logical, so it's easy to use and easy to understand how to protect, how to open a port, how to manage and how to route a device. That's why I prefer Cisco. It's robust and I never have issues with the hardware. That's why I choose Cisco and not another vendor."
"The high-availability and remote VPN features are most valuable."
"Logging is great. It will show when it reaches its capacity before it is too late, unless you have bursts of traffic."
"I work with Cisco and other partners, but the Cisco team is the best team in our country. When I call them, they always help us."
"For our very specific use case, for remote access for VPN, ASAs are very good."
"I have found the most valuable feature to be the access control and IPsec VPN."
"If you compare the ASA and the FirePOWER, the best feature with FirePOWER is easy to use GUI. It has most of the same functionality in the Next-Generation FirePOWER, such as IPS, IPS policies, security intelligence, and integration and identification of all the devices or hardware you have in your network. Additionally, this solution is user-friendly."
"The most valuable feature of the Firepower solution is FireSIGHT, which can be easily managed and is user-friendly."
"Five out of five ROI."
"The most valuable features of the Hillstone E-Series are its hardware capacity, innovation, and the throughput that the hardware can take."
"Very reliable solution with good scalability and straightforward implementation."
"The installation is easy, we have not had any complaints from our customers."
"This solution has two main features that we find very valuable; a threat-intelligence option, and a web/application filtering option. The technical support team are very good and very quick."
"The most valuable feature of the solution is the ransomware protection that the tool offers."
"Stability-wise, I rate the solution a ten out of ten."
"Working with the Hillstone E-Series has, from a remote perspective, allowed me to give my clients a secure connectivity."
 

Cons

"There is a lot of improvement needed with SSL-VPN."
"For Fortinet FortiGate, their code development would definitely be something they need to improve on to reduce vulnerabilities that need to be patched."
"The initial setup is complex."
"We are not utilizing Fortinet FortiGate to its full capacity because we have to pay for every small feature."
"From a support perspective, I had more issues that I didn't think the person on my case handled the way I was expecting. We called them for a geolocation issue and we didn't get any proper assistance."
"There were situations of availability related to their switching solutions due to box errors."
"Technical support for this solution can be improved."
"A couple of things I've seen that need improvement, especially in terms of a hard coding. The driver-level active moment really is out-of-the-box and we have to have contact the customer support and sometimes it is difficult to resolve."
"I have worked with the new FTD models and they have more features than the ASA line."
"There are some limitations with SSL. Regarding the security assessment for the ISO 27000 standard, there are certain features that Cisco needs to scale up. Not all products support it, so you need to be slightly careful, especially on the site track."
"The solution has not had any layer upgrades. It does not have layer five and upwards, it only has up to layer four. This has caused some problems for us."
"I don't have any specific improvements to recommend. However, when you compare the throughput of a Cisco firewall to the competitors, especially Fortinet, what you find is that Cisco has lagged a little bit behind in terms of firewall throughput, especially for the price that you pay for that throughput."
"The use of it has really bogged down our response time for certain problems, given we have to go through AT&T for everything."
"We have seen some bugs come up with Cisco Secure Firewall in terms of high availability. The solution should be improved to avoid these bugs."
"FlexConfig is there as a bridge for features that are not yet natively integrated into Firepower. It is a way of allowing you to be able to configure things that wouldn't otherwise be possible until the development team can add them into Firepower's native capability. There is still some work that needs to be done around FlexConfig. There are still quite a few complex things, like policy-based routing, that have to be done in FlexConfig, and it doesn't always work perfectly. Sometimes, there are some glitches. It is recommended that you configure FlexConfig policies with Cisco TAC. It would be good to see Cisco accelerate some of those configurations that you can only do in FlexConfig into the platform, so that they are there natively."
"They need a user-friendly interface that we could easily configure."
"I am not sure if this solution offers active directory integration. Adding that feature will definitely be an advantage."
"The current usage reporting is very basic."
"The solution doesn't have a web proxy built into the system like Sophos. This is something they should work to change."
"SSL VPN license cost is not cheap."
"The tool provides just a general report. It does not provide a granular report. Hence, the tool should work on its reporting feature."
"The tool needs to improve its price."
"Having frequent live webinars on a monthly basis would really help."
"Support from Hillstone E-Series has a shortcoming that needs improvement."
 

Pricing and Cost Advice

"I would rate the pricing a six out of ten, where one is cheap and ten is expensive."
"The support subscription for the solution is annual. You are paying for support and there are two levels of support, professional and advanced."
"The main reason we chose Fortinet FortiGate was that the price was better than the competition."
"They are very competitive, but we like to have the factory warranty taken care of."
"The price of FortiGate is average and I would say that based on the top five products available on the market, it is in the affordable range."
"The price is relatively expensive compared to other solutions which are providing similar features."
"By default, they give SD-WAN along with the firewall. They don't have separate licensing for the SD-WAN functionality. However, they have security licenses that are sold separately on a subscription basis. Customers can consume these security features to protect their users from internet traffic."
"We purchased a five-year bundle package, which worked out cheaper than competing solutions."
"We're using the smart license for this firewall. The models that we have require licensing for remote access."
"I am happy with the product in general, including the pricing."
"We normally license on a yearly basis. The hardware procurement cost should be considered. If you're virtual maybe that cost is eradicated and just the licensing cost is applied. If you have hardware the cost must be covered by you. All the shipping charges will be paid by you also. I don't thing there are any other hidden charges though."
"Cisco is always expensive, but you get what you pay for. It is expensive for a reason. It is a good solution, and good solutions cost money."
"Acquiring licensing for Cisco Secure Firewall can be a bit cumbersome, therefore a more straightforward licensing process would be preferable."
"Based on the services that you will get, especially the AMP license, the price is very reasonable."
"The pricing and licensing structure of the firewall is fair and reasonable."
"Pricing depends on partnerships and certifications."
"The tool's pricing is reasonable. It depends on the model. The product's pricing is around 600 USD. You need to buy a software license to activate the features. You need to pay around 150 USD for that."
"Hillstone's pricing is economical and neither very high nor very low."
"The cost per year for licensing, and hardware, is approximately $850 for the basic plan."
"The licensing model is very complex with many subcategories of licenses you can purchase. They could make it more simplified for customers to understand."
report
Use our free recommendation engine to learn which Firewalls solutions are best for your needs.
881,082 professionals have used our research since 2012.
 

Comparison Review

it_user206346 - PeerSpot reviewer
Security Consultant at Webernetz.net - Network Security Consulting
Mar 11, 2015
Cisco ASA vs. Palo Alto Networks
Cisco ASA vs. Palo Alto: Management Goodies You often have comparisons of both firewalls concerning security components. Of course, a firewall must block attacks, scan for viruses, build VPNs, etc. However, in this post I am discussing the advantages and disadvantages from both vendors concerning…
 

Top Industries

By visitors reading reviews
Computer Software Company
12%
Comms Service Provider
9%
Manufacturing Company
8%
Financial Services Firm
6%
Computer Software Company
15%
Manufacturing Company
8%
Comms Service Provider
7%
University
7%
Comms Service Provider
15%
Financial Services Firm
9%
Manufacturing Company
7%
Educational Organization
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business357
Midsize Enterprise133
Large Enterprise188
By reviewers
Company SizeCount
Small Business180
Midsize Enterprise126
Large Enterprise212
By reviewers
Company SizeCount
Small Business9
Midsize Enterprise1
 

Questions from the Community

Which is the better NGFW: Fortinet Fortigate or Cisco Firepower?
When you compare these firewalls you can identify them with different features, advantages, practices and usage a...
What is the biggest difference between Sophos XG and FortiGate?
From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know...
What are the biggest technical differences between Sophos UTM and Fortinet FortiGate?
As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite ...
Which is better - Fortinet FortiGate or Cisco ASA Firewall?
One of our favorite things about Fortinet Fortigate is that you can deploy on the cloud or on premises. Fortinet Fort...
How does Cisco's ASA firewall compare with the Firepower NGFW?
It is easy to integrate Cisco ASA with other Cisco products and also other NAC solutions. When you understand the Cis...
Which is better - Meraki MX or Cisco ASA Firewall?
Cisco Adaptive Security Appliance (ASA) software is the operating software for the Cisco ASA suite. It supports netw...
What needs improvement with Hillstone E-Series?
We received an update for the tool in July. The update was provided for the tool as there was a problem with the fire...
What is your primary use case for Hillstone E-Series?
I use the solution in my company for site-to-site VPN, SSL VPNs, URL filtering, IPS, IDS and all the other features w...
What advice do you have for others considering Hillstone E-Series?
Our company did not use the tool's micro-segmentation features. There were no issues while integrating the tool. I ha...
 

Also Known As

Fortinet FortiGate Next-Generation Firewall
Cisco Adaptive Security Appliance (ASA) Firewall, Cisco ASA NGFW, Adaptive Security Appliance, Cisco Sourcefire Firewalls, Cisco ASAv, Cisco Firepower NGFW Firewall, Cisco Secure Firewall ASA Virtual - BYOL
No data available
 

Overview

 

Sample Customers

Amazon Web Services, Microsoft, IBM, Cisco, Dell, HP, Oracle, Verizon, AT&T, T-Mobile, Sprint, Vodafone, Orange, BT Group, Telstra, Deutsche Telekom, Comcast, Time Warner Cable, CenturyLink, NTT Communications, Tata Communications, SoftBank, China Mobile, Singtel, Telus, Rogers Communications, Bell Canada, Telkom Indonesia, Telkom South Africa, Telmex, Telia Company, Telkom Kenya
There are more than one million Adaptive Security Appliances deployed globally. Top customers include First American Financial Corp., Genzyme, Frankfurt Airport, Hansgrohe SE, Rio Olympics, The French Laundry, Rackspace, and City of Tomorrow.
Bank of China Macao, Instituto Tecnológico Bolivariano, Ministry of Labor in San Salvador, FEDCO
Find out what your peers are saying about Cisco Secure Firewall vs. Hillstone E-Series and other solutions. Updated: December 2025.
881,082 professionals have used our research since 2012.