No more typing reviews! Try our Samantha, our new voice AI agent.

Cisco Sourcefire SNORT vs WatchGuard Firebox comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Feb 15, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Fortinet FortiGate
Sponsored
Ranking in Intrusion Detection and Prevention Software (IDPS)
1st
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
592
Ranking in other categories
Secure Web Gateways (SWG) (2nd), Firewalls (1st), Software Defined WAN (SD-WAN) Solutions (1st), WAN Edge (1st), ZTNA (1st), Unified Threat Management (UTM) (1st)
Cisco Sourcefire SNORT
Ranking in Intrusion Detection and Prevention Software (IDPS)
14th
Average Rating
7.8
Reviews Sentiment
6.8
Number of Reviews
20
Ranking in other categories
No ranking in other categories
WatchGuard Firebox
Ranking in Intrusion Detection and Prevention Software (IDPS)
4th
Average Rating
8.4
Reviews Sentiment
6.8
Number of Reviews
138
Ranking in other categories
Data Loss Prevention (DLP) (11th), Firewalls (9th), Anti-Malware Tools (6th), Endpoint Detection and Response (EDR) (13th), Application Control (3rd), Unified Threat Management (UTM) (3rd)
 

Mindshare comparison

As of June 2026, in the Intrusion Detection and Prevention Software (IDPS) category, the mindshare of Fortinet FortiGate is 9.6%, down from 18.4% compared to the previous year. The mindshare of Cisco Sourcefire SNORT is 3.0%, up from 2.5% compared to the previous year. The mindshare of WatchGuard Firebox is 4.3%, down from 10.1% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Intrusion Detection and Prevention Software (IDPS) Mindshare Distribution
ProductMindshare (%)
Fortinet FortiGate9.6%
WatchGuard Firebox4.3%
Cisco Sourcefire SNORT3.0%
Other83.1%
Intrusion Detection and Prevention Software (IDPS)
 

Featured Reviews

Mageshwaran S - PeerSpot reviewer
Solution Architect at airtel
Enables customers to manage security effortlessly with intuitive features and easy integration
In terms of improvements for Fortinet FortiGate, they could offer evaluation licenses, as compared to Meraki, which provides a 90-day evaluation. In Fortinet FortiGate, they do not provide standard evaluation licenses; instead, we need to request them from the OEM through the account manager for POCs. If we want to conduct a demo, we need to work with real hardware. In comparison to Cisco, we have DCloud, which helps with providing demos to customers, but in Meraki, I need to reach out to them, book a lab, and they need to provide all the hardware. I need remote access and L3 engineers to program it; only then can I offer a real-time demo to the customer.
reviewer2772102 - PeerSpot reviewer
Cloud Architect at a consultancy with 1-10 employees
Logging and customizable rules have helped improve threat monitoring and detection
The logging is mainly what I consider one of the best features with Cisco Sourcefire SNORT. Being able to log and store it in a file allows you to push it to a centralized repository. The logging and reporting help improve incident response. You should always be logging threats, any sort of misconfiguration, and anything that could be an issue. It's important to at least log and monitor it. The basic rules provide a good baseline in assessing Cisco Sourcefire SNORT's ability in providing real-time analytics for threat detection, but as a professional, you should look to constantly modify that baseline. They provide extensive customizability so you can define your own rules. The customizability allows it to be adaptable in protecting against diverse network threats to the constant change.
Abhishek Saini - PeerSpot reviewer
Professional Services Engineer at Nex7 IT
Centralized security management has improved VPN reliability and simplified daily operations
WatchGuard Firebox is a strong and reliable platform overall, but there are a few areas where improvements could make the experience even better. One area is the user interface and navigation in some management tools. While the platform is powerful, certain configurations and troubleshooting workflows can feel less intuitive compared to some newer cloud-native firewall platforms. Another point is reporting and log analysis. Although the logging features are very useful, deeper analytics and more customizable reporting dashboards would make security monitoring much more effective. Firmware upgrades and policy synchronization can sometimes require careful planning to avoid security interruptions. Overall, the core security and VPN functionality are very solid, but improving usability, reporting, and automation would make the platform even stronger. One area that could be improved is the learning curve for new administrators. While experienced engineers can work with the platform effectively, some advanced networking and security configurations can be a bit complex for junior technicians. More guided configuration workflows, smarter recommendations, and simplified troubleshooting tools would make onboarding easier. Another improvement would be more flexible reporting customization for executive-level and client-facing reports.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"I highly recommend the Fortinet product because of its implementation, as it is a solid product with an easy configuration and good support."
"Fortinet FortiGate meets all the security demands of my industry. It covers endpoint security, including web interface, DNS security, and ELP. I'm currently using the latest version. The features that have most improved our network security are Web Control, filtering, application control, IDS, IPS policies, and Deep SSL inspection."
"There are multiple features I have found to be valuable, such as encryption and integrated security features."
"Fortinet FortiGate has many valuable features, such as IDS, and intrusion detection. It has security features that are in part with the technologies that are available in the market."
"I would recommend Fortinet FortiGate IPS as it is a core component of cybersecurity for our company."
"Using this product makes the VPN seamless and almost invisible to me in the sense that I don't have to think about it."
"I think when you look at this product, you must realize that the box hardware and software are very stable, and the pricing is perfect."
"Security management tool that's easy to integrate and easy to work with. No issues found with its stability and scalability."
"If you compare it to other vendors, the technical support from Cisco is excellent."
"Users have access to intelligent security automation as one of the features, which can easily automate your event impact assessment so your IPS policy tuning can be done as well as your network behavior analysis, and you can do real-time contextual awareness with correlation of events created on your applications, user devices, operating systems, or vulnerabilities, with all of this real-time data captured including your apps and port scans."
"It has a huge rate of protection. It's has a low level of positives and a huge rate of threat protection. It's easy to deploy and easy to implement. It has an incredible price rate compared to similar solutions."
"The tool's most valuable feature is threat detection, which is important because we have multiple layers not only in Cisco."
"The product is inexpensive compared to leading brands such as Palo Alto or Fortinet."
"The most valuable feature of this solution is the filtering."
"We primarily use this solution as an intrusion prevention system for external firewalls and deploy the solution on-premises."
"Cisco Sourcefire SNORT is easy to configure and the reporting is great. It's also very user-friendly."
"The client is easy to use and stable"
"Their support is excellent, and the stability is very good."
"Their centralized console simplifies management for organizations with multiple Fireboxes."
"The most valuable feature, in my opinion, is the dimension logging platform and the network traffic filtering."
"Centralization is a crucial feature for me as it allows me to have all sites and customers accessible under a single click, not limited to just one."
"WatchGuard Firebox has had a positive impact on my organization because the improvement in security is evident, and economically, it is a product that is at a very good price point, allowing us to easily have remote clients connected via VPN in an extremely easy way with a lightweight client, which has had a very positive impact."
"I sleep a lot better knowing that something is watching the few things that I do need to present to the internet."
"On a scale of one to 10, I would rate the technical support of the WatchGuard Firebox a 10."
 

Cons

"I would like the deployment and integration of this product to be easier. We should be able to deploy the features more easily and have different types of access. It should be easier to integrate. Currently, we need to develop APIs to use this interface."
"Its reporting and pricing need improvement."
"The graphical user interface of Fortinet FortiGate SWG is an area of concern where improvements are required."
"I am afraid I cannot say that I have seen a return on investment."
"More advanced AI capabilities would be beneficial in future updates."
"The support is inadequate. The support staff I have dealt with lately are very rude. Some support staff are not up-to-speed with the technology. They basically read a script."
"The SD-WAN functionality is a bit overly complicated and not fully documented."
"I have found the support from Fortinet FortiGate very poor. I do not use them anymore because they are not very good."
"The solution's approach to managing traffic blocking is confusing and impractical."
"I did not experience any pain points that required improvement. Maybe a couple of false-positives, but that's about it."
"There are some bugs in this solution and troubleshooting them is complicated."
"We are unhappy with technical support for this solution, and it is not as professional as what we typically expect from Cisco."
"Sometimes the solution will offer up false positives."
"The price of this solution could be improved."
"The pricing needs to be improved."
"To be frank, the product is not really stable, although they're working on that."
"WatchGuard Firebox has room for improvement in security services or security modules and the integration with other products."
"The way Secure Sign-On authentication is happening needs to be improved."
"The reporting could use improvement, because most of the firewalls available in the market come with the reporting built-in, with the memory and the hard disk capacity and all."
"I'd like a few extra features, especially around threat severity assessment."
"Websense is an application that monitors and filters internet traffic. Websense was derived from WatchGuard. But when you go to WatchGuard to actually implement that particular feature, you have to use some type of additional feature and you have to pay for it, unfortunately. I think it should be free or free in the WatchGuard box itself, as an option. It would be nice if they didn't charge us for that."
"The drawbacks are just sometimes not having the technical information that we need in order to easily make connections with all of our Internet-based clients, but we can put the work in and still get it done."
"I would like to see more training become available for us."
"The few issues that we have had, such as not knowing where to go, they have been answered quickly."
 

Pricing and Cost Advice

"The pricing is based on a licensing model for each IPS in your environment."
"These boxes are not that expensive compared to what they can do, their functionality, and the reporting you receive. Fortinet licensing is straightforward and less confusing compared to Cisco."
"Its price could be better."
"The solution's price is average."
"It is a cost-effective solution that meets the user's needs."
"I rate FortiGate's pricing a five out of ten."
"The cost has increased since the update so I would rate it eight out of ten."
"The product is not very expensive."
"If one is an extremely expensive product, and ten is cheap, I rate the tool's price as a five."
"The cost is per port and can be expensive but it does include training and support for three years."
"I don't know the exact amount, but most of the time when I go to a company with a proposition, they will say, "This thing that you are selling is good, but it's expensive. Why don't you propose something like FortiGate, Check Point, or Palo Alto?" Cisco device are expensive compared to other devices."
"We have a three-year license for this solution."
"Licensing for this solution is paid on a yearly basis."
"I haven't seen the pricing since 2017, but it was competitive. SonicWall, Barracuda, and WatchGuard were all about the same price when we did our last pricing."
"There is an additional cost for support on top of licensing. When I bought my new unit, I received additional time added to my support."
"I spent $600 or $800 on this product and I'm paying a couple of hundred dollars a year in a subscription service to keep the lights on, on it... It works out to $100 or $200 a year if you buy several years at once. It's fair."
"For what we use, the tool's price has been reasonable, but it is not the cheapest. The tool has been quite reasonable."
"WatchGuard offers competitive pricing with attractive margins, benefiting both the company and its partners."
"Each one, for the primary unit, was $8,600 and the High Availability unit was $2,000. That's with three years of subscription and support and the Total Security Suite."
"They have an annual subscription license. Initially, we had opted for three years. After that, we went for another three years, and after that, we have been doing it yearly. They also have a license for five years."
"It's an affordable tool"
report
Use our free recommendation engine to learn which Intrusion Detection and Prevention Software (IDPS) solutions are best for your needs.
900,644 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Comms Service Provider
10%
Computer Software Company
10%
Manufacturing Company
9%
Financial Services Firm
7%
Financial Services Firm
10%
Construction Company
10%
Comms Service Provider
8%
University
8%
Comms Service Provider
11%
Manufacturing Company
8%
Computer Software Company
8%
Construction Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business370
Midsize Enterprise138
Large Enterprise195
By reviewers
Company SizeCount
Small Business6
Midsize Enterprise8
Large Enterprise7
By reviewers
Company SizeCount
Small Business101
Midsize Enterprise29
Large Enterprise16
 

Questions from the Community

Which is the better NGFW: Fortinet Fortigate or Cisco Firepower?
When you compare these firewalls you can identify them with different features, advantages, practices and usage a...
What is the biggest difference between Sophos XG and FortiGate?
From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know...
What are the biggest technical differences between Sophos UTM and Fortinet FortiGate?
As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite ...
What is your experience regarding pricing and costs for Cisco Sourcefire SNORT?
If one is an extremely expensive product, and ten is cheap, I rate the tool's price as a five. There are some other t...
What needs improvement with Cisco Sourcefire SNORT?
I have not had much experience with the community-driven rule set while utilizing Cisco Sourcefire SNORT. I don't hav...
What is your primary use case for Cisco Sourcefire SNORT?
Endpoint protection is the main use case. The main aspect involves specifying different rules, and when network traff...
What is your primary use case for WatchGuard Firebox?
We are providing our services to all WatchGuard customers in the region.
What is your primary use case for WatchGuard Firebox?
We just use it as a secondary WiFi device. We're a small office and we needed to set up a WiFi device for a few of ou...
What is your primary use case for WatchGuard Firebox?
We're a hospital and we use it for developing our incoming and outgoing policies, and we also use it for VPN.
 

Also Known As

Fortinet FortiGate Next-Generation Firewall
Sourcefire SNORT
WatchGuard Threat Detection and Response, WatchGuard Application Control, WatchGuard Data Loss Prevention, WatchGuard Gateway AntiVirus, WatchGuard Intrusion Prevention Service
 

Overview

 

Sample Customers

Amazon Web Services, Microsoft, IBM, Cisco, Dell, HP, Oracle, Verizon, AT&T, T-Mobile, Sprint, Vodafone, Orange, BT Group, Telstra, Deutsche Telekom, Comcast, Time Warner Cable, CenturyLink, NTT Communications, Tata Communications, SoftBank, China Mobile, Singtel, Telus, Rogers Communications, Bell Canada, Telkom Indonesia, Telkom South Africa, Telmex, Telia Company, Telkom Kenya
CareCore, City of Biel, Dimension Data, LightEdge, Lone Star College System, National Rugby League, Port Aventura, Smart City Networks, Telecom Italia, The Department of Education in Western Australia
Ellips, Diecutstickers.com, Clarke Energy, NCR, Wrest Park, Homeslice Pizza, Fortessa Tableware Solutions, The Phoenix Residence
Find out what your peers are saying about Cisco Sourcefire SNORT vs. WatchGuard Firebox and other solutions. Updated: June 2026.
900,644 professionals have used our research since 2012.