No more typing reviews! Try our Samantha, our new voice AI agent.

Cisco Sourcefire SNORT vs WatchGuard Firebox comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Feb 15, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Fortinet FortiGate
Sponsored
Ranking in Intrusion Detection and Prevention Software (IDPS)
1st
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
592
Ranking in other categories
Secure Web Gateways (SWG) (2nd), Firewalls (1st), Software Defined WAN (SD-WAN) Solutions (1st), WAN Edge (1st), ZTNA (1st), Unified Threat Management (UTM) (1st)
Cisco Sourcefire SNORT
Ranking in Intrusion Detection and Prevention Software (IDPS)
14th
Average Rating
7.8
Reviews Sentiment
6.8
Number of Reviews
20
Ranking in other categories
No ranking in other categories
WatchGuard Firebox
Ranking in Intrusion Detection and Prevention Software (IDPS)
4th
Average Rating
8.4
Reviews Sentiment
6.8
Number of Reviews
138
Ranking in other categories
Data Loss Prevention (DLP) (11th), Firewalls (9th), Anti-Malware Tools (6th), Endpoint Detection and Response (EDR) (13th), Application Control (3rd), Unified Threat Management (UTM) (3rd)
 

Mindshare comparison

As of June 2026, in the Intrusion Detection and Prevention Software (IDPS) category, the mindshare of Fortinet FortiGate is 9.6%, down from 18.4% compared to the previous year. The mindshare of Cisco Sourcefire SNORT is 3.0%, up from 2.5% compared to the previous year. The mindshare of WatchGuard Firebox is 4.3%, down from 10.1% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Intrusion Detection and Prevention Software (IDPS) Mindshare Distribution
ProductMindshare (%)
Fortinet FortiGate9.6%
WatchGuard Firebox4.3%
Cisco Sourcefire SNORT3.0%
Other83.1%
Intrusion Detection and Prevention Software (IDPS)
 

Featured Reviews

Mageshwaran S - PeerSpot reviewer
Solution Architect at airtel
Enables customers to manage security effortlessly with intuitive features and easy integration
In terms of improvements for Fortinet FortiGate, they could offer evaluation licenses, as compared to Meraki, which provides a 90-day evaluation. In Fortinet FortiGate, they do not provide standard evaluation licenses; instead, we need to request them from the OEM through the account manager for POCs. If we want to conduct a demo, we need to work with real hardware. In comparison to Cisco, we have DCloud, which helps with providing demos to customers, but in Meraki, I need to reach out to them, book a lab, and they need to provide all the hardware. I need remote access and L3 engineers to program it; only then can I offer a real-time demo to the customer.
reviewer2772102 - PeerSpot reviewer
Cloud Architect at a consultancy with 1-10 employees
Logging and customizable rules have helped improve threat monitoring and detection
The logging is mainly what I consider one of the best features with Cisco Sourcefire SNORT. Being able to log and store it in a file allows you to push it to a centralized repository. The logging and reporting help improve incident response. You should always be logging threats, any sort of misconfiguration, and anything that could be an issue. It's important to at least log and monitor it. The basic rules provide a good baseline in assessing Cisco Sourcefire SNORT's ability in providing real-time analytics for threat detection, but as a professional, you should look to constantly modify that baseline. They provide extensive customizability so you can define your own rules. The customizability allows it to be adaptable in protecting against diverse network threats to the constant change.
Abhishek Saini - PeerSpot reviewer
Professional Services Engineer at Nex7 IT
Centralized security management has improved VPN reliability and simplified daily operations
WatchGuard Firebox is a strong and reliable platform overall, but there are a few areas where improvements could make the experience even better. One area is the user interface and navigation in some management tools. While the platform is powerful, certain configurations and troubleshooting workflows can feel less intuitive compared to some newer cloud-native firewall platforms. Another point is reporting and log analysis. Although the logging features are very useful, deeper analytics and more customizable reporting dashboards would make security monitoring much more effective. Firmware upgrades and policy synchronization can sometimes require careful planning to avoid security interruptions. Overall, the core security and VPN functionality are very solid, but improving usability, reporting, and automation would make the platform even stronger. One area that could be improved is the learning curve for new administrators. While experienced engineers can work with the platform effectively, some advanced networking and security configurations can be a bit complex for junior technicians. More guided configuration workflows, smarter recommendations, and simplified troubleshooting tools would make onboarding easier. Another improvement would be more flexible reporting customization for executive-level and client-facing reports.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The most valuable features we found are the SD-WAN, FortiGate SD-WAN, and the standard UTM protection, among others."
"The solution is stable and quite reliable; there are no bugs or glitches and it doesn't crash or freeze."
"We have found it to be very reliable and that's why our teams and various users in our company use it as our main firewall every day."
"One of the nice things about FortiGate is that it can be deployed on the cloud or on-premises. You can actually do both. That's the biggest reason why I stick with this solution as opposed to something like Cisco Meraki. Another nice thing is that I can log directly into a FortiGate or get to it through their FortiCloud access products. They're pretty reliable and consistent. One of the reasons why I started using the product was their single pane of management. I can deploy their line of firewalls in conjunction with their switching and access points, and I can manage the entire network from one interface. I don't have to log into one interface for the firewall, another one for the access points, and another one for the switches. These firewalls have access point controller functionality built right into the system, so I don't even have to purchase additional devices to manage them."
"I like Fortinet's cloud management, as it allows me to manage all my devices in different branches for three cloud accounts, and even though I use on-prem devices, I can manage everything on the cloud."
"Fortinet FortiGate is scalable; if you are familiar with it, you can work from anywhere and do whatever you want, and it is very easy to scale."
"The setup is easy."
"I have found Fortinet FortiGate to be scalable."
"The most valuable feature of this solution is the filtering."
"Users have access to intelligent security automation as one of the features, which can easily automate your event impact assessment so your IPS policy tuning can be done as well as your network behavior analysis, and you can do real-time contextual awareness with correlation of events created on your applications, user devices, operating systems, or vulnerabilities, with all of this real-time data captured including your apps and port scans."
"Cisco Sourcefire SNORT is easy to configure and the reporting is great. It's also very user-friendly."
"Solid intrusion detection and prevention that scales easily in very large environments."
"Scalability is something that Cisco has always cared about."
"The tool's most valuable feature is threat detection, which is important because we have multiple layers not only in Cisco."
"I would recommend this solution; it's reliable and scalable, with easy installation and integration."
"The most valuable feature is reliability, and this solution is better than Check Point."
"The main reason we went with it was the security protocols. They were more robust on this device."
"All of the features have been valuable. There's nothing on my M270 that I'm not using. If you have remote access, you can see how many users are coming from the outside world to be connected to the systems, through the virus systems that we have behind the firewall, in order to gain access to their files and do their work. We can also see how long they stay online and whether these connections are closed forcefully or for any other reasons, such as a glitch or some kind of misbehavior, to see if internet traffic is optimized and if that particular traffic is under company policies, concerning which websites were visited."
"WatchGuard Gateway AntiVirus has VPN access for all systems; it's a firewall and an anti-virus agent that is fully complete for my company."
"​Efficient to setup, run, and maintain. Saving man hours and cost in the process."
"Policy VPN, site-to-site VPN, traffic monitoring, anti-spam filters, and all other advanced features are valuable."
"The Dimension control, the one-spot reporting and control, has been nice. It's been easy to go in and make sure people are doing what they're supposed to be doing and that only the right stuff is getting in."
"The ease of use is most valuable. You can quickly train someone who hasn't seen a firewall in life. You can get people up to speed, and in a few months, they are able to manage this product very easily. It is a very user-friendly, scalable, and stable product. Its price is also spot-on."
"The stability of WatchGuard Firebox is good."
 

Cons

"We can improve the UI readability when working with large configurations."
"Fortinet technical support is lacking, as OEM support is slightly better."
"The solution could be more secure and stable."
"When it's overloaded, it works slower and overheats."
"Improvement is needed in the Web Filter quotas to restrict users with allocated quotas."
"We'd like more management across other integrations."
"More advanced AI capabilities would be beneficial in future updates."
"FortiGate is a complete solution, but it is very expensive compared with other solutions."
"To be frank, the product is not really stable, although they're working on that."
"The price of this solution could be improved."
"While the alerts they offer are good, it could improve it in the sense that they should be more detailed to make the alerts more useful to us in general. Sometimes the solution will offer up false positives. Due to the fact that the alerts aren't detailed, we have to go dig around to see why is it being blocked. The solution would be infinitely better if there was just a bit more detail in the alert information and logging we receive."
"There are some bugs in this solution and troubleshooting them is complicated."
"The cloud can be improved."
"The pricing needs to be improved."
"I would like to have analytics included in the suite."
"The implementation could be a bit easier."
"The website must provide more information on the product."
"WatchGuard is not the best. We already knew that, but it comes with most of the features we need."
"The only downside is that it is missing an API, that you can use to easily collect information from it."
"A 12-hour power outage... got our batteries."
"Websense gives you detailed information as far as the source, but this one only gives you very basic information and, on top of that, it's a free version for only a few months and then you have to pay for it."
"It can have a couple of false positives, but after you add them to your allow list, it works fine. It could have better Mac support. I am pretty sure it doesn't have much support for Mac. It can be installed on a Mac, but it is not that good."
"The solution needs to improve the interface. I'm not able to easily find things using it."
"The solution is a bit confusing and there are unusual complications with setup."
 

Pricing and Cost Advice

"The price could be lower."
"The price is fair compared to the other competitors."
"The price of Fortinet FortiGate is reasonable for an SME."
"Its price is good."
"There is a licensing fee; it is on a yearly basis."
"A year or two years back, its price was competitive and reasonable. That was one of the reasons that people easily switched to Fortinet. Over the last two years, the prices have increased drastically. However, the prices of others have also increased. An advantage is there from the price point but not as much as it was previously."
"Fortinet FortiGate is cost-efficient. Palo Alto is expensive, but Fortinet FortiGate is not."
"The solution is offered as an annual license."
"I don't know the exact amount, but most of the time when I go to a company with a proposition, they will say, "This thing that you are selling is good, but it's expensive. Why don't you propose something like FortiGate, Check Point, or Palo Alto?" Cisco device are expensive compared to other devices."
"We have a three-year license for this solution."
"Licensing for this solution is paid on a yearly basis."
"The cost is per port and can be expensive but it does include training and support for three years."
"If one is an extremely expensive product, and ten is cheap, I rate the tool's price as a five."
"We paid $4000 in AUD for WatchGuard Firebox per year. There were no additional costs."
"WatchGuard Firebox is a cheap solution."
"The price of WatchGuard Intrusion Prevention Service is pretty reasonable compared to similar solutions."
"The solution is cheap."
"It's in the medium range. Its price is pretty good considering the functions and add-ons that are used."
"It is an entry-level product, so the price is cheap."
"The primary reason that we went with Firebox was its cost. It is very economical and it provided us with all the security functions that we were looking for at the time. And the throughput was more than what we required, so it was a very cost-effective device to deploy on our network."
"The solution is not expensive and customers pay for a yearly license."
report
Use our free recommendation engine to learn which Intrusion Detection and Prevention Software (IDPS) solutions are best for your needs.
900,644 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Comms Service Provider
10%
Computer Software Company
10%
Manufacturing Company
9%
Financial Services Firm
7%
Financial Services Firm
10%
Construction Company
10%
Comms Service Provider
8%
University
8%
Comms Service Provider
11%
Manufacturing Company
8%
Computer Software Company
8%
Construction Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business370
Midsize Enterprise138
Large Enterprise195
By reviewers
Company SizeCount
Small Business6
Midsize Enterprise8
Large Enterprise7
By reviewers
Company SizeCount
Small Business101
Midsize Enterprise29
Large Enterprise16
 

Questions from the Community

Which is the better NGFW: Fortinet Fortigate or Cisco Firepower?
When you compare these firewalls you can identify them with different features, advantages, practices and usage a...
What is the biggest difference between Sophos XG and FortiGate?
From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know...
What are the biggest technical differences between Sophos UTM and Fortinet FortiGate?
As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite ...
What is your experience regarding pricing and costs for Cisco Sourcefire SNORT?
If one is an extremely expensive product, and ten is cheap, I rate the tool's price as a five. There are some other t...
What needs improvement with Cisco Sourcefire SNORT?
I have not had much experience with the community-driven rule set while utilizing Cisco Sourcefire SNORT. I don't hav...
What is your primary use case for Cisco Sourcefire SNORT?
Endpoint protection is the main use case. The main aspect involves specifying different rules, and when network traff...
What is your primary use case for WatchGuard Firebox?
We are providing our services to all WatchGuard customers in the region.
What is your primary use case for WatchGuard Firebox?
We just use it as a secondary WiFi device. We're a small office and we needed to set up a WiFi device for a few of ou...
What is your primary use case for WatchGuard Firebox?
We're a hospital and we use it for developing our incoming and outgoing policies, and we also use it for VPN.
 

Also Known As

Fortinet FortiGate Next-Generation Firewall
Sourcefire SNORT
WatchGuard Threat Detection and Response, WatchGuard Application Control, WatchGuard Data Loss Prevention, WatchGuard Gateway AntiVirus, WatchGuard Intrusion Prevention Service
 

Overview

 

Sample Customers

Amazon Web Services, Microsoft, IBM, Cisco, Dell, HP, Oracle, Verizon, AT&T, T-Mobile, Sprint, Vodafone, Orange, BT Group, Telstra, Deutsche Telekom, Comcast, Time Warner Cable, CenturyLink, NTT Communications, Tata Communications, SoftBank, China Mobile, Singtel, Telus, Rogers Communications, Bell Canada, Telkom Indonesia, Telkom South Africa, Telmex, Telia Company, Telkom Kenya
CareCore, City of Biel, Dimension Data, LightEdge, Lone Star College System, National Rugby League, Port Aventura, Smart City Networks, Telecom Italia, The Department of Education in Western Australia
Ellips, Diecutstickers.com, Clarke Energy, NCR, Wrest Park, Homeslice Pizza, Fortessa Tableware Solutions, The Phoenix Residence
Find out what your peers are saying about Cisco Sourcefire SNORT vs. WatchGuard Firebox and other solutions. Updated: June 2026.
900,644 professionals have used our research since 2012.