Cisco Adaptive Security Appliance (ASA) Software vs. Juniper SRX

Overview
ProductRatingMost Used ByProduct SummaryStarting Price
Cisco Adaptive Security Appliance (ASA) Software
Score 8.6 out of 10
N/A
Cisco Adaptive Security Appliance (ASA) software is the core OS for the ASA suite. It provides firewall functionality, as well as integration with context-specific Cisco security modules. It is scaled for enterprise-level traffic and connections.N/A
Juniper SRX
Score 7.8 out of 10
N/A
Juniper SRX is a firewall offering. It provides a variety of modular features, scaled for enterprise-level use, based on a 3-in-1 OS that enables routing, switching, and security in each product.N/A
Pricing
Cisco Adaptive Security Appliance (ASA) SoftwareJuniper SRX
Editions & Modules
No answers on this topic
No answers on this topic
Offerings
Pricing Offerings
Cisco Adaptive Security Appliance (ASA) SoftwareJuniper SRX
Free Trial
NoNo
Free/Freemium Version
NoNo
Premium Consulting/Integration Services
NoNo
Entry-level Setup FeeNo setup feeNo setup fee
Additional Details
More Pricing Information
Community Pulse
Cisco Adaptive Security Appliance (ASA) SoftwareJuniper SRX
Considered Both Products
Cisco Adaptive Security Appliance (ASA) Software
Chose Cisco Adaptive Security Appliance (ASA) Software
Cisco ASA is doing well, has [a] lot of documents available, [and easy] implementation, however, other vendors are also very easy to deploy. Cisco ASA has [a] great support team. Cisco ASA is truly [a] next-generation product. Now it is cloud-managed, along with zero-touch …
Chose Cisco Adaptive Security Appliance (ASA) Software
This was selected due to our organization standard and our branch office is using ASA. Integration with the same product is really a good option with ASA.
Chose Cisco Adaptive Security Appliance (ASA) Software
Configuration and management of Cisco's ASA are straightforward. We chose Cisco ASA for many reasons, as well as Cisco's threat response reports. We previously had issues with Sophos UTM due to its poor performance. We no longer have to be concerned about performance issues …
Chose Cisco Adaptive Security Appliance (ASA) Software
Our Palo Altos and Cisco ASAs are pretty comparable. They both seem to work well when used in an HA pair. They can both do IP/Port based ACLs. But the Palos also have APP-ID which helps to make sure that the traffic passing through your firewall is the type of traffic …
Chose Cisco Adaptive Security Appliance (ASA) Software
Above all, the robustness and quality of the components, the support and the rapid resolution of warranty issues. Cisco is a serious company and demonstrates this by making the processes with the client as easy as possible.
Chose Cisco Adaptive Security Appliance (ASA) Software

The Cisco ASA 5500 Series comes with high-performance security services which include firewall and anti-virus, anti-phishing, anti-spam and web filtering services.Cisco ASA Software delivers enterprise-class security capabilities for the ASA. Introduced new FirePower NGIPS …
Juniper SRX
Chose Juniper SRX
Juniper SRX stands tall compared to all these products for Large Service Provider Networks, where traffic volume is larger. Also, cost comparison with SRX's few other products can also be another contributing factor while selecting this. As well as Juniper Routers, Switches, …
Chose Juniper SRX
The comparison between the different firewalls is really down to preference and price at this point. The SRX is a solid device, and we have not seen a hardware failure to date. The Juniper support I have had is stellar and has helped me out with larger more complex scenario …
Chose Juniper SRX
Juniper SRX is significantly better in every category.

Cisco ASA was terrible. The config is unintuitive and not easy to manage. Cisco left the ASA abandoned from any kind of meaningful software updates for around a decade.
Chose Juniper SRX
I love the Cisco ASA but I've become used to the SRX. I am a CLI kind of guy so the SRX works for me. Others may be more GUI based so the ASA may be more comfortable to you. If that's the case then the ASA's ASDM is a solid platform to manage your FW. Junos hasn't gotten this …
Chose Juniper SRX
The SRX Stacks up well to the ASA and Sonic wall but I feel the features provided by FortiGate/Palo Alto and Checkpoint far exceed that of the competitors.
Top Pros
Top Cons
Features
Cisco Adaptive Security Appliance (ASA) SoftwareJuniper SRX
Firewall
Comparison of Firewall features of Product A and Product B
Cisco Adaptive Security Appliance (ASA) Software
8.1
49 Ratings
5% below category average
Juniper SRX
8.7
5 Ratings
2% above category average
Identification Technologies8.632 Ratings9.03 Ratings
Visualization Tools7.030 Ratings7.03 Ratings
Content Inspection7.932 Ratings8.04 Ratings
Policy-based Controls8.645 Ratings10.04 Ratings
Active Directory and LDAP8.347 Ratings8.03 Ratings
Firewall Management Console8.547 Ratings7.05 Ratings
Reporting and Logging5.948 Ratings8.05 Ratings
VPN9.048 Ratings10.04 Ratings
High Availability9.047 Ratings10.05 Ratings
Stateful Inspection8.046 Ratings10.04 Ratings
Proxy Server8.032 Ratings9.03 Ratings
Best Alternatives
Cisco Adaptive Security Appliance (ASA) SoftwareJuniper SRX
Small Businesses
pfSense
pfSense
Score 9.2 out of 10
pfSense
pfSense
Score 9.2 out of 10
Medium-sized Companies
pfSense
pfSense
Score 9.2 out of 10
pfSense
pfSense
Score 9.2 out of 10
Enterprises
Next-Generation Firewalls - PA Series
Next-Generation Firewalls - PA Series
Score 9.3 out of 10
Next-Generation Firewalls - PA Series
Next-Generation Firewalls - PA Series
Score 9.3 out of 10
All AlternativesView all alternativesView all alternatives
User Ratings
Cisco Adaptive Security Appliance (ASA) SoftwareJuniper SRX
Likelihood to Recommend
8.6
(87 ratings)
8.0
(8 ratings)
Likelihood to Renew
7.1
(4 ratings)
8.0
(2 ratings)
Availability
7.5
(2 ratings)
-
(0 ratings)
Support Rating
8.7
(8 ratings)
6.4
(3 ratings)
Implementation Rating
8.0
(2 ratings)
-
(0 ratings)
Ease of integration
6.5
(2 ratings)
-
(0 ratings)
User Testimonials
Cisco Adaptive Security Appliance (ASA) SoftwareJuniper SRX
Likelihood to Recommend
Cisco
Cisco ASA's are great for internal network connected access between a firewall and the central management server. And, for complex networks where high security requirements with overly strict compliance are necessary. For networks with limited connectivity to the core or for poor network connectivity these are not the best solution. There are other more stand-alone firewall's that do this better. These firewall's are a little more complex to set up to start with so significant knowledge of these devices is required to set them up and ensure they are best practice installed.
Read full review
Juniper Networks
SRXs seem to be well suited at the enterprise level for plain routers, firewalls, and IDP/IDS. They work well on MPLS and Ethernet, including Internet. I have 3 SRXs also performing edge duty, with 2 in a high availability (HA) cluster. The Juniper line of SRXs provides a good range of scaling from small business to extremely large enterprise. Wire speed is a common comparison factor and Juniper shines in that area.
Read full review
Pros
Cisco
  • ASA is our VPN concentrator. The client and server are very stable and very easy to use
  • ASA also offers Intrusion Prevention, to an extent. This is also very useful for an improved security posture for a small company
  • ASA allowed us to scale very quickly. We could onboard clients, partners, and consultants and give them a great onboarding experience as well
  • Administrative costs with ASA are low. It's very easy to administer.
Read full review
Juniper Networks
  • Edge Device (Tunneling & Routing)
  • Routing Instances
  • Zone Based Firewall
  • L3 Gateway/Vlan termination
  • DHCP Server & DHCP Relay
  • Good support community & Good available documentation
  • Good support by the Vendor
Read full review
Cons
Cisco
  • The ASDM software is at times a nightmare to install because of different java versions[.]
  • [The firewall] could do with a power button, just to be able to do a hard reboot when needed[.]
  • It would be nice to manage the firewall via the web on port 443[.]
Read full review
Juniper Networks
  • My only real criticism of the product is that it's hard to figure out how to upgrade the firmware from the CLI via TFTP via the docs, but it works great once you get it sorted.
Read full review
Likelihood to Renew
Cisco
To be honest there has been now great products out in the market compared to Cisco ASA. I beleieve Cisco has to do a lot of improvement in this area. The other defeiniete factors is the cost when it comes to renewals which is always a premium on Cisco products
Read full review
Juniper Networks
No answers on this topic
Reliability and Availability
Cisco
I generally have not noticed the outages, however since it's a machine it can malfunction, we need to implement the firewall infrastructure in such a way that it is highly available with device failure, region failure etc. Else any solution will be having the issues if they are not build with resiliency.
Read full review
Juniper Networks
No answers on this topic
Support Rating
Cisco
The support is usually very good and gets back to you very quickly. However I had some instances of when two engineers will give me wildly different answers to what I thought was a simple question. Overall however I do rate the support highly and they are generally always very good.
Read full review
Juniper Networks
This is the one area where I have a beef with Juniper. When I called into Cisco TAC, 90% of the time, the first person I spoke with was able to resolve my issue. With Juniper TAC, 90% of the time, the first person I speak with is not able to resolve my issue, seems to almost be reading from a script, and must escalate my ticket. All of which takes time.
Read full review
Implementation Rating
Cisco
It was quite a good one, how ever requires an expertise to deploy hence the SMB segment would be finding it difficult to implement this product. The one good reason is that there are lot of ASA certified engineers in compared to the other certified engineers. Hence this resembles positively on the deployment as you have quite a lot of experienced engineer on your deployment
Read full review
Juniper Networks
No answers on this topic
Alternatives Considered
Cisco
We were using [pfSense] before in our environment but we regularly facing difficulties over it due to software bugs & downtime. After implementing Cisco ASA, it resolved our availability issue & provides us a reliable solution with the best security features & easy to understand GUI.
Read full review
Juniper Networks
Juniper SRX stands tall compared to all these products for Large Service Provider Networks, where traffic volume is larger. Also, cost comparison with SRX's few other products can also be another contributing factor while selecting this. As well as Juniper Routers, Switches, and multiple products from the same vendor to maintain one single vendor environment. As well as Juniper Support is also really good.
Read full review
Return on Investment
Cisco
  • Most network engineers have worked with ASA, so there is no need for re-training when adding or turning over staff
  • Current configs from older devices plug in easily, and are operational on larger devices if an upgrade is required
  • Many support options available
Read full review
Juniper Networks
  • It is a workhorse for our field operations. It provides the last touch for an ISP to the customer. The customer has no view of the device, but with the repeatability of the device, they do not need to.
  • The ability to roll out a dynamic routing protocol attached to a security zone allows elasticity to the environment that supports growth.
  • VLAN support on the inside interfaces allow this to be the only device in some smaller deployments we install these in.
Read full review
ScreenShots