Cisco offers the Firepower 2100 Series NGFW, designed to allow businesses to gain resiliency through superior security with sustained performance. The Firepower 2100 Series has a dual multicore CPU architecture that optimizes firewall, cryptographic, and threat inspection functions simultaneously, to achieve security doesn’t come at the expense of network performance.
N/A
Sophos SG Firewall Appliances
Score 8.4 out of 10
N/A
Sophos SG Firewall Appliances are designed to provide optimal protection for organizations of all sixes from small remote offices, to global organizations requiring high-availability and
N/A
Pricing
Cisco Firepower 2100 Series
Sophos SG Firewall Appliances
Editions & Modules
Firepower 2100
3,000-20,000
per appliance
No answers on this topic
Offerings
Pricing Offerings
Cisco Firepower 2100 Series
Sophos SG Firewall Appliances
Free Trial
No
No
Free/Freemium Version
No
No
Premium Consulting/Integration Services
No
No
Entry-level Setup Fee
No setup fee
No setup fee
Additional Details
—
—
More Pricing Information
Community Pulse
Cisco Firepower 2100 Series
Sophos SG Firewall Appliances
Features
Cisco Firepower 2100 Series
Sophos SG Firewall Appliances
Firewall
Comparison of Firewall features of Product A and Product B
Cisco Firepower 2100 Series
8.5
2 Ratings
2% below category average
Sophos SG Firewall Appliances
9.2
9 Ratings
6% above category average
Identification Technologies
9.02 Ratings
9.49 Ratings
Visualization Tools
6.01 Ratings
8.29 Ratings
Content Inspection
9.02 Ratings
9.69 Ratings
Policy-based Controls
9.02 Ratings
9.09 Ratings
Active Directory and LDAP
9.02 Ratings
9.29 Ratings
Firewall Management Console
8.02 Ratings
8.29 Ratings
Reporting and Logging
9.02 Ratings
9.49 Ratings
VPN
10.02 Ratings
9.89 Ratings
High Availability
10.02 Ratings
9.49 Ratings
Stateful Inspection
10.02 Ratings
9.49 Ratings
Proxy Server
5.02 Ratings
9.47 Ratings
Best Alternatives
Cisco Firepower 2100 Series
Sophos SG Firewall Appliances
Small Businesses
pfSense
Score 8.8 out of 10
pfSense
Score 8.8 out of 10
Medium-sized Companies
Quantum Firewalls and Security Gateways
Score 9.3 out of 10
Quantum Firewalls and Security Gateways
Score 9.3 out of 10
Enterprises
Palo Alto Networks Virtualized Next-Generation Firewalls - VM Series
Score 9.1 out of 10
Palo Alto Networks Virtualized Next-Generation Firewalls - VM Series
The Cisco [Firepower] 2100 [Series] is an easy sell for anyone looking. You already know Cisco excels in the security department, but now that firepower lives right on the box and inline with the rest of the firewall data flow you can save yourself a lot of time and headaches. Unless you cant quite afford Cisco's 2100 line, there's not much reason to go with the competition.
It is well-suited for all sizes of organizations. It will help them to safeguard their network from various cyber threats like ransomware, phishing, malware, etc. It will provide them with many features like deep packet inspection, web filtering, application control, etc. in one place. It will also help them optimize bandwidth usage
Career-wise very familiar with the ASAs, you know, the previous gen firewalls, Pyxis, ASAs, the CHA. As far as being intuitive, those seem to be far more intuitive to learn and figure out what the features and changes and config management, all that stuff is. With Firepower, it's a learning curve and I feel like I have quite a bit of experience with it, and so does my team, but feels like it's not as intuitive, and trying to make changes just always seems harder for some reason. We've gone to some Cisco security training and all that, but even then it's just harder to work with. The other big thing is, and this is a big gripe of mine, I suppose, that on any other firewall, when we have various different manufacturers, if you make a change, you know, a simple change object, object name gets changed or object is deleted or whatever the simplest of change is, it gets implemented instantly.
With the Firepower system, you have to deploy the change and it'll take about six or seven minutes for the change to actually take, which is insanely different than any other platform where that change is instantaneous. So let's say if I'm making seven different changes for a troubleshooting job I don't know which one of the seven is gonna fix it, I do one by one by one. I'm like, oh, let me try one change, one second, change, third change, four changes. It's going to take seven deploys. And seven deploys mean it's gonna take an hour of just deploy time. So that is a big, big gripe
There are three main problems with this platform: - short EoL time - it is really missery because this platform was overrated from cisco sales and after shor time they accepted on EoL - sometimes problems with upgrades paths, because of strange behaviour between FXOS and ASA image on the top of it - not good performance when comparing to newer 1k platform
Management could use some improvements. Sophos management and workflows has always been designed by Engineers for Engineers. They do not always follow logical workflows in the real world. Once you figure this out it is easier to use but no where as smooth as many other products on the market.
The biggest selling point for sophos is their vendor support. Those guys put a smile on our faces. There are multiple ways you can contact their support like chat, or telephone or email. They are very responsive and they do have very knowledgable and patient support staff. We have raised tickets at all odd hours and they have been addressed correctly
In the days of purchase of Cisco Firepower 2100 series it was new platform and Cisco aimed their sailsmains to force selling this platfrom. It was one of the first platform with FXOS with full support of ASA images. It was cheper then 4k series and would be better than ASA 5500-x series (but regarding all problems with upgrades and EoL , it is not).
We use Sophos in conjunction with WatchGuard, for an extra added level of security. Sophos is a little more sophisticated and complicated but they work well together as added layers of protection against most cyber threats.