What users are saying about
27 Ratings
1 Rating
27 Ratings
<a href='https://www.trustradius.com/static/about-trustradius-scoring' target='_blank' rel='nofollow noopener noreferrer'>trScore algorithm: Learn more.</a>
Score 9.2 out of 100
1 Rating
<a href='https://www.trustradius.com/static/about-trustradius-scoring' target='_blank' rel='nofollow noopener noreferrer'>trScore algorithm: Learn more.</a>
Score 8 out of 100

Likelihood to Recommend

Snort

If a colleague was looking to tighten down their network I can easily recommend Snort to them. It gives you some more peace of mind knowing that its always scanning traffic for malicious looking code. Even things your major firewalls and security hardware might miss, Snort has picked up. Its an easy recommendation for me.
Anonymous | TrustRadius Reviewer

Guardicore

This is the best possible solution for enterprise-level organizations where server counts will be in the thousands. To manage these and understand the communication can be very cumbersome without this tool. Ease of creation map zone and application-wise can be relaxing to OS teams and support teams as well. There is no limit to labeling schema of servers and it gives the freedom to do so.
Harmesh Trivedi | TrustRadius Reviewer

Pros

Snort

  • Real Time updates for security signatures via Talos
  • Great signature blocking
  • Excellent reporting via syslog to our Security Analytics collectors.
Alan Matson, CCNA:S, MCP | TrustRadius Reviewer

Guardicore

  • Network traffic flow within environment of organization.
  • Creating maps for visibility and drill down is a key feature.
  • Labelling of servers can be done via running script.
  • Alerts can be sensitized for the traffic not seen.
Harmesh Trivedi | TrustRadius Reviewer

Cons

Snort

  • Due to the extensive interface, it can be quite overwhelming to try and manage the product. There are many different places to go to set up individual items. It would be nice to simplify the interface down a bit
  • Upgrades can be somewhat hazardous. I think they are working to get the upgrade process streamlined, but currently moving major version (5.x to 6.x) there was a lot of additional work outside of the UI that if not done correctly can tank the system, requiring a fresh load or restore from backup
David Myers | TrustRadius Reviewer

Guardicore

  • Limited support to legacy infrastructure.
  • Integration with third party is a bit tedious.
  • Awaiting support for Kubernetes in the next version.
Harmesh Trivedi | TrustRadius Reviewer

Usability

Snort

No score
No answers yet
No answers on this topic

Guardicore

Guardicore 9.0
Based on 1 answer
The solution is deployed throughout the organization. Teams are working and integrating it with the help desk tool wherever required. Helps in identifying the network traffic flows in lateral movement and east and west as well. Allows policies by default and later fine-tuning to be done to narrow it and enforce blocking action. Exporting reports from the tool is easy and can be observed for any issues.
Harmesh Trivedi | TrustRadius Reviewer

Support Rating

Snort

No score
No answers yet
No answers on this topic

Guardicore

Guardicore 9.0
Based on 1 answer
Support has been available 24*7. It also depends on criticality but support is available. Also, the right expertise from the team helps in identifying the issue quickly and this helps in less production downtime if required. The ticket is resolved with RCA.
Harmesh Trivedi | TrustRadius Reviewer

Alternatives Considered

Snort

Sourcefire vs. TippingPoint was a no-brainer for us at the time of deployment. Sourcefire has a more well-defined API using REST that can be leveraged for automating tasks. TippingPoint was just releasing an API that was limited. Also at the time, TippingPoint could not meet our 10Gbps network requirements as Sourcefire could with their 8350 appliances.
Alan Matson, CCNA:S, MCP | TrustRadius Reviewer

Guardicore

1) No limit to labeling schema.2) Ease of creating maps with respect to zone, environment, subnets, etc.3) Ease of creating policies and publishing the same.4) Deception 5) Integration with monitoring tool (grafana)6) Changes in the agent can be considered if there are legacy systems, time-consuming but can be achieved with the right information.
Harmesh Trivedi | TrustRadius Reviewer

Return on Investment

Snort

  • Being open source, ROI on free is hard to beat for something that works.
  • I believe it greatly enhances the security of my network.
Curt Dickman | TrustRadius Reviewer

Guardicore

  • Blocking unwarranted traffic can really boost security of organization.
  • Alerts can be triggered to SIEM servers and help in timely action.
  • Need to be very careful before configuring and publishing block policies in the production environment.
Harmesh Trivedi | TrustRadius Reviewer

Pricing Details

Snort

General

Free Trial
Free/Freemium Version
Premium Consulting/Integration Services
Entry-level set up fee?
No

Guardicore

General

Free Trial
Free/Freemium Version
Premium Consulting/Integration Services
Entry-level set up fee?
No

Add comparison