FireMon is a real-time security policy management solution built for today’s complex multi-vendor, enterprise environments. Supporting the latest firewall and policy enforcement technologies spanning on-premises networks to the cloud, FireMon delivers visibility and control across the entire IT landscape to automate policy changes, meet compliance standards, to minimize policy-related risk. Since creating their policy management solution in 2004, FireMon states they've helped…
N/A
SonicWall TZ
Score 8.3 out of 10
N/A
SonicWall TZ is an entry to mid-tier NGFW for small to mid-sized companies. It is a Unified Threat Management solution, with additional native decryption and deep-packet inspection capabilities.
$399
one-time fee
WatchGuard Network Security
Score 8.7 out of 10
N/A
WatchGuard Network Security is a network security and firewall software. WatchGuard includes secure Wi-Fi, multi-factor authentication, and network intelligence products and services designed for SMB’s.
SonicWall TZ is good at some things but overall I would pick Fortinet and UDM-Pro appliances most of the time and their VPN solution does not require paid license. Interface more modern and intuitive. Overall, better bang for your buck.
SonicWall and WatchGuard are both fine appliances, but I am accustomed to the Barracuda NG. The Barracuda Control Center is so powerful and useful that it beats out the other two. SonicWall does a great job of dividing up firewall rules and NAT policies, but this is a …
WatchGuard Network Security
Verified User
Manager
Chose WatchGuard Network Security
We use SonicWall TZ boxes in our small branch offices for their simplicity and low cost and Watchguard in our larger head office due to its scalability, we find both products work well together when configuring WAN's using branch office VPN's.
While I truly believe all of the products can provide a suitable solution, I had previous experience with SonicWall TZ and was less than impressed. Fortinet was extremely expensive and I couldn't justify the additional cost. Again, WatchGuard's centralized Cloud solution …
WatchGuard has a slightly better and more intuitive user interface than SonicWall's OS. WatchGuard support is also better and more consistent in their answers.
WatchGuard is what I use exclusively now. I have removed all other firewalls. WatchGuard is easier to maintain and easier to set up, PLUS WatchGuard Tech Support is very responsive and helpful. I am very familiar with both the System Management software and the Web-based access …
It's not bad, it's got exceptional. It's an excellent option in the small business market. Less so as the company grows larger and the complexity and requirements increase. It's an ok product without any huge glaring weaknesses. That said, there are better products and …
The SonicWall Migration tool is simple and easy to use. The Sonicwall NSM is a great feature to allow techs to view and configure the security devices for all the tenants they manage in a single pane of glass.
Our tech had previous experience with WatchGuard Network Security and the Fortinet devices we were using weren't functioning to the standards we needed them to. As costs have increased with WatchGuard Network Security and across the board, we are looking for a different vendor …
I haven't selected WatchGuard over SonicWall. These devices were already installed in the environment when I arrived. I had to learn to set up and configure WatchGuard products, and I did not enjoy the process.
Overall, the two products are very comparable to one another. In the end, it came down to throughput vs cost. WatchGuard [Network Security] came in at around half the cost for the device that provided the amount of throughput that we needed. All of the other features were neck …
Compared to the meraki that I've worked with in the past, I like that I'm not paying Cisco tax and there is a lot more functionality with WG. For me, the Sophos Hardware is not hefty enough to handle their OS because the UI is so slow. Ubiquiti doesn't even compete and …
All around appliance with attractive cost and maintenance expense. Easy setup for simple or simpler networks with limited sites and remote users. Complex network configuration could be challenging.
I find the WatchGuard products easier to configure than the similar SonicWall and Cisco products. I would rather spend time securing the rest of my network, than trying to get a network setup with the non-WatchGuard devices. SonicWall is not that complex either, but I trust …
SonicWall devices have some of the same features as WatchGuard Network Security but I feel the interface is harder to navigate. Also they do not have the management app available to manage their devices so the only option is the web client.
We have found that WatchGuard provide better support and has been more responsive than SonicWall. We have had issues in the past where vendors approach our clients directly to renew subscriptions, but this has never occurred with WatchGuard and they have fully supported us …
We used Sonicwall appliances for a number of years and, generally speaking, found them ok to work with except for in two areas. Sonicwall's seem to make even simple tasks complex to complete, creating opportunities for missed steps and headaches. We also found that the …
Most 'UTM' or Layer-7 firewalls share the same feature set. They mostly offer the same security layers like Web filtering, basic packet inspection, proxied layer 7 inspection, anti-malware, and some integrated portal. Basic VPN features, et cetera. What sets WatchGuard …
It happens to need to interact with or manage other vendors' products when it's not possible to change immediately: WatchGuard systems are easier to configure and manage.
FireMon is best used in a large environment (for example, I have >100 firewalls in my environment). It's best used when trying to improve security posture and showing changes in firewall security over time. It might not be the best choice for smaller environments or those that aren't concerned about security management.
Based on my experience, this is a solid platform for a small to mid sized company, especially when there is someone who has IT experience, or can get outsourced IT help. I would not recommend for someone who is a technology novice. Also, this is a competent device for someone who is looking to add VPN services for remote workers.
One scenario where WatchGuard Network Security is well-suited for a task is when a site needs to be whitelisted. For example, if a site is whitelisted and hosted in a country blocked by geolocation, we can bypass the block and route traffic to the site. This is particularly helpful with CDN's.
There are Service Bundles in SonicWall TZ that are Unlicensed and do not know why they have not be Activated - would need help to further understand benefits
Do not know why Standard Support is Unlicensed
WiFi range of TZ270W is very limited - need to add Access Points or Extended to obtain adequate coverage
The shell is locked out and we can't run any general centos commands. The implementation and maintainence of the arch is very complex. Even with the right identifiers on log messages the log collection keeps failing. The warning messages on the device are ambiguous. The log messages on firemon are a bit confusing and don't show the exact issue.
We have been renewing and purchasing new equipment for the last 20 years. This is because the equipment is easy to use and manage and also quite affordable. Compared to other products, Watchguard just works and has not had the issues with device security seen in other products. They have been a reliable partner.
Overall the new interface is very logical and easy to navigate. We did struggle at first coming from the older interface and finding our way around the new. But our new users found it very simple to find what they were looking for. One negative we do all struggle with is packet cpature not always being clear how its set/what is being monitored. this could do with more information on teh intial page instead of having to look for it
Although it might take some time to figure out, we have been able to use WatchGuard's online reference library and tech support to create/implement/modify all of our filtering rules and exceptions needed. There really has not been a shortcoming other than perhaps a learning curve.
FireMon has been relatively stable overall. However, there have been a handful of times where we had issues with the console. For example, we couldn't update which devices to include in a security assessment. The initial suggestion from support was to just reboot it. It seems like there weren't many other options available such as to restart services before going to the extreme of a complete reboot.
Availability has always been a strong point of this product, it is rare that watchguard does not have a solution for customers' network monitoring needs.
I'm not sure we have the largest implementation of FireMon out there but we do have a few 1000 devices being probed by FireMon. Overall, the system's performance has been rock solid. The console refreshes quickly and reports are generated within an expected timeframe.
The performance of WatchGuard Network Security is very good, in the years that we have used the solution we have only had a single error and Watchguard itself was able to solve it. Furthermore, when purchasing any product, the partner always evaluates the capacity of the solution to recommend the most appropriate product for our needs.
FireMon technical support is awesome! They respond quickly to our requests and they are well trained and very knowledgeable about the tool. Some issues have to be referred to the development team, but technical support largely provides solutions for any issues that we may have.
Once you get to a competent technician the support experience is better. But I have found that the lower tiers of support are very slow to respond (like 1 email per day) and you typically have to re-explain yourself a couple times before they get it. I have not used Phone support, and that may be a better experience.
We have only had to contact them once during the initial set up to help bring the internet back on line. After that for the most part our systems have been automated, and could easily be checked form their online FAQ and Knowledge base that they provide. Everything else is easily handled from their browser based interface
We participate to a in person training and the three days of learning was really useful and complete to gain skill to solve the major part of the problem we encounter during our life. And more the in person training give us the opportunity to create a network with other WatchGuard partner.
I had my key information for setting up the firewall, and they assisted me in finding the settings and appropriate places to enter data. They also helped troubleshoot when I didn't understand some of their feature concepts, and we got it running.
I has worked with AlgoSec and while they are very similar product, I find the FireMon is easier to understand and get rolling with. While both require some learning, FireMon is by far the easier one. Once you have an understanding of how things are arranged and labeled you can easily import firewalls and begin to work on them to improve them
SonicWall and WatchGuard are both fine appliances, but I am accustomed to the Barracuda NG. The Barracuda Control Center is so powerful and useful that it beats out the other two. SonicWall does a great job of dividing up firewall rules and NAT policies, but this is a preference among engineers.
I was not involved with the decision making for WatchGuard versus another product. However, I know WatchGuard is significantly less expensive than other brands. My overall preference would be Ubiquiti due to their continuous improvement of the product with tons of great features. I know WatchGuard is making great advances, but the progress seems slower in comparison.
Firemon Is easily scalable and maintainable with any size team. Although it requires some tech debt, it is well worth the time to invest to ensure compliance is visible and reports are accurate. Although our environment is very large we do not fully utilize the scalability of the Firemon product.
This product is very scalable since previously everything related to Watchguard was on premises but that has now changed with the inclusion of watchguard cloud. Now the product has evolved to have full control of firewalls at the cloud level.