Likelihood to Recommend SRXs seem to be well suited at the enterprise level for plain routers, firewalls, and IDP/IDS. They work well on MPLS and Ethernet, including Internet. I have 3 SRXs also performing edge duty, with 2 in a high availability (HA) cluster. The Juniper line of SRXs provides a good range of scaling from small business to extremely large enterprise. Wire speed is a common comparison factor and Juniper shines in that area.
Read full review Generally speaking, our customers have standard requirements and the WatchGuard Network Security Firebox is there to ensure they stay protected. We've never had a successful breach on a customer's on-premise setup with a WatchGuard Network Security Firebox installed. 3rd parties (like CCTV, Printers, Login Systems, etc.) do not know which port their devices work over, so we have to identify that with them and there are often delays when this occurs.
Read full review Pros Edge Device (Tunneling & Routing) Routing Instances Zone Based Firewall L3 Gateway/Vlan termination DHCP Server & DHCP Relay Good support community & Good available documentation Good support by the Vendor Read full review Incoming Torrent attempts were blocked, but outgoing (by a user) were permitted. Similarly, other direct attempts were summarily blocked. provides full administrative support for analysis of usage and scope. strong Wi-Fi support and security - area wi-fi maps They think of all the things secure and I don't have to worry about it. I have not identified anything else that needs improvement - I am well satisfied. Read full review Cons My only real criticism of the product is that it's hard to figure out how to upgrade the firmware from the CLI via TFTP via the docs, but it works great once you get it sorted. Read full review Bridging ports, after the firewall is setup, isn't as easy as it could be. Cloud integration for management requires recreating the entire device. It should just convert the current config. Adding a Proxy policy should be on a different page from the other policy creation page. Read full review Likelihood to Renew I'm giving this note to WatchGuard Network Security due to its ease of daily support (after acquiring necessary knowledge in the solution), which allows agility in configuration changes, its integration of several reliable security features (such as SSL VPN, VPN Virtual Interfaces between companies, and others) and functional and stability in operation, with no downtime in the equipment due to problems or malfunctions
Read full review Usability Although it might take some time to figure out, we have been able to use WatchGuard's online reference library and tech support to create/implement/modify all of our filtering rules and exceptions needed. There really has not been a shortcoming other than perhaps a learning curve.
Read full review Reliability and Availability Applications errors should always be expected in any kind of technology. What matters most is the way you find to resolve it.
Read full review Performance WatchGuard works seemlessly and so in the background you don't realize it's there until you need it!
Read full review Support Rating This is the one area where I have a beef with Juniper. When I called into Cisco TAC, 90% of the time, the first person I spoke with was able to resolve my issue. With Juniper TAC, 90% of the time, the first person I speak with is not able to resolve my issue, seems to almost be reading from a script, and must escalate my ticket. All of which takes time.
Read full review We have only had to contact them once during the initial set up to help bring the internet back on line. After that for the most part our systems have been automated, and could easily be checked form their online FAQ and Knowledge base that they provide. Everything else is easily handled from their browser based interface
Read full review In-Person Training We participate to a in person training and the three days of learning was really useful and complete to gain skill to solve the major part of the problem we encounter during our life. And more the in person training give us the opportunity to create a network with other WatchGuard partner.
Read full review Online Training Online training is good for learning how to use the product. It does not teach security strategy because that is not its intent.
Read full review Implementation Rating I had my key information for setting up the firewall, and they assisted me in finding the settings and appropriate places to enter data. They also helped troubleshoot when I didn't understand some of their feature concepts, and we got it running.
Read full review Alternatives Considered Juniper SRX stands tall compared to all these products for Large Service Provider Networks, where traffic volume is larger. Also, cost comparison with SRX's few other products can also be another contributing factor while selecting this. As well as Juniper Routers, Switches, and multiple products from the same vendor to maintain one single vendor environment. As well as Juniper Support is also really good.
Read full review At 3 of my locations I use both a Sonic Wall and a watch guard. In my experience, the sonic wall has a much better interface. I feel it was much easier for someone that has never accessed a fire wall to be able to make changes and learn very quickly. I feel the Watchguard has better built in applications and the VPN was easier to use and access.
Read full review Scalability We scaled it exactly as we needed it to be! Easy, money-saving, and we didn't end up with features or options that we'd never use or worry about.
Read full review Return on Investment It is a workhorse for our field operations. It provides the last touch for an ISP to the customer. The customer has no view of the device, but with the repeatability of the device, they do not need to. The ability to roll out a dynamic routing protocol attached to a security zone allows elasticity to the environment that supports growth. VLAN support on the inside interfaces allow this to be the only device in some smaller deployments we install these in. Read full review The VPNs are very easy to configure, less time to loose at new implementation. The traffic monitor can be improved, I can't see the ISO layers to do a faster diagnosis. Having an ADDS authentication is a plus, can use it with rules and vpn for remote access. Very useful. The dimension feature can be developed as a website + database for NGINX, Apache2, IIS, etc., I feel traped on that linux vm only. Most of the customers doesn't like to pay for a solution like this. They will accept only after beign attacked. WatchGuard can improve the sales with a demo (hacking, active security, etc.). Read full review ScreenShots WatchGuard Network Security Screenshots