Skip to main content
TrustRadius
Cisco Secure Firewall

Cisco Secure Firewall

Overview

What is Cisco Secure Firewall?

Cisco Secure Firewall (formerly Cisco Firepower NGFW) is a firewall product that integrates with other Cisco security offerings. It provides Advanced Malware protection, including sandboxing environments and DDoS mitigation. Cisco also offers a Next Generation Intrusion Prevention System, which provides…

Read more
Recent Reviews
Read all reviews

Awards

Products that are considered exceptional by their customers based on a variety of criteria win TrustRadius awards. Learn more about the types of TrustRadius awards to make the best purchase decision. More about TrustRadius Awards

Popular Features

View all 11 features
  • Content Inspection (43)
    7.4
    74%
  • Policy-based Controls (44)
    7.0
    70%
  • Firewall Management Console (44)
    5.8
    58%
  • Reporting and Logging (45)
    5.5
    55%

Reviewer Pros & Cons

View all pros & cons

Video Reviews

Leaving a video review helps other professionals like you evaluate products. Be the first one in your network to record a review of Cisco Secure Firewall, and make your voice heard!

Return to navigation

Pricing

View all pricing
N/A
Unavailable

What is Cisco Secure Firewall?

Cisco Secure Firewall (formerly Cisco Firepower NGFW) is a firewall product that integrates with other Cisco security offerings. It provides Advanced Malware protection, including sandboxing environments and DDoS mitigation. Cisco also offers a Next Generation Intrusion Prevention System, which…

Entry-level set up fee?

  • No setup fee
For the latest information on pricing, visithttps://www.trustradius.com/buyer…

Offerings

  • Free Trial
  • Free/Freemium Version
  • Premium Consulting / Integration Services

Would you like us to let the vendor know that you want pricing?

13 people also want pricing

Alternatives Pricing

N/A
Unavailable
What is Cisco Firepower 1000 Series?

The Cisco Firepower® 1000 Series for small to medium-size businesses and branch offices is a family of four threat-focused Next-Generation Firewall (NGFW) security platforms designed to deliver business resiliency through superior threat defense. The vendor provides that they offers exceptional…

What is Cisco Meraki MX?

Cisco Meraki MX Firewalls is a combined UTM and Software-Defined WAN solution. Meraki is managed via the cloud, and provides core firewall services, including site-to-site VPN, plus network monitoring.

Return to navigation

Features

Firewall

A firewall is a filter that stands between a computer or computer network and the Internet. Each firewall can be programmed to keep specific traffic in or out

6.3
Avg 8.5
Return to navigation

Product Details

What is Cisco Secure Firewall?

Cisco Secure Firewall (formerly Cisco Firepower NGFW) is a firewall product that integrates with other Cisco security offerings. It provides Advanced Malware protection, including sandboxing environments and DDoS mitigation. Cisco also offers a Next Generation Intrusion Prevention System, which provides security across cloud environments using techniques like internal network segmentation. The firewall can be managed locally, remotely, and via the cloud. The product is scalable to the scope of the business needs.

Cisco Secure Firewall Technical Details

Operating SystemsUnspecified
Mobile ApplicationNo
Return to navigation

Comparisons

View all alternatives
Return to navigation

Reviews and Ratings

(73)

Attribute Ratings

Reviews

(1-25 of 45)
Companies can't remove reviews or game the system. Here's why
Score 8 out of 10
Vetted Review
Verified User
Incentivized
Replacing ASAs and implementing new firewall in ICS environment
  • Detailed GUI
  • Easy to manage centrally
  • Configuration
  • Deployment time is slow
  • Failed frequently
  • HA Synchoronization time is slow
Suited best for WAN edge and Branch deployment scenario. However managing through FMC sometimes comes with cost if number of FTDs are more than 25. Cisco doesn't have any license between 25 and 300!
Score 10 out of 10
Vetted Review
Verified User
Incentivized
Anyconnect VPN. Work from home solution for people to connect back to enterprise network. Over 500 connections and over 800 VPN accounts.
  • VPN
  • HA
  • Security
  • The elephant flow limitation?
HA setup is really good. VPN solution is very popular. Next Gen firewall like IPS/IDS needs a upgrade.
Score 6 out of 10
Vetted Review
Verified User
Incentivized
ITS THE MAIN CONTROLLER FOR URL FILTERING POLICIES
  • FILTER URL
  • BLOCKS TRAFFIC
  • VPNS
  • THE ADMINISTRATION OF THE BOX
  • THE IMPLEMENTATION SHOULD BE EASIER
Cisco firewall is working phine fut the licensing for the products limits its adoption
Score 10 out of 10
Vetted Review
Verified User
Incentivized
VPN access, internet access,security, separation of publicly accessed data versus corporate "internal" data.
  • VPN
  • DMZ
  • SECURITY
  • stop discontinuing features such as tunnels, redundant links, etc. with version updates
in industry networks, separation of SCADA is key and the Secure Firewall is perfect for this
Mohammed Jabir, PMP, PfMP | TrustRadius Reviewer
Score 4 out of 10
Vetted Review
Verified User
Incentivized
We always face issue with FPR when used in cluster. Some of the issues are as below.<br>Cluster breaks and traffic stops<br>Many bugs<br>We are provinding the FPR to our customer in goverment as data center firewall. It is meant to secure the infrastructure from security threats however the experience of customers have not been great and we find that the TAC not being able to resolve issues quickly
  • Data center firewall
  • Security
  • VPN
  • Software bugs
  • TAC expertise
  • Competetion from other vendors
In current product capebility, it is not recommended in critical infra. It can be used in less critical infra. The issues faced are severe and is not recommended to be used in critical infra. However it can be used if the current issues are resolved and the platform is stable.
Score 7 out of 10
Vetted Review
Verified User
Incentivized
We implement the Firepowers in routed mode to control east to west traffic
  • access lists
  • logging
  • monitor (basic)
  • FTD to ASA mode
  • VPN (site to site)
  • IPS/IDS
  • Cli
the fire powers are well suited for east to west traffic segmentation. less appropriate would be navigating the web page, too many clicks, can sometimes be picky, does not always display accurate information
Score 9 out of 10
Vetted Review
Verified User
Incentivized
We were on an ASA and just upgraded to FTD (External and Internal). We have a FMC that currently manages the FTD. It is well recdeived in our department for Security Intelligence, etc.
  • Security Intelligence
  • ACL
  • Able to manage the equipment
  • More room to enter IP addresses
It meets our security needs in our organization
Score 9 out of 10
Vetted Review
Verified User
Incentivized
Create multiple DMZs for non-standard networks
VPN networks to allow customers access to the Internet
  • Able to create sub interface on physical ports
  • ADSM make it much easier to program and verify m config
  • The power to create group
creating DMZs, VPN tunneles
Less appropriate, Doing inspection above layer 4
Score 4 out of 10
Vetted Review
Verified User
Incentivized
Customer required a new firewall to upgrade from ASA. We Deployed firepower in 3 locations.
  • Security above layer 3
  • GUI and Interface is now well throughout compared to other similar products.
  • Complex and not intuitive interface compared to ASDM or CLI
I am unable to recommend Firepower unless the device is converted back to ASA. I connect recommend FTD.
Score 1 out of 10
Vetted Review
Verified User
Incentivized
We use Cisco Firewalls as our primary firewall solution. They have been nothing but a pain to implement and manage. I am not even sure they are working correctly when they say they are.
  • Integrates with some stuff partially
  • Implementation
  • Integrations need to be more thoroughly built out.
I would not recommend Cisco FIrewalls for anyone.
June 09, 2023

FTD 1100

Score 8 out of 10
Vetted Review
ResellerIncentivized
Remote access VPN user isolation. Syslogging to palo alto to get user-id information
  • Remote access vpn
  • Encrypted Visibility Engine
  • User-ID agent is missing
  • Certificate enrollment needs improving
  • Should be able to have a local and FMC configuration similar to other vendors
Perimeter and remote access. Less suited for SSL decryption/virtual
Score 9 out of 10
Vetted Review
Verified User
Incentivized
We use it for a multi tenant environment,
  • We can create containers of FTDs and create HA pairs between different containers
  • We use it the secure the internal and DMZ networks
  • Offers NGFW features such as URL filtering, NGIPS and for the access policies we need to apply it.
  • Offers visibility over events and reporting with FMC
  • Support for native VXLAN
  • CLI support on the FTDs
  • Support for all the BGP features, there are commands that show issues with network subnets being received or advertised.
  • Show BGP neighbor x.x.x.x received-routes
  • This shows an issue that soft-inbound is not applied when it is applied.
- DMZ Firewall
- NAT ability
- Internal firewall
- B2B firewalls
- Multi tenancy environment
Score 9 out of 10
Vetted Review
Verified User
Incentivized
We currently have several Cisco secure firewalls deployed at the edges of your networks. Centrally managed by Cisco Secure Firewall Management Center. We use the devices to protect users, workloads and provide client and IPSEC vlan services. All devices are currently deployed in HA pairs with BGP sessions to our ISP.
  • Monitoring and troubleshooting.
  • Rule set management.
  • Ease of IPSEC tunnel management.
  • Live log buffer troubleshooting.
  • Integration with VMWare NSX.
  • LDAP intrgration.
We have not found many situations where the secure firewall hasn't been a good fit. Our biggest issue has been the limited integration with VMWare NSX, where some of the competitor products have much better integration.
Score 9 out of 10
Vetted Review
Verified User
Incentivized
My company uses Cisco Secure Firewall for quite a few years. It is a great product as it keeps our systems secure and our data safe.

We use it as a firewall to secure our data and use it for our VPN connectivity and i find it very easy to use and implement in our system.
  • security and safety
  • Allows and blocks traffic based on criteria
  • monitors incoming and outgoing traffic
  • UI should be better
  • Should be more flexible to connect
  • support should be better
It doesn't let us connect to secured network in the system if the our network isn't connected to VPN which shows its great for security. It blocks sites based on criteria and URL so great for expansion in the systems. It is flexible to add criterias for business requirement so easy to implement.
Score 8 out of 10
Vetted Review
Verified User
Incentivized
Cisco firewall is being used as an edge security device in our branch and datacenter locations. Security related policies such as access control or traffic inspection using IPS are currently applied to filter traffic based on the security best practices protecting internal hosts and publicly available services from outside world.
  • Traffic inspection
  • Remote access
  • Access Control
  • Management of firewalls via Firepower Management Center should be improved. Devices work well but management platform should be improved further in a manner of simplification, more user friendliness and overall stability.
Having remote access configured on these firewalls with many acls using firepower management center can be extremely time consuming.Comparing that with former ASA firewalls and CLI configuration which could be applied in matter of minutes - there's a room for improvement on FTD platform. As an edge device it works like a charm!
Score 10 out of 10
Vetted Review
ResellerIncentivized
We use Cisco Secure Firewall as our Internet Edge Firewall, VPN firewall.
  • IPS
  • AVC
  • Visibility
  • Security Intelligence
  • Remote Access VPN
  • Site-2-Site VPN
  • When using the device with local manager, it could be nice to configure all LINA parts through CLI
  • ASA to FDM combatability
  • Grouping of SGTs
As an Datacenter Firewall or Internet Edge firewall it is well suited. For VPN Firewall use I would still recommend the ASA Firewall.
February 11, 2023

RemoteAccessVPN Champion

Score 9 out of 10
Vetted Review
Verified User
Incentivized
We used this model as a remote access vpn gateway. We purchased 2 boxes and configured them in HA. We configured Anyconnect setup with radius authentication. We integrated it with Cisco ISE for authorization and visibility. We purchased a 3 year term based license.
  • State-full Firewalling
  • IPS
  • NAT
  • site to site vpns
  • time based remote access vpn
  • local logging
Cisco firewall is very suitable for enterprise environment and covers all security aspects and it is quite robust.
February 11, 2023

Cisco Secure Firewall

Simon Watkins | TrustRadius Reviewer
Score 7 out of 10
Vetted Review
Verified User
Incentivized
We've been deploying these firewall on customer premises as Internet edge devices acting as the demarcation point between the network and the internet. As many of our customers are on a cloud journey, utilising DIA (Direct Internet Access), we deploy these devices in a HA (High Availability) setup ensuring that we have maximum business uptime.
  • Application control
  • Ease of use
  • Not a big jump moving from Cisco ASA
  • Full native routing integration in the GUI
  • NAT
Having deployed a number of these devices, I have found that they are excellent for network segmentation and the demarcation point between the internal network and the wider internet. If you required very high throughput then I would be cautious deploying these firewalls unless of course you were to purchase a higher model with the corresponding increase in throughtput. Essentially we need to be cautious in these cases and ensure the correct model is selected.
Score 8 out of 10
Vetted Review
ResellerIncentivized
I am a reseller and Consultant for Security products. It really depends on the customers use case and what business we are consultinig. Mostly we try to increase the security in an company. The top use cases are Network segmentation, Firewall refreshes, Zero Trust concepts.
The scope varies also depending on the size of the company. That could mean from one firewall to 100+ firewalls if it"s an international company
  • Speed and throughoutput
  • Features
  • Cisco Ecosystem integrations
  • Third Party integrations
  • Software bugs
  • Better integrations with third party products
If a customer has a lot of cisco securiity products or is migratinig from an existinig cisco Firewall (ASA) than i would definately recommend Cisco Secure Firewall. The integration in the Cisco Ecosystem is well rounded and works really well. I wouldn"t recommend Cisco Secure Firewall if the customer has a lot of third party vendors such as Palo or checkpoint. Also the bugs are sometimes crucial and can lead to bigger problems
February 11, 2023

A Great Engagement Tool

Score 9 out of 10
Vetted Review
Verified User
Incentivized
We're having 20 sites and 3 regional tiered datacenters that all use Cisco Secure firewalls, including ISE
  • implementing a strategic secure method
  • Default security
  • Auditing company standards
  • review change management
  • Audit unused access lists
It gives you very well default security without having a specialist on board
Score 5 out of 10
Vetted Review
ResellerIncentivized
Its the Perimeter Firewall

Failed Upgrades , Split brain, Failed Interfaces that work again after reboot. Performance is less that expected. Packet loss on interfaces
  • VPN
  • routing
  • Stability of the system itself
  • problems after major upgrades i.e. expired certificates
  • Failed rommon update on 2110, TAC took 14 days
well suited for vpns
Fits not really for other things
Score 9 out of 10
Vetted Review
Verified User
Incentivized
Used as a guest internet firewall
  • Protect clients
  • Advanced filtering
  • Great features
  • User interface
  • more advanced application fearures
Best for simple solutions.
Would use more feature rich application layer firewalls for enterprise protection
Return to navigation