Cisco Firepower Threat defense is a great firewall for Small to medium business.
Updated July 05, 2022

Cisco Firepower Threat defense is a great firewall for Small to medium business.

John Babio | TrustRadius Reviewer
Score 9 out of 10
Vetted Review
Verified User

Software Version

Firepower 1120

Overall Satisfaction with Cisco Firepower 1000 Series

Migration of current ASA 5505, ASA5540 firewall fleet. The migration steps are to migrate to an new platform recommending Firepower Threat Defense.
  • Simplicity of functionality
  • Throughput of traffic
  • Ease of implimentation
  • Real time logging to FMC
  • Option for web interface for real time logging even if you are FMC controlled
  • I would see it is neutral because the option for migration is only Firepower
We do not use the FDM for administration. We use FMC for managing the firewalls. We already were using 5500x with firepower services so there was no learning curve.
Upgrading to snort 3 boosts performance.
There is alot of room for improvement which they are working on.
Ease of implementation is higher for Cisco than Palo Alto.

Do you think Cisco Firepower 1000 Series delivers good value for the price?

Yes

Are you happy with Cisco Firepower 1000 Series's feature set?

No

Did Cisco Firepower 1000 Series live up to sales and marketing promises?

Yes

Did implementation of Cisco Firepower 1000 Series go as expected?

Yes

Would you buy Cisco Firepower 1000 Series again?

Yes

Small business implementation where IT support are not as well verse in firewall technology.

Cisco Firepower 1000 Series Feature Ratings

Identification Technologies
9
Visualization Tools
5
Content Inspection
9
Policy-based Controls
9
Active Directory and LDAP
9
Firewall Management Console
9
Reporting and Logging
6
VPN
10
High Availability
10
Stateful Inspection
10

Resilience and Reliability

The device you are placing at the edge of your network has to be resilient.
Train the users, empower the users, least privilege, and zero trust.
Unless there is a new model then this will be the one.
Utilize the new FMC cloud which is available in Cisco Defense Orchestrator.
Has not let me down yet.
Very easy to migrate a configuration from existing ASA.
  • As internet Firewalls
  • As VPN termination
  • As out of band management firewalls

Using Cisco Firepower 1000 Series

2 - Internet Firewalls for all locations
1 - Basic firewall skills and network knowledge
  • Internet Firewall
  • VPN termination
  • Intrusion Prevention
  • Zero trust configuration

Evaluating Cisco Firepower 1000 Series and Competitors

Yes - Cisco ASA 5506 which is nearing EOL
  • Price
  • Product Features
  • Product Reputation
The non profit reseller we do business with offers meraki and Cisco Firepower Threat Defense. The ease of use of the Firepower products line is a no brainer.
It came down to going with a completely different vendor or sticking with a tried and true vendor.

Cisco Firepower 1000 Series Support

ProsCons
Quick Resolution
Good followup
Knowledgeable team
Problems get solved
Kept well informed
No escalation required
Immediate help available
Support understands my problem
Support cares about my success
Quick Initial Response
None
no because the normal support is adequate.
Yes - longer than normal due to config needing to be used in a lab environment by TAC.
Most recently brought to my attention and accidental misconfiguration. They did not make me feel like bad about it and were very professional.

Using Cisco Firepower 1000 Series

ProsCons
Like to use
Relatively simple
Easy to use
Technical support not required
Well integrated
Consistent
Quick to learn
Convenient
Feel confident using
Familiar
None
  • the security policy setup
  • viewing traffic permitted or denied
  • the security intelligence feature
  • Multiple DNS servers for different DHCP scopes
  • Limited functionality compared to full FMC
There are certain features i would like to see on the FDM management that does not require full FMC