Cisco Secure Firewall Review
Updated December 15, 2023

Cisco Secure Firewall Review

Phyo Phyo Hein | TrustRadius Reviewer
Score 8 out of 10
Vetted Review
Verified User

Software Version

Other

Overall Satisfaction with Cisco Secure Firewall

Sometimes as a consultant, we need to propose the product, do the customer, and then need to see their requirements. And then I need choose if I need to propose the solution and then I need to see the Cisco website if we need a secure firewall. And then according to customer budget and then what Cisco can provide. And then I need to compare and then I choose the product by negotiating with the customer budget.
  • How the firewall works well is normally the firewall is protecting the secure network for the internal network to prevent the attack from external network. normally for the ISP customer, we usually filter the firewall polices only for the server farm, server farm because normally in ISP is the customer doesn't want to be filtered. So only for the server farm, they need the firewall for the enterprise like banking and for the DDoS attack, like the malware attack, something like that. And then sometimes it's some customer in ISPalso, they got the many DDoS attack and then they are using the public ip. When there are using the public ip, they need to protect their ip. So they need to use the firewall. So the firewall is essentially needed. many attackers and many, many things, terrible things have been to the network which has large impact..
  • Sometimes it's the limitation of the throughput or limitation of the firewall. One DDoS attack they have the bandwidth capacity is very little. And then once there is DDoS attack. Many not only the firewall can protect that they need to take action further at the Upstreaming Provider, that side with the bigger pipe bandwidth for protecting the attack. Not only the firewall can prevent,. Yes. So sometimes firewalls still have the limitation and then need to do any additional monitoring or something. But we can do that with the ideas and IPS, but required to have the bigger pipe to protect DDos Attack, for example the bandwidth from the upstream network as well. I mean when many DDos Attack comes with big bandwidth, not only firewall can protect, but also the blackholing the traffic from upstream providers who has bigger bandwidth DDos mitigation services.
When We do not have the proper security filter policy in the network, the business will have a big much impact in revenue or many things happen terribly because every day, sometimes some of my customers, they have their SLA, the customer like the enterprise or banking, if they got the attack, they will have the big loss. So security is very important in their network in my opinion. So I think the security feature also for the engineer, also the devices also I want to let Cisco know that to make it easier and configure easier. Sometimes it's the Cisco, the command, command lines or something are quite difficult and then different from version to version. I have some difficulty when recently I have the problem is that they want to configure, one customer is want to configure them BGP multihoming on the Cisco router firewall, but this version of cisco ASA has limitation on BGP multihoming issue which cause traffic blackholing when incoming path and outgoing path are different which is called asymmetric routing. The price should be cheaper for the developing country.

Do you think Cisco Secure Firewall delivers good value for the price?

Yes

Are you happy with Cisco Secure Firewall's feature set?

Yes

Did Cisco Secure Firewall live up to sales and marketing promises?

Yes

Did implementation of Cisco Secure Firewall go as expected?

Yes

Would you buy Cisco Secure Firewall again?

Yes

Cisco Secure Firewall Feature Ratings

Identification Technologies
7
Visualization Tools
7
Content Inspection
8
Policy-based Controls
10
Active Directory and LDAP
8
Firewall Management Console
10
Reporting and Logging
10
VPN
10
High Availability
8
Stateful Inspection
10
Proxy Server
9