Cisco Secure Firewall Review
Updated June 12, 2024

Cisco Secure Firewall Review

Anonymous | TrustRadius Reviewer
Score 7 out of 10
Vetted Review
Verified User

Software Version

Firepower 1150

Overall Satisfaction with Cisco Secure Firewall

We generally use this product for our edge firewalls, data center interconnects along with our implementation of ISE segmentation. The Cisco Secure Firewall products help segment our access layer (users) from our compute and provides VPN and Internet access for our users. We utilize a combination of Firepower 9300s, 1100's and 3300's for these services.

Pros

  • ACL integrations with user identity work well with Cisco's segmentation products such as Cisco ISE analytics along with its ability to incorporate pretty much anything you throw at it.

Cons

  • Deployments on Cisco firewalls, if you make a policy change you have to do a deployment. Obviously you can do automated deployments for some things based on what's going on, but the deployment time is definitely the most frustrating thing. If I am to make a change on the firewall, just one line for example, one ACL, and if you have enough of those, it could take 40 to 45 minutes or more for it to go through. It can be a very stressful time. It may fail or may complete, but during that timeframe little is known as to the result until it finishes. This only generally occurs with deployments that have hundreds or thousands of preexisting ACL's. The newer software versions have improved on this deployment process.
  • I guess mainly just the ability to do what we need to do on a day-to-day job with segmentation being number one, ensuring no bad actor can come in and plug into the network locally and get to a data center server or something like that without being ultimately blocked by a firewall.
TAC can always improve, but that the case for nearly company that sells similar products.

Do you think Cisco Secure Firewall delivers good value for the price?

Yes

Are you happy with Cisco Secure Firewall's feature set?

Yes

Did Cisco Secure Firewall live up to sales and marketing promises?

Yes

Did implementation of Cisco Secure Firewall go as expected?

No

Would you buy Cisco Secure Firewall again?

Yes

This product is well suited for deployments that include existing Cisco products such as ISE, Cisco AMP (Secure Endpoint) and etc. It's easy to understand and use for day to day. Implementation into environments where products are mixed could cause some headaches. In particular, HA environments that do not use an underlying Cisco network infrastructure.

Cisco Secure Firewall Feature Ratings

Identification Technologies
7
Visualization Tools
6
Content Inspection
6
Policy-based Controls
8
Active Directory and LDAP
8
Firewall Management Console
8
Reporting and Logging
6
VPN
7
High Availability
8
Stateful Inspection
8
Proxy Server
6

Comments

More Reviews of Cisco Secure Firewall