Review of Cisco Secure Firewall
Overall Satisfaction with Cisco Secure Firewall
We use the FTD (Cisco Firepower Threat Defense ) managed by FMC (Cisco Firewall Management Center) as our primary data center firewall in our NY data center. I like some of the L7 features and geolocation features as primarily our connections at this data center are limited to US customers and connectivity. I also like the dashboard, but upgrades and lack of CLI commands has been problematic.
Pros
- Site-to-Site VPN Services
- Dashboards in FMC
- AnyConnect Remote Employee Access
Cons
- Database integrity - corruption
- Upgrading -- failed upgrades pushed from FMC
- Due to database integrity we've had periods of time where we are not able to sync from the FMC to the FTD.
- AnyConnect has been stable and is by far the most valuable product line
Unfortunately, I've only had negative impact by the inspection policy. Most of the experience with inspection is with bypassing or turning off the inspection b/c of latency reasons or issues with the application.
VPN logs are used often - also VPN clients are logged for mgmt reporting for compliance and regulatory reasons.
I'm still evaluating new data center build out with Palo Alto, Cisco Secure Firewall or other.
Do you think Cisco Secure Firewall delivers good value for the price?
Not sure
Are you happy with Cisco Secure Firewall's feature set?
Yes
Did Cisco Secure Firewall live up to sales and marketing promises?
No
Did implementation of Cisco Secure Firewall go as expected?
Yes
Would you buy Cisco Secure Firewall again?
No


Comments
Please log in to join the conversation