FireMon in a 100+ firewall environment.
October 23, 2023

FireMon in a 100+ firewall environment.

Carter Spear | TrustRadius Reviewer
Score 8 out of 10
Vetted Review
Verified User

Modules Used

  • Security Manager

Overall Satisfaction with FireMon

We use FireMon to track changes in traffic, find rules that we can clean up and restrict, and report to higher-ups. I personally use it to export lists of potential rules to change based on control failures. We use it in most of our separate business units for a variety of reasons, but most are using it to improve security posture.
  • Regular reporting.
  • Dashboarding
  • When my query is too complicated, the search bar changes to an advanced mode. I'd love for it to always be capable of the beginner mode since it takes a long time to get all the pieces of the query I need in advanced mode.
  • Sometimes our active VPN tunnels will show "unused" in FireMon when they are used.
  • I use the allowlisting feature frequently, but it's not possible to bulk-allowlist items.
  • I'd love to be able to report on new control failures. There are a lot of reporting options available, but it seems like a manual export of a CSV is my only choice if I want to look at control failures.
It's relatively easy to add new devices to the list and we only require 2 servers to run this application. When we added new devices to the network, FireMon discovered them easily.
  • FireMon has made it easy to discover places where rules can be improved.
  • FireMon has improved our security on existing firewalls and makes it easy to discover when new dangerous rules are implemented.

Do you think FireMon delivers good value for the price?

Not sure

Are you happy with FireMon's feature set?

Yes

Did FireMon live up to sales and marketing promises?

I wasn't involved with the selection/purchase process

Did implementation of FireMon go as expected?

Yes

Would you buy FireMon again?

Yes

FireMon is best used in a large environment (for example, I have >100
firewalls in my environment). It's best used when trying to improve
security posture and showing changes in firewall security over time. It
might not be the best choice for smaller environments or those that aren't concerned about security management.