I deployed the Cisco Secure Firewall at the Internet Edge for the most part.
Used for deep packet inspection, Internet Edge functionality, IDS, and IDP
Pros and Cons
- "We use the solution for deep packet inspection, Internet Edge functionality, IDS, and IDP."
- "The solution’s GUI could be better."
What is our primary use case?
What is most valuable?
We use the solution for deep packet inspection, Internet Edge functionality, IDS, and IDP.
What needs improvement?
The solution’s GUI could be better.
For how long have I used the solution?
I have been using Cisco Secure Firewall for six years.
Buyer's Guide
Cisco Secure Firewall
October 2026
Learn what your peers think about Cisco Secure Firewall. Get advice and tips from experienced pros sharing their opinions. Updated: October 2026.
915,325 professionals have used our research since 2012.
What do I think about the scalability of the solution?
Cisco Secure Firewall is a scalable solution that allows you to add capacity.
How was the initial setup?
The solution’s initial setup is straightforward.
What's my experience with pricing, setup cost, and licensing?
The solution’s pricing is competitive.
What other advice do I have?
I rate the solution's ease of management and configuration an eight out of ten. I would recommend Cisco Secure Firewall to other users based on what they want it for and a combination of price point and supportability.
Overall, I rate the solution an eight out of ten.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Engineer at a tech services company with 501-1,000 employees
Saves us time and offers good security
Pros and Cons
- "The security features are the most valuable. My customers find the security products very useful because nowadays there are many threats from the internet and other malicious users. The security products really help."
- "It should be easier for the IT management or the admin to configure products. For example, the firewall products are not very straightforward for many users. They should be easier to configure and should be more straightforward."
What is our primary use case?
We deploy the firewall on the customer end and the customer can facilitate the VPN for their clients. We use Cisco Umbrella to secure their network and their endpoints.
How has it helped my organization?
We only work with Cisco products. We have been working with Cisco products for many years. In that way, we save time and we don't want to change to other vendors.
What is most valuable?
The security features are the most valuable. My customers find the security products very useful because nowadays there are many threats from the internet and other malicious users. The security products really help.
So far, Cisco Secure for securing infrastructure from end-to-end so that we can detect and remediate threats is good enough.
What needs improvement?
It should be easier for the IT management or the admin to configure products. For example, the firewall products are not very straightforward for many users. They should be easier to configure and should be more straightforward.
Some competitors are very easy to configure, you don't need to spend a lot of time reading the documents and learning them.
For how long have I used the solution?
I have been using Cisco products for ten years.
How are customer service and support?
The support is good. Sometimes it has a long waiting time. The waiting time depends on the products. For some products, for example, the Data Center solutions, you have to wait for an hour, even though they said that they escalated the case.
How would you rate customer service and support?
Positive
How was the initial setup?
The initial deployment should be more straightforward. It's not that straightforward at the moment.
What's my experience with pricing, setup cost, and licensing?
The licensing is not good, it's confusing. I'm an engineer so I don't care about the actual price that much but the licensing part is confusing.
Which other solutions did I evaluate?
We've evaluated other solutions. We've been consulted to use competitors' products. There are things that are good with those competitors, but everything has two sides.
We choose Cisco because we are a Cisco partner, so we only recommend Cisco products. They believe in us, so we have a good relationship with them.
What other advice do I have?
I would rate Cisco Secure products an eight out of ten.
My advice would be to use them.
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
Buyer's Guide
Cisco Secure Firewall
October 2026
Learn what your peers think about Cisco Secure Firewall. Get advice and tips from experienced pros sharing their opinions. Updated: October 2026.
915,325 professionals have used our research since 2012.
Network Engineer at a government with 10,001+ employees
Is stable, but management features need to be updated
Pros and Cons
- "I like that it is easy to change the settings."
- "Cisco ASDM is a problem because it is old."
What is our primary use case?
We use ASA firewalls to limit traffic between the networks.
We use an on-premises deployment model.
What is most valuable?
I like that it is easy to change the settings.
What needs improvement?
Cisco ASDM is a problem because it is old.
For how long have I used the solution?
I've been working with it for a year, but my company has been using Cisco firewalls for 15 years.
We use Cisco Secure Firewall ASA 5506 and 5508.
What do I think about the stability of the solution?
Cisco Secure Firewall ASA's stability is good.
How are customer service and support?
I recently had a case with technical support that took a couple of weeks to resolve. We use Cisco Smart Licensing and are not connected to the net. It was a big problem to get it to work. Cisco's technical support did not know how it worked, and I had to tell them how it worked. We haven't had interactions with technical support where there were more positive outcomes.
On a scale from one to ten with ten being the best, I would rate technical support at two.
How would you rate customer service and support?
Negative
How was the initial setup?
The initial deployment is easy for this solution.
What other advice do I have?
Overall, I would rate this solution at seven out of ten because Cisco ASDM needs to be updated.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Solutions Consultant at a comms service provider with 10,001+ employees
A capable box for UTM
Pros and Cons
- "It's quite a capable box for UTM."
- "Once installed, it's quite stable."
- "Sometimes my customers say that Cisco Firewalls are a bit more difficult compared to Fortigate or Palo Alto. There is complexity in the configuration and the GUI could be improved."
What is our primary use case?
We use it as a firewall or for UTM at the data center.
What is most valuable?
We like the standard firewall features. It's quite a capable box for UTM.
What needs improvement?
Sometimes my customers say that Cisco firewalls are a bit more difficult compared to Fortigate or Palo Alto. There is complexity in the configuration and the GUI could be improved.
For how long have I used the solution?
I have been using Cisco ASA Firewalls for as long as I have been working here, which is seven years.
What do I think about the stability of the solution?
Once installed, it's quite stable. We don't have many issues after it's deployed. Both the hardware and software are quite stable.
What do I think about the scalability of the solution?
As a firewall, it's in use all the time. Whether there will be increased usage depends on how security risks increase. But at the moment, there's no expectation for an increase in use.
How are customer service and support?
Cisco's technical support is usually quite satisfactory, and we get a reasonable response in a reasonable time to any inquiry we make.
How would you rate customer service and support?
Positive
How was the initial setup?
The initial setup is not that simple. I don't do the installation myself, but from what I hear it's more complicated than some of the other firewall products.
We usually do our installation in two or three hours. Our customers usually have between 10 and 50 users and they are generally IT admins.
We have three people who work in the field and manage deployments, and another five to 10 to manage the solution.
What was our ROI?
If you use the full functionality of Cisco ASA, it's worth the cost. But I don't think our company product is using the full capacity of the Cisco ASA.
What's my experience with pricing, setup cost, and licensing?
Licensing, recently, has been getting more complicated. In particular, the Smart Licensing that came out is quite complicated. I don't know what's going on. Our sales team asks us questions about Smart accounts, but I don't know what it is and Cisco is making it so complicated. They call it Smart, but it's complicated. I prefer the traditional license where you buy it once.
What other advice do I have?
When talking with our customers, I would not recommend our company's Cisco products for their security. It depends on their requirements, but if they want full security, I wouldn't say that Cisco ASA is the one choice.
My advice would be to do a PoC first.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
Security architect at a computer software company with 51-200 employees
Flexible and stable security platform that offers different functionalities including VPN connectivity
Pros and Cons
- "This solution is very flexible and offers different functionality including firewalls and VPN connectivity, is easy to learn, and its positive impact on our organization was apparent as soon as we implemented it."
- "We are replacing ASA with FTD which offers many new features not available using ASA."
- "Over the last two years, getting a response from the support engineers has been challenging."
What is our primary use case?
We use this solution to provide firewall solutions for clients. We have been transitioning from ASA to FTD, since FTD has come out with new versions or upgrades.
How has it helped my organization?
This solution is very flexible and offers different functionality including firewalls and VPN connectivity. It checks a lot of boxes. It is an easy solution to learn how to use and the positive impact on our organization was apparent as soon as we implemented it.
What is most valuable?
The CLI is the most valuable feature. We are moving towards FTD, which is more GUI based. The value of this solution lies in the fact that it is a standard platform that's been around for years and is always improving. This is important to us due to the necessity of ensuring cyber security.
What needs improvement?
We are replacing ASA with FTD which offers many new features.
For how long have I used the solution?
We have been using this solution since 2009.
What do I think about the stability of the solution?
This is a stable solution.
What do I think about the scalability of the solution?
This is a very scalable solution as long as you get the right hardware.
How are customer service and support?
Over the last two years, getting a response from the support engineers has been challenging. This could be due to the impact of COVID.
Which solution did I use previously and why did I switch?
We sell a lot of different firewall varieties including SonicWall, Cisco ASA, and FTD.
How was the initial setup?
When setting up the solution for our clients, we ensure they have the bandwidth they need and consider what their throughput needs are. The solution does require maintenance in terms of patching. This requires approximately six team members depending on how many moving parts there are for clients.
What was our ROI?
We have seen a return on investment using this solution based on the fact that we are spending less money overall.
What's my experience with pricing, setup cost, and licensing?
The pricing for this solution is pretty fair.
What other advice do I have?
If it is possible, I would advise others to try out a demo with Cisco to test their firewalls. The biggest lesson I learned from using this solution is that there are many ways to achieve the same outcome.
I would rate this solution a nine out of ten.
Which deployment model are you using for this solution?
Hybrid Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer.
Network Architect at a tech vendor with 10,001+ employees
Security solution that offers a broad range of protection and has given us better control over securing our organization
Pros and Cons
- "This solution made our organization more secure and gave us better control."
- "This solution could be more granular and user-friendly."
What is our primary use case?
We use this solution for company security and to define access and connection between different devices.
How has it helped my organization?
This solution made our organization more secure and gave us better control.
What is most valuable?
The access list is the most valuable feature of this solution.
What needs improvement?
This solution could be more granular and user-friendly.
For how long have I used the solution?
I have been using this solution for 12 years.
What do I think about the stability of the solution?
This is a stable solution.
What do I think about the scalability of the solution?
This is a scalable solution.
How are customer service and support?
The technical support for this solution is good. I would rate it a seven out of ten.
How would you rate customer service and support?
Neutral
Which solution did I use previously and why did I switch?
We use this solution together with Palo Alto, depending on the use case.
How was the initial setup?
The initial setup is straightforward and the deployment only takes a few hours. Our deployment strategy was to keep it simple. A large deployment of this solution can require up to 10 resources.
The solution does require maintenance and we use an external service provider for this maintenance.
What other advice do I have?
I would rate this solution an eight out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Director of network engineering at a computer software company with 5,001-10,000 employees
Is easy to use, stable, and scalable
Pros and Cons
- "Cisco ASA Firewall is a well known product. They're always updating it, and you know what they're doing and that it works."
- "Cisco ASA Firewall has improved our organization by allowing connectivity to the outside world and into different places, and the firewall is the first line of defense in protecting the network."
- "It would be good if Cisco made sure that the solution supports all routing protocols. Sometimes it doesn't."
What is our primary use case?
Our primary use case includes basic firewalls, VPNs, NAT, and our connections to customers.
It's used in our data centers to protect the network and customer circuits.
How has it helped my organization?
Cisco ASA Firewall has improved our organization by allowing connectivity to the outside world and into different places.
Cybersecurity resilience is very important to our organization. There are always threats from the outside, and the firewall is the first line of defense in protecting the network.
What is most valuable?
Cisco ASA Firewall is a well-known product. They're always updating it, and you know what they're doing and that it works.
What needs improvement?
It would be good if Cisco made sure that the solution supports all routing protocols. Sometimes it doesn't.
For how long have I used the solution?
I've been using it for probably 10 to 15 years.
What do I think about the stability of the solution?
For the most part, it's stable.
What do I think about the scalability of the solution?
It's a very scalable solution.
How are customer service and support?
The technical support is very good, and I would give them a nine out of ten.
How would you rate customer service and support?
Positive
What's my experience with pricing, setup cost, and licensing?
The pricing and licensing are getting more complicated, and I'd like that to be simpler.
Which other solutions did I evaluate?
We evaluated some Palo Alto and Juniper solutions, but Cisco ASA Firewall is better in terms of ease of use. You could get certified in it.
What other advice do I have?
To leaders who want to build more resilience within their organization, I would say that the ASA, along with its features, is a good product to have as one of the lines of defense.
The solution does require maintenance. We have four network engineers who
are responsible for upgrading code and firewall rules, and for new implementations.
On a scale from one to ten, I would rate Cisco ASA Firewall a nine. Also, it's a very good product, and it compares well to others.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Network Systems Manager at a computer software company with 5,001-10,000 employees
VPN enables staff to work from home, and our response times to events has been reduced
Pros and Cons
- "The VPN feature is the most valuable to us because it accomplishes the task well, and we're able to do everything we need to do."
- "I would like to see them update the GUI so that it doesn't look like it was made in 1995."
What is our primary use case?
We use it for our VPN requirements. We wanted to allow people to work from home and we used the ASA to create VPNs through AnyConnect at the endpoints.
How has it helped my organization?
It has
- allowed people to work from home when they otherwise couldn't
- improved response times when there are fires that need to be put out when people are not onsite.
What is most valuable?
The VPN feature is the most valuable to us because it accomplishes the task well. We're able to do everything we need to do.
What needs improvement?
I would like to see them update the GUI so that it doesn't look like it was made in 1995.
For how long have I used the solution?
I've been using the Cisco ASA Firewall for between one and two years.
What do I think about the stability of the solution?
It's been very stable. I don't think we've ever had an issue with it failing entirely.
What do I think about the scalability of the solution?
It scales well. We've had no issues ramping things up.
We're going to expand our usage of it. We rolled it out to about 200 users and now we're going to expand that to about 1,000 users out of our 3,000-user base. It has been really good.
How are customer service and support?
The tech support is excellent. I've always gotten really good tech support from Cisco.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
We did not have a previous solution.
What's my experience with pricing, setup cost, and licensing?
The pricing could always be cheaper.
What other advice do I have?
The solution always requires maintenance. I have about two people who are the "experts" and they help maintain it pretty well.
Cyber security resilience has been extremely important for our organization because of our customers' demands for security. The ASA has really helped to accomplish that with the VPN. My advice to leaders who are looking to build resilience is don't go cheap, and make sure you have backup solutions and high availability.
It's a good, robust firewall and VPN solution, with lots of knobs to turn. It is effective at what it does.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Lead Network Engineer
Enables secure communication with our peers, but needs more next-gen features
Pros and Cons
- "They are easy to maintain."
- "For clean and easy protection of an enterprise, it is a really good product."
- "I would like to see them add more next-generation features so that you don't need a lot of appliances to do just one task. It should be a single solution."
- "It's not really cost-effective when it comes to scalability. It is a really expensive product if you go to the modular firewalls."
What is our primary use case?
We use them for VPNs and as firewalls, of course. We wanted to protect the network and have secure communication with our peers.
How has it helped my organization?
They secure the network and ensure our network is always available.
What is most valuable?
They are easy to maintain.
What needs improvement?
I would like to see them add more next-generation features so that you don't need a lot of appliances to do just one task. It should be a single solution.
For how long have I used the solution?
I have been using Cisco ASA Firewalls for nine years.
What do I think about the stability of the solution?
In terms of stability, it is a really good product and platform. Overall, it's great.
What do I think about the scalability of the solution?
It's not really cost-effective when it comes to scalability. It is a really expensive product if you go to the modular firewalls. You need to get new appliances to get new features.
How are customer service and support?
Tech support is good but it could be improved on some points.
How would you rate customer service and support?
Neutral
Which solution did I use previously and why did I switch?
I have used Fortinet, Check Point, and Palo Alto firewalls. Most of those solutions have everything integrated into them so you don't need multiple appliances. You get a single solution for your network. It would be better to have a centralized firewall, from Cisco, that can do everything.
How was the initial setup?
The initial deployment was straightforward. The last implementation of an ASA took us about one to two weeks.
Our implementation strategy was to have good architecture and to have all the requirements for the project beforehand. Everything went really smoothly because of that.
We needed four or five people for deployment, including field techs and network engineers.
What other advice do I have?
For clean and easy protection of an enterprise, it is a really good product. It can be also deployed as a virtualized solution in data centers.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Senior network security, engineer and architect at a computer software company with 5,001-10,000 employees
Decreased our downtime and enables us to get users connected faster and more easily
Pros and Cons
- "AnyConnect has been very helpful, along with the ability to use LDAP for authentication."
- "It has improved things greatly by giving us easier and better access, easier configuration, and allowing users to gain the access they need."
- "The ASAs are being replaced with the new Firepowers and they have a different type of structure in the configuration to be able to migrate from one to the other."
What is our primary use case?
We use it for VPN access for our two-factor authentication. We were looking to get access through AnyConnect, to gain access to devices behind boundaries and firewalls.
How has it helped my organization?
It has improved things greatly by giving us easier and better access, easier configuration, and allowing users to gain the access they need. We have also had less downtime using these firewalls.
What is most valuable?
AnyConnect has been very helpful, along with the ability to use LDAP for authentication. It's very robust and we are able to do many different things that we were looking to do.
What needs improvement?
The ASAs are being replaced with the new Firepowers and they have a different type of structure in the configuration to be able to migrate from one to the other.
For how long have I used the solution?
I have been using Cisco ASA Firewalls for 20 years.
What do I think about the stability of the solution?
The stability is very good. It has been a very stable environment. Since the new AnyConnect came out, it's been very easy to use and very much self-sufficient.
What do I think about the scalability of the solution?
You can vary scalability from very few users to thousands of users.
How are customer service and support?
Technical support has been very helpful at times, helping us to know what bugs and what things are getting fixed in the next releases.
How would you rate customer service and support?
Positive
How was the initial setup?
As an architecture team, we had a pretty good idea of what we wanted to do and how we wanted to do it, so it was pretty straightforward and easy. We have each one across many different avenues and many different boundaries, so each one took about a day to deploy.
We needed two to three people to deploy them and another one to go over some things to make sure everything was good to go.
There is routine maintenance, keeping it up to date and making sure the licensing versions are all good to go. We have a four-man team for maintenance and they work a regular shift of eight hours.
What about the implementation team?
We used a reseller, FedData. Our experience with them was good.
What was our ROI?
It took us about six months to see benefits from our ASA Firewalls. We've seen return on our investment in terms of the timeframe of downtime, and the ability to get users connected faster and more easily has been a big benefit.
What's my experience with pricing, setup cost, and licensing?
The pricing of the products isn't terrible. They're not too expensive. They're a little more expensive than other products, but you are getting the name, the company, and the support.
It's also nice that you can buy different avenues of licensing, depending on how you want to go about using them.
We buy a support license to get support if we have any issues or problems or need help on how we want to implement things.
Which other solutions did I evaluate?
We evaluated other options, but that was a long time ago. We went with Cisco because it is so robust as well as because they have been able to integrate their solutions into many different architectures. That makes their products easier to use.
What other advice do I have?
Each use case is different and things depend upon your cost analysis and how much you need. We have these firewalls in different avenues over about 30 different sites.
The biggest lesson from using the solution is being agile which has included learning to understand how to use the ASDM and figuring out how to configure everything—the little nuances—and what can and can't be done on the CLI.
These firewalls, along with the upcoming Firepower that they're being replaced by, are going to be very good assets for two-factor authentication and VPN access.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Buyer's Guide
Download our free Cisco Secure Firewall Report and get advice and tips from experienced pros
sharing their opinions.
Updated: October 2026
Popular Comparisons
Fortinet FortiGate
Netgate pfSense
Check Point Cloud Firewall (formerly CloudGuard Network Security)
Sophos Firewall
Cisco Umbrella
Palo Alto Networks NG Firewalls
WatchGuard Firebox
Cisco Identity Services Engine (ISE)
Check Point Harmony SASE (formerly Perimeter 81)
Cisco Meraki MX
Check Point Quantum Force (NGFW)
Cisco Secure Email
Azure Firewall
Cisco Duo
Buyer's Guide
Download our free Cisco Secure Firewall Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- What Is The Biggest Difference Between Cisco ASA And Fortinet FortiGate?
- Cisco Firepower vs. FortiGate
- How do I convince a client that the most expensive firewall is not necessarily the best?
- What are the biggest differences between Cisco Firepower NGFW and Fortinet FortiGate?
- What Is The Biggest Difference Between Cisco Firepower and Palo Alto?
- Would you recommend replacing Cisco ASA Firewall with Fortinet FortiGate FG 100F due to cost reasons?
- What are the main differences between Palo Alto and Cisco firewalls ?
- A recent reviewer wrote "Cisco firewalls can be difficult at first but once learned it's fine." Is that your experience?
- Which Cisco firewall model is the latest: ASA or NGFW?
- Which is better - Fortinet FortiGate or Cisco ASA Firewall?











