Try our new research platform with insights from 80,000+ expert users
PeerSpot user
Network Security Consultant at Societe Generale Global Solution Centre
Real User
Boosts network security using inline IPS and passive IDS, and they have efficient technical support
Pros and Cons
  • "The main advantages to Cisco are the scale, the integration, the training, and the possibility of finding somebody to work with."
  • "I think that some initiation scripts might be helpful because they would make the configuration easier and more user-friendly for customers."

What is our primary use case?

We are a solution provider and I am an engineer who deploys solutions. This is one of the products that I have experience with it in this capacity. The version that we use depends on the client.

Some of our clients are ISPs and they are using the firewall features in this product to replace old firewalls. It is doing the regular firewall inspections, VPN concentration, and other such things. For other customers, who replaced Sourcefire, they use it primarily as an inline IPS and a passive IDS. These customers do not choose very many of the firewall features.

Some customers use it for both; they have a firewall, VPN concentration, and then they do IPS inspection. This is the next-generation of these technologies.

What is most valuable?

The most valuable feature is the IPS engine. It has been in the security branch for decades and is now integrated into the Cisco portfolio. The difference is that it has been scaled a thousandfold. It provides a base language for intruder inspection for all of the security engineers. Now, they have the same language everywhere in the corporate and the open-source firewalls and IPS.

What needs improvement?

The configuration of this product can be simplified. I am an expert in this area because few people can do it. It requires a lot of training and documentation.

I think that some initiation scripts might be helpful because they would make the configuration easier and more user-friendly for customers.

For how long have I used the solution?

I have been working with NGIPS for about four years, since 2016 or 2017, shortly after Cisco bought it.

Buyer's Guide
Cisco Secure IPS (NGIPS)
December 2024
Learn what your peers think about Cisco Secure IPS (NGIPS). Get advice and tips from experienced pros sharing their opinions. Updated: December 2024.
824,095 professionals have used our research since 2012.

What do I think about the stability of the solution?

Stability is something that is tricky to judge because when you have a 600-person userbase, there are always going to be issues. As we fix them, it becomes stable again.

What do I think about the scalability of the solution?

This is suitable for organizations of all sizes; small, medium, and large-sized companies. For example, one of our clients has 600 users.

The ease of scaling depends on the number of times you scale, or to which extent. I can start by saying that scaling is easy but if you want to scale a hundredfold, then it's not going to be so easy. It's impossible.

How are customer service and support?

I like Cisco's technical support and find that they are efficient. In fact, I was a technical team leader for Cisco support, and I am now a client. There is amazing support team at TAC and they help Cisco be great. 

Which solution did I use previously and why did I switch?

I have worked with similar products from different vendors in the past, although I am avoiding this type of task for the moment.

The main advantages to Cisco are the scale, the integration, the training, and the possibility of finding somebody to work with. Also, the reaction time that they have in case of failure is very fast, and it is easy to replace the setup.

How was the initial setup?

The initial setup is complex. It requires that NGIPS be optimized such that it has the best results with the best performance. The deployment model, be it on-premises or cloud-based, depends on the client.

The length of time required for deployment also depends on the client. In a small office, I can do it in a few hours. For an enterprise, it could take half a year. I have worked on many different scales.

What about the implementation team?

I am responsible for deploying this product to our customers. When it comes to maintenance, we cooperate. They know the environment, their tools, the change management, and the internal procedures. I take care of the technical parts, and we have full cooperation until it is complete.

What's my experience with pricing, setup cost, and licensing?

This is an expensive product, with the biggest cost being the license that keeps the service going.

What other advice do I have?

My advice for anybody who is implementing NGIPS is to get in touch with someone who can advise them because every network is different. Properly sizing the appliances is important. 

I would rate this solution a ten out of ten.

Which deployment model are you using for this solution?

Private Cloud
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
IT Administrator at a retailer with 51-200 employees
Real User
A stable solution with excellent IPS detection functionality
Pros and Cons
  • "We have found the IPS detection to be a very valuable feature of this solution. It is easy to use to stop policy violations."
  • "We would like an option to search through the logs to be added to this solution."

What is our primary use case?

We use this product for IPS detection and reporting purposes.

What is most valuable?

We have found the IPS detection to be a very valuable feature of this solution. It is easy to use to stop policy violations.

What needs improvement?

We would like an option to search through the logs to be added to this solution.

For how long have I used the solution?

We have been working with this solution for three years.

What do I think about the stability of the solution?

The current version of this solution is proving to be very stable.

What do I think about the scalability of the solution?

We believe this to be a scalable solution.

How are customer service and support?

The technical support for this product is good. They respond to tickets quickly when they are raised, and they generally respond within 24 hours.

How was the initial setup?

The initial setup and configuration of this solution was straightforward.

What's my experience with pricing, setup cost, and licensing?

Licenses for this product are available for either one, or three year terms.

What other advice do I have?

I would rate this solution a nine out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Buyer's Guide
Cisco Secure IPS (NGIPS)
December 2024
Learn what your peers think about Cisco Secure IPS (NGIPS). Get advice and tips from experienced pros sharing their opinions. Updated: December 2024.
824,095 professionals have used our research since 2012.
reviewer1739214 - PeerSpot reviewer
Network engineer at a manufacturing company with 201-500 employees
Real User
IPS ability enables you to balance security and connectivity
Pros and Cons
  • "The most valuable feature is its IPS ability. You are able to balance security and connectivity."
  • "The CLI, the console line interface, of the FTD could be improved. It's very complex, so without a GUI, it doesn't work well. I would like it to be more simple."

What is our primary use case?

Our primary use case is securing the network. It has a deep learning intelligence ability to filter packages and traffic coming to networks and to different workstations in networks. 

This solution is deployed on-premises. 

What is most valuable?

The most valuable feature is its IPS ability. You are able to balance security and connectivity. 

What needs improvement?

The CLI, the console line interface, of the FTD could be improved. It's very complex, so without a GUI, it doesn't work well. I would like it to be more simple. 

As far as additional features or next releases, I think the price could be cheaper. 

For how long have I used the solution?

We have been using this solution for more than eight years. 

What do I think about the stability of the solution?

This product is stable. 

What do I think about the scalability of the solution?

This product is very scalable. 

How are customer service and support?

Cisco's technical support is very, very fast. 

Which solution did I use previously and why did I switch?

Before implementing Cisco, we used Fortigate and Check Point. 

How was the initial setup?

The installation is straightforward. You have to install the device, but if you want to actually manage it, you need a GUI for it. For deployment, you will need two engineers, maximum. 

What about the implementation team?

We implemented this solution through an in-house team and deployed it ourselves. 

What's my experience with pricing, setup cost, and licensing?

We pay for the IPS license to use this solution. 

What other advice do I have?

I rate this product a nine out of ten, and would recommend this product to others who are considering using it. 

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Infrastructure and Security Officer at a tech services company with 201-500 employees
Real User
Top 10
The console has everything you need in one place
Pros and Cons
  • "I like how NGIPS has everything in one console."
  • "The look and feel of the console could be updated."

What is our primary use case?

We use NGIPS for monitoring and firewall purposes. We have about 3,000 users. 

What is most valuable?

I like how NGIPS has everything in one console.  

What needs improvement?

The look and feel of the console could be updated. 

For how long have I used the solution?

I have used NGIPS for about five years.

What do I think about the stability of the solution?

NGIPS is stable.

How was the initial setup?

Setting up NGIPS was complex. We needed help from a Cisco specialist. 

What other advice do I have?

I rate Cisco NGIPS eight out of 10 overall.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Commercial Manager at Natco Information technology
Real User
Is stable, scalable, and has good performance
Pros and Cons
  • "I've found the performance and stability to be the most valuable features of Cisco NGIPS. It is scalable as well."
  • "The price could be improved."

What is our primary use case?

Our customers use it for VBN and network as well.

What is most valuable?

I've found the performance and stability to be the most valuable features of Cisco NGIPS. It is scalable as well.

What needs improvement?

The price could be improved.

For how long have I used the solution?

I've been providing this solution for about five years.

What do I think about the stability of the solution?

It is a stable solution.

What do I think about the scalability of the solution?

It is scalable.

How are customer service and technical support?

My experience with technical support has been okay.

How was the initial setup?

Installation is straightforward and took half a day.

What's my experience with pricing, setup cost, and licensing?

The pricing could be improved. Our customers have a yearly license.

What other advice do I have?

It is a good product, and I would recommend it. I would rate it at eight on a scale from one to ten.

Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
PeerSpot user
reviewer1530636 - PeerSpot reviewer
Networking Security Consultant at a comms service provider with 51-200 employees
Real User
Good support, stable, and has a lot of advanced security features
Pros and Cons
  • "The integration with the Cisco portfolio is very helpful."
  • "Multi-internet line load balancing should be supported."

What is our primary use case?

I work for a system integrator and Cisco NGIPS is one of the products that we implement for our clients. This is a solution for enterprise networks and it has a lot of advanced features including security intelligence feeds and DNS security.

What is most valuable?

This product can be integrated with other solutions from the Cisco portfolio including Cisco ISE and SecureX. The integration with the Cisco portfolio is very helpful. Cisco ISE will give full control in any network and it can be used to isolate any infected or misbehaving users automatically.

What needs improvement?

Multi-internet line load balancing should be supported. It is available from other vendors and should be included with this product.

What do I think about the stability of the solution?

This is one of the most stable solutions in the firewall world. 

What do I think about the scalability of the solution?

Cisco takes scalability into consideration. My clients vary in size from small and medium-sized businesses to enterprises.

How are customer service and technical support?

The best support that I have ever dealt with is from Cisco. I am very satisfied with their service.

Which solution did I use previously and why did I switch?

I have experience with a lot of network security products. These include solutions by Cisco, Palo Alto, Fortinet, and Forcepoint.

How was the initial setup?

The initial setup is very simple and in one or two hours, it can be up and running.

What's my experience with pricing, setup cost, and licensing?

The licensing can be billed annually or in multi-year contracts such as three, four, or five years.

What other advice do I have?

I would rate this solution a nine out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner, integrator
PeerSpot user
System Engineer at a tech services company with 11-50 employees
Real User
A solution with a lot of complexity but with excellent customer service
Pros and Cons
  • "Technical support is quite good. With firewalls, the last cases I had with Cisco were professionally handled quite quickly and it was great."
  • "Overall, it lacks user-friendliness. It could be easier to manage. I can train any customer using FortiGate or Palo Alto in a few days, but with Cisco, it takes much more time because the systems aren't easy to use."

What is our primary use case?

We use the solution to secure our client's networks.

What needs improvement?

Overall, it lacks user-friendliness. It could be easier to manage. I can train any customer using FortiGate or Palo Alto in a few days, but with Cisco, it takes much more time because the systems aren't easy to use.

It would be very nice to get rid of FlexConfig. It's a very unhelpful element of the solution.

One feature that is lacking is full interoperability with CLI.

You can configure Palo Alto and FortiGate with a graphical interface, and you can configure it with the command line. This is not so in Cisco. For professionals, this is important because the command line allows us to configure a lot of things and copy configurations and it's much easier.

For how long have I used the solution?

I've been using the solution for 10 to 15 years.

How are customer service and technical support?

Technical support is quite good. With firewalls, the last cases I had with Cisco were professionally handled quite quickly and it was great. I can compare with some other manufacturers. FortiGate is awful, for example. I'm generally pleased with Cisco.

How was the initial setup?

The solution has a moderate amount of difficulty. You need to go over and use the documentation.

Cisco has a device manager now but this device manager is not like all device managers from ASA. It lacks a lot of features, and some of these features are very important. It makes it a challenge to configure because of the graphical interface. You have to install the management center and that itself takes time and it's not so simple.

What other advice do I have?

We use the on-premises deployment model.

Ten years ago, when you sold Cisco to clients, customers complained about the price but they knew they were buying the best product in the market. It is totally different now. If they want to buy the best product in the market, they buy Palo Alto or Check Point. Cisco is trying to catch up to the competition.

When we talk about just the IPS manufacturers, I would rate the solution around six or seven out of ten. If we're talking about Cisco as a whole, I would rate them eight out of ten.  

Disclosure: My company has a business relationship with this vendor other than being a customer: Partner.
PeerSpot user
Senior Consultant at Wevioo
Consultant
Offers valuable web filtering and JPS features and their technical support responds quickly
Pros and Cons
  • "The solution is stable. This is one of the good things in Firepower. Especially if we use ESE with it."
  • "There are some features not found in Firepower, like data loss prevention, and SSO, to have a connection between Cisco and Active Directory which was introduced on other products."

What is most valuable?

I've found the web filter and JPS the most valuable features.

What needs improvement?

There are some features not found in Firepower, like data loss prevention, and SSO, to have a connection between Cisco and Active Directory, which was introduced on other products.

In the future, I'd like the same solution in other UTM solutions. I know it has an application filter, but it's not really improving. Also, DLP needs to prevent data loss. Those two features are really important now for firewalls and for the security. The data loss prevention really is the most asked for feature from the customer. Often they ask about how we can prevent loss of emails, of data, files. It's really important.

For how long have I used the solution?

I've been using the solution since 2014.

What do I think about the stability of the solution?

The solution is stable. This is one of the good things about Firepower. Especially if we use ESE with it. That would make it the complete solution for Cisco for security. If it is the complete solution, it's stable and there are no issues with the product. If the user isn't connected all the time, for example, if we look at some sites or some users, sometimes the connection for the user gets disconnected with each session. Sometimes the filter doesn't work. 

What do I think about the scalability of the solution?

The solution is good to scale.

How are customer service and technical support?

The technical support is really good. Not only for this solution. The support of Cisco is always good. From the first call, the response is quick and there is no problem with the support.

How was the initial setup?

The initial setup is not complex. There is a wizard so it's not complex. There is a difference in the complexity of the deployment. Depending on customers and infrastructure, sometimes it takes one day or two days if we're talking about a little infrastructure. Sometimes it can take eight days or more to couple the firewall with ASA, and to do some more complex architecture. If we have a complex architecture, we need 2 people to implement, but if we have an implementation that is not so complex, one person can do it.

What about the implementation team?

I do the implementation myself.

What was our ROI?

Most of the time the ROI good. The customer, most of the time, is happy and is convinced of the usefulness of the solution.

What other advice do I have?

If someone wants to use Cisco Firepower, the solution is easy. The complete solution is the best for having the full security of a Cisco infrastructure. If I could advise someone with the deployment, I would advise taking the complete solution, in order to have a really scalable and stable solution. Or, if you can't take the complete solution, I'd advise taking a cluster of Firepower to have the scalability and stability.

I would rate this solution a 7 or 8 out of 10. If they could add a few of the mentioned features or do something more with the application filter it would be a 9 or a 10 out of 10.

Disclosure: My company has a business relationship with this vendor other than being a customer: Partner.
PeerSpot user
Buyer's Guide
Download our free Cisco Secure IPS (NGIPS) Report and get advice and tips from experienced pros sharing their opinions.
Updated: December 2024
Buyer's Guide
Download our free Cisco Secure IPS (NGIPS) Report and get advice and tips from experienced pros sharing their opinions.