Try our new research platform with insights from 80,000+ expert users

Cisco IOS Security vs SonicWall NSSP comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Sep 16, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Fortinet FortiGate
Sponsored
Ranking in Firewalls
2nd
Average Rating
8.4
Reviews Sentiment
7.2
Number of Reviews
328
Ranking in other categories
Software Defined WAN (SD-WAN) Solutions (1st), WAN Edge (1st)
Cisco IOS Security
Ranking in Firewalls
21st
Average Rating
8.0
Reviews Sentiment
6.9
Number of Reviews
48
Ranking in other categories
Intrusion Detection and Prevention Software (IDPS) (8th)
SonicWall NSSP
Ranking in Firewalls
39th
Average Rating
8.2
Reviews Sentiment
7.7
Number of Reviews
7
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of April 2025, in the Firewalls category, the mindshare of Fortinet FortiGate is 21.1%, up from 17.7% compared to the previous year. The mindshare of Cisco IOS Security is 0.3%, up from 0.2% compared to the previous year. The mindshare of SonicWall NSSP is 0.1%, up from 0.0% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Firewalls
 

Featured Reviews

EhabAli - PeerSpot reviewer
Efficient, user-friendly, and affordable
In the past, NSS Labs was utilized to test files and verify the numbers and datasheets. It would be beneficial to have an organization or testing lab that can verify the numbers in our datasheets since changes are frequently made, which can be inconvenient for review. For instance, when comparing different competitors such as Forcepoint, Palo Alto, and Check Point, the throughput or numbers in the datasheet may be lower than the actual numbers. Conversely, Fortinet typically reports very high numbers, but they cannot be replicated in the real world. Therefore, it would be advantageous for them to partner with a neutral testing organization such as NSS Labs to validate these numbers, thus providing more credibility and comfort to everyone regarding the accuracy of the datasheets. For the migration, everyone has a firewall in use and I am selling Fortinet. Typically, I am replacing another firewall. Previously, there was a tool available to convert configurations from one firewall, such as Palo Alto, to Fortinet, but this tool is no longer free. If it could be made free again, it would be very beneficial. This tool shows a lot of promise and is very good. Making it free would help many companies deliver their products in a more efficient and integrated way. It would also be more valuable to include the tool with the firewall package or license instead of having to pay extra for it. Paying extra puts more pressure on small companies to deliver the firewall and complete the configuration, especially if they have hundreds or thousands of policies. It's very painful to move through these policies line by line. The stability has room for improvement. When it comes to Secure SD-WAN, everything is fine. They are going the right way. SD-WAN is very promising. They can provide the SD-WAN solution separately, but they will not take this approach because even the smallest firewall can support the features, so there is no need to have a separate service or appliance. They are following the right steps, and there is nothing to be improved. Feature-wise, I'm really satisfied with the new release, and the features they have added. For now, it's fine.
Karthik Venkataraman - PeerSpot reviewer
User-friendly and excels in documentation, making it easier to resolve issues
Cisco IOS Security is a mature product with extensive capabilities, serving as the base for the defense layer. It offers good network visibility, which helps in rapid response through the Rapid Threat Containment feature. Its deployment and configuration are straightforward. From a networking perspective, for instance, Cisco IOS incorporates time-tested security features. The zone-based firewall feature has significantly influenced our network security management. For instance, when managing multiple geolocations, it's essential to apply geographically appropriate policies. If a customer operates within the UK zone, I need to implement UK-specific policies. This approach is also applicable to customers in the Asia Pacific and UK regions. It enables me to tailor security policies based on the geographical location of my customers, such as adjusting policies for customers in China or Japan. This flexibility helps in creating a comprehensive zone list. Additionally, this feature allows for seamless service agreements between all zones from headquarters, providing access to all zones within the firewall we create. Essentially, it facilitates the creation of zones within the firewall.
Lenin Christopher - PeerSpot reviewer
Enhanced security with advanced threat protection and superior support
We serve as an integrator for SonicWall, deploying this solution for customers in the media and entertainment, banking, and finance sectors. We use SonicWall to protect their environments against digital attacks SonicWall has helped us deliver security solutions effectively, particularly in…

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The application control features, such as Facebook blocking and Spotify blocking, are the most valuable."
"The most valuable feature of the solution revolves around SSL VPN."
"It is a safe product."
"LinkGreat firewall capabilities"
"We have found it to be very reliable and that's why our teams and various users in our company use it as our main firewall every day."
"The security fabric is excellent."
"Advanced routing (RIP, OSPF, BGP, PBR). It gives you a seamless and simple integration into a large network."
"The most valuable features are the possibility of having one fabric for switching on security."
"The capabilities for scalability with this product are huge"
"The VPN is the most valuable feature."
"The Intrusion Firewall is a valuable feature."
"Cisco IOS Security increases the overall security of our network, performs authentication, and provides level 15 access and privileges."
"It is less expensive than alternative firewalls."
"You can scale it when you need to."
"Previously, anyone in the organization would see any data point in the wall. They could just go and connect their machine with that data point and could access the network. But now, even if someone came and tried that, they will not be given access."
"The most valuable features of Cisco IOS Security are the plenty of functionality it provides, many people are IT certified the usage, and the user interface is good."
"It has been delivering results efficiently. Its configurations and updates have been easy. It is also user-friendly."
"I like the filtering feature, which provides easy access. The SSL certification feature is also nice. The solution enhanced our security posture."
"The product's most valuable features are simplicity and comprehensive protection capabilities, including load balancing, IPS, antivirus, and web filtering."
"SonicWall NSSP is stable and scalable too."
"The VPN functionality is really good. Overall, the whole device is very easy to manage. The software that comes with it is also good."
"The solution's pricing is good."
"SonicWall has helped us deliver security solutions effectively, particularly in threat prevention and content filtering."
 

Cons

"We would like to see a better training platform implemented."
"The SD-WAN functionality is a bit overly complicated and not fully documented."
"Fortinet doesn't provide multiple virtual firewalls which would facilitate end users and customers."
"In the future, I would like to see improvements made to cloud-based management."
"The user interface could be improved to make it less confusing and easier to set up."
"The feedback that I have received is that the performance could be better, and the user experience is not as good compared to a previous solution we used. It could be more user-friendly. Of course, it still works fine for our operations."
"The stability of Fortinet FortiGate could improve."
"For the migration, everyone has a firewall in use and I am selling Fortinet. Typically, I am replacing another firewall. Previously, there was a tool available to convert configurations from one firewall, such as Palo Alto, to Fortinet, but this tool is no longer free. If it could be made free again, it would be very beneficial."
"It would be ideal if the solution had more capacity."
"The configuration should be easier in the solution."
"There's a technology called SD-WAN that we would like to see. We are unable to handle multiple connections or to automatically load balance. I would like to have a feature that enables us to automatically prepare for load balancing."
"It takes too much time to deploy a policy to FMC. It takes around eight minutes. You can't afford any downtime when you're changing policies."
"I would love it if it has a link-by-link feature, integration with Unified Threat Management (UTM), and load balancers. They haven't got any link-by-link feature right now, which can be a very attractive option. This link-by-link feature can also be made available for Cisco's UTM firewalls. The link-by-link feature is available in some of the other firewalls. Currently, integration with UTM is missing. Cisco IOS Security also doesn't have the load balancers and a few things that need to be done to get a good UTM firewall. Normally, other firewalls have UTM. As a next-generation firewall, it's good, but as a UTM, it has to do some work."
"The solution is complex and can be more user-friendly."
"There are the usual bugs that are inherent to some software upgrades. Sometimes this provides some unexpected issues, however, it happens with all brands all the time."
"Cisco very slowly introduces and implements the products, unlike other brands."
"The product needs improvement for phishing emails."
"The user interface, the GUI, could be improved."
"The solution's stability and scalability also need improvement."
"Its reporting functions can be improved. It has decent reporting, but you got to pay a lot more money for it. That's where it begins to fall apart. It comes with minimal zero reporting unless you buy some extra modules. With those extra modules, you can get all the data, but it takes a while to put together what you need for your customer. It is for technical people, but there is no executive summary of the reporting."
"The EDR and XDR capabilities of SonicWall need to be improved."
"No security product is foolproof against hackers, intruders, and other such things. As a security product, they have to keep pace in terms of protection from new hackers and intruders."
"The platform could benefit from an improved marketing strategy."
 

Pricing and Cost Advice

"The pricing is fair."
"Fortinet FortiGate allows you to purchase licenses for hardware and software."
"If the customer is looking for SD-WAN, it comes free with FortiGate."
"Fortinet FortiGate gives you most of the features in one license."
"The cost is too high... They have to focus on more features with less cost for the customer. If you see the market, where it's going, there are a lot of players offering more features for less cost."
"The pricing is flexible."
"Price-wise, it's at a good price point for our market."
"You need to pay a license for this solution. Our licensing is now done in our subsidiary."
"Cisco IOS Security is not very expensive, and pricing depends on where you live. It's affordable for both individuals and institutions. On a scale from one to five, I would give Cisco's pricing a four."
"Price is certainly something that the IOS technology has fallen behind the competition on."
"The pricing is very expensive. Normally I do a yearly contract; I don't know the exact pricing, but it's around $75,000 USD per year. That's the standard licensing."
"The licensing is on a subscription basis, and it is fairly costly. I would prefer a one-time payment."
"It is necessary to pay for a license in order to use the solution. It is on a yearly basis and the price is high."
"The price of the solution should be cheaper, and the license is purchase annually."
"The cost may be around $5,000 to $10,000 a year. If you want support you have to pay at least this price."
"Palo Alto networks are more expensive than this solution and this is why you will see more products like this one in Mexico."
"The pricing is cheap, and that's where, you know, the some of the organization goes for the SonicWall."
"You got to buy some VPN licenses, and there might be a $40 to $50 one-time license fee per current user. There are different layers. They have several different levels of event security software and depending on the model, it seems to come out to be $1 to $2 a day. So, if you bought a three-year license, it is going to be anywhere from $900 to $1800 depending on the bundle and model that you buy."
"The setup costs and licensing are reasonable, and the solution provides good value for its features."
"For SonicWall NSSP high availability, active/passive, you need to buy one license, and so you get much more value for money."
"I rate the solution's pricing a six out of ten."
report
Use our free recommendation engine to learn which Firewalls solutions are best for your needs.
848,476 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Educational Organization
21%
Computer Software Company
14%
Comms Service Provider
7%
Manufacturing Company
6%
Computer Software Company
29%
Financial Services Firm
13%
Government
9%
Manufacturing Company
8%
No data available
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

Which is the better NGFW: Fortinet Fortigate or Cisco Firepower?
When you compare these firewalls you can identify them with different features, advantages, practices and usage a...
What is the biggest difference between Sophos XG and FortiGate?
From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know...
What are the biggest technical differences between Sophos UTM and Fortinet FortiGate?
As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite ...
What do you like most about Cisco IOS Security?
Cisco IOS Security is a mature product with extensive capabilities, serving as the base for the defense layer. It off...
What is your experience regarding pricing and costs for Cisco IOS Security?
Pricing can be reduced. I rate the current price for the product a four out of ten.
What needs improvement with Cisco IOS Security?
While I do not have specific recommendations for improvement, pricing can be reduced.
What is your experience regarding pricing and costs for SonicWall NSSP?
SonicWall is a rather expensive solution with a rating of eight out of ten regarding its pricing. Despite being expen...
What needs improvement with SonicWall NSSP?
The EDR and XDR capabilities of SonicWall need to be improved. When compared to a brand like SentinelOne, SonicWall s...
 

Also Known As

FortiGate 60b, FortiGate 60c, FortiGate 80c, FortiGate 50b, FortiGate 200b, FortiGate 110c, FortiGate, Fortinet Firewall
IOS Security
SonicWall Network Security Services Platform
 

Overview

 

Sample Customers

Amazon Web Services, Microsoft, IBM, Cisco, Dell, HP, Oracle, Verizon, AT&T, T-Mobile, Sprint, Vodafone, Orange, BT Group, Telstra, Deutsche Telekom, Comcast, Time Warner Cable, CenturyLink, NTT Communications, Tata Communications, SoftBank, China Mobile, Singtel, Telus, Rogers Communications, Bell Canada, Telkom Indonesia, Telkom South Africa, Telmex, Telia Company, Telkom Kenya
Arup Group, Brunel University London, City of Biel, Gobierno de Castilla-La Mancha, K&L Gates , New South Wales Rural Fire Service, Offshore Northern Seas, Transplace
Comlogic, Depaul, Hutt City Council
Find out what your peers are saying about Cisco IOS Security vs. SonicWall NSSP and other solutions. Updated: April 2025.
848,476 professionals have used our research since 2012.