No more typing reviews! Try our Samantha, our new voice AI agent.

Cisco Secure Firewall vs Hillstone E-Series comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Apr 5, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Fortinet FortiGate
Sponsored
Ranking in Firewalls
1st
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
590
Ranking in other categories
Secure Web Gateways (SWG) (2nd), Intrusion Detection and Prevention Software (IDPS) (1st), Software Defined WAN (SD-WAN) Solutions (1st), WAN Edge (1st), ZTNA (1st), Unified Threat Management (UTM) (1st)
Cisco Secure Firewall
Ranking in Firewalls
5th
Average Rating
8.2
Reviews Sentiment
7.0
Number of Reviews
456
Ranking in other categories
Cisco Security Portfolio (3rd)
Hillstone E-Series
Ranking in Firewalls
39th
Average Rating
9.2
Reviews Sentiment
7.7
Number of Reviews
10
Ranking in other categories
SSL VPN (9th), Enterprise Infrastructure VPN (22nd)
 

Mindshare comparison

As of April 2026, in the Firewalls category, the mindshare of Fortinet FortiGate is 17.2%, down from 21.3% compared to the previous year. The mindshare of Cisco Secure Firewall is 7.5%, up from 5.7% compared to the previous year. The mindshare of Hillstone E-Series is 0.6%, up from 0.3% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Firewalls Mindshare Distribution
ProductMindshare (%)
Fortinet FortiGate17.2%
Cisco Secure Firewall7.5%
Hillstone E-Series0.6%
Other74.7%
Firewalls
 

Featured Reviews

Abhinandan Yadav - PeerSpot reviewer
Network Security Engineer at Arrow PC Network Pvt Ltd
Unified security and sd-wan have improved uptime and cut wan costs for multi-site branches
Users report stability issues in certain versions, which requires regular updates. Real-world attacks have also highlighted the need for urgent patching of vulnerabilities.Fortinet FortiGate, while a powerful and feature-rich web firewall, could improve in areas like firmware stability, documentation, and ease of use. The learning curve can be steep for some users. For beginners, support quality can vary, and frequent updates with occasional vulnerabilities call for careful patch management. However, once Fortinet FortiGate is configured, it remains highly reliable and efficient. Customer support needs improvement, as I find it very slow, with reports from other users reflecting that customer support is inadequate.
Phil Shiflett - PeerSpot reviewer
Senior Manager, Network Engineering at TTi Power Equipment
Unified policies streamline network management but complex licensing requires attention
Cisco Secure Firewall has some growth opportunities in terms of visibility and control capabilities regarding managing encrypted traffic. It has the ability to analyze encrypted traffic, and there is potential for more integration with APIs and AI to enhance these capabilities. Cisco Secure Firewall needs improvement in deployment time and the capability to access the CLI during support calls. I often encounter issues when technical support uses a CLI that is not familiar to me while troubleshooting through the GUI. My ongoing complaint for the last six years has been the lack of CLI functionality, which hinders my ability to work on the firewall, alongside concerns regarding deployment time. For the next release, they should look at the features offered by competitors such as Fortinet, including the ability to perform packet capture directly from the interface. If they enhanced their troubleshooting efficiency related to packet capture for each specific rule, it would simplify the process significantly.
TahirMahmood - PeerSpot reviewer
IT Manager at Zubair Feeds
Offers good features like URL filtering, IPS, and IDS to users
We received an update for the tool in July. The update was provided for the tool as there was a problem with the firewall, where too much memory was consumed, and the firewall was hanging a lot. When we updated the tool's features, everything became okay. The tool only had some memory-related problems. It took the tool a month to fix the issues.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Fortinet FortiGate is easy to use. Anyone can easily maintain it."
"The best feature of Fortinet FortiGate is the IPS or IDS implementation."
"The strengths of Fortinet FortiGate include network security, VPN, site-to-site tunnels, client VPN solutions, two-factor authentication for VPN clients, and SD-WAN for branch level. We have implemented these solutions for various customers."
"There are around 500 users making use of the solution in our organization."
"Its administrative panel is very intuitive and simple, and we are able to filter everything on our network and also use the VPN feature, which is important these days when people are working remotely during COVID."
"The tool's most valuable feature is IPS. In my experience, I haven't encountered any issues with integration. It easily integrates with the FortiGate solution. However, verifying through documentation and assessing their support is necessary."
"I am "headache free" that I don't have to categorize all the websites and that security has been pre categorized by the people, and that the services are getting updated. At least one part of my problem is over."
"Initial setup is easy to configure."
"Being able to determine our active users vs inactive users has led us to increased productivity through visibility. Also, if an issue was happening with our throughput, then we wouldn't know without research. Now, notifications are more proactively happening."
"All of the computer updates are available online, so you can update, all of the licensing features can be upgrades, and the interface is user-friendly."
"It integrates with various Cisco security portfolios and products, and there is an easy and seamless integration for building a complete security framework for our customers."
"The VPN functionality is consistent, and the performance is good."
"The firepower sensors have been great; they do a good job of dropping unwanted traffic."
"I am used to the ASA syntax, therefore it is quite easy to make up new rules. I have found that DNS doctoring rules are useful."
"They bring great value for the price because they provide excellent support, have stability, and we trust this product."
"It is extremely stable I would say — at least after you deploy it."
"Very reliable solution with good scalability and straightforward implementation."
"The installation is easy, we have not had any complaints from our customers."
"This solution has two main features that we find very valuable; a threat-intelligence option, and a web/application filtering option."
"If an organization is not looking for a web proxy, it's a very, very good product."
"With Hillstone, TCO and ROI are very good, it's an easy sale."
"The most valuable feature of the Hillstone E-Series is its user-friendliness."
"The most valuable features of the Hillstone E-Series are its hardware capacity, innovation, and the throughput that the hardware can take."
"Working with the Hillstone E-Series has, from a remote perspective, allowed me to give my clients secure connectivity from a remote location to their offices or their servers."
 

Cons

"Its reporting can be improved. Sometimes, I don't get proper reports."
"They have to just improve its performance when we enable all UTM features. When you enable all the features, the performance of FortiGate, as well as of Sophos and SonicWall, goes down."
"The main aspect of FortiGate that could be improved is load balancing."
"Fortinet should improve its software, as we are seeing lots of firmware versions generated for each vulnerability issue. It becomes difficult for us to keep updating the firmware frequently due to bugs."
"For the migration, everyone has a firewall in use and I am selling Fortinet. Typically, I am replacing another firewall. Previously, there was a tool available to convert configurations from one firewall, such as Palo Alto, to Fortinet, but this tool is no longer free. If it could be made free again, it would be very beneficial."
"They should make the rule sets more understandable for the end user. When you're trying to explain to somebody how a computer network is secured, sometimes it's difficult for an end user or customer to understand. If there was a way to make the terminology more accessible to the end user, the set up could be easier. They should translate the technical jargon to an easily relatable and understandable conversation for the end user, the customer, that would be brilliant. Particularly in an environment where the IT structure is audited regularly, there's always pressure from the auditor to up the standards and up the security and you get your USCERT's that come out and there's a warning about this and the customer will want to lock out so much and when you apply it they run into issue where they can't search the internet or print to their remote office. Of course they can't print to your remote office, they just locked it up. They should make the language more understandable for the customer. If there's a product out there that made the jargon understandable to John Q. Public, I would buy that."
"Fortinet FortiGate SWG can't be used on its own, and you have to get FortiAnalyzer."
"Maybe they can offer a smaller scope for a cheaper price for smaller organizations."
"We had an event recently where we had inbound traffic for SIP and we experienced an attack against our SIP endpoint, such that they were able to successfully make calls out... Both CTR, which is gathering data from multiple solutions that the vendor provides, as well as the FMC events connection, did not show any of those connections because there was not a NAT inbound which said either allow it or deny it."
"Recently, we have been having an issue with the ASA firewall. We haven't found the root cause yet and are still working on it."
"They need a VTI. I know it's going to be available in the next software version, which is the 6.7 version. However, the problem with that is that the 6.7 is going to deprecate all the older IKEv1 deployment tunnels. Therefore, the problem is that we have a lot of customers which are using older encryptions. If I do that, update it, it's not going to work for me."
"When I integrate Cisco ASA with Cisco IPS it creates lots of problem such as an increase in CPU utilization - as a result I have to stop the IPS service."
"We found it difficult to publish an antennae sidewalk with the ASDM. I think Cisco should improve this by creating a simpler interface for the firewall."
"Sometimes there is a lack of performance. With the 10 Gb devices, when it gets to 5 Gbps, the CPU usage goes up a lot and he cannot manage the IPS."
"There is huge scope for improvement in URL filtering. The database that they have is not accurate."
"Configuration on Firepower is currently madness as you have to redeploy it again with all its configurations if you use it as a module."
"I am not sure if this solution offers active directory integration. Adding that feature will definitely be an advantage."
"SSL VPN license cost is not cheap."
"The tool only had some memory-related problems."
"The current usage reporting is very basic."
"Having frequent live webinars on a monthly basis would really help."
"The current usage reporting is very basic. I would like to be able to access more granular data."
"The solution doesn't have a web proxy built into the system like Sophos. This is something they should work to change."
"The tool needs to improve its price."
 

Pricing and Cost Advice

"The price of the license and warranty can be better because it is very expensive."
"It is not the cheapest one, but its price is very competitive."
"It is more expensive than Sophos. Fortinet is overall more expensive than Sophos. The small range of Fortinet, such as 60F and 80F, is more expensive than the small range of Sophos. Sophos is cheaper. In addition, if you jump from 80F Series to 100F Series, the price doubles."
"I would rate the pricing a six out of ten, where one is cheap and ten is expensive."
"Its licenses cost the same for different subscription plans."
"The pricing is flexible."
"Some of our customers are using Sophos and SonicWall due to price concerns, as they can't manage the pricing of Fortinet FortiGate."
"The price is okay."
"The product is very expensive."
"Some of our customers would be more likely to standardize on Cisco equipment if the cost was lower because a lot of people install cheap equipment."
"There is room for improvement in the pricing when compared to the market. Although, when you compare the benefits of support from Cisco, you can adjust the value and it becomes comparable, because you usually need very good support. So you gain value there with this device."
"I like the Smart Licensing, because it is more dynamic and easier to keep track of where you are at. If we have a high availability firewall pair and they are deployed in active/standby rather than active/active, I would expect that we would only pay for one set of licenses because you are using only one firewall at any one time. The other is there just for resiliency. The licensing, from a Firepower perspective, still requires you to have two licenses, even if the firewalls are in active/standby, which means that you pay for the two licenses, even though you might only be using one firewall any one time. This is probably not the best way to do it and doesn't represent the best value for money. This could be looked at to see if it could be done in a fairer way."
"Acquiring licensing for Cisco Secure Firewall can be a bit cumbersome, therefore a more straightforward licensing process would be preferable."
"Cisco smart licensing is a hassle for a disconnected environment."
"We pay a lot of money for it."
"Licensing is quite difficult to get your head around. My biggest challenge is to understand the details, the inner relations. Luckily, to some extent, we have enterprise agreements, but licensing for me is a real black box."
"Hillstone's pricing is economical and neither very high nor very low."
"The cost per year for licensing, and hardware, is approximately $850 for the basic plan."
"The licensing model is very complex with many subcategories of licenses you can purchase. They could make it more simplified for customers to understand."
"The tool's pricing is reasonable. It depends on the model. The product's pricing is around 600 USD. You need to buy a software license to activate the features. You need to pay around 150 USD for that."
report
Use our free recommendation engine to learn which Firewalls solutions are best for your needs.
886,719 professionals have used our research since 2012.
 

Comparison Review

it_user206346 - PeerSpot reviewer
Security Consultant at Webernetz.net - Network Security Consulting
Mar 11, 2015
Cisco ASA vs. Palo Alto Networks
Cisco ASA vs. Palo Alto: Management Goodies You often have comparisons of both firewalls concerning security components. Of course, a firewall must block attacks, scan for viruses, build VPNs, etc. However, in this post I am discussing the advantages and disadvantages from both vendors concerning…
 

Top Industries

By visitors reading reviews
Computer Software Company
11%
Comms Service Provider
10%
Manufacturing Company
8%
Financial Services Firm
7%
Computer Software Company
11%
Manufacturing Company
9%
Financial Services Firm
7%
Comms Service Provider
7%
Comms Service Provider
13%
Construction Company
12%
Financial Services Firm
10%
Manufacturing Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business366
Midsize Enterprise135
Large Enterprise192
By reviewers
Company SizeCount
Small Business186
Midsize Enterprise129
Large Enterprise231
By reviewers
Company SizeCount
Small Business9
Midsize Enterprise1
 

Questions from the Community

Which is the better NGFW: Fortinet Fortigate or Cisco Firepower?
When you compare these firewalls you can identify them with different features, advantages, practices and usage a...
What is the biggest difference between Sophos XG and FortiGate?
From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know...
What are the biggest technical differences between Sophos UTM and Fortinet FortiGate?
As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite ...
Which is better - Fortinet FortiGate or Cisco ASA Firewall?
One of our favorite things about Fortinet Fortigate is that you can deploy on the cloud or on premises. Fortinet Fort...
How does Cisco's ASA firewall compare with the Firepower NGFW?
It is easy to integrate Cisco ASA with other Cisco products and also other NAC solutions. When you understand the Cis...
Which is better - Meraki MX or Cisco ASA Firewall?
Cisco Adaptive Security Appliance (ASA) software is the operating software for the Cisco ASA suite. It supports netw...
What needs improvement with Hillstone E-Series?
We received an update for the tool in July. The update was provided for the tool as there was a problem with the fire...
What is your primary use case for Hillstone E-Series?
I use the solution in my company for site-to-site VPN, SSL VPNs, URL filtering, IPS, IDS and all the other features w...
What advice do you have for others considering Hillstone E-Series?
Our company did not use the tool's micro-segmentation features. There were no issues while integrating the tool. I ha...
 

Also Known As

Fortinet FortiGate Next-Generation Firewall
Cisco Adaptive Security Appliance (ASA) Firewall, Cisco ASA NGFW, Adaptive Security Appliance, Cisco Sourcefire Firewalls, Cisco ASAv, Cisco Firepower NGFW Firewall, Cisco Secure Firewall ASA Virtual - BYOL
No data available
 

Overview

 

Sample Customers

Amazon Web Services, Microsoft, IBM, Cisco, Dell, HP, Oracle, Verizon, AT&T, T-Mobile, Sprint, Vodafone, Orange, BT Group, Telstra, Deutsche Telekom, Comcast, Time Warner Cable, CenturyLink, NTT Communications, Tata Communications, SoftBank, China Mobile, Singtel, Telus, Rogers Communications, Bell Canada, Telkom Indonesia, Telkom South Africa, Telmex, Telia Company, Telkom Kenya
There are more than one million Adaptive Security Appliances deployed globally. Top customers include First American Financial Corp., Genzyme, Frankfurt Airport, Hansgrohe SE, Rio Olympics, The French Laundry, Rackspace, and City of Tomorrow.
Bank of China Macao, Instituto Tecnológico Bolivariano, Ministry of Labor in San Salvador, FEDCO
Find out what your peers are saying about Cisco Secure Firewall vs. Hillstone E-Series and other solutions. Updated: April 2026.
886,719 professionals have used our research since 2012.