Try our new research platform with insights from 80,000+ expert users

Cisco Secure Firewall vs Huawei NGFW comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Sep 16, 2024
 

Categories and Ranking

Fortinet FortiGate
Sponsored
Ranking in Firewalls
2nd
Average Rating
8.4
Reviews Sentiment
7.2
Number of Reviews
317
Ranking in other categories
Software Defined WAN (SD-WAN) Solutions (1st), WAN Edge (1st)
Cisco Secure Firewall
Ranking in Firewalls
6th
Average Rating
8.2
Reviews Sentiment
7.5
Number of Reviews
406
Ranking in other categories
Cisco Security Portfolio (4th)
Huawei NGFW
Ranking in Firewalls
31st
Average Rating
7.2
Reviews Sentiment
7.2
Number of Reviews
22
Ranking in other categories
Unified Threat Management (UTM) (13th)
 

Mindshare comparison

As of December 2024, in the Firewalls category, the mindshare of Fortinet FortiGate is 20.5%, up from 17.3% compared to the previous year. The mindshare of Cisco Secure Firewall is 5.8%, down from 5.9% compared to the previous year. The mindshare of Huawei NGFW is 0.8%, up from 0.4% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Firewalls
 

Featured Reviews

DineshKumar28 - PeerSpot reviewer
Effective threat prevention with responsive customer support
We are using Fortinet FortiGate as a firewall Fortinet FortiGate has been invaluable. It has helped save costs due to its various features, reliable performance, very good UI, low latency, and stability. The Threat Intel engine in Fortinet FortiGate is highly rated for its effectiveness in…
Daniel Going - PeerSpot reviewer
Is intuitive in terms of troubleshooting, easy to consume, and stable
Licensing is complex, and I'd like it to be simplified. This is an area for improvement. If we could create a Firepower solution that became like an SD-WAN or a SASE solution in a box, then perhaps we could exploit that on remote sites. We've already kind of got that with Meraki, but if we could pull out some of the features from ASA Firepower and make those available in SD-WAN in SASE, then it would be pretty cool.
Muhammad-Nadeem - PeerSpot reviewer
A scalable and easy-to-setup product that can be used to configure different policies for specific users
In other next-generation firewalls, if you are creating virtual systems, they will create separate hardware resources for different virtual systems. Other products will create a different routing table when we create a routing protocol. In Huawei, the routing table, control plan, and data plan will share the resources. Every virtual system should have separate resources, routing tables, and hardware resources. We have created multiple segments and virtual systems, and we don't want one segment to communicate with another. The product must divide the virtual firewalls with different utilization systems. The hardware, routing switch, and security bundle should be separate and different. The solution does not have sandboxing features. It should provide a sandboxing solution. It should also work on zero-day attacks. The solution should be comparable with the products provided by Palo Alto, Check Point, and Cisco.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"This solution has solid UTM features combined with a nice GUI."
"The most valuable features of Fortinet FortiGate are the different types of profiling. It has been the most effective for me. The WAF and the antivirus profile are the most effective in network protection."
"Fortinet offers the latest versions to cater to the needs of enterprises."
"You can create multiple Virtual Domains (VDOMs), which are treated as separate firewall instances."
"FortiGate firewalls are user-friendly, and I like the security profiling features."
"The most valuable features of Fortinet FortiGate are it is one of the most mature firewalls in the UTM bundle."
"It's an easy solution to set up."
"It's super reliable. I don't think I've ever had a reliability issue with it."
"I have access to the web version of Cisco Talos to see the reputation of IP addresses. I find this very helpful. It provides important information for my company to obtain the reputation of IP addresses. The information in Talos is quite complete."
"The most valuable Cisco Secure Firewall features are options, features, and ease of deployment because it's an appliance."
"The security features are the most valuable. My customers find the security products very useful because nowadays there are many threats from the internet and other malicious users. The security products really help."
"One of the best features is the ease of use. It's also easy to teach new engineers to use the ASA CLI."
"Stability, high availability of services, and very high MTBU were the most valuable features for me."
"For us, the most valuable features are the IPX and the Sourcefire Defense Center module. That gives us visibility into the traffic coming in and going out, and gives us the heads-up if there is a potential outbreak or potential malicious user who is trying to access the site. It also helps us see traffic generated by an end device trying to reach out to the world."
"Cisco ASA provides us with very good application visibility and control."
"The Firepower+ISE+AMP for endpoint integration is something that really stands it out with other vendor solutions. They have something called pxGrid and i think it is already endorsed by IETF. This allows all devices on the network to communicate."
"The mapping features and traffic logging are good."
"The solution's implementation is pretty easy."
"I had no difficulty using the Huawei NGFW."
"Huawei support is excellent. I rate it 10 out of 10."
"We make use of the new data center, specifically the containerized data center which is built and reviewed by Huawei, including all the device's infrastructure."
"We have found the initial setup to be straightforward."
"The support for the solution has been excellent. If we ever had an issue they would send an engineer to help us with our problem."
"I am impressed with the product's antivirus features, strong encryption, policy implementation and easier installation."
 

Cons

"NGN, reporting and controls."
"They have to just improve its performance when we enable all UTM features. When you enable all the features, the performance of FortiGate, as well as of Sophos and SonicWall, goes down."
"Cisco Meraki products are rising very quickly in the cloud and the connected era. Meraki products offer much better ROI, upgradability, and manageability."
"They are doing good, but they can improve the distributor assignment. The availability of the product and the timeline of delivery are the main things. The distribution should be swift, and the distributor should not reach out to end customers directly. They should work as a distributor. There should also be one more local distributor. Currently, there is only one distributor in Pakistan, and the rest of them are in UAE. It is difficult to work with only one distributor. Sometimes, you don't get along with the same distributor, and that's why they should have one more distributor. Their licensing should also be improved. The activation or renewal of the product should be done from the date of renewal, not from the date on which the license expired."
"The web-cache feature which was previously on the FortiGate device, but was deleted with the recent upgrade should be returned. It was a very valuable feature for us."
"It is very expensive, and their support is not very good. I hope that their technical support will be better in the future."
"From a reporting perspective, there's room for improvement. They're providing FortiAnalyzer through which one can get some enhancements, but the visibility and reporting still need slight improvement."
"The platform's compatibility with Wi-Fi equipment needs improvement."
"The price and SD-WAN capabilities are the areas that need improvement."
"We have seen some bugs come up with Cisco Secure Firewall in terms of high availability. The solution should be improved to avoid these bugs."
"The content filtering on an application level is not as good as other solutions such as Palo Alto."
"The product would be improved if the GUI could be brought into the 21st Century."
"When comparing the graphical interface of this solution to other vendors it is more difficult to configure. There is a higher learning curve for administrators in this solution."
"There should be more integration with Microsoft Identity."
"Cisco could improve its score by developing more features that integrate seamlessly with various applications and investing in hardware acceleration to enhance performance."
"Deploying configurations takes longer than it should."
"With the Huawei firewall, none of the features comes at the top. We found out later that customer support is really not good. For this firewall, because of our customers' routine, for example, every six months they'll do a penetration test to find weaknesses. So whenever they came up with VAPT reports, they are looking to Huawei for help. I think that's basically because it's a different culture. Chinese culture and our culture is different. They have always tried to help find some excuses or say some other things that cannot help you solve the problem immediately."
"The IPS feature must be improved."
"Wi-Fi scanning and Wi-Fi analysis would be useful features to include in the future."
"There needs to be more security equipment for the solution."
"Huawei should improve their threat intelligence."
"One issue is integration. Huawei can't detect Indicators of Compromise (IoC). I can get a lot of information about security, but can't automatically input the EP, domain URL, and file hashes I get from Hackersworld into my blocklist."
"The tool does not have web functionality. It needs to also have high end firewalls."
"Huawei NGFW should have better reporting and a dashboard for the visibility of traffic."
 

Pricing and Cost Advice

"Fortinet costs are 25% lower than the high-cost provider. There is an equipment cost and a recurring monthly cost for licenses and technical support."
"Fortinet FortiGate has different licensing models, depending on what you're going to do. Services included would depend on the license model. Licenses can be renewed annually."
"The price is okay."
"The licensing costs are very low."
"Fortinet is the least expensive solution."
"As far as I'm aware, in our case, it's just a yearly pricing arrangement with no additional licensing costs."
"The license for Fortinet FortiGate is affordable in my country."
"We have the full version of Fortinet FortiGate and we are on a three-year contract with a commitment of five years."
"I bought a license for three years and it was really affordable."
"The cost of the firewalls versus the ROI is okay."
"Its pricing is good and competitive. There is a maintenance cost. It includes SecureX that makes it cost-effective as compared to the other solutions where you have to pay for XDR and SOAR capabilities."
"Cisco smart licensing is a hassle for a disconnected environment."
"The pricing is fair compared to competitors."
"Pricing is high, but it is essentially a corporate decision."
"This is an expensive product, although when you buy this solution, you can do many things so it provides good value for the investment."
"We are happy with its price. Licensing is on a yearly basis for technical support. There is one license for technical support. There is another license for IP Version 2 VPN and IPS."
"The price of the license of this solution is high."
"When you compare the price with other products, it's quite cost-effective. But the problem is always after, let's say, two years or three years later because they are not able to provide updates or patches very quickly."
"I believe that we are entitled to a one-year extension on our licensing."
"Huawei is 30% cheaper than Arista."
"The solution is inexpensive."
"Huawei is priced lower than most competitors."
"The pricing is cheap."
"Licensing fees are billed on an annual basis."
report
Use our free recommendation engine to learn which Firewalls solutions are best for your needs.
824,053 professionals have used our research since 2012.
 

Comparison Review

it_user206346 - PeerSpot reviewer
Mar 11, 2015
Cisco ASA vs. Palo Alto Networks
Cisco ASA vs. Palo Alto: Management Goodies You often have comparisons of both firewalls concerning security components. Of course, a firewall must block attacks, scan for viruses, build VPNs, etc. However, in this post I am discussing the advantages and disadvantages from both vendors concerning…
 

Top Industries

By visitors reading reviews
Educational Organization
22%
Computer Software Company
14%
Comms Service Provider
6%
Manufacturing Company
6%
Educational Organization
35%
Computer Software Company
15%
Government
5%
Manufacturing Company
5%
Computer Software Company
18%
Financial Services Firm
11%
Comms Service Provider
8%
Educational Organization
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

Which is the better NGFW: Fortinet Fortigate or Cisco Firepower?
When you compare these firewalls you can identify them with different features, advantages, practices and usage a...
What is the biggest difference between Sophos XG and FortiGate?
From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know...
What are the biggest technical differences between Sophos UTM and Fortinet FortiGate?
As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite ...
Which is better - Fortinet FortiGate or Cisco ASA Firewall?
One of our favorite things about Fortinet Fortigate is that you can deploy on the cloud or on premises. Fortinet Fort...
How does Cisco's ASA firewall compare with the Firepower NGFW?
It is easy to integrate Cisco ASA with other Cisco products and also other NAC solutions. When you understand the Cis...
Which is better - Meraki MX or Cisco ASA Firewall?
Cisco Adaptive Security Appliance (ASA) software is the operating software for the Cisco ASA suite. It supports netw...
What do you like most about Huawei NGFW?
The solution's implementation is pretty easy.
What is your experience regarding pricing and costs for Huawei NGFW?
The pricing is quite cheap compared to other NGFWs like Palo Alto or Cisco.
What needs improvement with Huawei NGFW?
Huawei should improve their threat intelligence. They need to have a more diversified platform and continuously updat...
 

Also Known As

FortiGate 60b, FortiGate 60c, FortiGate 80c, FortiGate 50b, FortiGate 200b, FortiGate 110c, FortiGate, Fortinet Firewall
Cisco ASA Firewall, Cisco Adaptive Security Appliance (ASA) Firewall, Cisco ASA NGFW, Cisco ASA, Adaptive Security Appliance, ASA, Cisco Sourcefire Firewalls, Cisco ASAv, Cisco Firepower NGFW Firewall
Huawei USG Firewalls, USG9500 Series, USG6600 Series, USG6300 Series
 

Overview

 

Sample Customers

Amazon Web Services, Microsoft, IBM, Cisco, Dell, HP, Oracle, Verizon, AT&T, T-Mobile, Sprint, Vodafone, Orange, BT Group, Telstra, Deutsche Telekom, Comcast, Time Warner Cable, CenturyLink, NTT Communications, Tata Communications, SoftBank, China Mobile, Singtel, Telus, Rogers Communications, Bell Canada, Telkom Indonesia, Telkom South Africa, Telmex, Telia Company, Telkom Kenya
There are more than one million Adaptive Security Appliances deployed globally. Top customers include First American Financial Corp., Genzyme, Frankfurt Airport, Hansgrohe SE, Rio Olympics, The French Laundry, Rackspace, and City of Tomorrow.
KMITL, Peking University
Find out what your peers are saying about Cisco Secure Firewall vs. Huawei NGFW and other solutions. Updated: December 2024.
824,053 professionals have used our research since 2012.