Try our new research platform with insights from 80,000+ expert users

Cisco Secure Firewall vs Juniper vSRX comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Sep 16, 2024
 

Categories and Ranking

Fortinet FortiGate
Sponsored
Ranking in Firewalls
2nd
Average Rating
8.4
Reviews Sentiment
7.2
Number of Reviews
317
Ranking in other categories
Software Defined WAN (SD-WAN) Solutions (1st), WAN Edge (1st)
Cisco Secure Firewall
Ranking in Firewalls
6th
Average Rating
8.2
Reviews Sentiment
7.5
Number of Reviews
406
Ranking in other categories
Cisco Security Portfolio (4th)
Juniper vSRX
Ranking in Firewalls
22nd
Average Rating
7.8
Reviews Sentiment
7.1
Number of Reviews
36
Ranking in other categories
Virtualization Security (4th), Unified Threat Management (UTM) (7th)
 

Mindshare comparison

As of December 2024, in the Firewalls category, the mindshare of Fortinet FortiGate is 20.5%, up from 17.3% compared to the previous year. The mindshare of Cisco Secure Firewall is 5.8%, down from 5.9% compared to the previous year. The mindshare of Juniper vSRX is 0.2%, down from 0.2% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Firewalls
 

Featured Reviews

DineshKumar28 - PeerSpot reviewer
Effective threat prevention with responsive customer support
We are using Fortinet FortiGate as a firewall Fortinet FortiGate has been invaluable. It has helped save costs due to its various features, reliable performance, very good UI, low latency, and stability. The Threat Intel engine in Fortinet FortiGate is highly rated for its effectiveness in…
Daniel Going - PeerSpot reviewer
Is intuitive in terms of troubleshooting, easy to consume, and stable
Licensing is complex, and I'd like it to be simplified. This is an area for improvement. If we could create a Firepower solution that became like an SD-WAN or a SASE solution in a box, then perhaps we could exploit that on remote sites. We've already kind of got that with Meraki, but if we could pull out some of the features from ASA Firepower and make those available in SD-WAN in SASE, then it would be pretty cool.
JonathanHowell - PeerSpot reviewer
Provides access to route traffic with virtualization allowing you to leverage computing resources
The key dependency lies in the hardware. If you're hosting it in a virtual environment, it relies on the underlying hardware supporting that environment. Physically, you rely on the circuitry, chips, power, and other components. Therefore, using a virtualized platform introduces an additional layer of abstraction. You'll end up wasting money if you don't know what you're doing and use cases. It's not about buying a virtualized firewall. You're getting a virtualized router and a switch combined into one unit capable of performing telco-grade routing at a layer two level. It's a very complex piece of equipment used for threat management. It is capable of much more. We use it for its versatility; it can serve multiple purposes effectively. You can monitor the hypervisor for key performance indicators and understand how it's running and functioning. It integrates well with the most well-known operational toolsets. Overall, I rate the solution a nine out of ten.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"I like that they have given me a solution at a fair price."
"​Easy to implement, and it is also reliable.​"
"The solution is very user-friendly."
"The secure web gateway module and the application control module are valuable. HA operations are very easy."
"It is easy to manage, and it doesn't need much knowledge from the team. It is a stable device, and there are many features that are included out of the box."
"FortiGate's web and URL filtering are unlike any other firewall I've used. The functionality of URL filtering in those solutions is problematic because everything is encrypted, and firewalls can't break that encryption protocol. Fortinet has an SSL proxy, so the encryption is done before the packet ever leaves the FortiGate. The URL filter is definitely one of the most helpful features."
"With FortiClient, you can easily connect when you are home, check out what you want to do, and connect to your network when you are not at work. You can switch on servers and you can check what is wrong."
"The technical support in our region is excellent."
"It is very stable compared to other firewall products."
"It's easy to integrate ASA with other Cisco security products. When you understand the technology, it's not a big deal. It's very simple."
"The Firepower IPS, based on Snort technology, has an amazing detection engine and historical analysis capability of files that eases threat investigations a lot."
"We are using the Cisco AnyConnect for our end-user VPN with the ASA."
"The most important features are the intrusion prevention engine and the application visibility and control. The Snort feature in Firepower is also valuable."
"The remote access, VPN, and ACL features are valuable. We are using role-based access for individuals."
"If you have a solution that is creating a script and you need to deploy many implementations, you can create a script in the device and it will be the same for all. After that, you just have to do the fine tuning."
"The Inline Mode configuration works really well, and ASA works very impressively."
"I like the role-based functions, but the device can now perform most of the tasks. We have open access to CLI. You can access it directly. Many vendors have also opened their CLI to Linux, making troubleshooting easier."
"Juniper is more flexible with the commit check and the commit confirmed command. The design of the forwarding and contract plan in the operating system is very important for the performance when we have very big traffic."
"I'm told the solution is the fastest, and, so far, I do find that to be the case."
"The initial setup is pretty simple."
"The solution has good features."
"There are a few valuable features that offer very good quality on the solution. Especially NetScreen. We used to use NetScreen for the the product line. It was a very mature solution, very robust, easy to configure, easy to manage, etc. It made it easy to do everything."
"The architecture of the OS in Juniper is very good. It's flexibility, scalability, and the technicality is also good."
"One of Juniper vSRX's most valuable features is its integration with safety applications. It keeps the software secure from developers without relying on third-party solutions."
 

Cons

"The configuration part was challenging, especially converting configurations from another OEM to FortiGate."
"The web-cache feature which was previously on the FortiGate device, but was deleted with the recent upgrade should be returned. It was a very valuable feature for us."
"It could use more templates for third-party site-to-site VPN setups other than FortiGate and Cisco."
"Some of the features in the graphical user interface do not work, which requires that we used the command-line-interface."
"The performance could be a bit better. Right now, I find it to be lacking. Having good performance is very important for our work."
"It should provide better visibility over the network and more information in the form of reports for the end users. Its installation should also be easier."
"Scalability for Fortinet FortiGate needs to be improved. SD-WAN security for this solution also needs some improvement."
"With the addition of some features, it is possible that FortiGate can be used in all verticals."
"Cisco Firepower is not completely integrated with Active Directory. We are trying to use Active Directory to restrict users by using some security groups that are not integrated within the Cisco Firepower module. This is the main issue that we are facing."
"One feature lacking is superior anti-virus protection, which must be added."
"Cisco should redo their website so it's actually usable in a faster way."
"The product's user interface is an area with certain shortcomings where improvements are required."
"it is not very user-friendly for the administration."
"If you need to reschedule a call with the support team when you face a new issue with the product, then it may get a bit of a problem to get a hold of someone from the support team of Cisco."
"The usability of Cisco Firepower Threat Defense is an issue. The product is still under development, and the user interface is very difficult to deal with."
"The solution's deployment is time-consuming, which should be minimized and made more user-friendly for us."
"We have some weird errors and some weird behavior on the solution occasionally. The device gets buggy without anyone touching it. It would work and then suddenly stop. Sometimes you need to just move the cards out and restart it again, and it will work. The solution itself, the hardware and the software, there must be some bugs that need to be dealt with."
"I would suggest improving the pricing, particularly the licensing model."
"The tool's basic license does not cover everything. It needs to improve visibility and availability."
"The pricing still needs some improvement."
"Juniper vSRX is expensive."
"The solution can be improved by allowing automatic updates for the OS devices."
"Right now, we are going through issues and problems where the product gets dropped with the connection or during the authentication initial phase. While it could be our problem, we would like to see more stability in this area."
"It could use more tutorials."
 

Pricing and Cost Advice

"Fortinet FortiGate is reasonably priced."
"I would say that all things considered, the pricing is pretty good."
"The license of Fortinet FortiGate should be reduced."
"If you compare Fortinet FortiGate with Sophos and other firewall products available in the market, this solution is affordable."
"The cost is too high... They have to focus on more features with less cost for the customer. If you see the market, where it's going, there are a lot of players offering more features for less cost."
"A year or two years back, its price was competitive and reasonable. That was one of the reasons that people easily switched to Fortinet. Over the last two years, the prices have increased drastically. However, the prices of others have also increased. An advantage is there from the price point but not as much as it was previously."
"The price is high compared to some of the other solutions."
"Fortinet FortiGate gives you most of the features in one license."
"If we compare it with FortiGate and the co-existing ASA, FortiGate is better in price."
"There are additional implementation and validation costs."
"The one-time cost is affordable, but the maintenance cost and the Smart Net costs need to be reduced. They're too high."
"Cisco is always expensive, but you get what you pay for. It is expensive for a reason. It is a good solution, and good solutions cost money."
"There is room for improvement in the pricing when compared to the market. Although, when you compare the benefits of support from Cisco, you can adjust the value and it becomes comparable, because you usually need very good support. So you gain value there with this device."
"It has a great performance-to-price value, compared to competitive solutions."
"It requires additional licensing to enable 10G ports."
"The pricing and licensing structure of the firewall is fair and reasonable."
"The ongoing licensing cost seems to be pretty standard. There are no additional costs."
"The solution is inexpensive."
"The solution is pricey."
"I rate the tool's pricing a five out of ten."
"Our experience purchasing the solution through the AWS Marketplace was good."
"We like pricing through the AWS Marketplace."
"After some research, I think that the cost of Juniper is more than Check Point, Palo Alto, and Fortinet."
"As a customer, the pricing is good for us."
report
Use our free recommendation engine to learn which Firewalls solutions are best for your needs.
824,053 professionals have used our research since 2012.
 

Comparison Review

it_user206346 - PeerSpot reviewer
Mar 11, 2015
Cisco ASA vs. Palo Alto Networks
Cisco ASA vs. Palo Alto: Management Goodies You often have comparisons of both firewalls concerning security components. Of course, a firewall must block attacks, scan for viruses, build VPNs, etc. However, in this post I am discussing the advantages and disadvantages from both vendors concerning…
 

Top Industries

By visitors reading reviews
Educational Organization
22%
Computer Software Company
14%
Comms Service Provider
6%
Manufacturing Company
6%
Educational Organization
35%
Computer Software Company
15%
Government
5%
Manufacturing Company
5%
Educational Organization
85%
Computer Software Company
3%
Financial Services Firm
2%
Healthcare Company
1%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

Which is the better NGFW: Fortinet Fortigate or Cisco Firepower?
When you compare these firewalls you can identify them with different features, advantages, practices and usage a...
What is the biggest difference between Sophos XG and FortiGate?
From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know...
What are the biggest technical differences between Sophos UTM and Fortinet FortiGate?
As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite ...
Which is better - Fortinet FortiGate or Cisco ASA Firewall?
One of our favorite things about Fortinet Fortigate is that you can deploy on the cloud or on premises. Fortinet Fort...
How does Cisco's ASA firewall compare with the Firepower NGFW?
It is easy to integrate Cisco ASA with other Cisco products and also other NAC solutions. When you understand the Cis...
Which is better - Meraki MX or Cisco ASA Firewall?
Cisco Adaptive Security Appliance (ASA) software is the operating software for the Cisco ASA suite. It supports netw...
What do you like most about Juniper vSRX?
One of Juniper vSRX's most valuable features is its integration with safety applications. It keeps the software secur...
What is your experience regarding pricing and costs for Juniper vSRX?
The pricing is competitive, being neither the most expensive nor the cheapest option. It falls within the medium to h...
What needs improvement with Juniper vSRX?
I would suggest improving the pricing, particularly the licensing model. Although it is currently quite reasonable, m...
 

Also Known As

FortiGate 60b, FortiGate 60c, FortiGate 80c, FortiGate 50b, FortiGate 200b, FortiGate 110c, FortiGate, Fortinet Firewall
Cisco ASA Firewall, Cisco Adaptive Security Appliance (ASA) Firewall, Cisco ASA NGFW, Cisco ASA, Adaptive Security Appliance, ASA, Cisco Sourcefire Firewalls, Cisco ASAv, Cisco Firepower NGFW Firewall
No data available
 

Overview

 

Sample Customers

Amazon Web Services, Microsoft, IBM, Cisco, Dell, HP, Oracle, Verizon, AT&T, T-Mobile, Sprint, Vodafone, Orange, BT Group, Telstra, Deutsche Telekom, Comcast, Time Warner Cable, CenturyLink, NTT Communications, Tata Communications, SoftBank, China Mobile, Singtel, Telus, Rogers Communications, Bell Canada, Telkom Indonesia, Telkom South Africa, Telmex, Telia Company, Telkom Kenya
There are more than one million Adaptive Security Appliances deployed globally. Top customers include First American Financial Corp., Genzyme, Frankfurt Airport, Hansgrohe SE, Rio Olympics, The French Laundry, Rackspace, and City of Tomorrow.
Expedient Data Centers
Find out what your peers are saying about Cisco Secure Firewall vs. Juniper vSRX and other solutions. Updated: December 2024.
824,053 professionals have used our research since 2012.