We performed a comparison between Cisco Secure Firewall and Sonicwall TZ based on our users’ reviews in five categories. After reading all of the collected data, you can find our conclusion below.
Comparison Results: Of the two solutions, Sonicwall TZ seems to be the more desirable product because of its easy deployment, great set of features, and affordable price.
"The features that I have found most valuable are that it is good to use, and most importantly, the pricing. The customer especially likes the discount when they trade up or something like that."
"The most valuable feature of FortiGate is FortiView which provides proactive monitoring."
"It's inexpensive compared to some of the other technology out there."
"The Intrusion Prevention System and the web filtering are both working well."
"Their reliability and their policy of pre-shipping replacements when a unit has failed."
"Fortinet FortiGate is user-friendly and affordable."
"We are using the FortiGate 100D series. VPN, firewall, anti-malware, OTM, and intrusion prevention are useful features."
"Fortigate's most valuable feature is that it doesn't need a push policy when writing rules."
"It joins all branches and permits employees to work outside their offices, but everything is based on high securities standards (PCI compliance)."
"The remote VPN and IPsec VPN or site-to-site VPN features are valuable. The clustering feature is also valuable. We have two ISP links. Whenever there is a failover, users don't even get to know. The transition is very smooth, and the users don't notice any latency. So, remote VPN, site-to-site VPN, and failover are three very powerful features of Cisco ASA."
"I like the ASDM for the firewall because it is visual. With the command line, it is harder to visualize what is going on. A picture is worth a thousand words."
"URL filtering is valuable."
"I have integrated it for incidence response. If there is a security event, the Cisco firewall will automatically block the traffic, which is valuable."
"The most important feature is the intensive way you can troubleshoot Cisco Firepower Firewalls. You can go to the bit level to see why traffic is not handled in the correct way, and the majority of the time it's a networking issue and not a firewall issue. You can solve any problem without Cisco TAC help, because you can go very deeply under the hood to find out how traffic is flowing and whether it is not flowing as expected. That is something I have never seen with other brands."
"We can shift traffic, block certain content, or redirect policies."
"ASA is stable and with a low level of work required on the maintenance side."
"The stability is very nice."
"No negative impression of the scalability."
"The most common feature in the firewall, apart from that traditional firewall, would be the security services, like application control, URL filtering, Gateway Anti-Virus, and IPS protection. These are the essential features in the firewalls which I think, has to be enabled and properly used at every network infrastructure."
"Technical support is good."
"It is very stable with no issues. The firewall's been up for the past 35 days non-stop. It's performed great. It has performed as it should perform."
"We are very much happy with the support."
"It's a very cost-effective solution."
"With the main firewall routing there, we can do connectivity point-to-point. On the low bandwidth we can connect in all the branches with my corporate office."
"There are just some services that aren't available. For example, the Ethernet or point-to-point protocols. They could add these services to their product offering - especially services for ISPs."
"Fortinet FortiGate needs to improve the protection, it did not prevent us from being attacked. Additionally, Fortinet FortiGate could provide more features for WAF devices. I should not have to purchase two solutions, it would be a benefit to combine these features into one solution."
"Fortinet needs to overhaul its documentation."
"There is a lot of improvement needed with SSL-VPN."
"If they had better integration with security products, such as Cisco ISE or Rapid Threat Containment, then it would be an improvement."
"I would like to see better pricing in the next release, as well as a simplification of the installation."
"There were quite a few problems with the stability of the system."
"Fortinet needs more memory to save the log files. We need it to save the logs on the hardware and not in the cloud. I know this feature is available in FortiCloud, but if we need this log locally, it is not available."
"On firewall features, Fortinet is better. Cisco needs to become more competitive and add more features or meet Fortinet's offering."
"Virtual patching would be helpful for servers that are not able to update patches due to compatibility issues."
"REST API stability needs improvement in order for customizing resource allocation available to the user rather than just being there transparently. This way users can customize REST API and tailor it to their needs."
"Some individuals find the setup and configuration challenging."
"The product crashes. We have a cluster of firewalls and we regularly get failovers."
"The ASAs are being replaced with the new Firepowers and they have a different type of structure in the configuration to be able to migrate from one to the other."
"I would like the ability to pick and choose different features of it to run in a packaged infrastructure or modules, therefore I would like to have more customizability over it."
"It seems very clunky and slow. I would like to be able to tune it to be a more efficient product."
"There can be an improvement in analysis and reporting. We need enhancement on the reporting side."
"I would like to see a SonicWall integration with the DLP tool, this would be interesting. Data Loss Prevention integration."
"The stability could be a lot better."
"Its reporting can be improved. Currently, we cannot directly get the user names. It only shows the IP, which makes it a bit confusing because we need to use the IP to find the user. If we could directly get the name of the user, it would be better."
"SonicWall TZ can improve the UI application and when you create any net policies or any new policy, it will not sync or work properly."
"There is a point I don't like about SonicWall in the past and now. Most of the destinations we look at when we're detecting some user using too much bandwidth or something like that, SonicWall just gave us destination IP address, instead of the full qualified domain name. I think that's the most important part that is still missing. I think that's the most important for us."
"It could probably be more user-friendly, and it could be more scalable with releases and subscriptions."
"The marketing of SonicWall has to be increased. Currently, when it comes to firewalls, most people go for Cisco and Palo Alto. SonicWall should improve its marketing and branding policies to increase sales. Other than that, it is good."
Cisco Secure Firewall is ranked 4th in Firewalls with 404 reviews while SonicWall TZ is ranked 12th in Firewalls with 78 reviews. Cisco Secure Firewall is rated 8.2, while SonicWall TZ is rated 8.0. The top reviewer of Cisco Secure Firewall writes "Highlights and helps us catch Zero-day vulnerabilities traveling across our network". On the other hand, the top reviewer of SonicWall TZ writes "Has efficient user access control feature and good technical support services ". Cisco Secure Firewall is most compared with Palo Alto Networks WildFire, Netgate pfSense, Meraki MX, Sophos XG and Azure Firewall, whereas SonicWall TZ is most compared with Sophos XG, Netgate pfSense, Meraki MX, SonicWall NSa and OPNsense. See our Cisco Secure Firewall vs. SonicWall TZ report.
See our list of best Firewalls vendors.
We monitor all Firewalls reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.