Try our new research platform with insights from 80,000+ expert users

Cisco Secure Firewall vs Untangle NG Firewall comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Sep 16, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Fortinet FortiGate
Sponsored
Ranking in Firewalls
2nd
Average Rating
8.4
Reviews Sentiment
7.2
Number of Reviews
327
Ranking in other categories
Software Defined WAN (SD-WAN) Solutions (1st), WAN Edge (1st)
Cisco Secure Firewall
Ranking in Firewalls
7th
Average Rating
8.2
Reviews Sentiment
7.1
Number of Reviews
410
Ranking in other categories
Cisco Security Portfolio (4th)
Untangle NG Firewall
Ranking in Firewalls
26th
Average Rating
8.6
Reviews Sentiment
7.2
Number of Reviews
24
Ranking in other categories
Unified Threat Management (UTM) (8th)
 

Mindshare comparison

As of April 2025, in the Firewalls category, the mindshare of Fortinet FortiGate is 21.1%, up from 17.7% compared to the previous year. The mindshare of Cisco Secure Firewall is 5.8%, up from 5.5% compared to the previous year. The mindshare of Untangle NG Firewall is 1.1%, down from 1.3% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Firewalls
 

Featured Reviews

EhabAli - PeerSpot reviewer
Efficient, user-friendly, and affordable
In the past, NSS Labs was utilized to test files and verify the numbers and datasheets. It would be beneficial to have an organization or testing lab that can verify the numbers in our datasheets since changes are frequently made, which can be inconvenient for review. For instance, when comparing different competitors such as Forcepoint, Palo Alto, and Check Point, the throughput or numbers in the datasheet may be lower than the actual numbers. Conversely, Fortinet typically reports very high numbers, but they cannot be replicated in the real world. Therefore, it would be advantageous for them to partner with a neutral testing organization such as NSS Labs to validate these numbers, thus providing more credibility and comfort to everyone regarding the accuracy of the datasheets. For the migration, everyone has a firewall in use and I am selling Fortinet. Typically, I am replacing another firewall. Previously, there was a tool available to convert configurations from one firewall, such as Palo Alto, to Fortinet, but this tool is no longer free. If it could be made free again, it would be very beneficial. This tool shows a lot of promise and is very good. Making it free would help many companies deliver their products in a more efficient and integrated way. It would also be more valuable to include the tool with the firewall package or license instead of having to pay extra for it. Paying extra puts more pressure on small companies to deliver the firewall and complete the configuration, especially if they have hundreds or thousands of policies. It's very painful to move through these policies line by line. The stability has room for improvement. When it comes to Secure SD-WAN, everything is fine. They are going the right way. SD-WAN is very promising. They can provide the SD-WAN solution separately, but they will not take this approach because even the smallest firewall can support the features, so there is no need to have a separate service or appliance. They are following the right steps, and there is nothing to be improved. Feature-wise, I'm really satisfied with the new release, and the features they have added. For now, it's fine.
Maharajan S - PeerSpot reviewer
Enhances security with precise access control but has integration challenges
Overall, I would rate the product six out of ten. Because of the support and cost, I moved away from Cisco, but otherwise, it is a good product. Recommendation depends on the requirement. If lacking a proper team and being dependent on the OEM and partner, Cisco is not suitable. However, if the team is qualified with Cisco-certified people and the requirement is a big network, it can be considered. In today's hybrid work world, having an expanded gateway is more typical than having a single one. Thus, Cisco is unlikely to be recommended for a hybrid requirement unless in-house skills align. Otherwise, depending on partners and Cisco, it can be a risk. I rate the overall solution six out of ten.
MatthewSmith3 - PeerSpot reviewer
Thorough with all-in-one security functions and good affordability
The all-in-one gateway security functions and the ability to install it on generic equipment stand out. The centralized management console is great. I can template my installations and configurations. My ability to monetize it as a gateway security appliance to offer enhanced service offerings allows me to increase our price point. I provide it as a managed device to many of our clients. I take on the initial costs and charge them a monthly fee. They have threat detection.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Their proxy-based inspection is responsive and secure."
"We can use our devices to check all of the perimeters. It secures email websites."
"Centralized monitoring, policy management, and virtualized appliances allow us to take control over our public and private infrastructure."
"There is a tool called FSSO, which is a single sign-on user ID agent that works perfectly."
"FortiGate has a strong security topic which allows all of the Fortinet devices to communicate and share information which makes their security more powerful."
"The most valuable feature is the policy routing and application control."
"The solution is very user-friendly."
"The base firewall features are quite valuable to us."
"The TAC is always very helpful. We pay for Tier 1 support, so we get whatever we need from them. They always give us a solution. If they can't give us an answer that day, they get back to us within at least 24 hours with a solution or fix. I have never had a problem with the TAC. I would rate them as 10 out of 10."
"The SLA is great, and the escalation process is also great."
"A good intrusion prevention system and filtering."
"Their performance is most valuable."
"The most important feature is the VPN connection."
"Even in very big environments, Cisco comes in handy with configuration and offers reliability when it comes to managing multiple items on one platform."
"The most valuable feature is the anti-malware protection. It protects the endpoints on my network."
"VPN, firewall, and IDS/IPS allow us to deliver services to meet client needs across various industry verticals."
"The all-in-one gateway security functions and the ability to install it on generic equipment stand out."
"​It is very easy to deploy and monitor. ​"
"The initial setup is very easy."
"It is not attached to an appliance, meaning if you get a good PC/server, then you can already run a firewall."
"NG Firewalls allow us to permit or deny applications we don't want to run. We also use content filtering, SSL inspection, and all the other things we run on the firewall to keep our clients protected and ensure they're not going where they shouldn't. It's a great firewall that works as intended."
"The most valuable features are IPS, MAPI, NAT, and VPN."
"They have a command center that makes it easy to log into and see all of your appliances nationwide."
"The product’s most valuable features are endpoint protection management, load balancing, and connectivity with Active Directory."
 

Cons

"I don't like that anything more than very basic reporting is not included."
"We sometimes have issues with FortiGate's routing table in the latest firmware update. We had to downgrade the device because our customers complained about bugs."
"The solution could be more secure and stable."
"The scalability could be better."
"The support is the main thing that needs to be improved."
"The sniffing packets or packet captures, can be simplified and improved because it's a little confusing."
"Fortinet FortiGate could improve by adding enhancements to FortiMail, FortiSOAR, and FortiDeceptor."
"We would like to have the ability to disable some of the security functionalities."
"Most users do not have awareness of this product's functionality and features. Cisco should do something to make them aware of them. That would be quite excellent and useful to organizations that are still using legacy data-center-security products."
"I would like it if there was a centralized way to manage policies, then sticking with the network functions on the actual devices. That is probably the thing that frustrates me the most. I want a way that you can manage multiple policies at several different locations, all at one site. You then don't have to worry about the connectivity piece, in case you are troubleshooting because connectivity is down."
"The only improvement that we could make is maybe [regarding] the roadmap, to have better visibility as to what we are targeting ahead in the next few quarters."
"I'm not very familiar with the largest Firepower models, but competitors like Palo Alto seem to have a more capable engine to do, for instance, TLS/SSL decryption. As I understand, Firepower doesn't let you export the decrypted traffic so that, for instance, the security department can look at the traffic or inspect traffic. It's all in the box. I've heard rumors that this is something Cisco is working on, but it isn't yet available."
"I think the ASA layer is thin. It's always Layer 3 or Layer 4 source controller and doesn't control the Layer 7 traffic. It's important, and you'll need an additional firewall."
"The software was very buggy, to the point it had to be removed."
"Security generally requires integration with many devices, and the management side of that process could be enhanced somewhat. It would help if there was a clear view of the integrations and what the easiest way to do them is."
"The GUI interface could be improved when compared to other solutions."
"There is room for improvement in the logs. Like with Cisco, I can do almost everything and know almost anything about what's running. Untangle works very much out of the box. It's very user-friendly, but it's not engineer-friendly. So, it's good for a home user. For something fairly easy, but at the same time, with good technology to have at home, because at home, I'm not a millionaire or anything like that. So it's not like I'm worried to get hacked. I didn't want something like a Cisco firewall; it would be a bit overkill to have at home. So that's why I went for Untangle. But it lacks a few features. It's just a tick-box kind of thing. So they have apps and turn on and off the apps. The VPN's configuration is all very ticked. They have a few custom configurations, but it's not that much."
"The pricing should be reduced because it is expensive."
"On their low-end appliance, they could have more memory and the largest storage space. The low-end appliance comes with a too-small hard drive, and it could use a little extra room. It only comes with about 4 gigs or 8 gigs of memory, and the hardware space is only 40 gigs, which is really small."
"The common center facility that Untangle provides should be available on-premises. There are great corporations here in Mexico that like the Untangle solution, but they don't like the fact that the monitoring and access to the appliance are in the cloud. They request for the common center facility to be available and installed on-premises."
"The user interface, training, and general product innovation need improvement. Enhancements could also be made to their reporting and accessibility."
"The product needs to have a better support group for its online support, specifically for its help desk."
"Whenever there are a large number of endpoint VPN clients, connectivity becomes slow."
"The ability to setup a DDNS for each WAN independently would be a very handy feature."
 

Pricing and Cost Advice

"Fortinet FortiGate is expensive."
"I had to pay for the license for the firewall, but it is guaranteed to have updates. I expect a good service for it. It was about €1000 for a year, and there was no additional cost."
"We purchased a five-year bundle package, which worked out cheaper than competing solutions."
"Fortigate's pricing is competitive."
"The solution requires a license annually, it is not a user license, you can have as many users as your want. I must renew the license regularly per device."
"Other firewalls are more expensive than Fortinet FortiGate, such as the Azure firewall."
"For medium and enterprise organizations, FortiGate is more affordable."
"No comment."
"The solution’s pricing is competitive."
"Its price is in the middle range. Both Firepower and FortiGate are not cheap. Palo Alto and Check Point are the cheapest ones. I don't remember any costs in addition to the standard licensing fees."
"We've gone to all smart licensing, so that works well."
"Based on the services that you will get, especially the AMP license, the price is very reasonable."
"The pricing for Cisco products is higher than others, but Cisco is a very good, strong, and stable technology."
"It is a great solution for medium or big enterprises, not so much for small businesses, mainly due to the financial costs."
"It's a brilliant firewall, and the fact that it comes with a perpetual license really does go far in terms of helping the organization in not having to deal with those costs on an annual basis. That is a pain point when it comes to services like the ones we have on Fortigate. That's where we really give Cisco firewalls the thumbs up."
"It is affordable. The hardware is not that expensive anymore. It is a matter of licensing these days."
"The setup cost is about $2000 to $3000 per year."
"Usually, it's about $350 a year for 12 users, and it's about $600 for 50 users. It's very reasonable as compared to the others. One of the reasons is that they're all open-source. You just buy their appliance and put it in until it dies. Because it's run under open platforms, mine seems to always work on older equipment. I've taken old equipment and put a new hard disk in it. I have taken about nine-year-old computers and put their operating system on them, and ran them like a champ. The only thing that changed was the hard drive because I don't trust a hard drive that's more than three to four years old."
"This is not an expensive product. It is affordable and there are different packages available depending on the features that you need, or the sector that you are in."
"Untangle is open-source software. So, you can get it for free. That has been a benefit, especially for the residential users because it is free. The license costs start at $25 a month for some additional features, including higher tiers of security intrusion prevention. The free version comes with intrusion detection, and then the license version has intrusion prevention. It also has some additional things for active directory connectors, etc. It starts at $25 a month to cover 12 devices. Then it goes up from $25 to $50 a month for 12 to 25 devices. That's where it really doesn't scale out per site. If you have a site that has more than 50 devices on it, then Untangle quickly becomes cost prohibitive in comparison to several other competitors."
"The pricing model is better than with SonicWall."
"The tool's pricing is moderate, and licensing costs are yearly."
"On a scale from one to ten, where one is cheap and ten is expensive, I rate the solution's pricing an eight out of ten."
"It is not expensive. The best part is that it is based on the pay-per-use kind of scenario. An increase or decrease in the number of people doesn't make any difference. We are really happy about using this particular scenario."
report
Use our free recommendation engine to learn which Firewalls solutions are best for your needs.
847,772 professionals have used our research since 2012.
 

Comparison Review

it_user206346 - PeerSpot reviewer
Mar 11, 2015
Cisco ASA vs. Palo Alto Networks
Cisco ASA vs. Palo Alto: Management Goodies You often have comparisons of both firewalls concerning security components. Of course, a firewall must block attacks, scan for viruses, build VPNs, etc. However, in this post I am discussing the advantages and disadvantages from both vendors concerning…
 

Top Industries

By visitors reading reviews
Educational Organization
21%
Computer Software Company
14%
Comms Service Provider
7%
Manufacturing Company
6%
Educational Organization
41%
Computer Software Company
13%
Manufacturing Company
4%
Government
4%
Computer Software Company
13%
Comms Service Provider
11%
Government
7%
Educational Organization
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

Which is the better NGFW: Fortinet Fortigate or Cisco Firepower?
When you compare these firewalls you can identify them with different features, advantages, practices and usage a...
What is the biggest difference between Sophos XG and FortiGate?
From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know...
What are the biggest technical differences between Sophos UTM and Fortinet FortiGate?
As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite ...
Which is better - Fortinet FortiGate or Cisco ASA Firewall?
One of our favorite things about Fortinet Fortigate is that you can deploy on the cloud or on premises. Fortinet Fort...
How does Cisco's ASA firewall compare with the Firepower NGFW?
It is easy to integrate Cisco ASA with other Cisco products and also other NAC solutions. When you understand the Cis...
Which is better - Meraki MX or Cisco ASA Firewall?
Cisco Adaptive Security Appliance (ASA) software is the operating software for the Cisco ASA suite. It supports netw...
What do you like most about Untangle NG Firewall?
The product helps small and medium enterprises secure their networks from intrusions. It also has features like DNS b...
What needs improvement with Untangle NG Firewall?
The user interface, training, and general product innovation need improvement. Enhancements could also be made to the...
 

Also Known As

FortiGate 60b, FortiGate 60c, FortiGate 80c, FortiGate 50b, FortiGate 200b, FortiGate 110c, FortiGate, Fortinet Firewall
Cisco Adaptive Security Appliance (ASA) Firewall, Cisco ASA NGFW, Adaptive Security Appliance, Cisco Sourcefire Firewalls, Cisco ASAv, Cisco Firepower NGFW Firewall
No data available
 

Overview

 

Sample Customers

Amazon Web Services, Microsoft, IBM, Cisco, Dell, HP, Oracle, Verizon, AT&T, T-Mobile, Sprint, Vodafone, Orange, BT Group, Telstra, Deutsche Telekom, Comcast, Time Warner Cable, CenturyLink, NTT Communications, Tata Communications, SoftBank, China Mobile, Singtel, Telus, Rogers Communications, Bell Canada, Telkom Indonesia, Telkom South Africa, Telmex, Telia Company, Telkom Kenya
There are more than one million Adaptive Security Appliances deployed globally. Top customers include First American Financial Corp., Genzyme, Frankfurt Airport, Hansgrohe SE, Rio Olympics, The French Laundry, Rackspace, and City of Tomorrow.
North American Stamping Group, Cerebral Palsy of North Jersey (CPNJ), Brown County Schools, IN, City of Bridgeton, MO, Lancaster County, SC, Vision Charter School, Clay County Sheriff’s Department, NC, Breakwater School, Boys & Girls Club of Manchester, NH, Admiral Farragut Academy, Flow Companies, No Ordinary Hotel, KECdesign,
Find out what your peers are saying about Cisco Secure Firewall vs. Untangle NG Firewall and other solutions. Updated: April 2025.
847,772 professionals have used our research since 2012.