We just raised a $30M Series A: Read our story
2019-03-28T08:19:00Z

What do you like most about Cisco Firepower NGFW Firewall?

6

Hi Everyone,

What do you like most about Cisco Firepower NGFW Firewall?

Thanks for sharing your thoughts with the community!

ITCS user
Guest
4242 Answers

author avatar
Top 20Reseller

One of the most valuable features of Firepower 7.0 is the "live log" type feature called Unified Event Viewer. That view has been really good in helping me get to data faster, decreasing the amount of time it takes to find information, and allowing me to fix problems faster. I've found that to be incredibly valuable because it's a lot easier to get to some points of data now.

2021-09-14T14:27:00Z
author avatar
Top 20Real User

Its Snort 3 IPS has better flexibility as far as being able to write rules. This gives me better granularity.

2021-08-25T17:02:00Z
author avatar
Top 5Real User

I have experience with URL filtering, and it is very good for URL filtering. You can filter URLs based on the categories, and it does a good job. It can also do deep packet inspection.

2021-08-24T04:48:00Z
author avatar
Real User

The most important feature is the intensive way you can troubleshoot Cisco Firepower Firewalls. You can go to the bit level to see why traffic is not handled in the correct way, and the majority of the time it's a networking issue and not a firewall issue. You can solve any problem without Cisco TAC help, because you can go very deeply under the hood to find out how traffic is flowing and whether it is not flowing as expected. That is something I have never seen with other brands.

2021-07-05T14:06:00Z
author avatar
Top 20Real User

If you compare the ASA and the FirePOWER, the best feature with FirePOWER is easy to use GUI. It has most of the same functionality in the Next-Generation FirePOWER, such as IPS, IPS policies, security intelligence, and integration and identification of all the devices or hardware you have in your network. Additionally, this solution is user-friendly.

2021-06-27T09:39:30Z
author avatar
Top 20Real User

When it comes to the integration among Cisco tools, we find it easy. It's a very practical integration with other components as well.

2021-04-13T13:39:00Z
author avatar
Top 5Real User

One of the nice things about Firepower is that you can set it to discover the environment. If that is happening, then Firepower is learning about every device, software operating system, and application running inside or across your environment. Then, you can leverage that discovery intelligence to get Firepower to select the most appropriate intrusion prevention rules to use for your environment rather than picking one of the base policies that might have 50,000 IPS rules in it, which can put a lot of overhead on your firewall. If you choose the recommendations, as long as you update them regularly, you might be able to get your rule set down to only 1,000 or 1,500, which is a significant reduction in a base rule set. This means that the firewall will give you better performance because there are less rules being checked unnecessarily. That is really useful.

2021-02-22T20:01:00Z
author avatar
Top 5Real User

It is one of the fastest solutions, if not the fastest, in the security technology space. This gives us peace of mind knowing that as soon as a new attack comes online that we will be protected in short order. From that perspective, no one really comes close now to Firepower, which is hugely valuable to us from an upcoming new attack prevention perspective.

2021-02-09T01:25:00Z
author avatar
Top 5Real User

I have access to the web version of Cisco Talos to see the reputation of IP addresses. I find this very helpful. It provides important information for my company to obtain the reputation of IP addresses. The information in Talos is quite complete.

2021-02-02T22:07:00Z
author avatar
Real User

The most important features are the intrusion prevention engine and the application visibility and control. The SNORT feature in Firepower is also valuable.

2021-02-01T19:29:00Z
author avatar
Top 20Real User

If configured, Firepower provides us with application visibility and control.

2021-02-01T15:40:00Z
author avatar
Top 20MSP

The solution offers very easy configurations.

2021-01-31T06:58:30Z
author avatar
Top 20MSP

We have not had to deal with stability issues.

2021-01-30T11:43:23Z
author avatar
Real User

The feature set is fine and is rarely a problem.

2021-01-29T23:27:27Z
author avatar
Top 5LeaderboardReal User

There are no issues that we are aware of. It does its job silently in the background.

2021-01-29T19:23:57Z
author avatar
Top 5LeaderboardReseller

A good intrusion prevention system and filtering.

2021-01-25T20:39:42Z
author avatar
Top 5LeaderboardReal User

The most valuable feature is stability.

2021-01-14T15:25:12Z
author avatar
Real User

You do not have to do everything through a command line which makes it a lot easier to apply rules.

2021-01-07T20:30:30Z
author avatar
Top 10Real User

The customer service/technical support is very good with this solution.

2020-12-27T09:06:00Z
author avatar
Top 5LeaderboardReal User

I have integrated it for incidence response. If there is a security event, the Cisco firewall will automatically block the traffic, which is valuable.

2020-12-19T23:58:40Z
author avatar
Top 20Real User

It's got the capabilities of amassing a lot of throughput with remote access and VPNs.

2020-11-27T17:49:41Z
author avatar
Top 10MSP

The most valuable features of this solution are the integrations and IPS throughput.

2020-11-25T18:49:00Z
author avatar
Consultant

The most valuable feature is the access control list (ACL).

2020-11-20T12:21:55Z
author avatar
Top 20Consultant

The implementation is pretty straightforward.

2020-11-18T18:04:57Z
author avatar
Top 5LeaderboardReal User

I like the firewall features, Snort, and the Intrusion Prevention System (IPS).

2020-11-12T17:12:29Z
author avatar
Top 20Real User

The Adversity Malware Protection (AMP) feature is the most valuable.

It is also very easy to use. Every technical user can operate this solution without any difficulty. The dashboard of Cisco Firepower has every tool that a security operator needs. You can find every resource that you need to operate through this dashboard.

2020-11-12T15:44:25Z
author avatar
Top 5Real User

Provides good integrations and reporting.

2020-11-10T15:08:05Z
author avatar
Top 20Real User

The most valuable feature that Cisco Firepower NGFW provides for us is the Intrusion policy.

2020-10-09T08:56:00Z
author avatar
Top 5Real User

The Firepower+ISE+AMP for endpoint integration is something that really stands it out with other vendor solutions. They have something called pxGrid and i think it is already endorsed by IETF. This allows all devices on the network to communicate.

2020-05-25T08:21:00Z
author avatar
Top 20Real User

One of the most valuable features is the AMP. It's very good and very reliable when it comes to malicious activities, websites, and viruses.

2020-05-18T07:50:00Z
author avatar
Top 5Real User

Being able to determine our active users vs inactive users has led us to increased productivity through visibility. Also, if an issue was happening with our throughput, then we wouldn't know without research. Now, notifications are more proactively happening.

2020-05-17T07:17:00Z
author avatar
Top 5Real User

Firepower has been used for quite a few enterprise clients. Most of our clients are Fortune 500 and Firepower is used to improve their end to end firewall functionality.

2020-03-23T06:14:00Z
author avatar
Real User

With the FMC and the FirePOWERs, the ability to quickly replace a piece of hardware without having to have a network outage is useful. Also, the ability to replace a piece of equipment and deploy the config that the previous piece of equipment had is pretty useful.

2019-10-28T06:34:00Z
author avatar
Real User

The protection and security features, like URL filtering, the inspection, and the IPS feature, are also very valuable for us. We don't have IT staff at most of the sites so for us it's important to have a robust firewall at those sites

2019-10-24T04:52:00Z
author avatar
Real User

We can easily track unauthorized users and see where traffic is going.

2019-10-15T05:02:00Z
author avatar
Real User

The IPS, as well as the malware features, are the two things that we use the most and they're very valuable.

2019-10-15T05:02:00Z
author avatar
Real User

The most valuable features of Cisco firewalls are the IPS and IDS items. We find them very helpful. Those are the biggest things because we have some odd, custom-made products in our environment. What we've found through their IPS and IDS is that their vulnerability engines have caught things that are near-Zero-day items, inside of our network.

2019-09-27T04:38:00Z
author avatar
Real User

Once you add Firepower onto to it and you start enabling some of its features, you get some IDS/IPS involved with it and you can even do web filtering.

2019-09-12T09:06:00Z
author avatar
Real User

The most valuable feature of the Firepower solution is FireSIGHT, which can be easily managed and is user-friendly.

2019-08-28T09:52:00Z
author avatar
Real User

I like the way Firepower presents the data. It gives you two classifications for the evidence, something based on the priority of the evidence and another classification based on the impact of the evidence in your environment. This makes it very easy to spot the evidence that is most impactful to my environment. Instead of having to go through all the evidence based on that priority, I can focus on the evidence that has the most impact on my environment.

2019-08-25T05:17:00Z
author avatar
Top 5LeaderboardReal User

They wanted to leverage something which is equivalent that can give them the next gen features like application awareness and intrusion protection. So that is a major reason they were looking forward to this. The original ASA firewall did not have these features. This was the major reason the customer moved on to Cisco Firepower Threat Defense (FTD). Now they can go ahead and leverage those functionalities.

2019-05-13T08:56:00Z
author avatar
Real User

Cisco Firepower NGFW is really easy to use right now to determine when my file requires a shift from primary to secondary status, and it can be done with automation. Earlier we used to do this with patching.

2019-03-28T08:19:00Z
Learn what your peers think about Cisco Firepower NGFW Firewall. Get advice and tips from experienced pros sharing their opinions. Updated: November 2021.
552,407 professionals have used our research since 2012.