Cisco Sourcefire SNORT vs Forcepoint Next Generation Firewall comparison

Cancel
You must select at least 2 products to compare!
Comparison Buyer's Guide
Executive Summary

We performed a comparison between Cisco Sourcefire SNORT and Forcepoint Next Generation Firewall based on real PeerSpot user reviews.

Find out what your peers are saying about Darktrace, Vectra AI, Check Point Software Technologies and others in Intrusion Detection and Prevention Software (IDPS).
To learn more, read our detailed Intrusion Detection and Prevention Software (IDPS) Report (Updated: April 2024).
771,170 professionals have used our research since 2012.
Featured Review
Quotes From Members
We asked business professionals to review the solutions they use.
Here are some excerpts of what they said:
Pros
"Solid intrusion detection and prevention that scales easily in very large environments.""It simplifies the configuration process by offering pre-defined base configurations, including security and connectivity settings.""It has a huge rate of protection. It's has a low level of positives and a huge rate of threat protection. It's easy to deploy and easy to implement. It has an incredible price rate compared to similar solutions.""The most valuable feature of this solution is the filtering.""The solution is stable.""Cisco technical support is unbeatable. It offers a premium service every time.""The most valuable feature is the visibility that we have across the virtual environment.""In general, the features are all great. However, if I need to take hardware for ASA, because they need to upgrade to Firepower, we want to create rules. For that, most of the time we go to the command line. Right now Firepower is working really hard on the grid. You can apply all those rules to the grid. Even if you want to monitor the logs, for example, the activity will tell you which particular user has been blocked because of that rule. Firepower's monitoring interface is very good, because you can see each and every piece. ASA also had it, but there you needed to type the command and be under the server to see all that stuff. In Firepower you have the possibility to go directly to the firewall. The way the monitoring is displayed is also very nice. The feature I appreciate most in Firepower is actually the grid. The grid has worked very well."

More Cisco Sourcefire SNORT Pros →

"One of the most valuable features is having the ability to cluster multiple firewalls even if they are different versions.""Technical support has been quite helpful in the past.""I have two offices, and I can route the internet of both offices using the same product. The connectivity is great.""Forcepoint Next Generation Firewall is very simple, easy to use, and flexible.""The solution offers sandboxing, which can be integrated at any time.""They offer templates that provide detailed reports categorized by user, device, and internal network access.""The most valuable feature is SD-WAN.""The Forcepoint Next Generation Firewall is a scalable product."

More Forcepoint Next Generation Firewall Pros →

Cons
"With the next release, I would like to see some PBR, so that you can do the configuration with the features.""The customization of the rules can be simplified.""I would like to have analytics included in the suite.""We are unhappy with technical support for this solution, and it is not as professional as what we typically expect from Cisco.""The solution's approach to managing traffic blocking is confusing and impractical.""If the price is brought down then everybody will be happy.""I did not experience any pain points that required improvement. Maybe a couple of false-positives, but that's about it.""The implementation could be a bit easier."

More Cisco Sourcefire SNORT Cons →

"While they offer a comprehensive bundled solution, some users may prefer on-premise deployments for certain features, such as URL filtering.""In larger companies with extensive infrastructure, retrieving logs for a longer period of time can sometimes take a bit longer than desired.""Next Generation Firewall's configuration could be improved.""They should provide more details on potential cyber threats.""The optimization is not really ready. If you want very good optimization, you have to add it to the network.""The company should update the URL filtering database. They need to enhance the URL filtering and make it easier to customize.""They need to improve their alerts.""The endpoint protection capabilities of the product are an area of concern where improvements are required."

More Forcepoint Next Generation Firewall Cons →

Pricing and Cost Advice
  • "We have a three-year license for this solution."
  • "Licensing for this solution is paid on a yearly basis."
  • "I don't know the exact amount, but most of the time when I go to a company with a proposition, they will say, "This thing that you are selling is good, but it's expensive. Why don't you propose something like FortiGate, Check Point, or Palo Alto?" Cisco device are expensive compared to other devices."
  • "The cost is per port and can be expensive but it does include training and support for three years."
  • More Cisco Sourcefire SNORT Pricing and Cost Advice →

  • "The big advantage of this solution is that we can select the right model for our requirements, which is not too expensive."
  • "I believe the licensing fee is for one year, three years, and five years, or something like that. If you wants to increase the support level from a simpler level to platinum, I think that there's a cost. There are differences between every kind of support, but I don't know the numbers."
  • "We would love to take other solution from Forcepoint, but unfortunately the price is too high. That's why we are not considering using Forcepoing for our proxy and DLB. They have a very good DLB, but the matter in the end is the cost."
  • "Forcepoint is very expensive but it's really secure."
  • "It is expensive."
  • "The training that they offer to their end-customers. It's quite expensive, I believe it costs roughly $11,000"
  • "Everything in Forcepoint comes with an individual license, which is kind of a problem. In our last meeting, they said that it may change at the beginning of 2021, and they will try to merge some licenses together. Customers will get more features than what they got previously. We will wait and see."
  • "We have found the price could be reduced. It is a little expensive."
  • More Forcepoint Next Generation Firewall Pricing and Cost Advice →

    report
    Use our free recommendation engine to learn which Intrusion Detection and Prevention Software (IDPS) solutions are best for your needs.
    771,170 professionals have used our research since 2012.
    Questions from the Community
    Top Answer:The product is inexpensive compared to leading brands such as Palo Alto or Fortinet.
    Top Answer:The product is inexpensive compared to leading brands such as Palo Alto or Fortinet. It is cheaper than Palo Alto and comparable to Fortinet. It also depends on Cisco’s discount. Sometimes it's… more »
    Top Answer:The solution has some stability issues. Also, it's complicated compared to other products like FortiGate.
    Top Answer:There is a need to make payments towards the licensing charges attached to the product. The product is not expensive.
    Top Answer:The endpoint protection capabilities of the product are an area of concern where improvements are required.
    Ranking
    Views
    2,043
    Comparisons
    1,518
    Reviews
    6
    Average Words per Review
    472
    Rating
    8.0
    25th
    out of 59 in Firewalls
    Views
    2,393
    Comparisons
    1,984
    Reviews
    11
    Average Words per Review
    427
    Rating
    7.4
    Comparisons
    Also Known As
    Sourcefire SNORT
    Forcepoint NGFW, Stonesoft Next Generation Firewall, McAfee Network Security Platform, Intel Security Network Security Platform
    Learn More
    Overview

    Snort is an open-source, rule-based, intrusion detection and prevention system. It combines the benefits of signature-, protocol-, and anomaly-based inspection methods to deliver flexible protection from malware attacks. Snort gained notoriety for being able to accurately detect threats at high speeds.

    Forcepoint Next Generation Firewall is a versatile and comprehensive solution for perimeter security, offering features such as SD-WAN, IPS, VPN, and cloud or on-premises subscription keys. It is preferred by many clients over Cisco and is used for obligation redundancy, VPN access, and as the main point of security in infrastructure. 

    The product is praised for its simplicity, flexibility, complete feature set, scalability, and central management capabilities. Other valuable features include IPS, firewall, sandbox, application control, filtering, security management center, connectivity, and integration capabilities.

    Sample Customers
    CareCore, City of Biel, Dimension Data, LightEdge, Lone Star College System, National Rugby League, Port Aventura, Smart City Networks, Telecom Italia, The Department of Education in Western Australia
    California Department of Corrections and Rehabilitation (CDCR)
    Top Industries
    REVIEWERS
    Computer Software Company27%
    Financial Services Firm18%
    Comms Service Provider18%
    Government9%
    VISITORS READING REVIEWS
    Computer Software Company19%
    Government9%
    Financial Services Firm8%
    Comms Service Provider7%
    REVIEWERS
    Computer Software Company21%
    Comms Service Provider21%
    University11%
    Integrator11%
    VISITORS READING REVIEWS
    Computer Software Company16%
    Comms Service Provider11%
    Government9%
    Manufacturing Company8%
    Company Size
    REVIEWERS
    Small Business22%
    Midsize Enterprise39%
    Large Enterprise39%
    VISITORS READING REVIEWS
    Small Business25%
    Midsize Enterprise13%
    Large Enterprise62%
    REVIEWERS
    Small Business59%
    Midsize Enterprise17%
    Large Enterprise24%
    VISITORS READING REVIEWS
    Small Business27%
    Midsize Enterprise15%
    Large Enterprise59%
    Buyer's Guide
    Intrusion Detection and Prevention Software (IDPS)
    April 2024
    Find out what your peers are saying about Darktrace, Vectra AI, Check Point Software Technologies and others in Intrusion Detection and Prevention Software (IDPS). Updated: April 2024.
    771,170 professionals have used our research since 2012.

    Cisco Sourcefire SNORT is ranked 12th in Intrusion Detection and Prevention Software (IDPS) with 18 reviews while Forcepoint Next Generation Firewall is ranked 25th in Firewalls with 40 reviews. Cisco Sourcefire SNORT is rated 7.6, while Forcepoint Next Generation Firewall is rated 7.6. The top reviewer of Cisco Sourcefire SNORT writes "An IPS solution for security and protection but lacks stability". On the other hand, the top reviewer of Forcepoint Next Generation Firewall writes "Provides decent protection for the LAN but complicated interface". Cisco Sourcefire SNORT is most compared with Fortinet FortiGate IPS, Cisco NGIPS, Check Point IPS, Palo Alto Networks Advanced Threat Prevention and Cisco Secure Network Analytics, whereas Forcepoint Next Generation Firewall is most compared with Fortinet FortiGate, Palo Alto Networks Advanced Threat Prevention, Check Point NGFW, Cisco Secure Firewall and Palo Alto Networks NG Firewalls.

    We monitor all Intrusion Detection and Prevention Software (IDPS) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.