Cisco Adaptive Security Appliance (ASA) Software vs. Cisco Meraki MX

Overview
ProductRatingMost Used ByProduct SummaryStarting Price
Cisco Adaptive Security Appliance (ASA) Software
Score 9.0 out of 10
N/A
Cisco Adaptive Security Appliance (ASA) software is the core OS for the ASA suite. It provides firewall functionality, as well as integration with context-specific Cisco security modules. It is scaled for enterprise-level traffic and connections.N/A
Cisco Meraki MX
Score 9.2 out of 10
N/A
Cisco Meraki MX Firewalls is a combined UTM and Software-Defined WAN solution. Meraki is managed via the cloud, and provides core firewall services, including site-to-site VPN, plus network monitoring.
$595
per appliance
Pricing
Cisco Adaptive Security Appliance (ASA) SoftwareCisco Meraki MX
Editions & Modules
No answers on this topic
MX64
$595
per appliance
MX67
$695
per appliance
MX68
$995
per appliance
MX84
$1,995
per appliance
MX100
$4,995
per appliance
MX250
$9,995
per appliance
MX450
$19,995
per appliance
Offerings
Pricing Offerings
Cisco Adaptive Security Appliance (ASA) SoftwareCisco Meraki MX
Free Trial
NoYes
Free/Freemium Version
NoNo
Premium Consulting/Integration Services
NoNo
Entry-level Setup FeeNo setup feeNo setup fee
Additional Details
More Pricing Information
Community Pulse
Cisco Adaptive Security Appliance (ASA) SoftwareCisco Meraki MX
Features
Cisco Adaptive Security Appliance (ASA) SoftwareCisco Meraki MX
Firewall
Comparison of Firewall features of Product A and Product B
Cisco Adaptive Security Appliance (ASA) Software
7.8
Ratings
10% below category average
Cisco Meraki MX
7.9
Ratings
9% below category average
Identification Technologies6.50 Ratings8.30 Ratings
Visualization Tools6.50 Ratings8.70 Ratings
Content Inspection8.00 Ratings8.10 Ratings
Policy-based Controls9.00 Ratings7.60 Ratings
Active Directory and LDAP7.50 Ratings7.90 Ratings
Firewall Management Console7.50 Ratings6.60 Ratings
Reporting and Logging5.90 Ratings7.70 Ratings
VPN9.00 Ratings8.80 Ratings
High Availability9.00 Ratings9.10 Ratings
Stateful Inspection9.00 Ratings7.40 Ratings
Proxy Server8.00 Ratings6.70 Ratings
Best Alternatives
Cisco Adaptive Security Appliance (ASA) SoftwareCisco Meraki MX
Small Businesses
pfSense
pfSense
Score 9.9 out of 10
pfSense
pfSense
Score 9.9 out of 10
Medium-sized Companies
Quantum Firewalls and Security Gateways
Quantum Firewalls and Security Gateways
Score 9.6 out of 10
Quantum Firewalls and Security Gateways
Quantum Firewalls and Security Gateways
Score 9.6 out of 10
Enterprises
Palo Alto Networks Virtualized Next-Generation Firewalls - VM Series
Palo Alto Networks Virtualized Next-Generation Firewalls - VM Series
Score 10.0 out of 10
Palo Alto Networks Virtualized Next-Generation Firewalls - VM Series
Palo Alto Networks Virtualized Next-Generation Firewalls - VM Series
Score 10.0 out of 10
All AlternativesView all alternativesView all alternatives
User Ratings
Cisco Adaptive Security Appliance (ASA) SoftwareCisco Meraki MX
Likelihood to Recommend
9.0
(0 ratings)
9.3
(0 ratings)
Likelihood to Renew
7.1
(0 ratings)
9.0
(0 ratings)
Usability
-
(0 ratings)
9.5
(0 ratings)
Availability
7.5
(0 ratings)
9.1
(0 ratings)
Performance
-
(0 ratings)
9.1
(0 ratings)
Support Rating
8.7
(0 ratings)
8.9
(0 ratings)
Implementation Rating
8.0
(0 ratings)
7.0
(0 ratings)
Ease of integration
6.5
(0 ratings)
-
(0 ratings)
Product Scalability
-
(0 ratings)
9.1
(0 ratings)
User Testimonials
Cisco Adaptive Security Appliance (ASA) SoftwareCisco Meraki MX
Likelihood to Recommend
We moved our operations entirely to the cloud a few years ago. We loved the stability and scalability of the ASA and wanted to, somehow, keep using it. We discovered that ASA was available in the cloud as well and it was branded ASAv. We tested it and noticed that it was equally robust and a perfect fit for us. During the entire migration period, we used ASAv for cloud operations and put a lot of load on it. ASAv performed very well and gave us an easy transition from on-prem to the cloud.
Read full review
We used Meraki MX with our remote sites and connected the MX 68 to our main MX 85. We routed traffic to our enterprise network and shared application and internet access to remote sites. We have routed traffic and allow only trusted IP address sources using the firewall rules implemented in the Meraki MX. In other scenarios, if the internet is lost, the Meraki will go offline; thus, stable internet access is important to maintain connectivity
Read full review
Pros
  • How we can manage: ASDM the GUI is so much easier to manage it even for a new guy also.
  • Traffic handling capacity
  • More secure and the different features it gives.
  • Support from the TAC team or from the community manages to handle issues very efficiently.
Read full review
  • It provides a really good single pane of glass so you can really easily identify end to end, what is going on in your environment.
  • It provides the ability for someone that doesn't necessarily need a really deep level of knowledge to be able to operate and maintain it. I think that's probably a big selling point, but I think definitely for the people that I'm selling the products who just having a dashboard and being able to log onto it and see if things are good or bad is quite key. So it does that really well.
Read full review
Cons
  • The Java based ASDM can botch commands and isn't compatible on some more locked down systems.
  • Monitoring. Really the same complaint as above, the monitoring available through the ASDM is crappy at best. A much better solution is to send the logs and mirror packets to a SEIM, but that can create issues of its own when looking for realtime analysis.
  • Compatibility across other ASA models. ASA 5520s don't play well with 5525X which don't play well with older 5510s. Each is great on it's own, but it's next to impossible to logically stack them or have them as layers of firewalls in an infrastructure.
  • Lack of cloud based management. The Cisco Meraki security devices do this well, but the ASAs are still behind in this regard.
Read full review
  • Layer seven firewall rules. Just making them more granular. We've been in meetings with Cisco SES where I've said feature requests many times and that's one of the big ones where it's just a little cumbersome to implement layer seven rules right now.
  • Just making them more granular. We've been in meetings with Cisco SES where I've said feature requests many times and that's one of the big ones where it's just a little cumbersome to implement layer seven rules right now.
Read full review
Likelihood to Renew
To be honest there has been now great products out in the market compared to Cisco ASA. I beleieve Cisco has to do a lot of improvement in this area. The other defeiniete factors is the cost when it comes to renewals which is always a premium on Cisco products
Read full review
It is already in place and the client is happy with it. We don't see a need to change what is already working. We want the Meraki to stay out of the way and keep things operating, and that's what it does.
Read full review
Usability
No answers on this topic
The Cisco Meraki MX series is very easy to use. Setting up user VPN access, site to site VPN to tie multiple locations together and managing all your devices. You can even download the latest firmware and install without ever leaving the dashboard. Meraki is the very definition of easy to use
Read full review
Reliability and Availability
I generally have not noticed the outages, however since it's a machine it can malfunction, we need to implement the firewall infrastructure in such a way that it is highly available with device failure, region failure etc. Else any solution will be having the issues if they are not build with resiliency.
Read full review
Meraki MX devices support high availability (HA) configurations, which ensures minimal downtime if one device goes offline. This feature has helped us maintain a stable and reliable network, even in cases of hardware failures. ince Meraki is cloud-managed, we've noticed that the cloud infrastructure is generally highly reliable, with minimal service interruptions or downtime. This makes it easier to manage the network remotely without significant availability concerns. Meraki automatically pushes firmware updates and patches, which helps maintain system stability without requiring manual intervention. These updates are rolled out in a manner that ensures minimal disruption to service.
Read full review
Performance
No answers on this topic
The interface is pretty responsive. The lower end devices are easy to overwhelm if you have a lot of throughput. Be sure the model you get is rated for the amount of traffic you will have. Overbuild if possible, otherwise you won't be fully leveraging the connection from your ISP.
Read full review
Support Rating
The support is usually very good and gets back to you very quickly. However I had some instances of when two engineers will give me wildly different answers to what I thought was a simple question. Overall however I do rate the support highly and they are generally always very good.
Read full review
I haven't ever had a bad experience with Meraki support. On the few occasions where I wasn't understanding the UI or needed some clarification about what a setting actually would do, I contacted them and they were very quickly able to provide help. Returns are simple and fast, too. We had to return a defective device one time and they shipped the replacement before we had even un-racked the one that was faulty. Unlike many other vendors, they didn't ask use to a do long list of scripted diagnostics, they just took my word for it that the device was broken and sent out a replacement immediately
Read full review
In-Person Training
No answers on this topic
great when they offered it, really tested your knowledge with hands on and see what your peers from other orgs know. glad to see that we were ahead of the curve of what our peers knew
Read full review
Online Training
No answers on this topic
it was okay as it was moderated but still better than nothing and done via semi self paced webex meeting
Read full review
Implementation Rating
It was quite a good one, how ever requires an expertise to deploy hence the SMB segment would be finding it difficult to implement this product. The one good reason is that there are lot of ASA certified engineers in compared to the other certified engineers. Hence this resembles positively on the deployment as you have quite a lot of experienced engineer on your deployment
Read full review
Implementing Meraki MX devices in phases—starting with a pilot group or select branch offices—was invaluable. This allowed us to identify potential configuration issues, troubleshoot problems, and refine our setup before rolling it out company-wide. It also helped to get feedback from early users and adjust the deployment strategy accordingly. The SD-WAN capabilities in Meraki MX were essential for optimizing our WAN traffic and ensuring better application performance across various locations.
Read full review
Alternatives Considered
Cisco has made it easy to buy, set up, and manage all of our firewalls with the central FirePower Management Center. All licensing is done via one license portal too. Tech support is standardized for all ASA devices and like support engineers who know the different models to provide timely help for any issues. Cisco Talos is a premier could platform which scours the internet looking for threats and develops protections for the ASA's and as such provides zero second coverage when it best can detect global issues.
Read full review
We previously evaluated WatchGuard Firebox Cloud, but we needed a solution that was a bit more straightforward to deploy and manage. The MX met that need for us. However licensing costs for both solutions are still a bit high.
Read full review
Scalability
No answers on this topic
When I first started with my company we had various infrastructure and a mix of tech. Since going to Cisco Meraki MX we have noticed better network performance and our new sites are much easier to bring online. Users have noticed an improvement in VPN connection and getting into all our systems.
Read full review
Return on Investment
  • I know a customer who is still using a Pix[.]
  • The 5510 is still being used in one of our setups, and still doing its job this is a lot of Return on Investment.
  • We have managed to turn around projects quickly because most of our engineers understand this firewall very well. We deploy them in a matter of minutes[.]
Read full review
  • From a positive impact? Basically it allows us to set up shop very quickly. It allowed us to add sites to our network very quickly. From a negative perspective, I think the only thing is that I can see from a negative perspective is I have a preference to working with ACLI in terms of how I engage with the youth tool At the moment, the only way to actually engage with a tool is on a gui and sometimes what I'd actually like is more detailed information in terms of actual configuration that you'll actually get out of ACLI.
Read full review
ScreenShots