Cisco Firepower 4100 Series vs. CrowdSec

Overview
ProductRatingMost Used ByProduct SummaryStarting Price
Cisco Firepower 4100 Series
Score 7.2 out of 10
N/A
The Cisco Firepower 4100 Series’ 1-rack-unit size is presented by the vendodr as ideal at the Internet edge and in high-performance environments. They further state that it shows what’s happening on your network, detects attacks earlier so you can act faster, and reduces management complexity.N/A
CrowdSec
Score 7.9 out of 10
N/A
CrowdSec is a CTI tool leveraging crowdsourced data to identify and block malevolent IPs in real time worldwide. It is an open-source & collaborative IPS able to analyze visitor behavior by parsing logs & provide an adapted response to all kinds of attacks. It also enables users to protect each other. Each time an IP is blocked, all community members are informed so they can also block it. That way, they are generating a real-time crowdsourced CTI database.N/A
Pricing
Cisco Firepower 4100 SeriesCrowdSec
Editions & Modules
Firepower 4100
50,000-250,000
per appliance
No answers on this topic
Offerings
Pricing Offerings
Cisco Firepower 4100 SeriesCrowdSec
Free Trial
NoNo
Free/Freemium Version
NoYes
Premium Consulting/Integration Services
NoNo
Entry-level Setup FeeNo setup feeNo setup fee
Additional Details
More Pricing Information
Community Pulse
Cisco Firepower 4100 SeriesCrowdSec
Features
Cisco Firepower 4100 SeriesCrowdSec
Firewall
Comparison of Firewall features of Product A and Product B
Cisco Firepower 4100 Series
8.6
Ratings
0% below category average
CrowdSec
8.2
Ratings
5% below category average
Identification Technologies8.00 Ratings8.00 Ratings
Visualization Tools8.00 Ratings8.00 Ratings
Content Inspection8.00 Ratings8.00 Ratings
Policy-based Controls8.00 Ratings00 Ratings
Active Directory and LDAP10.00 Ratings00 Ratings
Firewall Management Console9.00 Ratings00 Ratings
Reporting and Logging8.00 Ratings8.00 Ratings
VPN10.00 Ratings00 Ratings
High Availability10.00 Ratings00 Ratings
Stateful Inspection10.00 Ratings8.00 Ratings
Proxy Server5.50 Ratings9.00 Ratings
Best Alternatives
Cisco Firepower 4100 SeriesCrowdSec
Small Businesses
pfSense
pfSense
Score 9.9 out of 10
pfSense
pfSense
Score 9.9 out of 10
Medium-sized Companies
Quantum Firewalls and Security Gateways
Quantum Firewalls and Security Gateways
Score 9.6 out of 10
Quantum Firewalls and Security Gateways
Quantum Firewalls and Security Gateways
Score 9.6 out of 10
Enterprises
Palo Alto Networks Virtualized Next-Generation Firewalls - VM Series
Palo Alto Networks Virtualized Next-Generation Firewalls - VM Series
Score 10.0 out of 10
Palo Alto Networks Virtualized Next-Generation Firewalls - VM Series
Palo Alto Networks Virtualized Next-Generation Firewalls - VM Series
Score 10.0 out of 10
All AlternativesView all alternativesView all alternatives
User Ratings
Cisco Firepower 4100 SeriesCrowdSec
Likelihood to Recommend
7.0
(0 ratings)
8.0
(0 ratings)
Usability
8.0
(0 ratings)
-
(0 ratings)
User Testimonials
Cisco Firepower 4100 SeriesCrowdSec
Likelihood to Recommend
When we are asked by local partners which security equipment we use we always recommend our Cisco security products. The Firepower firewall is no exception and we can easily recommend this to others who need a fast, secure, and well built system that integrates well with all your existing hardware and software.
Read full review
Since I've only used CrowdSec in a homelab/small-medium sized business setup, that's really the only market I can safely recommend it and say it's well suited for, because I don't know how much it would cost to run it in an enterprise environment. I've heard some pricing and how they plan on rolling out a subscription model, but it's still in talks. Either way, if you have publicly exposed web applications hosted locally or on a virtual private server, then CrowdSec should be part of every virtual machine and/or network. Even with the lmited number of filter you get out of the free subscription, it provides a nice layer of constantly updated data,
Read full review
Pros
  • Policy management in the GUI. I'm old-school, and still create ACLs in the CLI, but using the GUI for this is very nice.
  • Event monitoring and reporting is great, and you can get very granular when it comes to what information you are viewing.
  • I really like the troubleshooting features that are built in, especially the packet tracer and the ability to generate and download a troubleshooting package to review or send to TAC.
Read full review
  • Provides great integrations with tools you already use, such as fail2ban, Cloudflare, WordPress, NGINX, Linux Firewalls, etc.
  • Lightweight agents can run on individual servers and report to a main security engine so that if there's an attack on one server and a block is implemented, the entire network can be protected
  • There are a lot of ways to receive alerts and store logs
  • CrowdSec Central API is a nice way to manage everything externally
Read full review
Cons
  • When deployed as Firepower Threat Defense, configurations cannot be made within the device itself.
  • Troubleshooting can be difficult if the Cisco Firepower 4100 Series firewall is managed by the Cisco Firepower Management Center.
  • There are two operating systems in Cisco Firepower 4100 Series, firmware upgrade process will take a long time.
Read full review
  • Getting CrowdSec to run on OPNsense can be a challenge, but that's also a limitation of the OS
  • You can only subscribe to a couple of feeds before paying an unknown amount of money that's part of their "Enterprise" package. So, there could be better transparency.
Read full review
Usability
It not easy to understand the different features it offers. Sometimes you need to spend a couple of minutes to implement a change or even open a ticket with cisco tac to figure it out. Once support is on the phone with you they know how to resolve problems. But it's not an intuitive tool
Read full review
No answers on this topic
Alternatives Considered
We switch to Palo Alto due the amount of tickets open with Cisco Firepower 4100 Series. It was taking a great amount of time for our engineers to fix problems. But it was a great tool when it was working as we were expecting. The fact it has a lot of instability on the releases was the deciding factor.
Read full review
No answers on this topic
Return on Investment
  • Quickly respond to incidents using vpn remote access
  • VPN L2L used to establish connections with global providers
  • Up to 2000+ vpn access without having performance issues
  • Granular access with policy groups based on the AD user
Read full review
  • It flat-out blocks malicious IPs from accessing any PC on my network.
  • It's free-tier makes this a no brainer to implement
Read full review
ScreenShots