It is very useful for those moving to the cloud or using cloud services like AWS, Google Cloud, or Microsoft Azure. These types of customers always prefer virtual firewall services.
External reviews
External reviews are not included in the AWS star rating for the product.
Provides threat detection and prevention with competitive pricing
What is our primary use case?
What is most valuable?
The valuable features are threat prevention to work like Jira Trust Network Access. It will benefit the customer who takes care of it and this application.
What needs improvement?
In contrast to hardware firewalls, if the hardware fails, we need to wait for a replacement, renew the support contract, or purchase an additional warranty. We don’t face these issues with the vSRX firewall.
It should also support modern data technologies like zero-day protection and zero-trust network access. The firewall must filter traffic from SaaS applications like Microsoft 365 and other cloud services. It should also integrate easily with identity engines such as Okta and Microsoft Azure Active Directory, offering simpler integration than other brands.
For how long have I used the solution?
I have been using Juniper vSRX since 2020.
What do I think about the scalability of the solution?
It has a really good firewall compared with any other firewall. It is suitable for more prominent companies.
I rate the solution’s scalability a nine-point five out of ten.
How are customer service and support?
My customers always prefer managed services. They always buy this subscription with managed services. Support is always there; they don't need to call any partner for support or anything else. The support is also very good compared to any other company.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
In India, the market scenario and customer preferences vary significantly. Nowadays, customers often come to us with specific requirements, including the brand name and the services they need. This can present a challenge, as most customers are well-educated, especially in the IT sector. India has a strong reputation globally in information technology, with many industry leaders in places like Silicon Valley having Indian origins.
Customers approach us with their chosen brand and requirements and inquire about pricing. If they need additional information, they usually communicate with partners.
For example, a customer once asked for a Juniper vSRX firewall with specifications like five or more GPUs, 8GB RAM, and a firewall throughput of 51.6 Gbps. We face a challenge when those specifications don’t align with what's available. Switching the customer to another brand could risk losing the order. This is particularly true with Juniper, as their virtual firewall and overall service are highly regarded in the industry.
What was our ROI?
ROI is almost two to three years, but it saves and gives perfect security and support.
What's my experience with pricing, setup cost, and licensing?
Pricing is competitive. It depends upon our account manager and customer-to-customer. The pricing is also very good and is flexible.
It depends on what exactly you are taking. It comes in the package. If you require some additional features, then you need to pay. They also have some basic plans. In that basic plan, they always provide antivirus, web filtering, content filtering, anti-spam, all these things. There are certain other features. Normally, cloud users never do research. They always go and prefer this hundred percent security bundle
What other advice do I have?
Every virtual firewall typically integrates with Microsoft Active Directory, and many users rely on Azure Active Directory. This integration allows virtual firewalls to synchronize policies and user identities automatically. This feature enables you to connect any identity engine or Active Directory services with the firewall, adding flexibility and ease of management.
While many firewalls offer similar capabilities, Juniper’s vSRX stands out with its powerful routing features compared to other vendors. Juniper also excels in providing multiple integrations and visibility. Their SSL VPN supports various platforms, including Windows, macOS, Android, and iOS, making it highly beneficial for remote users who need to connect to applications via a VPN tunnel.
Juniper’s threat detection and prevention system, including SkyAdvance, is robust. It offers effective zero-day protection, meaning it can detect and respond to new threats in real time. For instance, if a Juniper firewall in the U.S. identifies malicious activity, it sends alerts globally, ensuring comprehensive protection.
Juniper’s Session Smart Router is designed for SD-WAN technology. Unlike traditional tunnel-based solutions, Session Smart Routing is a tunneled technology. It avoids packet size limitations associated with tunnels and offers superior efficiency and scalability.
Overall, I rate the solution a nine out of ten.
Provides access to route traffic with virtualization allowing you to leverage computing resources
What is our primary use case?
Juniper is creating Layer Three IP VPN tunnels connecting branch sites and offices together on their separate networks. Our appliances would serve as the VPN termination point, allowing them to route their traffic. If you take a company with geographically diverse offices across a particular area and want to link them together, IP VPN is the way to go, and vSRX is what we use to terminate those VPN connections.
How has it helped my organization?
Juniper provides access to route their traffic over the Internet through an internal VPN.
What is most valuable?
Virtualization is the biggest advantage because you can leverage computing resources. Deploying it in the cloud is a good option if the use case allows it.
What needs improvement?
The pricing could be improved. Also, it's not currently offered in many cloud solutions as readily deployable. Instead, you need to bring it to the cloud and deploy it.
What do I think about the stability of the solution?
The product is stable because it is independent of hardware. It depends on the hardware if you're hosting it on a cloud environment or computer. So if that goes down, the product goes down with it.
I rate the solution’s stability a nine out of ten.
What do I think about the scalability of the solution?
There were no issues with it. According to the data sheets and white papers, it performed how it would. It is quick, stable, and scalable. We never ran into any issues, even with thousands of users using these pieces of equipment. It was reliable, and it scaled as per the requirements.
How are customer service and support?
The local teams are good in terms of engagement and support. uniper takes a big box in terms of backing their products and supporting them.
How was the initial setup?
The initial setup is fairly complex. You should purchase equipment if you have experience with the vendor and their offerings. There are no graphical tools for deployment provided by third-party tools. It does require extensive knowledge. The equipment costs thousands of dollars.
What about the implementation team?
We acted as a third-party systems integrator and assisted in designing and implementing. It couldn't be done in-house if someone within our organization.
What was our ROI?
ROI is pretty good, depending on the features. If you're purchasing all the features but not using them, then it's a bit wasteful. The ROI is favorable if you're acquiring them based on genuine requirements because Juniper is a reliable brand and product. The device will likely remain in service for years beyond the three-year refresh cycle.
What other advice do I have?
The key dependency lies in the hardware. If you're hosting it in a virtual environment, it relies on the underlying hardware supporting that environment. Physically, you rely on the circuitry, chips, power, and other components. Therefore, using a virtualized platform introduces an additional layer of abstraction.
You'll end up wasting money if you don't know what you're doing and use cases. It's not about buying a virtualized firewall. You're getting a virtualized router and a switch combined into one unit capable of performing telco-grade routing at a layer two level. It's a very complex piece of equipment used for threat management. It is capable of much more. We use it for its versatility; it can serve multiple purposes effectively.
You can monitor the hypervisor for key performance indicators and understand how it's running and functioning. It integrates well with the most well-known operational toolsets.
Overall, I rate the solution a nine out of ten.