
I like the fact that I can segregate my policies based on a real-time reading of my traffic with the help of the Create Traffic Flow Profile. When I set my FireMon to listen to what is happening behind that rule in a flat network, FireMon itself points out the weaknesses of this rule and informs me of possible vulnerabilities. Review collected by and hosted on G2.com.
I don't like the fact that I can't filter changes made by specific users; this sometimes hinders diagnosis and reduces accuracy when identifying which user made the change. I don't like the cluster settings, this duplicates the number of rules in my environment and increases management complexity. Not to mention that in some cases it is not necessary to monitor both firewalls of a cluster since in terms of policies and interface both are the same thing regardless of the hardware. Review collected by and hosted on G2.com.