Overview
Overall experience with VMware vDefend Firewall
“Decent firewall but not for a very complex multi cloud vendor architecture”
About Company
Company Details
Do You Manage Peer Insights at Broadcom (VMware)?
Access Vendor Portal to update and manage your profile.
Key Insights
A Snapshot of What Matters - Based on Validated User Reviews
User Sentiment About VMware vDefend Firewall
Reviewer Insights for: VMware vDefend Firewall
Deciding Factors: VMware vDefend Firewall Vs. Market Average
Performance of VMware vDefend Firewall Across Market Features
VMware vDefend Firewall Likes & Dislikes
The number one thing that my team loves about the distributed firewall is the ability to enforce zero trust policies in the virtual infrastructure. The policies that can be created can be quite constrictive and can be applied down to the virtual network interface. This results in a high level of security and communication between the virtual servers. My team also loves how easy it is to create segmentation rules. Practically anything can be used to build a policy (name of the virtual machine, operating system, cluster membership). The wide range of tags really helps to build customized rules for segmentation. Finally, my team loves how well it integrates with the VMWare infrastructure. The segmentation policies can follow the virtual server across datacenters, hosts and clusters.
tag based rules management the GUI makes troubleshooting easier with basic tools like traceroute, packet capture. encryption and micro segmentation well integrated with VMware environment
I like the solution's distributed architecture, excellent micro-segmentation capabilities and close integration with the rest of the VMware products. NSX-DFW also allows for segmenting high-risk workloads, such as applications that must be PCI and HIPAA-compliant. Finally, our network team really liked the ability to manage inflexible VLAN-based segmentation with security groups.
The product can be quite expensive, especially given Broadcom's new licensing model. This solution is only available in their higher tier of licensing, which many organizations may find cost prohibitive to implement. Implementing the distributed firewall also increases operational complexity. Your IT team should be properly trained before this product is implemented in production. If a firewall rule is created incorrectly, it could result in unexpected downtime. My team found that this product also generates a significant amount of logging. This is important to note, especially if you have these logs configured to be ingested by a SIEM, since the increased logging could impact the SIEM's performance and take up more space.
network engineers are not well versed with the product and need to be skilled, whereas are comfortable with other suite of products firewall rules caused a lot of issues for us limited support , interoperability and integration for multiple vendor environment eg google cloud, aws, ibm softlayer and oracle cloud esp if custom rules have been set
The solution has a very steep learning curve and it's tough for traditional network engineers. Also, it is not ideal for non-VMware workloads. Finally - thank you, Broadcom - the licensing costs are very high.
Top VMware vDefend Firewall Alternatives
Peer Discussions
VMware vDefend Firewall Reviews and Ratings
- IT MANAGER<50M USDEnergy and UtilitiesReview Source
NSX Distributed Firewall: Powerful Micro-Segmentation at a Cost
Broadcom was fairly easy to work with. Their sales and technical representatives were responsive and knowledgeable about the product. They were patient and made sure that they gave a thorough answer to every question that we had regarding this product. They did not employ any "hard sell" or pressure tactics in order to get us to buy the product. - ENGINEER10B+ USDTelecommunicationReview Source
NSX Distributed Firewall Offers Strong Micro-Segmentation and Tight VMware Integration
NSX distributed firewall is a great micro-segmentation solution which is well-suited for virtualized data centers (VMware virtualized DCs, specifically) - IT SECURITY & RISK MANAGEMENT ASSOCIATE50M-1B USDHealthcare and BiotechReview Source
NSX is great at providing granular security for VMware based servers but configuration requires time and testing.
We have implemented NSX to help protect our VMware server infrastructure. It takes time to build out a usable configuration, buut in the end it helps lock down system access - ENGINEERING MANAGER50M-1B USDIT ServicesReview Source
VMware Platform Streamlines Application Connectivity for microsegmentation on virtual Environtment
Great Virtualization Platform from VMware/Broadcom with all VMware ecosystem. Easy to deploy and capable to connect application across data center using stretched cluster. - IT ASSOCIATE<50M USDBankingReview Source
Platform Enables Microsegmentation and Scalability Across Virtualized Environments
Overall experience was that the platform design provides east-west traffic protection inside a virtualized environment that enforces policies directly at the hypervisor level, enabling microsegmentation and fine-grained control over workloads.



