How effective is your firewall against real-world evasions and encrypted threats? Get the objective data you need to secure your enterprise.
In Q3 2025, NSS Labs conducted rigorous, independent evaluations of leading Enterprise Firewall offerings to help organizations move past marketing claims and understand true security effectiveness. As more than 95% of global web traffic is now encrypted, the modern firewall’s true test is its ability to protect against malware and exploits hidden within TLS/SSL traffic without triggering false positives or degrading performance.
This comparative report utilizes the Comparative Security Map (CSM) to rank vendors based on empirical data, focusing on security efficacy and operational overhead. Discover which solutions earned a “Recommended” rating and which fell short in critical areas like lateral movement prevention and evasion resistance.
Key Insights from the Report:
- Evasion Vulnerabilities:Â Three widely deployed vendors failed critical evasion tests, significantly reducing their overall effectiveness against sophisticated attackers.
- Security Effectiveness Rankings:Â See a detailed breakdown of block rates for malware and exploits, and how they are impacted by evasion techniques.
- False Positive Accuracy: High accuracy is vital to avoid alert fatigue and user disruption. Learn which product recorded a below-average 80% accuracy rate.
- Encrypted Performance:Â Evaluated throughput curves for TLS 1.3 and 1.2 traffic to reflect real-world enterprise workloads.
- Stability & Reliability:Â Independent verification of firewall stability under high-stress, real-world attack scenarios.
Ensure your security stack is performing as promised. Download the full comparative report to hold your vendors accountable and make objective, data-driven decisions for your network defense.
Download the Comparative Report today!















