We performed a comparison between Check Point NGFW and Juniper SRX Series Firewall based on our users’ reviews in five categories. After reading all of the collected data, you can find our conclusion below.
Features: Check Point NGFW is highly recommended for its extensive security features, convenient centralized management, and impressive virtualization capabilities. Juniper SRX Series Firewall is well-known for its user-friendly interface, effortless usage, and excellent support.
Check Point should focus on improving integration, upgrading hardware, reducing costs, and enhancing stability. Juniper needs to work on capacity scalability, pricing strategy, reporting capabilities, user interface, device reliability, and feature enhancements.
Service and Support: The customer service for Check Point NGFW has garnered varying opinions, with some customers finding it helpful and responsive, while others believe there is room for improvement. Juniper SRX Series Firewall's customer service is generally deemed satisfactory, with customers appreciating its helpfulness and knowledge. However, there have been occasions where response times were slower and the need for escalation arose.
Ease of Deployment: Check Point NGFW's initial setup can be complex and may need expertise and experience for specific configurations and migrations. Juniper SRX Series Firewall generally has a simple setup process, although it may require CLI experience and coordination with the vendor.
Pricing: Check Point NGFW is known for its expensive setup cost, particularly when compared to other options. Users have found the process of adding new licensing to existing devices to be complex, especially for larger enterprise-level devices. Juniper SRX Series Firewall offers a more reasonable and affordable setup cost. Its setup process is straightforward, and the pricing is considered reasonable.
ROI: Check Point NGFW offers cost savings, simplicity, and effective security enforcement, providing peace of mind once the protection level is understood. Juniper SRX Series Firewall is a valuable investment, delivering positive returns and enhanced security features.
Comparison Results: Based on the review answers, the Check Point NGFW is preferred over the Jun SRX Series Firewall. Check Point NGFW offers comprehensive security features such as URL filtering, intrusion prevention systems, identity and access management, and application control capabilities. It also provides centralized management and virtualization features, stability, ease of use, and scalability. Despite its higher pricing, Check Point NGFW is considered more reliable and secure. Additionally, its customer service and support are generally satisfactory.
"Fortinet FortiGate appears to be scalable."
"The most useful functionality of Fortinet FortiGate is the user interface, multiple engines, and their cloud with the latest integrations. Additionally, the Security Fabric tool is very good."
"I think that the UTM features are the most value, as it truly protects my infrastructure."
"It enables our organization to become more productive. Also, it protects our NEtWare from viruses and malware."
"What I like the most is the configuration and that it's simple, and straightforward to maintain."
"User-friendly and affordable security solution that's recommended for SMB customers. This solution has good technical support."
"Fortinet FortiGate is easy to use. Anyone can easily maintain it."
"Fortinet has a very good solution for Secure SD-WAN. One very good feature is that they have robust and simple FortiOS through which they provide all solutions. That's their strength. There's not much complexity involved with the Secure SD-WAN solution of Fortinet as compared to Cisco's solution, which has a lot of flexibility but complexity also comes with that flexibility."
"It provides a central station where it is very easy to deploy our firewall policy in one click to many firewalls. This is one of the leading perks. It saves time by having one central station because I can deploy the same kind of policy to many firewalls at once."
"The solution offers very good central management, which saves time and is hassle-free."
"A stable solution with multiple interfaces"
"I love the redesigned interface starting with R80 as well as the ability for multiple engineers to work on the policy simultaneously."
"The most valuable feature is the powerful, deep packet inspection engine."
"By deploying Check Point, it has made it easier to manage everything from a single interface. The management dashboard and policies are on its single pane of glass."
"The management platform and the dashboard, the graphical user interface, is one of the best, if not the best, in the business. It's the most intuitive and it's really user-friendly in day-to-day operations."
"The edge security posture has dramatically improved as we can now detect and prevent threats from the public internet."
"We use it as a firewall at our head office and branches."
"The user interface is good."
"Security policies in combination with zones: It is very easy to organize the security polices in a logical structure."
"The product provides good performance and has features comparable to other leading products in the market."
"What I like the most about Juniper is that they have the same CLI on all routers, switches, and firewalls. If you have worked with any Juniper device, such as a Juniper router, you will be able to work with an SRX, which is really cool. It is a nice experience to work with every device of Juniper, not only firewalls."
"The GUI is simple to use."
"CLI: Junos CLI is very easy to use, and it is also very easy to find back items in the configuration and to change them."
"The most valuable feature is the virtualization because it can be used for customers who are using the mobile data network to request a private connection to a remote site."
"Maybe they could make some features more accessible, such as a way to translate directions between two networks that share the same subnets."
"The initial setup and configuration are not intuitive and require training."
"The reporting in Fortinet FortiGate could improve. Customers are having to purchase additional reporting components. When I have used the Sophos solution it is a complete solution, in Fortinet FortiGate you have to use additional tools to have the features needed."
"In terms of what could be improved, the SD-WAN is quite difficult, because if you install the new box, 15 is okay, but if you change from an old configuration, if there is already configuration and a policy when you change to SD-WAN, you must change the whole policy that you see in the interface."
"We had some issues in the beginning while setting it up, but after doing the firmware update, it is working fine."
"Some configuration elements cannot be easily altered once created."
"You do need some IT knowledge in order to effectively work with the solution."
"There are some license issues. Not every feature must have a separate license. There must be some of kind synergy between the license so we don't have to pay for every individual license that we would like to have."
"Check Point's support, at all levels, needs a complete overhaul."
"The current model is predominantly hardware appliance-based, which can incur substantial costs"
"Check Point should improve services related to the cloud-based solution."
"Right now, with a larger user database and a high number of rules, it takes a bit of time for policy installation."
"The improvement could come from better monitoring of traffic data in and out of the firewall."
"The cost of add-on features is too high."
"In terms of what could be improved, we have a cluster with two nodes and usually we have some problems when process gets really high and it has to choose which services it keeps going. I would like to have a better solution here, like if instead of just one we could use both at the same time. It would be good if it could work together. Then when one has a failure or something like that, the other one is there to transfer, to take all the services and keep working."
"The presentation of the reports need to be more user-friendly."
"I think improvement can be done to the security part, particularly the UDM, and the product should have a user-friendly interface similar to FortiGate. It should have the Azure RBAC in the next release."
"Ongoing costs are something that we need to manage and make sure that we're getting value on."
"It's a good stable firewall, but it's nowhere near what it needs to be for a next-generation type firewall."
"It would be ideal if the solution could use cloud services to help update signatures or threat prevention systems."
"Sometimes committing configurations takes a lot of time in Juniper because of the connections, and it could be a little bit faster."
"The Juniper SRX product needs to improve in terms of innovation."
"It would be good if Junos had "unique commands" between all hierarchical levels, discarding the use of the "Run" command."
"IPS is one that I would definitely want to be improved. I would also like SSL VPN to be integrated."
Check Point NGFW is ranked 5th in Firewalls with 277 reviews while Juniper SRX Series Firewall is ranked 18th in Firewalls with 86 reviews. Check Point NGFW is rated 8.8, while Juniper SRX Series Firewall is rated 7.8. The top reviewer of Check Point NGFW writes "Good antivirus protection and URL filtering with very good user identification capabilities". On the other hand, the top reviewer of Juniper SRX Series Firewall writes "Highly scalable, user-friendly UI, and easy to maintain". Check Point NGFW is most compared with Palo Alto Networks NG Firewalls, Sophos XG, Cisco Secure Firewall, Netgate pfSense and Meraki MX, whereas Juniper SRX Series Firewall is most compared with Cisco Secure Firewall, Palo Alto Networks WildFire, Netgate pfSense, Palo Alto Networks NG Firewalls and Meraki MX. See our Check Point NGFW vs. Juniper SRX Series Firewall report.
See our list of best Firewalls vendors, best Unified Threat Management (UTM) vendors, and best Firewalls vendors.
We monitor all Firewalls reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.