We performed a comparison between Palo Alto Networks NG Firewalls and Stormshield Network Security based on real PeerSpot user reviews.
Find out in this report how the two Firewalls solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI."Its user interface is good, and it is always working fine."
"It can expand easily."
"FortiGate's web and URL filtering are unlike any other firewall I've used. The functionality of URL filtering in those solutions is problematic because everything is encrypted, and firewalls can't break that encryption protocol. Fortinet has an SSL proxy, so the encryption is done before the packet ever leaves the FortiGate. The URL filter is definitely one of the most helpful features."
"This version is stable. I don't have any issues with this solution, in our environment, it works well."
"The most valuable feature of Fortinet FortiGate is load balancing. It can provide central management and VPNA. Additionally, it has enhanced our security environment."
"The CLI is robust and powerful, enabling rapid, consistent changes via SSH."
"We use the FortiGate Sandbox to detect zero-day vulnerabilities, such as anomalies or malware, that are unknown and have not yet been discovered."
"The most valuable features of Fortinet FortiGate are the APIs. They are the most widely known."
"The performance of Palo Alto Networks NG Firewalls is the most valuable feature."
"We have found the SSL decryption within this solution to be great; you can enable this feature and have the ability to see more of what is happening across your network."
"It's one of the best products I've worked with. It's typically a market leader on Gartner. It's a very respected brand."
"Palo Alto Networks NG Firewalls saves us time."
"It's quite nice. It's very user-friendly, powerful, and there are barely any bugs."
"Good functionality and features."
"The most valuable features are the threat prevention and policy-based routing features."
"I like the sandbox feature, and it's very good. It kills each malware deployment in the sense of signatures within five minutes. So, we can secure our network and infrastructure very well within the stipulated time. The WildFire functionality is very good because a few files are also getting blocked. It's critical as malware attacks are also getting ignored, and the logging is very well maintained in this firewall. The most valuable solutions in this field are application-based firewalls. That is the main criteria of the firewall and functionality. We can get all the logs related to this and each and every packet. I like that the firewall is working as an application. The application-based entity we have deployed is well maintained and working very well. We were able to find lots of vulnerabilities when we deployed it, but we could not disclose all. But there were vulnerabilities we could block by updating the firewall and taking actions on clientside machines. So, we got to know that we have lots of vulnerabilities inside the organization too, and we took lots of steps and resolved the number of vulnerabilities. Palo Alto Networks NG Firewalls is an all-in-one solution. It provides every entity log, which is a very good functionality of this firewall. It gives every packet and aspect that the firewall is performing through its logs, and it does it very well. This firewall's unified platform helped eliminate multiple network security tools. If anyone uses P2P sites, cryptocurrency websites, or any illegal sites, we can block it easily. It gives us a proper alert for these kinds of sites, and it properly secures our network. Monitoring is the best thing we are doing here, and we can block this kind of vulnerability as soon as it comes to us."
"I like how you can configure the rules. There is the task for the rules and a task for the network configuration. It also provides SMD filtering, and it can be integrated with the active directory for the users, their mission, and the VPN configuration. We are here in Sudan, and Stormshield didn't work in Sudan for more than a decade. Stormshield is a very strong firewall and very easy to configure and maintain. I am just working with the firewall solution, and we don't have any other solutions like endpoint solutions or something like that."
"The scalability of the solution is good."
"The solution has improved my organization because I can see what traffic is happening and I can use it to block and prevent attacks."
"I like that it works fine. Stormshield is a very good solution."
"It's an easy, straightforward management platform to use."
"I can see what traffic is going on. I can easily block any programs from attacks."
"The most valuable features are the IPS, the firewall function, and the price."
"Ease of use is the best feature of the product."
"Scalability for Fortinet FortiGate needs to be improved. SD-WAN security for this solution also needs some improvement."
"I would like reporting to be improved and should offer a lot more tools to monitor the products."
"I think that the infrastructure for the VPN could be improved. The way that it is bundled also made it difficult to use and sell as it is too expensive."
"The updates Fortinet provides are sometimes unstable."
"It could use more templates for third-party site-to-site VPN setups other than FortiGate and Cisco."
"The ease of use could be improved."
"Quality control on their firmware versions needs improvement. When they introduce new firmware, there tend to be bugs."
"Technical support is good but the response time could be faster."
"The machine learning in Palo Alto NG Firewalls for securing networks against threats that are able to evolve and morph rapidly is good, in general. But there have been some cases where we get false positives and Palo Alto has denied traffic when there have been new updates and signature releases. Valid traffic gets blocked. We have had some bad experiences with this. If there were an ability, before it denies traffic, to get some kind of notification that some traffic is going to be blocked, that would be good."
"The solution doesn't support routing in virtual firewall creation, and we want that to be enabled."
"The analysis of the ITS ID by Palo Alto Networks NG Firewalls could be improved."
"Technical support is an area that could be improved."
"The areas that need to improve are network protection and user identification."
"It is a complete product, but the SSL inspection feature requires some improvements. We need to deploy certificates at each end point to completely work out the UTM solutions. If you enable SSL encryption, it is a tedious process. It takes a lot of time to deploy the certificates to all endpoints. Without SSL inspection, UTM features will not work properly. So, we are forced to enable this SSL inspection feature."
"I'm thinking about a new feature. They have decryption. It's a good idea to use decryption on Palo Alto. It would be good if they had offloading of the traffic, and if they could decrypt the traffic and offload it. Like, for example, ASM on our site. We have an SSL decryption to offload the traffic. We could use that on Palo Alto."
"Palo Alto Networks NG Firewalls need better training modules. You have to do a lot of reading prior to watching the training videos, and it's good for people who are really into it. However, often you want to use a video for a TID. You want to see how to do something rather than spend 30 minutes reading and then another 30 minutes watching the class. As a result, I take third-party training classes rather than Palo Alto's training because they are a lot better."
"The SD card could be more secure."
"It could be better if it were more user-friendly. It's too complicated for us to use it. The price could be better as well."
"The filtering configuration could be better. We have some difficulties with the filtering configuration and the filter extension. It's not that easy. It's not that straightforward. In the next release, I would like to see a reporting system. Stormshield doesn't have any tutorials on how to do the configuration and things like that. They just have documentation on the website. If you want to configure, for example, Cisco or Fortinet, you can find tutorials on YouTube. They show you how to configure the features, and so on. In Stormshield, there is nothing on social media or the internet on how to configure different things. The lack of documentation or the lack of material makes it difficult for others to adopt this solution."
"Stormshield Network Security is quite expensive."
"Not all the fields are activated yet and we were informed that it will take at least one month."
"The biggest issue was their support department was not able to help us, then everything stops. This is a no-go area for me."
"This solution has a big problem with web filtering and it needs to be improved."
"Improvement is needed in terms of the technical support of the manufacturer."
More Palo Alto Networks NG Firewalls Pricing and Cost Advice →
Palo Alto Networks NG Firewalls is ranked 5th in Firewalls with 164 reviews while Stormshield Network Security is ranked 12th in Unified Threat Management (UTM) with 16 reviews. Palo Alto Networks NG Firewalls is rated 8.6, while Stormshield Network Security is rated 7.8. The top reviewer of Palo Alto Networks NG Firewalls writes "We get reports back from WildFire on a minute-by-minute basis". On the other hand, the top reviewer of Stormshield Network Security writes "Handles monitoring, collection, analysis, and reporting of data in our HQ and branches". Palo Alto Networks NG Firewalls is most compared with Check Point NGFW, Azure Firewall, Meraki MX, Sophos XG and Palo Alto Networks VM-Series, whereas Stormshield Network Security is most compared with Netgate pfSense, OPNsense, Sophos XG, WatchGuard Firebox and Cisco Secure Firewall. See our Palo Alto Networks NG Firewalls vs. Stormshield Network Security report.
See our list of best Firewalls vendors.
We monitor all Firewalls reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.