We performed a comparison between Palo Alto Networks NG Firewalls and Zscaler Cloud Firewall based on real PeerSpot user reviews.
Find out in this report how the two Firewalls solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI."Fortigate's most valuable feature is that it doesn't need a push policy when writing rules."
"The most valuable features of Fortinet FortiGate are the APIs. They are the most widely known."
"Fortinet FortiGate is user-friendly and affordable."
"It has improved our security capabilities."
"LinkGreat firewall capabilities"
"We are using the FortiGate 100D series. VPN, firewall, anti-malware, OTM, and intrusion prevention are useful features."
"What's most important is the ease of use."
"Fortinet has a very good solution for Secure SD-WAN. One very good feature is that they have robust and simple FortiOS through which they provide all solutions. That's their strength. There's not much complexity involved with the Secure SD-WAN solution of Fortinet as compared to Cisco's solution, which has a lot of flexibility but complexity also comes with that flexibility."
"In my opinion, Palo Alto has consistently been one of the best firewalls for enterprise security."
"I like that it has high security."
"Protection from a single packet and ease of making security rules."
"The solution does a great job of identifying malicious items and vulnerabilities with URL filtering."
"I can enable the features I want and configure the policies based on the user and not all users and network traffic, making firewall management much easier."
"We have not had to replace hardware routers nor purchase additional hardware. So, that has provided a little bit of an ROI."
"The Unified Threat Management (UTM) module, which consists of the basic firewall and IPS services, is what the majority of our customers use in Palo Alto Firewall."
"Decryption is one of Palo Alto Networks NG Firewalls' best features because we can decrypt by category. For instance, we can decrypt everything except for bank traffic so that we don't interfere with the passwords and two-factor authentication of those checking their bank accounts at work. We can still monitor for malware and other threats that come through a secure channel. It's seamless for users. The URL filtering and IPS are both great as well."
"Includes advanced tech protection."
"The solution is scalable."
"The initial setup is straightforward."
"Most of the features that Zscaler has to offer, we will deploy."
"The solution offers good sandboxing."
"Zscaler provides effective protection against various cyber threats ensuring a safe environment"
"The visibility and log availability offered are highly valued for troubleshooting purposes, and this is a key factor driving customer interest in the firewall module."
"Once you have Zscaler running you have access to configure it however you want."
"I need user-behavior analytics, to find threat scenarios from inside the organization, insider attacks. That would be very helpful for us. In addition, I would like next-generation features for small and medium businesses. These businesses require UTM, all in one product. Fortinet must include it."
"The search tool needs improvement. It's very difficult to search for policies right now."
"The process of configuring firewall rules appears excessively complex."
"One of the features that I would like to have is to do with endpoint production, it should be integrated. For example, the firewall gets notified of any kind of forensic event that needs to be done, such as if there is a ransomware attack and how it originated, all those records have to be available from the firewall, which is not."
"Technical support is good but the response time could be faster."
"The performance could be a bit better. Right now, I find it to be lacking. Having good performance is very important for our work."
"We'd like more management across other integrations."
"We would like to see better pricing."
"I would like to see better integration with IoT technologies."
"I'm thinking about a new feature. They have decryption. It's a good idea to use decryption on Palo Alto. It would be good if they had offloading of the traffic, and if they could decrypt the traffic and offload it. Like, for example, ASM on our site. We have an SSL decryption to offload the traffic. We could use that on Palo Alto."
"Over the past one or two years, Palo Alto Networks has added a lot of features into the NG Firewall products. I think this is becoming more complicated for our customers. Therefore, we could use some best practices, best practice tools, and implementation guides for some of the complicated features."
"I would like them to bring in some features that would encourage traffic shaping or bandwidth routing, like other UTM firewalls, because the solution should be capable of limiting the bandwidth for rules."
"The tech support was once great, but now it is poor. The tech support has gone south. It is really difficult. I had a Priority 1 case last a week in their queue, and after multiple complaints, I finally got somebody to take the case. These are things that are unacceptable in the business world. They could train their employees better."
"I think automation and machine learning can be improved to make bulk configurations simpler, easier, and faster"
"The VPN has room for improvement."
"We would like to see improvement in the web interface for this solution, so that it can handle updates without manual intervention to put the data in order."
"Because it's on cloud, it doesn't allow application of extra settings."
"It would be better if they improved their policy, package visibility, and flexibility while we're creating rules for inspection. It could also be cheaper or more things could be included in the basic package. In the next release, I would like better coverage in the Asia Pacific region and better quality of service."
"It would be nice to have some sort of a form factor, a physical form factor perhaps, or virtual machine that you could install on devices or on a cloud, and have some cloud computing."
"There are some areas it could improve when it comes to blocking, we have to block some things manually. For example, if we block a top-level domain we have seen that the new IPs come through, the IPs are not blocked. There should be some more granular way of doing it. My only request is if you're blocking something at a top level, the sub-level sub-domains and all those other IPs should be blocked too automatically."
"When it comes to customer support, there is room for improvement in Zscaler's service."
"Its technical support services could be better."
"Certain criteria need to be met if you want to scale this solution."
"Pricing is a challenge."
More Palo Alto Networks NG Firewalls Pricing and Cost Advice →
Palo Alto Networks NG Firewalls is ranked 5th in Firewalls with 164 reviews while Zscaler Cloud Firewall is ranked 26th in Firewalls with 15 reviews. Palo Alto Networks NG Firewalls is rated 8.6, while Zscaler Cloud Firewall is rated 8.4. The top reviewer of Palo Alto Networks NG Firewalls writes "We get reports back from WildFire on a minute-by-minute basis". On the other hand, the top reviewer of Zscaler Cloud Firewall writes "A highly stable and comprehensive cloud security and access solution". Palo Alto Networks NG Firewalls is most compared with Check Point NGFW, Azure Firewall, Meraki MX, Sophos XG and Netgate pfSense, whereas Zscaler Cloud Firewall is most compared with Azure Firewall, OPNsense, Cisco Multicloud Defense, Cisco Secure Firewall and Sophos XG. See our Palo Alto Networks NG Firewalls vs. Zscaler Cloud Firewall report.
See our list of best Firewalls vendors.
We monitor all Firewalls reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.