We performed a comparison between Juniper SRX Series Firewall and Zscaler Internet Access based on real PeerSpot user reviews.
Find out in this report how the two Firewalls solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI."The stability and scalability of this solution are satisfactory. Its SD-WAN, VPN, and URL filtering features are very useful."
"FortiGate Secure SD-WAN includes best-of-breed next-generation firewall (NGFW) security, SD-WAN, advanced routing, and WAN optimization capabilities, delivering a security-driven networking WAN edge transformation in a unified offering."
"In terms of security, we have not experienced any security flaws or loopholes, and it has proven to be quite stable."
"The SD-WAN function is very developed. It has SD-WAN functionality with security features in one device. We can manage from one single console SD-WAN and the security policy."
"The most valuable features of Fortinet FortiGate are the ease of use and there are several operating systems that can include the hardware capacities. In the newer releases, the resources were more useful because they were included in the operating system."
"Fortinet FortiGate is easy to use."
"The Intrusion Prevention System and the web filtering are both working well."
"It is easy to use. We chose this product for the possibility to have virtual domains (VDOMs). We are building another company in the group, and we would like to split the firewalling rules and policies between these two companies. Each company would be able to manage its own policies and security rules, which is an advantage of Fortinet FortiGate. We can define VDOMs, and every company can manage its own VDOM as if it has its own physical firewall, but in fact, we would be using the same physical appliance because we are also using the same internet lines. So, it allows us to reuse the existing resources without the disadvantage of having to compromise on policies and security. Each company can choose its own way of working."
"The EEE security controls allow us to make policy restrictions, so I can customize port numbers to allow or limit control."
"The reason that we picked Juniper SRX is for the scalability, the fit for purpose, the tools that are available, the ongoing support and the ability to monitor, but particularly for the virtual routers in our data centers so that we can quickly upscale them when needed, when we need more throughput."
"The high availability of the application is good."
"The user interface is good."
"The virtualization feature is the most valuable feature. Sometimes customers are requesting a private connection using mobile data when they are connecting to remote sites."
"Technical support is good. They quickly respond, and they even have local help here. They can actually give you an answer very quickly."
"It's fine, and it's good. It's very stable."
"The features that I have found valuable are the ones for the main purpose we are using Juniper - its firewall to protect our network for our internet access."
"The most valuable features of Zscaler Internet Access are it's on the cloud, high network performance, and the interception of users is very easy."
"The most valuable feature of the solution is SWG traffic."
"Stability-wise, I rate the solution a nine and a half out of ten...The setup phase was easy."
"The most valuable features I found in Zscaler Internet Access are the restriction of users for a particular URL, the security feature related to stopping DDoS, and the VPN."
"The protection is most valuable."
"Zscaler Web Security protects our users in remote locations from internet threats - even if they are not connected to our network."
"Zscaler Internet Access's roaming user feature is most valuable and is much better compared to other secure web gateways."
"The solution is stable."
"FortiLink is the interface on the firewall that allows you to extend switch management across all of your switches in the network. The problem with it is that you can't use multiple interfaces unless you set them up in a lag. Only then you can run them. So, it forces you to use a core type of switch to propagate that management out to the rest of the switches, and then it is running the case at 200. It leaves you with 18 ports on the firewall because it is also a layer-three router that could also be used as a switch, but as soon as you do that, you can't really use them. They could do a little bit more clean up in the way the stacking interface works. Some use cases and the documentation on the FortiLink checking interface are a little outdated. I can find stuff on version 5 or more, but it is hard to find information on some of the newer firmware. The biggest thing I would like to see is some improvement in the switch management feature. I would like to be able to relegate some of the ports, which are on the firewall itself, to act as a switch to take advantage of those ports. Some of these firewalls have clarity ports on them. If I can use those, it would mean that I need to buy two less switches, which saves time. I get why they don't, but I would still like to see it because it would save a little bit of space in the server rack."
"They need faster serviceability and more security features."
"The stability could be a bit better."
"FortiGate support could do some improvements on their IPv6 configuration. Right now it's still in the very early stage for utilizing in an enterprise level network environment."
"Its reporting capabilities can be improved. It should have some out-of-the-box reporting capabilities and some degree of customization. The basic reporting that it currently has is not sufficient to create more usable reports. It needs some sort of out-of-the-box reporting. They try to make customers purchase FortiAnalyzer for this kind of reporting, which is an additional cost. Other firewall vendors, such as SonicWall and Sophos, provide this sort of reporting without any additional cost."
"I would like to see better pricing in the next release, as well as a simplification of the installation."
"The support we receive when we need to upgrade is not satisfactory and has room for improvement."
"They should improve the interface to make it more user-friendly."
"It was very difficult to deal with and required a lot of support, and the UI is very poor."
"The technical support has room for improvement."
"Does not offer protection for IoT devices"
"It needs better interoperability with Cisco gear."
"As a networking person, I don't really have any major issues with this device. Based on my experience of using it in a cluster, it could be more stable. I had an incident when one of the SRXs in a cluster couldn't learn ARP. It is a good solution, but firewalls don't seem to be an area of development for Juniper. They are focusing on data centers, routers, and switches, not firewalls."
"IPS is one that I would definitely want to be improved. I would also like SSL VPN to be integrated."
"We tried configuring the IDS for more than four months, but it did not work properly."
"I think improvement can be done to the security part, particularly the UDM, and the product should have a user-friendly interface similar to FortiGate. It should have the Azure RBAC in the next release."
"What could be improved in Zscaler Internet Access is its price. It could be cheaper."
"They block Zscaler IPs when the traffic origin is from Zscaler IPs. They've been blocked by certain government organizations so the end users are not able to visit those websites unless we ask them to unblock those IP. This is a bit problematic."
"The price of the solution could be improved."
"The main issue with Zscaler Internet Access is proxy IP detection, which sometimes makes sites inaccessible."
"I would like to see more training and video documentation."
"Zscaler Internet Access can improve by adding traffic filtering based on the DNS."
"Zscaler Internet Access could improve by adding a VPN feature."
"Cloud App’s database should be improved."
Juniper SRX Series Firewall is ranked 18th in Firewalls with 87 reviews while Zscaler Internet Access is ranked 2nd in Secure Web Gateways (SWG) with 46 reviews. Juniper SRX Series Firewall is rated 7.8, while Zscaler Internet Access is rated 8.2. The top reviewer of Juniper SRX Series Firewall writes "Highly scalable, user-friendly UI, and easy to maintain". On the other hand, the top reviewer of Zscaler Internet Access writes "Provides integrated CASB and file sandboxing but could be less expensive ". Juniper SRX Series Firewall is most compared with Cisco Secure Firewall, Palo Alto Networks WildFire, Netgate pfSense, Palo Alto Networks NG Firewalls and Check Point NGFW, whereas Zscaler Internet Access is most compared with Cisco Umbrella, Microsoft Defender for Cloud Apps, Netskope , Prisma Access by Palo Alto Networks and Appgate SDP. See our Juniper SRX Series Firewall vs. Zscaler Internet Access report.
See our list of best Firewalls vendors.
We monitor all Firewalls reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.