We performed a comparison between Palo Alto Networks NG Firewalls and Palo Alto Networks VM-Series based on real PeerSpot user reviews.
Find out in this report how the two Firewalls solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI."It has improved our security capabilities."
"It blocks the vulnerabilities that can negatively impact us."
"Our security improved from being able to put in rules and close off unwanted traffic."
"Good performance, stability, and virtual domain ability."
"The user interface is relatively easy. The devices are easy to deploy and figure out when you have experience with other security appliances."
"This solution has helped our organization by having strong functions and a reliable firewall."
"The application control features, such as Facebook blocking and Spotify blocking, are the most valuable."
"The most valuable feature of this solution is Quota."
"The structure is much faster and more sophisticated than Cisco."
"The solution does a great job of identifying malicious items and vulnerabilities with URL filtering."
"The ease of use and the ease of configuration of our policies are the most valuable features."
"The most valuable features of this solution are all of the services it provides."
"We utilize advanced threat prevention features like web filtering and SSL decryption, which haven't caused any issues."
"With App-ID, we can identify exact traffic. Even if someone tries to fool the firewall with a different port number, or with the correct port number, Palo Alto is able to identify what kind of traffic it is."
"It has the typical features of a next-generation firewall. It can do application control, antivirus, content filtering, etc."
"Application layer firewalling has been the most valuable feature because it gives thousands of application IDs that we can use to control traffic into and out of our environment. The second most important feature has been the GlobalProtect VPN feature."
"In the newer version, there are 3850s, all of them are scalable. They fit better into the medium or small businesses."
"It ensures that every interaction, pre and post-loan processing, undergoes a thorough inspection, leveraging VPN features and comprehensive security protocols."
"The feature that I have found the most useful is that it meets all our requirements technically."
"Centralized management is valuable because it allows us to configure settings in one location and apply them across all three locations."
"It has a good performance which helps you with the stability of your virtual environment."
"In terms of security breaches, the product aids in categorizing and monitoring traffic, allowing for the identification of potentially malicisous or incorrectly formatted applications."
"We now know a lot more detail about what our users are doing on the network."
"The most effective features for threat prevention are application-based prevention and WildFire. These features cover various threats, such as ransomware, malware, etc. They provide real-time visibility. By applying appropriate policies, threats can be blocked."
"Fortinet FortiGate is a stable solution. However, my issue is the performance only. When I use all the profiles, this affects the performance. From the beginning, I should have had a better sizing of the box."
"The support structure needs to be improved because every time we contact them, there is a delay in the response."
"It needs more available central management."
"I think the only issue that needs improvement is the interface."
"We had a minor problem where there was a major system upgrade on the hardware platfrom and the Mac client was not available as soon as it might have been. The PC client was available immediately, but we had to wait a month or so, before there was a mac client. I was slightly irritated that it was not ready on time, but it was eventually resolved."
"I would like to see better pricing in the next release, as well as a simplification of the installation."
"The license renewal process, annual renewal price, and the web application firewall features should be improved."
"I could not configure sFlow from the FortiGate graphical user interface. I realized that the sFlow configuration is available only from the CLI, and discovered that sFlow is not supported on virtual interfaces, such as VDOM links, IPsec, or GRE."
"The bugs can be improved."
"The data loss prevention (DLP) capabilities need to be beefed up."
"Palo Alto should improve their support. It's sometimes difficult to get the right technician or engineer to fix the problem as soon as possible."
"I believe it would be beneficial if the solution could integrate with Google Chrome, especially for students who use Chromebooks. However, as far as I know, the solution currently does not support Google Chrome."
"Lacks mobility between on-prem and cloud based."
"Palo Alto has introduced new features in their next-generation firewall, such as SD-WAN. However, the technique of SD-WAN implementation is not easy to understand. It is not easy to deploy at this moment. Maybe, in the future, they can improve the process and how the administrators, partners, or support team can easily deploy this SD-WAN solution on their next-generation firewall. The SD-WAN solution from Fortinet is easy to do. It does not take more than five or 10 minutes. When we talk about Palo Alto, it takes extra effort to implement SD-WAN."
"The pricing could be improved. They need to work on the setup over the firewall, VLAN, and PPPoE."
"The solution's VPN, called GlobalProtect, could be improved as I've had a few issues with that."
"On the cloud side, they need to come up with more HA solutions to support the multi-region."
"I would like to see a more thorough QA process. We have had some difficulties from bugs in releases."
"People are less aware of Palo Alto."
"Integrative capabilities with other solutions should be addressed."
"There is no proper support channel to follow up on cases."
"In the next release, I would like to see better integration between the endpoints and the firewalls."
"AWS doesn't integrate well with third-party firewalls."
"We have ran into issues with Palo Alto’s limitations for resolving large IP lists from DNS lookups, as well as the antivirus interfering with App-ID."
More Palo Alto Networks NG Firewalls Pricing and Cost Advice →
Palo Alto Networks NG Firewalls is ranked 5th in Firewalls with 164 reviews while Palo Alto Networks VM-Series is ranked 10th in Firewalls with 53 reviews. Palo Alto Networks NG Firewalls is rated 8.6, while Palo Alto Networks VM-Series is rated 8.6. The top reviewer of Palo Alto Networks NG Firewalls writes "We get reports back from WildFire on a minute-by-minute basis". On the other hand, the top reviewer of Palo Alto Networks VM-Series writes "Many features are optimized for troubleshooting real-time scenarios, saving a lot of time". Palo Alto Networks NG Firewalls is most compared with Check Point NGFW, Azure Firewall, Meraki MX, Sophos XG and WatchGuard Firebox, whereas Palo Alto Networks VM-Series is most compared with Azure Firewall, Fortinet FortiGate-VM, Cisco Secure Firewall, Juniper SRX Series Firewall and Huawei NGFW. See our Palo Alto Networks NG Firewalls vs. Palo Alto Networks VM-Series report.
See our list of best Firewalls vendors.
We monitor all Firewalls reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.
In the best tradition of these questions, Feature-wise both are quite similar, but each has things it's better at, it kind of depends what you value most.
PA is good at app control, web filtering and such like, they have always been top of the pile there. The GUI is very good, and their product is very user-focused.
Fortinet is good for scalability and predictable high throughput (ASICs in the hardware), and useful things like authentication flexibility, CLI config (if you have any networking/Cisco people, they always seem to prefer CLI over GUI) and have better OT features, maybe relevant to your manufacturing use?
Fortinet seem to have a broader integration offering with their security fabric than PA do, plus they can do Fortinet-based wifi, switching, etc. Depends if you are prepared to go all-in with a single vendor.
Hi,
Both FT and PA have compelling features for large Enterprises. I would like to add a few good points about Fortinetwhich might be helpful ( from my 13 years of engagement with them as Distributor and Partner)
Fortinet:
Have higher throughput; which comes with competitive rates
Wide range of models to select to meet your requirement, without spending heavliy
Outstanding customer support and very active customer care team
Easly available skilled resources from the channel for deployment and post-implementation support
Regards
Abhilash
Hello. The question is what you are going to have as a result of application