Check Point IPS vs Fortinet FortiGate IPS comparison

Cancel
You must select at least 2 products to compare!
Check Point Software Technologies Logo
5,638 views|3,950 comparisons
100% willing to recommend
Fortinet Logo
4,111 views|2,584 comparisons
95% willing to recommend
Comparison Buyer's Guide
Executive Summary

We performed a comparison between Check Point IPS and Fortinet FortiGate IPS based on real PeerSpot user reviews.

Find out in this report how the two Intrusion Detection and Prevention Software (IDPS) solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI.
To learn more, read our detailed Check Point IPS vs. Fortinet FortiGate IPS Report (Updated: May 2024).
769,976 professionals have used our research since 2012.
Featured Review
Quotes From Members
We asked business professionals to review the solutions they use.
Here are some excerpts of what they said:
Pros
"The most valuable features of the solution are that the product's stability has been very good. The""Check Point is one of the best security brands worldwide.""Check Point Intrusion Prevention System has great profiles, and we can continuously create, modify, activate, deactivate or configure any specific setting to allow the profile to focus on just one thing or for certain attacks.""There's less admin burden to detect these threats as Check Point IPS will do it all for you and suggest the best preventive actions to protect the network.""The most valuable feature of Check Point IPS is the management of devices and policies.""The autonomous threat prevention is very easy to use. The APIs and SmartConsole tool also work well.""IPS logs enable complete visibility and reporting through the smart console.""The reports are useful in helping to verify the threats where we can see the level of severity in order to be able to take action."

More Check Point IPS Pros →

"The solution effectively controls browsing traffic.""Has a very user-friendly interface and doesn't require any prior knowledge.""Integrated management is a very valuable feature.""The solution provides an easy way to filter information and Fortinet lab is a great place to discover new things.""The detection is great.""I prefer FortiGate because it has a lot of other solutions embedded within it and is the easiest for our technicians to operate.""The most useful features of Fortinet FortiGate IPS are you can create a virtual firewall within it, most other firewalls do not have this feature. You are able to manage your network and have network segmentation within your firewall. Additionally, you can create virtual switches within the firewall and have policy management, such as firewall and access policy.""Provides good VPN capabilities."

More Fortinet FortiGate IPS Pros →

Cons
"Enhancements are necessary for the proficiency of notifications in the event of a Social Security incident, whether through email or alternative channels such as SMS.""The dashboard reports can be easier to generate and customize.""When exceptions need to be done for certain profiles, it is easy to get them done, however, implementation on some general ones may cause some extra work as the IPS is not easy to overwrite.""I would like to have the possibility of adding features to this IPS solution in the future.""Check Point IPS' main problem is it is mostly software based. The performance is dependent on the CPU power, and the limited number of patterns.""There is no standalone IPS appliance available.""It would be good to update the public documentation of Check Point so that we can generate improvements and best practices based on the documentation.""After the R80 release, there are almost all feature sets available under IPS Configuration. However, further to this, adding a direct vulnerability scan based on ports and protocol for every zone (LAN, DMZ, or Outside) will make Check Point very different compared to other vendors on the market."

More Check Point IPS Cons →

"The prevention mechanisms and implementation are not easy.""FortGate's IPS reporting could be made better by giving more details regarding the source and destination of network traffic when it comes to the overview section. This would allow me to more easily follow the flow of traffic based on IP addresses, without having to integrate the IPS with other products that perform more sophisticated traffic analysis.""There could be more modifications.""Right now, it's not really scalable, but it's okay for us. However, looking ahead to three years from now, we might have a problem with scalability. We foresee a little risk down the road. The stability is okay for now.""There is room for improvement in being proactive about identifying and integrating new signatures.""I have used technical support and they could improve.""The solution’s stability could be improved because we sometimes faced some drops.""I have contacted the support from Fortinet FortiGate IPS. The service was good but the speed could be better."

More Fortinet FortiGate IPS Cons →

Pricing and Cost Advice
  • "I think that the price of support is around $40,000 USD or $50,000 USD per year."
  • "The price of this product should be reduced."
  • "Enabling IPS does not require any additional license purchase from OEM, as it comes by default with the NGFW bundle."
  • "The pricing for Check Point IPS is competitive and brings good value for the money."
  • "The module has a considerable cost but you can save by purchasing a package with several modules instead of making a single purchase."
  • "Pricing for this solution is negotiable and I'm happy with our pricing."
  • "There is a license needed to use the Check Point IPS which is not expensive. However, the Check Point IPS device is expensive."
  • "You can pay for Check Point IPS yearly, or you can go with a three-year license. There's no extra cost apart from the standard licensing fee."
  • More Check Point IPS Pricing and Cost Advice →

  • "The pricing for FortiGate IPS is competitive with other products in the category."
  • "We are currently evaluating a Palo Alto solution, and the pricing could be a reason for going for Palo Alto."
  • "They are more expensive than others."
  • "It is not expensive as compared to Cisco."
  • "The price is okay, so far so good."
  • "The solution could be better priced."
  • "The licensing costs are very competitive."
  • "There is an annual license to use this solution. The prices have been increasing over the years."
  • More Fortinet FortiGate IPS Pricing and Cost Advice →

    report
    Use our free recommendation engine to learn which Intrusion Detection and Prevention Software (IDPS) solutions are best for your needs.
    769,976 professionals have used our research since 2012.
    Questions from the Community
    Top Answer:The tool's most valuable feature is its detection panel. Managing and updating policies within Check Point IPS is easy and without issues. It provides a secure network.
    Top Answer:The tool's licensing model is good. The licensing costs are yearly. I rate it an eight out of ten.
    Top Answer:The most significant aspect of IPS is self-explanatory as it primarily focuses on intrusion prevention, which is crucial for Fortinet's internal outbreak prevention efforts and ensuring compliance on… more »
    Top Answer:There is room for improvement in being proactive about identifying and integrating new signatures.
    Ranking
    Views
    5,638
    Comparisons
    3,950
    Reviews
    28
    Average Words per Review
    426
    Rating
    8.5
    Views
    4,111
    Comparisons
    2,584
    Reviews
    26
    Average Words per Review
    369
    Rating
    8.4
    Comparisons
    Also Known As
    Check Point Intrusion Prevention System
    FortiGate IPS
    Learn More
    Overview

    Check Point IPS is an intrusion prevention system that aims to detect and prevent attempts to exploit weaknesses in vulnerable systems or applications. The solution provides complete, integrated, next-generation firewall intrusion prevention capabilities at multi-gigabit speeds with a low false positive rate and high security. It helps organizations secure their enterprise network, and protect servers and critical data against known and unknown automated malware, blended threats, and other threats.

    Check Point IPS Features

    Check Point IPS has many valuable key features. Some of the most useful ones include:

    • Real-time protections: IPS is constantly updated with new defenses against emerging threats. Because the solution’s IPS protections are pre-emptive, it provides organizations with defenses before exploits are created or vulnerabilities are even discovered.
    • Virtual patching: The solution combines robust IPS functionality with a concerted patching strategy, allowing network administrators to secure networks between upgrades and patches.
    • Flexible deployment: Check Point IPS was designed to be deployed easily and efficiently.
    • 360 visibility and reporting: To help users achieve an unmatched level of visibility that detects and prevents threats, Check Point IPS integrates with SmartEvent, enabling security operations center (SOC) staff to respond to high-priority events first.

    Check Point IPS Benefits

    There are many benefits to implementing Check Point IPS. Some of the biggest advantages the solution offers include:

    • Efficient: Check Point IPS includes acceleration technologies that let you safely enable IPS. Additionally, its low false positive rate can save a lot of time.
    • Secure: The solution delivers thousands of signature and behavioral preemptive protections, making it a very secure tool.
    • Unified: With Check Point IPS, users can Enable IPS on any Check Point security gateway, thereby reducing Total Cost of Ownership (TCO).

    Reviews from Real Users

    Check Point IPS is a solution that stands out when compared to many of its competitors. Some of its major advantages are that it has granularity capabilities for rule creation, quick updates of signatures, and a helpful mechanism that allows users to turn IPS signatures to a different mode automatically.

    A System and Network Administrator at Auriga mentions, “The Check Point IPS module allows me granularity in creating rules. I can specify which definition to apply and to which scope or network.” The reviewer also adds, “I can create multiple profiles, which is helpful.”

    “The quick updates of the signatures when a new threat is identified are great. For instance, when Microsoft releases patches, we usually see new signatures for those issues that have to be patched in a day. This gives us time to test/deploy the patches while already being protected from the threats. Also, it's very good with reporting. I can generate reports for management automatically based on the threats of the last day/week/whatever is needed,” says a Systems en networks engineer at CB.

    Another PeerSpot user, a Network Engineer at VSP Vision Care, writes, “The mechanism where you can let the system automatically turn the IPS signature to a different mode (prevent / monitor / inactive) is a nice feature that allows us to easily adjust the balance between security protection and the risk of business impact.”

    Fortinet FortiGate IPS is a highly effective intrusion detection and prevention solution. It is designed to secure a user’s system from end to end and ensure that users are equipped to handle even the most sophisticated threats. Organizations across a wide variety of industries trust IPS to help them prevent unwanted intrusions from harming their networks.

    Fortinet FortiGate IPS Benefits

    Some of the ways that organizations can benefit by choosing to deploy Fortinet FortiGate IPS include:


    • Vulnerability scanning and patching. IPS scans for threats on a deeper level than more traditional software might. It penetrates the uppermost layer of a network and identifies vulnerabilities that might not be easily spotted. It scans the entire network to give administrators a full understanding of the potential threats that they might have to address. They can then patch the points of vulnerability before those areas can be exploited.


    • Flexibility. IPS is highly flexible in that it is truly agnostic. It is capable of operating across a wide variety of devices and environments. Any network, cloud, or device type that an organization wants to protect can run IPS. Users do not need to buy any other solution to enable this to operate in the way that they need.


    • Reliability. IPS provides a complete protective package without requiring users to sacrifice speed. It allows for quick threat identification and remediation.


    Fortinet FortiGate IPS Features


    • Machine learning and AI. IPS puts powerful machine learning and AI tools into the hands of its users. These tools enable users to find threats that users might not otherwise be able to identify. They identify vulnerabilities that traditional software simply cannot and enables users to address them before they can escalate. They analyze every portion of an organization’s network architecture to find areas that can be exploited.


    • Integration suite. IPS enables users to integrate their security with many different cloud and application security services. This gives users the option to plug any feature hole that they might perceive. Advanced threats that ordinarily cannot easily be dealt with using IPS’ features can now be easily resolved. Organizations can seamlessly combine the features that IPS offers with other platforms to bolster their effectiveness and resolve virtually any type of threat.


    • Security controls. IPS comes equipped with security controllers that enable users to run it on the web server application of their choice.


    Reviews from Real Users

    Fortinet FortiGate IPS is a highly effective solution that stands out when compared to many of its competitors. Two major advantages are the powerful zero-day protection features and the way it manages to compete with even its fiercest competitors.

    Srahavan A., the CEO of a computer software company, said, “We like signature-based anomaly detection and zero-day protection features. For zero-day protection, we use Cloud Sandboxing, so whenever the zero-day threat occurs, it automatically sends it to its Cloud Sandbox. After getting information from Cloud Sandbox, then the intrusion is defined.”

    Sachin V., a network administrator said, “We've found the most valuable feature to be the very user-friendly interface... It has a good set of UTM features, a good bandwidth shaping mechanism, and other features. It has efficient algorithms and it competes well with Palo Alto and TechPoint.

    Sample Customers
    Morton Salt, Medical Advocacy and Outreach, BH Telecom, Lightbeam Health Solutions, X by Orange, Cadence, Nihondentsu, Datastream Connexion, Good Sam, Omnyway, FIASA, Pacific Life, Banco del Pacifico, Control Southern, Xero, Centrify
    Riverside Healthcare, Salt Lake City, Dell SecureWorks, Credit Bank Zagreb
    Top Industries
    REVIEWERS
    Security Firm21%
    Computer Software Company15%
    Financial Services Firm13%
    Government10%
    VISITORS READING REVIEWS
    Computer Software Company16%
    Comms Service Provider9%
    Financial Services Firm8%
    Security Firm7%
    REVIEWERS
    Computer Software Company19%
    Comms Service Provider19%
    Financial Services Firm17%
    Manufacturing Company8%
    VISITORS READING REVIEWS
    Computer Software Company24%
    Financial Services Firm9%
    Comms Service Provider8%
    Manufacturing Company7%
    Company Size
    REVIEWERS
    Small Business44%
    Midsize Enterprise25%
    Large Enterprise31%
    VISITORS READING REVIEWS
    Small Business27%
    Midsize Enterprise18%
    Large Enterprise55%
    REVIEWERS
    Small Business51%
    Midsize Enterprise13%
    Large Enterprise36%
    VISITORS READING REVIEWS
    Small Business25%
    Midsize Enterprise18%
    Large Enterprise57%
    Buyer's Guide
    Check Point IPS vs. Fortinet FortiGate IPS
    May 2024
    Find out what your peers are saying about Check Point IPS vs. Fortinet FortiGate IPS and other solutions. Updated: May 2024.
    769,976 professionals have used our research since 2012.

    Check Point IPS is ranked 3rd in Intrusion Detection and Prevention Software (IDPS) with 46 reviews while Fortinet FortiGate IPS is ranked 4th in Intrusion Detection and Prevention Software (IDPS) with 54 reviews. Check Point IPS is rated 8.6, while Fortinet FortiGate IPS is rated 8.4. The top reviewer of Check Point IPS writes "Great for detection and access with the capabilities of defining specific rules". On the other hand, the top reviewer of Fortinet FortiGate IPS writes "Very stable with good network protection". Check Point IPS is most compared with Darktrace, Palo Alto Networks URL Filtering with PAN-DB, Palo Alto Networks Advanced Threat Prevention, Trend Micro TippingPoint Threat Protection System and Cisco Sourcefire SNORT, whereas Fortinet FortiGate IPS is most compared with Palo Alto Networks Advanced Threat Prevention, Trend Micro TippingPoint Threat Protection System, Cisco NGIPS, Cisco Sourcefire SNORT and Palo Alto Networks URL Filtering with PAN-DB. See our Check Point IPS vs. Fortinet FortiGate IPS report.

    See our list of best Intrusion Detection and Prevention Software (IDPS) vendors.

    We monitor all Intrusion Detection and Prevention Software (IDPS) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.