We performed a comparison between Juniper SRX Series Firewall and Palo Alto Networks PA-Series based on real PeerSpot user reviews.
Find out in this report how the two Firewalls solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI."The signature database and zero-day detection are Fortinet FortiGate's most valuable features."
"The Intrusion Prevention System and the web filtering are both working well."
"The most valuable feature of Fortinet FortiGate is security. They are known for efficiency and are on the top of Gartner Quadrant reviews. Fortinet FortiGate has an easy-to-use platform with a good graphical interface. The configuration is simple and the solution provides an overall good layer of security."
"I appreciate FortiGate's flexibility, which allows for centralized management through FortiManager."
"FortiGate's web and URL filtering are unlike any other firewall I've used. The functionality of URL filtering in those solutions is problematic because everything is encrypted, and firewalls can't break that encryption protocol. Fortinet has an SSL proxy, so the encryption is done before the packet ever leaves the FortiGate. The URL filter is definitely one of the most helpful features."
"Our security improved from being able to put in rules and close off unwanted traffic."
"Fortinet offers the latest versions to cater to the needs of enterprises."
"Their proxy-based inspection is responsive and secure."
"Technical support is perfect."
"The scalability is fine."
"The IPS functionality of Juniper SRX is useful in the telecom industry."
"The solution has been good for fulfilling our basic needs."
"We use it as a firewall at our head office and branches."
"What I like the most about Juniper is that they have the same CLI on all routers, switches, and firewalls. If you have worked with any Juniper device, such as a Juniper router, you will be able to work with an SRX, which is really cool. It is a nice experience to work with every device of Juniper, not only firewalls."
"It provides good routing and high performance of the data center."
"The most valuable feature is robustness."
"App-ID is a really good feature."
"The product's most valuable feature is web filtering."
"It has its own logging system. You can go to monitoring and check the logs to see if a connection is getting blocked. You can use multiple types of logs to check if a file or a port is getting blocked or if there are any TCP resets from the source or destination. It's easy to troubleshoot with the monitoring and logging it provides."
"It is a scalable solution."
"It offers application-based policy enforcement. Palo Alto Networks firewalls help us recognize protocol anomalies, contrasting with other vendors that may require policies based on port numbers. With Palo Alto Networks, the port number isn't a constraint because their devices handle protocol traffic at Layer 7, allowing for accurate identification of protocol usage and port numbers. They can identify which protocol actually uses which port."
"The product's initial setup process was simple."
"The direct profiles is a valuable feature."
"The reporting feature and application ID functionality within Palo Alto Networks PA-Series are incredibly valuable to us."
"There are some tiny bugs that sometimes affect the operations. In the past revision of it, there was a bug. Because of the bug, we had to downgrade the version. It happened only with the last revision."
"In terms of what could be improved, the SD-WAN is quite difficult, because if you install the new box, 15 is okay, but if you change from an old configuration, if there is already configuration and a policy when you change to SD-WAN, you must change the whole policy that you see in the interface."
"In the next release, maybe the documentation on how to use this solution could be improved."
"I would like Fortinet to add more automation to FortiGate."
"Fortinet FortiGate can be integrated with different platforms. They have integrations in place, but I can't say they're 100%."
"The user interface could be improved."
"The support costs and licensing are sometimes so expensive."
"It is very expensive, and their support is not very good. I hope that their technical support will be better in the future."
"Juniper SRX Series Firewall has to improve its web content site, like web filtration."
"We'd like to improve the stability and the kill rate."
"It does have its nuances in terms of deployment. There are always areas to make something easier or more intuitive or make the system auto-negotiate more with existing hardware."
"The configuration is difficult and it should be easier."
"To compare with Fortinet, Juniper needs to improve their security features."
"It could improve areas which need high performance."
"it would be more powerful if Juniper brought out a security product other than the firewall, like anti-spam, endpoint protection, etc. Customers who want to deploy security solutions are not just thinking about firewalls... Juniper should have an end-to-end solution, from the endpoint to the network level."
"The GUI needs to be easier and more helpful for users who don't have security experience."
"The UI definitely needs work. In my opinion, the UI could be simpler and more user-friendly for the average user."
"In future releases, maybe Palo Alto can enhance and enlarge their portfolio with SIEM solutions. They already have an endpoint protection solution, SOAR solution, that's fine. But when it comes to standalone IDS/IPS solution or email security solution, for example, we don't have any product in that category for Palo Alto."
"Palo Alto Networks PA-Series should improve its price. It should also include a feature similar to Sophos' Security Heartbeat."
"The solution’s pricing could be improved because it is an expensive solution."
"I encountered a slight issue with the application portal, which was not functioning correctly."
"There are constant updates for the operating system. It is a nice thing also, but it has its own disadvantages. Continuous updates are there. The users face issues like, how often do I need to update that? Within a period of five months, I'm updating it two or three times. It gives them a feeling that they are not confident about their product and have to update it so frequently."
"The product's high prices are an area of concern where improvements are required."
"As we migrate fully into the cloud, additional features like capacity upgrading and improvements to hardware resources will be necessary, especially since our equipment consists of older-generation switches and routers."
Juniper SRX Series Firewall is ranked 18th in Firewalls with 86 reviews while Palo Alto Networks PA-Series is ranked 16th in Firewalls with 28 reviews. Juniper SRX Series Firewall is rated 7.8, while Palo Alto Networks PA-Series is rated 8.6. The top reviewer of Juniper SRX Series Firewall writes "Highly scalable, user-friendly UI, and easy to maintain". On the other hand, the top reviewer of Palo Alto Networks PA-Series writes "Offers trained customer support, stability and ease of use ". Juniper SRX Series Firewall is most compared with Cisco Secure Firewall, Palo Alto Networks WildFire, Netgate pfSense, Palo Alto Networks NG Firewalls and Check Point NGFW, whereas Palo Alto Networks PA-Series is most compared with OPNsense, SonicWall NSa, Sophos XG, Netgate pfSense and WatchGuard Firebox. See our Juniper SRX Series Firewall vs. Palo Alto Networks PA-Series report.
See our list of best Firewalls vendors and best Firewalls vendors.
We monitor all Firewalls reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.