We performed a comparison between KerioControl and OPNsense based on real PeerSpot user reviews.
Find out in this report how the two Firewalls solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI."This solution has solid UTM features combined with a nice GUI."
"The threat prevention is the solution's most valuable aspect."
"The IPsec tunnels are very easily created, and quite interoperable with devices from other vendors."
"The CLI and GUI do a good job of putting a lot at your fingertips."
"The features that I have found most valuable are the SD-WAN and their IP4 policy."
"The Intrusion Prevention System and the web filtering are both working well."
"Their interface is very easy to use, it is without bugs."
"It performs very well."
"All of the features of Kerio Control are equally good. Most valuable to us are the firewall rules, the intrusion detection system, and IP address features."
"Its support is very good, and it is stable product."
"Kerio Control can be scaled easily."
"I want to have access to my computer from the outside and Kerio Control plays a role because it has a VPN... It is more reliable because it's a smaller group of computers to target for hackers and the like. The VPN works very well. I use it to work remotely very easily and exchange information, both to and from the location where it's deployed, and there have been no problems there."
"The firewall and the content filtering options are valuable."
"Technical support is good. They respond right away."
"Kerio Control is easy to use and provides the ability to deliver customized solutions."
"The stability of Kerio Control is good."
"The initial setup is easy. It only takes 15-30 minutes to deploy."
"What I like the most about OPNsense is that it offers an easy-to-use dashboard for device management and control."
"The DNS-level filtering is impressive for thwarting time scanners."
"One of the most valuable features is the network checking. Additionally, the firewall and web filtering functionalities are highly useful."
"I feel that its valuable features are that it is simple and free."
"The solution is good for a basic firewall for a small business or for home use."
"It's more secure and more reliable."
"The solution has high availability."
"The support team for Fortinet FortiGate needs to be more customer friendly."
"FortiLink is the interface on the firewall that allows you to extend switch management across all of your switches in the network. The problem with it is that you can't use multiple interfaces unless you set them up in a lag. Only then you can run them. So, it forces you to use a core type of switch to propagate that management out to the rest of the switches, and then it is running the case at 200. It leaves you with 18 ports on the firewall because it is also a layer-three router that could also be used as a switch, but as soon as you do that, you can't really use them. They could do a little bit more clean up in the way the stacking interface works. Some use cases and the documentation on the FortiLink checking interface are a little outdated. I can find stuff on version 5 or more, but it is hard to find information on some of the newer firmware. The biggest thing I would like to see is some improvement in the switch management feature. I would like to be able to relegate some of the ports, which are on the firewall itself, to act as a switch to take advantage of those ports. Some of these firewalls have clarity ports on them. If I can use those, it would mean that I need to buy two less switches, which saves time. I get why they don't, but I would still like to see it because it would save a little bit of space in the server rack."
"Cisco Meraki products are rising very quickly in the cloud and the connected era. Meraki products offer much better ROI, upgradability, and manageability."
"Scalability for Fortinet FortiGate needs to be improved. SD-WAN security for this solution also needs some improvement."
"We have an issue with hotel guest vouchers."
"The price of FortiGate should be reduced because there are some other leading products that are cheaper."
"We would like to have the ability to disable some of the security functionalities."
"The initial setup is complex."
"There's also room for improvement in the Traffic Rules. We define networks to use a specific outgoing interface, say VSAT, shore, or marine WiFi, which is okay. But then all we have is a checkbox that says "Use other internet interfaces if this one is unavailable." What we would prefer would be to have a priority list. So if VSAT is unavailable, try to use 4G, etc. We haven't really found a reliable way of doing that in the current release."
"I would like the customer statistics to be more user-friendly. It should explain more what users have been doing throughout the day. Sometimes, it'll just say they downloaded a big file. Meanwhile, they were connected through a VPN."
"The reporting needs to be improved. It is hard to get a domain."
"There isn't a lot to be improved. It works well as it is, but they can maybe improve the reporting side."
"There were certain things I didn't know about it, but I've always been able to just contact our IT company. They've been able to walk me through certain things. It was quite a monumental task to set up a public site. Support really had to help me with setting up the VLANs and walk me through it. It was not possible for me to figure that out on my own, but that's what they're here for. That could have been a little bit easier laid out."
"I would like for there to be a difference between international and national links."
"I would like to be able to inspect https packets for the purpose of virus scanning."
"I would like to see a little improvement in their technical support when you have a problem. I may be a little jaded because I came from Kerio when we could call and get a person on the phone who worked on the product. Every tech had their own demo setup. They had instant messaging capability with the developers. If we found a problem, then we could get a result for it quickly. Now, the product seems to be 24 hours. They have also gone to the model that if you need quicker support, then they now charge you additional for the exact same level of support that they used to give. I am assuming it's the exact same level of support that they say it is. I'm not paying extra for it. That's the biggest flaw with the product."
"The solution could be more secure."
"The reporting part could be better."
"There is room for improvement in SSL inspection."
"I think the most important thing is that it should be easily accessible, but currently, that doesn't seem to be the case. We need a hardware platform that's based on common standards and open computing principles, which would be like a commodity and benefit us greatly."
"When using the solution at the beginning was difficult. There was a steep learning curve."
"We did not like the fact that you have to configure everything with the graphic user interface. We have used other firewalls, such as FortiGate, that you can configure via code. OPNsense is not easy to integrate. When you are deploying via GitHub or another source repository, this is not possible. That's one thing we didn't like much."
"The interface isn't so friendly user. But we have some technicians here who are quite confident with this tool. OPNSense could maybe add sets of rules so it's simpler to manage different groups with particular needs."
"OPNsense showed me some problems when using it in different environments. The problem is integration with a virtual server."
KerioControl is ranked 29th in Firewalls with 54 reviews while OPNsense is ranked 3rd in Firewalls with 36 reviews. KerioControl is rated 8.0, while OPNsense is rated 8.4. The top reviewer of KerioControl writes "With VPN, any of our guys can log in to the system and effectively be on board; helps with our customers all over the world". On the other hand, the top reviewer of OPNsense writes "Robust network security and management offering a user-friendly interface, open-source flexibility, and cost-effectiveness, with challenges regarding initial setup and the absence of official support". KerioControl is most compared with Netgate pfSense, Sophos UTM, Sophos XG, Cisco Secure Firewall and WatchGuard Firebox, whereas OPNsense is most compared with Netgate pfSense, Sophos XG, Untangle NG Firewall, Sophos UTM and FortiGate Next Generation Firewall (NGFW). See our KerioControl vs. OPNsense report.
See our list of best Firewalls vendors.
We monitor all Firewalls reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.