We performed a comparison between Check Point CloudGuard Network Security and Palo Alto Networks NG Firewalls based on our users’ reviews in five categories. After reading all of the collected data, you can find our conclusion below.
Features: Check Point CloudGuard Network Security provides a range of valuable features including VPN Blade, IPS Blade, URL filtering, and Applications Control Blade. Palo Alto Networks NG Firewalls excel in areas such as embedded machine learning, robust security capabilities, and a unified platform.
Check Point CloudGuard Network Security has room for improvement in its support system, cluster creation on AWS, data protection visibility, DLP feature, user interface, integration, cost reduction, documentation, and flexibility in deployment. Palo Alto Networks NG Firewalls could benefit from improvements in customization, network performance in the Middle East, advanced features, integration, usability, GUI interface, training materials, SSL inspection, and external dynamic list feature.
Service and Support: While some customers appreciate the technical support provided by Check Point, others are dissatisfied with the response time. Palo Alto Networks has customers who praise their knowledgeable support team, but there are also complaints about long wait times and issues with their support ticketing system. In summary, the customer service quality for both products differs among users.
Ease of Deployment: While some find it easy, simple, and straightforward, others mention that it may be complex and require technical expertise. Users generally consider the initial setup of Palo Alto Networks NG Firewalls to be straightforward and not complex. They find it easy and user-friendly.
Pricing: Check Point CloudGuard Network Security is known for its higher setup cost, however, it provides strong security measures and good value. Palo Alto Networks NG Firewalls may have higher pricing compared to other options, yet it is regarded as dependable and offers high-performance capabilities.
ROI: Check Point CloudGuard Network Security delivers a significant return on investment, ranging from 80-85%. Users have experienced the advantages of this solution within a short timeframe. Palo Alto NG Firewalls provide enhanced visibility, reporting capabilities, and overall security measures, leading to a robust return on investment.
Comparison Results: Check Point CloudGuard Network Security is the preferred option when comparing it to Palo Alto Networks NG Firewalls. Users appreciate its user-friendly interface, centralized management, and ability to scale. It also focuses on cloud security and offers advanced threat prevention and detection. Additionally, it provides auto-scaling, malware prevention, and exploit resistance.
"We were looking for the VPN feature and controlling the inflow and outflow of all the traffic within the site and across the sites. We are also using it for the VPN and VLANs."
"The solution is stable."
"The solution is extremely reliable."
"I really like the captive portal feature for our guest network. It has nice VLAN features in terms of separating our network. The anti-virus is also good."
"Fortinet FortiGate is stable. It's used across all the countries, this is the way most multinationals run their system."
"Valuable features include the Web Application Firewall, and it even has DLP (data leak prevention)."
"Its stability is the most valuable."
"Security management tool that's easy to integrate and easy to work with. No issues found with its stability and scalability."
"Check Point CloudGuard Network Security has a beautiful threat emulation different from the market."
"Its centralized control, ease of use, and flexibility are the most valuable for our data center security."
"The central management feature is a big plus, allowing us to manage both local and cloud gateways from one platform."
"The capability to auto-scale in or out, depending on the resource demand is great."
"The tool's most valuable features are threat prevention and protection mechanisms."
"The most valuable feature for us is the scale set, which allows us to scale horizontally, vertically and dynamically depending on the traffic load."
"The features of the solution which I have found most valuable are its flexibility and agility. It's a fully scalable solution, from our perspective. We can define scaling groups and, based on the load, it will create new instances. It's truly a product which is oriented toward the cloud mindset, cloud agility, and this is a great feature."
"Moving into the cloud without having to change a lot of our internal processes and retrain staff is one of the biggest benefits of this solution."
"The WildFire reporting and Cortex XDR platform have huge infrastructures in the cloud that secures the network against threats. So, we have the potential on the system, specifically for users, where we take care of this since the user is the most dangerous. We get reports back from WildFire on a minute-by-minute basis, rather than a daily or weekly update like I used to with different AV vendors. These features can detect viruses and malware more quickly, which is super important."
"The most valuable features are web filtering and application filtering."
"The most important thing is that it's really user-friendly. I have almost stopped using the CLI because I like the graphical interface. You can do whatever you want on a single screen, including all the configuration and implementation, using Panorama. You don't have to switch from one place to another."
"The first time I came across these firewalls, what surprised me the most was their web user interface. It is complete and gives you a lot of information. You can do 80% of the things related to your network and firewall through the web UI. In some of the other devices, the UI is not as complete. App-ID is also very valuable in customer networks. When you're seeing a lot of traffic in your network, you can see in your web UI which users have the applications that are consuming the most bandwidth. You have a broad context, which is very good."
"Application control, IPS, and sandboxing towards the cloud are the most valuable features. It is a very user-friendly product with a very easy-to-use interface."
"The solution is very stable."
"I like the remote access and URL filtering features that are available on global products."
"IoT security is most valuable in the current version. Content IDs, DDoS protection, zone protection, and DLP are the most prominent features in Palo Alto Networks NG Firewall. It is easier to configure than other solutions."
"A sandbox would be good in order to be able to inspect the emails containing spam and be able to validate the emails that contain malware, prior to delivering to the customer."
"One of the features that I would like to have is to do with endpoint production, it should be integrated. For example, the firewall gets notified of any kind of forensic event that needs to be done, such as if there is a ransomware attack and how it originated, all those records have to be available from the firewall, which is not."
"They should offer special pricing to premium partners and customers."
"Currently, without the additional reporting module, we only have access to basic reporting."
"The integration with third-party tools may be something that they should work on."
"Tunnel flapping was one of the major things I had seen wherein your internet link remains but your VPN tunnel is down. However, since I got a fix from the TAC team, I have not noticed it, but the customer complained a few times that they couldn't access the internet because of this problem."
"There are SD-WAN network monitoring, SD-WAN features, Industrial Databases, Internet of Things, Detection, etc., however, we do have not licenses for those features. We thought that if you bought a product, you should have all of the features it offers. Why should you need to make so many extra purchases to enable features? They should have one price for the entire offering."
"With the addition of some features, it is possible that FortiGate can be used in all verticals."
"The initial setup is difficult. It took me three tries to get it right. The setup took two or three hours."
"The initial deployment using the ARM template in Azure was straightforward, but migrating to Terraform added complexity, although we managed to make it work."
"At the cost level, the solution is somewhat expensive."
"CloudGuard functions just like any other firewall. It functions very well. The only thing that could maybe be improved would be to integrate some tools that are not integrated with the SmartConsole, like the SmartView Monitor that we need to open on a different application to access."
"The only pain points we have had with it were when we did major version upgrades. Rather than being able to do incremental upgrades on those, we had to completely redeploy. I know that has changed recently, but we had some hiccups when we did the upgrades. This is the only issue we have had."
"The memory and hard disk capability could be strengthened."
"It's meeting our needs at this time. If I could make it better, it would be by making it more standalone. That would be beneficial to us. I say that because our current platform for virtualization is VMware. The issue isn't any fault of Check Point, it's more how the virtualization platform partners allow for that partnership and integration. There has to be close ties and partnerships between the vendors to ensure interoperability and sup-portability. There is only so far that Check Point, or any security vendor technology can go without the partnership and enablement of the virtualization platform vendor as it relies on "Service Insertion" to maintain optimal performance."
"Check Point CloudGuard Network Security needs to improve the management of the actual firewalls. Improvement is also needed for the consolidated UI of different security aspects."
"I don't deal with it from a day-to-day perspective, but I can say that the evidence that I typically need is there, but sometimes, it's a task to actually get it and pull it out. They can make it easier to gather that evidence."
"I would like to see more integration."
"Overall it is good. It is reliable and easy to understand. However, the monitoring feature could be improved."
"There is room for improvement in the area of customer service."
"The VPN connectors should be better. We had some challenges in terms of the VPN with Palo Alto Networks NG Firewall, and that's one of the main reasons why we moved to Sophos. Its load handling can also be improved. There were challenges when traffic was high. During peak business hours, it did not function very well. There was a lot of slowness, and the users used to complain, especially when they were connecting from outside. We even reported this to the support team. Their support should also be improved. Technical support was a bit of a concern while using this solution. We didn't get very good support from the Palo Alto team."
"If you enable SSL you will face a problem. The throughput of the firewall will be degraded. SSL is a big issue on all firewalls. All products suffer from issues with SSL, but Palo Alto firewalls suffer more from it."
"The scalability compared to other products is not good. You need to change the box whenever you want your number of connection sessions to increase."
"The initial configuration is complicated to set up."
More Check Point CloudGuard Network Security Pricing and Cost Advice →
More Palo Alto Networks NG Firewalls Pricing and Cost Advice →
Check Point CloudGuard Network Security is ranked 8th in Firewalls with 121 reviews while Palo Alto Networks NG Firewalls is ranked 5th in Firewalls with 164 reviews. Check Point CloudGuard Network Security is rated 8.6, while Palo Alto Networks NG Firewalls is rated 8.6. The top reviewer of Check Point CloudGuard Network Security writes "Highly reliable, great visibility, and centralized management". On the other hand, the top reviewer of Palo Alto Networks NG Firewalls writes "We get reports back from WildFire on a minute-by-minute basis". Check Point CloudGuard Network Security is most compared with VMware NSX, Azure Firewall, Akamai Guardicore Segmentation, Cisco Secure Firewall and Google Cloud Armor, whereas Palo Alto Networks NG Firewalls is most compared with Check Point NGFW, Azure Firewall, Meraki MX, Sophos XG and Netgate pfSense. See our Check Point CloudGuard Network Security vs. Palo Alto Networks NG Firewalls report.
See our list of best Firewalls vendors.
We monitor all Firewalls reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.