We performed a comparison between Check Point NGFW and Zscaler Internet Access based on real PeerSpot user reviews.
Find out in this report how the two Firewalls solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI."The Fortinet FortiGate local partners were good. I did not have direct contact with Fortinet support."
"The technical support is great."
"The most valuable features of Fortinet FortiGate are the rules and quality of service."
"The most valuable features of Fortinet FortiGate are the APIs. They are the most widely known."
"The ability to set up remote systems is the most valuable feature."
"I really like the captive portal feature for our guest network. It has nice VLAN features in terms of separating our network. The anti-virus is also good."
"The most valuable feature of Fortinet FortiGate is the simple configuration."
"Secure, user-friendly, stable, and scalable network security solution. Installation is straightforward."
"We have found the solution to be scalable."
"The simplicity of the access control is the most valuable feature for us. It gives us the ability to easily identify traffic that is either being allowed or denied to our network."
"The ability to split single hardware into multiple virtuals along with support for dynamic routing using BGP is very useful for our environment."
"Check Point's rule management helped us simplify access control. At one point, we had more than 1,000 access control policies, and it was challenging to manage them all. We cut it down to 300 policies using Check Point's management features, and we are still working on reducing this further to achieve the best way to manage policies. Its logging and monitoring enable us to trace and investigate suspicious traffic."
"In the four years I have worked on the five firewalls we have not had any downtime caused by stability issues."
"We can precisely determine who has access rights and who is granted permission, regardless of their connection point."
"Check Point NGFW generates very helpful reports based on the logs of the activated features."
"I have to say that it was Application Control and web filtering are excellent."
"Zscaler Internet Access's best feature is the granular policy controls."
"Overall, we're very happy with our product."
"The VPN is valuable, as the whole technology is very different from a traditional VPN."
"Zscaler covers all the features needed to replace a VPN or proxy solution. They are good. They've been on the market for 15 years now, so they are mature enough."
"After a proper implementation, the maintenance is very low."
"The most valuable features I found in Zscaler Internet Access are the restriction of users for a particular URL, the security feature related to stopping DDoS, and the VPN."
"The most valuable features of Zscaler Internet Access are it's on the cloud, high network performance, and the interception of users is very easy."
"Tech support is good."
"The solution lacks sufficient filtering."
"The updates Fortinet provides are sometimes unstable."
"They should improve high CPU and memory usage that occurs."
"One issue that I have had is that sometimes I need to monitor the traffic, so I need to filter it according to the user and which user is using it the most. I experience a bottleneck most of the time, particularly at the peak time when the number of contracts and users are at maximum."
"The firewall engine is not so strong as of now, in my opinion... My second concern is that, while they have Zero-day vulnerability and anti-malware features, the threat engine needs to be strengthened, its efficiency can be increased."
"We had some issues in the beginning while setting it up, but after doing the firmware update, it is working fine."
"Reporting is limited to providing an external appliance for improving the reporting capabilities of the FortiAnalyzer. It does not offer a central management and is also sold separably as an appliance."
"The solution could be more user friendly."
"Check Point is not a cheap solution and it's always painful to see exactly how much we need to spend on this."
"It would be beneficial if Check Point included more licenses bundled with the base model, reducing the need for additional subscription charges for essential functionalities."
"They could make the licensing a bit easier to deal with, especially for enterprise-level options."
"Our SAM rule is also not working to block the IP address which we don't allow in our organization so we have to create a traditional rule base block which is a time-consuming job for me and my team."
"With the increase of volume of traffic, the required resource/hardware to properly run goes up. Therefore, the hardware engineering to architecture flow has to be more efficient."
"The end-user VPN could be improved. It could benefit from some modification."
"Hopefully, in the future, these will be much more plug-and-play and orchestrated from a single administration console."
"Of the areas of improvement that I want to see in this product, without a doubt, one is the technical support. In this time of globalization, with so many cyberattacks and risks, the Check Point support staff take a long time to attend to incidents due to the high demand."
"The reporting functionality could be a bit easier to use. There is a reporting function, but it's quite hard to do any good reporting, from a user-management perspective. For example, if a department manager wants to know how his department is using the web, there is a way to get the data, but it's quite cumbersome to get it and show it well. And that's true for comparing between departments."
"In terms of usage, here in the GCC, it's still growing a growing market, so the combination of DLP, data leak prevention, to a certain extent is fine. But what it requires is user-based access or role-based access. The solution needs to grow into that, which definitely takes time. There's not an easy way to integrate it, when you have a cloud-based solution."
"Zscaler Internet Access can improve by adding traffic filtering based on the DNS."
"Zscaler does not provide dedicated IPs to each customer. Hence, they share a pool of IPs provided by Zscaler. There is a chance of blacklisting these IPs. I also do not like the multi-management portal."
"The OS capabilities and WSL support could be improved."
"What could be improved in Zscaler Internet Access is its price. It could be cheaper."
"They could provide more time for the onboarding the training of an IT person."
"Zscaler should continue to make the user interface better. They should also improve the backup network and continue to expand it so that it can handle larger numbers of customers."
Check Point NGFW is ranked 5th in Firewalls with 277 reviews while Zscaler Internet Access is ranked 2nd in Secure Web Gateways (SWG) with 46 reviews. Check Point NGFW is rated 8.8, while Zscaler Internet Access is rated 8.2. The top reviewer of Check Point NGFW writes "Good antivirus protection and URL filtering with very good user identification capabilities". On the other hand, the top reviewer of Zscaler Internet Access writes "Provides integrated CASB and file sandboxing but could be less expensive ". Check Point NGFW is most compared with Palo Alto Networks NG Firewalls, Sophos XG, Cisco Secure Firewall, Netgate pfSense and Azure Firewall, whereas Zscaler Internet Access is most compared with Cisco Umbrella, Microsoft Defender for Cloud Apps, Netskope , Prisma Access by Palo Alto Networks and Appgate SDP. See our Check Point NGFW vs. Zscaler Internet Access report.
We monitor all Firewalls reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.