Palo Alto Networks PA-Series vs SonicWall NSa comparison

Cancel
You must select at least 2 products to compare!
Fortinet Logo
120,425 views|88,209 comparisons
90% willing to recommend
Palo Alto Networks Logo
266 views|212 comparisons
100% willing to recommend
SonicWall Logo
8,849 views|6,639 comparisons
87% willing to recommend
Comparison Buyer's Guide
Executive Summary

We performed a comparison between Palo Alto Networks PA-Series and SonicWall NSa based on real PeerSpot user reviews.

Find out in this report how the two Firewalls solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI.
To learn more, read our detailed Palo Alto Networks PA-Series vs. SonicWall NSa Report (Updated: May 2024).
771,212 professionals have used our research since 2012.
Featured Review
Quotes From Members
We asked business professionals to review the solutions they use.
Here are some excerpts of what they said:
Pros
"Our project needs to link two sides through the internet. One of these was in Cairo and the other in another city. We used FortiGate as the integrating solution between the two locations, i.e. the Fortinet 30E & 100E.""One of the nice things about FortiGate is that it can be deployed on the cloud or on-premises. You can actually do both. That's the biggest reason why I stick with this solution as opposed to something like Cisco Meraki. Another nice thing is that I can log directly into a FortiGate or get to it through their FortiCloud access products. They're pretty reliable and consistent. One of the reasons why I started using the product was their single pane of management. I can deploy their line of firewalls in conjunction with their switching and access points, and I can manage the entire network from one interface. I don't have to log into one interface for the firewall, another one for the access points, and another one for the switches. These firewalls have access point controller functionality built right into the system, so I don't even have to purchase additional devices to manage them.""The virtual firewall feature is the most valuable. We have around 1,500 firewalls. We did not buy individual hardware, and the virtual firewalls made sense because we don't have to keep on buying the hardware. FortiGate is easier to use as compared to Checkpoint devices. It is user friendly and has a good UI. You don't need much expertise to work on this firewall. You don't need to worry much about DCLA, commands, and things like that.""The SD-WAN function is very developed. It has SD-WAN functionality with security features in one device. We can manage from one single console SD-WAN and the security policy.""Fortinet FortiGate's most valuable features are ease of use, flexibility, and most of the configuration we can be done using the GUI. When we compare Fortinet FortiGate with other solutions the firewall policy are very easy to understand.""The management console is pretty simple, so anyone who understands networking can initially deploy the solution.""The security fabric is excellent.""Fortigate's most valuable feature is that it doesn't need a push policy when writing rules."

More Fortinet FortiGate Pros →

"Palo Alto Networks firewalls offer single-mode panel processing with live scanning.""It offers application-based policy enforcement. Palo Alto Networks firewalls help us recognize protocol anomalies, contrasting with other vendors that may require policies based on port numbers. With Palo Alto Networks, the port number isn't a constraint because their devices handle protocol traffic at Layer 7, allowing for accurate identification of protocol usage and port numbers. They can identify which protocol actually uses which port.""It is stable when you set up something and put it into production. Once it works, you don't have other tasks or actions to perform.""It offers a seamless transition from one option to another, making it exceptionally versatile and user-friendly in an enterprise setting.""The documentation is great.""The product's most valuable feature is web filtering.""The solution provides good customer support.""The solution is easy to manage."

More Palo Alto Networks PA-Series Pros →

"One of the main features is the built-in storage capacity.""The most valuable features to us are the security services which is a critical factor in our deployment. Today we need to have all the security services enabled because firewalls are not enough.""Content Filtering and sandboxing are valuable features.""SonicWall NSa has a user-friendly firmware""Since SonicWall is a UTM, we have enabled all the features: antivirus, IPS, URL filtering, and content filtering. All of these features are working fine.""The filtering is excellent.""I really like the performance; there are no delays and no latency, which is a unique quality in firewalls nowadays.""The most valuable feature is the Global Management System."

More SonicWall NSa Pros →

Cons
"Monitoring and reporting could be better.""The solution's framework needs to be frequently updated in order to have a stable solution.""The web-cache feature which was previously on the FortiGate device, but was deleted with the recent upgrade should be returned. It was a very valuable feature for us.""The product does need better support in the cloud environment. It's not exactly cloud-native right now.""Lacks training for new features.""MTBF: Hardware failure is more common when compared to SonicWall or Cisco ASA.""I would like to see improvements with the antivirus and IPS as they are not working properly all the time.""While FortiGate is cheaper than most other solutions, we're seeing increased license renewal costs. Most of our clients are asking for more significant discounts because the price is going up."

More Fortinet FortiGate Cons →

"There are constant updates for the operating system. It is a nice thing also, but it has its own disadvantages. Continuous updates are there. The users face issues like, how often do I need to update that? Within a period of five months, I'm updating it two or three times. It gives them a feeling that they are not confident about their product and have to update it so frequently.""Pricing flexibility could be an aspect worth considering, as it has been a concern for some of our clients.""Palo Alto should integrate artificial intelligence for security purposes in the background for well-known threats and new risks coming to the market.""The technical support offered by Palo Alto is an area of concern where improvements are required.""The product's high prices are an area of concern where improvements are required.""The product must provide multiple threat detection features.""With Palo Alto Networks PA-Series, I find that the support team takes a long time to resolve the issues that a user may face during the use of the product.""Palo Alto Networks PA-Series is complicated to configure compared to one of its competitors."

More Palo Alto Networks PA-Series Cons →

"A room for improvement in SonicWall NSa is the log server because it could be more user-friendly compared to Fortinet and Palo Alto Networks. My company has many rule sets up for review, so sometimes, my team needs to use Excel for filtering, but the UI cannot support the Excel function.""It would help us a lot of SonicWall sent us more information about the latest updates and things that are changing.""Needs a more detailed reporting feature.""It would be useful to have an application firewall that prevents the outside world from seeing your private IPs. You don't need to publicize your private IPs to the outside world, and you can create a barrier, like a proxy server.""The logging, reporting, and storage capacity size could improve in a future release.""The dynamics needs to be improved. The solution is not very compatible compared to the market products.""It is very modular and with native resources which are much lower than its competitors.""The cost could be lower. There could also be more flexibility for smaller companies."

More SonicWall NSa Cons →

Pricing and Cost Advice
  • "Fortinet has one or two license types, and the VPN numbers are only limited by the hardware chassis make."
  • "These boxes are not that expensive compared to what they can do, their functionality, and the reporting you receive. Fortinet licensing is straightforward and less confusing compared to Cisco."
  • "Go for long term pricing negotiated at the time of purchase."
  • "Work through partners for the best pricing."
  • "The value is the capability of having multiple services with one unique license, not having the limitation per user licensing schema, like other vendors."
  • "Easy to understand licensing requirements."
  • "​We saved a bundle by not needing all the past appliances from an NGFW.​"
  • "The cost is too high... They have to focus on more features with less cost for the customer. If you see the market, where it's going, there are a lot of players offering more features for less cost."
  • More Fortinet FortiGate Pricing and Cost Advice →

  • "Palo Alto’s pricing is way higher than any other solution provider."
  • "While other firewalls may come with a higher cost, when you consider the cost in relation to the services and features that Palo Alto offers, it is clear that Palo Alto is delivering excellent value."
  • "Compared to other vendors, Palo Alto Networks PA-Series is expensive."
  • "Palo Alto is more expensive than FortiGate."
  • "The pricing is a bit on the higher side."
  • "The product is expensive."
  • "We have to pay a yearly licensing fee for the solution."
  • "The tool's pricing was reasonable when we bought the product. We pay around 60,000 dollars per year."
  • More Palo Alto Networks PA-Series Pricing and Cost Advice →

  • "Additional resources are too expensive."
  • "Considering the market, I believe that the price of this solution is great."
  • "In our evaluation, we found that the costs of deploying the solution, and also purchasing the hardware and licenses, were very attractive."
  • "Licensed features provide application control, content filtering, antivirus, and anti-malware all in a single appliance."
  • "The CPUs are not able to compete with a similar price point to the Fortinet, WatchGuard, or Palo Alto product."
  • "A firewall doing anti-spam might be a low cost solution, but it is not your best strategy."
  • "You need their analyzer to properly generate reports. This is an expensive, licensed feature, with a complex application or appliance back-end."
  • "If you want to connect more than five concurrent users by VPN then you have to pay an additional fee."
  • More SonicWall NSa Pricing and Cost Advice →

    report
    Use our free recommendation engine to learn which Firewalls solutions are best for your needs.
    771,212 professionals have used our research since 2012.
    Questions from the Community
    Top Answer: When you compare these firewalls you can identify them with different features, advantages, practices and usage at… more »
    Top Answer:From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know… more »
    Top Answer:As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite… more »
    Top Answer:The reporting feature and application ID functionality within Palo Alto Networks PA-Series are incredibly valuable to… more »
    Top Answer:The licensing is great. We renew it, and it works. The pricing is fair. I rate the pricing a five out of ten.
    Top Answer:I don't have any specific suggestions for improving the Palo Alto Networks PA-Series at the moment. I find it to be a… more »
    Top Answer:The most valuable feature I've found is VPN and web protection, particularly with navigation assessment. We use the… more »
    Top Answer:The solution is expensive. Its pricing is based on the number of users.
    Top Answer:The web interface administration of SonicWall NSa could be improved. Compared to Sophos and FortiGate, making rules is… more »
    Comparisons
    Also Known As
    FortiGate 60b, FortiGate 60c, FortiGate 80c, FortiGate 50b, FortiGate 200b, FortiGate 110c, FortiGate
    NSA 250M, NSA 2600, NSA 3600, NSA 4600, NSA 5600, Dell SonicWALL NSA
    Learn More
    Overview

    Fortinet FortiGate enhances network security, prevents unauthorized access, and offers robust firewall protection. Valued features include advanced threat protection, reliable performance, and a user-friendly interface. It improves efficiency, streamlines processes, and boosts collaboration, providing valuable insights for informed decision-making and growth.

    PA-Series constitute the full range of our ML-Powered Next-Generation Firewall physical appliances that are easy to deploy into your organization’s network and purposefully designed for simplicity, automation, and integration. No matter where you need protection, our PA-Series ML-Powered Next-Generation Firewalls are architected to provide consistent protection to your entire network – from your headquarters and office campus, branch offices and data center to your mobile and remote workforce.

    SonicWall NSa dispenses advanced threat protection using a high-performance security platform. The NSa series implements intuitive deep learning technologies in the SonicWall Capture Cloud Platform to dispatch the automated real-time threat detection and deterrence enterprise organizations need today. SonicWall Network Security appliance (NSa) series is best for mid-sized organizations to distributed enterprises and data centers.

    SonicWall NSa series next-generation firewalls (NFGWS) combine two very robust security ideologies to deliver advanced threat protection to keep users’ networks safe. Boosting SonicWall’s multi-engine advanced threat protection (ATP) is their Real-time Deep Memory Inspection (RTDMI™). The RTDMI intuitively identifies and stops aggressive zero-day threats and vicious malware by investigating memory directly. This real-time process allows SonicWall RTDMI to be accurate, lessen false positives and discover and alleviate malicious threats and attacks. SonicWall’s single-pass Reassembly-Free Deep Packet Inspection (RFDPI) will audit every byte of each and every packet by investigating both outbound and inbound traffic on the firewall. By combining the SonicWall Capture Cloud Platform along with on-box offerings such as intrusion prevention, web/URL filtering, and anti-malware, the NSa series is able to block the most malicious and dangerous threats at the gateway.

    Additionally, SonicWall firewalls supply absolute protection by executing complete inspection and decryption of SSH and TLS/SSL encryption connections - no matter the port or protocol. The firewall takes a deep dive into each and every packet (the header and data) routing out any anomalies, zero-day intrusions, threats, and protocol non-compliance. Users can also define unique criteria specific to their organization to ensure their networks remain safe. This aggressive deep packet inspection is able to identify and block malicious attacks, stop dangerous malware downloads, prevent the spread of infections, and defeat command and control (C&C) communications and data exfiltration. Protocols involving inclusion and exclusion allow users complete control to decide, based on specific governance policies, organizational policies, or government or legal compliance, which traffic is to be investigated for decryption or inspection.

    SonicWall Nsa offers enterprise organizations the network control and fluid flexibility they desire using an intrusion prevention system (IPS), VPN, real-time visualization, and other advanced powerful security features, making it a popular firewall solution in today's marketplace.

    Reviews from Real Users

    “The features that I have found most valuable are the firewalling, which is very good, and the GUI which is very intuitive. It is easy to use and provides great security.” - Network Engineer at a maritime company

    “What's valuable in SonicWall NSa is the ATP (advanced threat protection). It can protect users from malicious links. SonicWall NSa also has a Sandboxing service that is very helpful for us, especially when end users accidentally click on malicious links. Another valuable feature of this solution is that it is very useful for site-to-site VPN connectivity issues. SonicWall NSa has very good hardware. I also love that SonicWall has very good technical support, who are very knowledgeable, provide good suggestions, and they're easy to reach.” - Mohammed M., Network Administrator at Transgulf Readymix

    Sample Customers
    1. Amazon Web Services 2. Microsoft 3. IBM 4. Cisco 5. Dell 6. HP 7. Oracle 8. Verizon 9. AT&T 10. T-Mobile 11. Sprint 12. Vodafone 13. Orange 14. BT Group 15. Telstra 16. Deutsche Telekom 17. Comcast 18. Time Warner Cable 19. CenturyLink 20. NTT Communications 21. Tata Communications 22. SoftBank 23. China Mobile 24. Singtel 25. Telus 26. Rogers Communications 27. Bell Canada 28. Telkom Indonesia 29. Telkom South Africa 30. Telmex 31. Telia Company 32. Telkom Kenya
    Information Not Available
    Orange County Rescue Mission, First Source, Michaels & Taylor, Green Clinic Health System, Aspire Chiltern Skills and Enterprise Centre, UnitedStack, Faith Lutheran College Redlands, Celtic Manor Resort, Star Kay White, Air Works, Unimat Life, NHS Yorkshire and Humber Commissioning Support (YHCS), Hutt City Council, Mato Grosso do Sul, Nspyre
    Top Industries
    REVIEWERS
    Comms Service Provider16%
    Computer Software Company9%
    Financial Services Firm8%
    Manufacturing Company7%
    VISITORS READING REVIEWS
    Educational Organization20%
    Computer Software Company15%
    Comms Service Provider8%
    Manufacturing Company6%
    REVIEWERS
    Computer Software Company35%
    Manufacturing Company24%
    Financial Services Firm12%
    Government6%
    VISITORS READING REVIEWS
    Computer Software Company26%
    Manufacturing Company12%
    University6%
    Comms Service Provider6%
    REVIEWERS
    Manufacturing Company18%
    Educational Organization8%
    Retailer8%
    Construction Company8%
    VISITORS READING REVIEWS
    Computer Software Company16%
    Comms Service Provider7%
    Government7%
    Retailer6%
    Company Size
    REVIEWERS
    Small Business48%
    Midsize Enterprise23%
    Large Enterprise30%
    VISITORS READING REVIEWS
    Small Business27%
    Midsize Enterprise32%
    Large Enterprise40%
    REVIEWERS
    Small Business41%
    Midsize Enterprise17%
    Large Enterprise41%
    VISITORS READING REVIEWS
    Small Business41%
    Midsize Enterprise19%
    Large Enterprise41%
    REVIEWERS
    Small Business58%
    Midsize Enterprise20%
    Large Enterprise22%
    VISITORS READING REVIEWS
    Small Business40%
    Midsize Enterprise16%
    Large Enterprise44%
    Buyer's Guide
    Palo Alto Networks PA-Series vs. SonicWall NSa
    May 2024
    Find out what your peers are saying about Palo Alto Networks PA-Series vs. SonicWall NSa and other solutions. Updated: May 2024.
    771,212 professionals have used our research since 2012.

    Palo Alto Networks PA-Series is ranked 16th in Firewalls with 28 reviews while SonicWall NSa is ranked 19th in Firewalls with 80 reviews. Palo Alto Networks PA-Series is rated 8.6, while SonicWall NSa is rated 7.8. The top reviewer of Palo Alto Networks PA-Series writes "Offers trained customer support, stability and ease of use ". On the other hand, the top reviewer of SonicWall NSa writes "Great performance and security with reasonable pricing". Palo Alto Networks PA-Series is most compared with OPNsense, Juniper SRX Series Firewall, Sophos XG, Netgate pfSense and WatchGuard Firebox, whereas SonicWall NSa is most compared with SonicWall TZ, Meraki MX, Sophos XG, Cisco Secure Firewall and Netgate pfSense. See our Palo Alto Networks PA-Series vs. SonicWall NSa report.

    See our list of best Firewalls vendors.

    We monitor all Firewalls reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.