We performed a comparison between Check Point NGFW, Cisco Secure Firewall, and Fortinet FortiGate based on real PeerSpot user reviews.
Find out what your peers are saying about Netgate, Fortinet, OPNsense and others in Firewalls."Check Point has a lot of features. The ones I love are the antivirus, intrusion prevention, and data loss prevention. Apart from that, there is central management through which we can integrate all the firewalls and support them. It makes it easy to manage all the firewalls."
"Sandboxing is the most valuable feature."
"Log storage gives us insights when required."
"They have very good support. In critical scenarios, they provide us very quick solutions, are very well-trained, and have a good knowledge about the product. That is what we expect from them."
"It provides end-to-end resolution."
"The most valuable feature is that we are protected against zero-day threats."
"Check Point has a really cool GUI."
"With the outstanding capabilities of Check Point, we managed to have stable site-to-site VPNs with all our partners and with every other vendor's devices."
"The GUI is among the most valuable features,"
"The CLI is the most valuable feature. This solution is very flexible and offers different functionality including firewalls and VPN connectivity."
"The most valuable feature is that the encryption is solid."
"It is a comprehensive suite and complete package."
"The initial setup is easy."
"Cisco ASA works out-of-the-box. With the setup wizard, it was easy to get it deployed quickly, even by novice IT users."
"If you compare the ASA and the FirePOWER, the best feature with FirePOWER is easy to use GUI. It has most of the same functionality in the Next-Generation FirePOWER, such as IPS, IPS policies, security intelligence, and integration and identification of all the devices or hardware you have in your network. Additionally, this solution is user-friendly."
"Valuable features include AnyConnect, double translations, and an independent IPS module."
"The solution is very easy to understand. It's not overly complex."
"Its stability is the most valuable."
"Valuable features include the Web Application Firewall, and it even has DLP (data leak prevention)."
"Fortinet FortiGate is easy to use."
"The stability and scalability of this solution are satisfactory. Its SD-WAN, VPN, and URL filtering features are very useful."
"The CLI is robust and powerful, enabling rapid, consistent changes via SSH."
"Fortinet FortiGate's most valuable features are ease of use, flexibility, and most of the configuration we can be done using the GUI. When we compare Fortinet FortiGate with other solutions the firewall policy are very easy to understand."
"The most valuable feature of FortiGate is FortiView which provides proactive monitoring."
"I would like there to be a way to run packet captures more easily in the GUI environment. Right now, if we want to read packet captures, we have to do so from the command line."
"There is nothing more that I need in terms of improvement."
"Check Point should include additional management choices; for example, Check Point does not offer full management support via browser."
"I would like the graphic user interface to be easier to use. For example, the NAT policy should be easier to use. Check Point's NAT policy is somewhat confused compared to other competitors."
"Debugging is very complex when compared to Fortinet, for example. That's the worst thing about Check Point. The deployment of the solution is harder than it is with the competitors. But after you've deployed it, the operation is easy."
"It could be more stable and scalable. Check Point price and support could be better."
"The perimeter antivirus can be improved. It's not as good as other leaders."
"There have been a few requests/issues about the Identity Awareness feature."
"For what we use it for, it ends up being the perfect product for us, but it would help if they could expand it into some of the other areas and other use cases working with speeding up and the reliability of the pushes from the policy manager."
"The GUI interface could be improved when compared to other solutions."
"The cloud does not precisely mimic what is on-premises."
"Multiple WAN connections: Even though you can implement more than one interface to outside connections, it is lacking on load balances, etc."
"These firewalls are not for beginners."
"Managing various product integrations, such as Umbrella, is challenging."
"The product's user interface is an area with certain shortcomings where improvements are required."
"The service could use a little more web filtering. If I compare it to Cyberoam, Cyberoam has more the web filtering, so if you want to block a website, it's easier in other solutions than in Cisco."
"Fortinet FortiGate needs to improve the protection, it did not prevent us from being attacked. Additionally, Fortinet FortiGate could provide more features for WAF devices. I should not have to purchase two solutions, it would be a benefit to combine these features into one solution."
"There are mainly two areas of improvement in Fortinet FortiGate— the licensing cost and the timing of upgrading licenses for boxes."
"They've become quite expensive."
"They need to improve their technical support."
"The debugging and troubleshooting has room for improvement."
"Fortinet FortiGate could improve by having more storage in the hardware for log data."
"There could be more integration between the logging and analytical platforms to make it more seamless and integrated."
"We had some issues in the beginning while setting it up, but after doing the firmware update, it is working fine."