Check Point NGFW vs Fortinet FortiGate vs Untangle NG Firewall comparison

Cancel
You must select at least 2 products to compare!
Check Point Software Technologies Logo
27,863 views|17,209 comparisons
96% willing to recommend
Fortinet Logo
123,063 views|89,961 comparisons
90% willing to recommend
Untangle Logo
13,707 views|9,326 comparisons
94% willing to recommend
Comparison Buyer's Guide
Executive Summary

We performed a comparison between Check Point NGFW, Fortinet FortiGate, and Untangle NG Firewall based on real PeerSpot user reviews.

Find out what your peers are saying about Netgate, Fortinet, OPNsense and others in Firewalls.
To learn more, read our detailed Firewalls Report (Updated: March 2024).
768,578 professionals have used our research since 2012.
Featured Review
Quotes From Members
We asked business professionals to review the solutions they use.
Here are some excerpts of what they said:
Pros
"By far, it's the best security solution one can adopt for their organization.""It improves user productivity and frees up system resources.""It is easy to use, and its management is the best. Check Point has a great unified management solution for firewalls and security products.""Some of the most valuable features are URL filtering, web filtering, and content filtering.""Admins and executives are more at ease with the compliance engine within the software as it measures how many of the security requirements we're compliant with, making their work much more accessible from that standpoint.""The different hardware models focus on a wide spectrum of the market, so any company can choose a model that makes sense for them from the range.""The most valuable feature of Check Point NGFW is it is a complete solution for protecting not only the network but the applications. Additionally, it provides a hybrid cloud solution.""The most valuable feature is the Stateful Inspection, which was developed by Check Point."

More Check Point NGFW Pros →

"The inspection and web security features are most valuable.""The stability of the solution is excellent, as it is with other Fortinet products.""The interface is very user-friendly and I like it very much.""The simplicity of the configuration and the stability of the product are most valuable. The VPN concentrator is very useful.""It blocks the vulnerabilities that can negatively impact us.""Its user interface is good, and it is always working fine.""It performs very well.""The most valuable features of Fortinet FortiGate are the APIs. They are the most widely known."

More Fortinet FortiGate Pros →

"The web blocking for my clients and the application control are valuable.""All features are useful. We are using premium features such as bandwidth sharing, failover, web filters, SSL controls, antivirus, and VPN. We use these features to the fullest. These features are available in the paid firewall license, not the free one.""The product’s most valuable features are endpoint protection management, load balancing, and connectivity with Active Directory.""The interface is very good.""What I like about this product, which is the reason that we continue to use it, is that you can install the software version on your own hardware. In case there is a problem with the hardware, we can just install the firewall in another machine and restore the configuration.""It is not attached to an appliance, meaning if you get a good PC/server, then you can already run a firewall.""NG Firewalls allow us to permit or deny applications we don't want to run. We also use content filtering, SSL inspection, and all the other things we run on the firewall to keep our clients protected and ensure they're not going where they shouldn't. It's a great firewall that works as intended.""We find the web filter very valuable."

More Untangle NG Firewall Pros →

Cons
"We looked very closely at ArcSight's solution because it's a multi-vendor solution. With ArcSight we could have Check Point, we could have RSA, we could have any brand and integrate several brands, from a security point of view. With Check Point, you cannot do so, you can integrate with Check Point products.""The naming in the inline layers and ordered layers needs improvement. It makes things very complicated. I've seen quite a lot of people saying that. For audit policies, it is okay since it's very simple to see. However, this area is for very large organizations, which have too many policies, and they need to share all these policies. For small to medium-sized businesses, they don't need it. Even if somebody has 500 rules, if they try to use it, it can be very confusing.""When you want to open the gateway by double-clicking on the interface, sometimes it can cause silly problems such as freezing.""Reporting has to be improved.""The antivirus is not as effective as it could be because updates are not that frequent.""Check Point needs to work on hardware problems also.""One of my issues with Check Point is the stability. There have been too many bugs, over the years, when I compare them with other vendors. Their QA team should do better work before releasing their GA versions.""One feature I have yet to see implemented is authenticated email support for alerts generated via the GW or SMS."

More Check Point NGFW Cons →

"The license renewal process, annual renewal price, and the web application firewall features should be improved.""The captive portal could be improved.""The solution could be more user friendly.""Some of the features in the graphical user interface do not work, which requires that we used the command-line-interface.""We would like to see an upgrade to the VPN feature, we are using the VPN from outside of our office and there is a limitation to 10 connections, more connections would be suitable.""Sometimes you do need to know some CLI commands, so it's a bit harder for technicians or new people that don't know it.""There are some complex administration tasks in their administration portal. That needs to be improved.""Its customer service could be better."

More Fortinet FortiGate Cons →

"The ability to setup a DDNS for each WAN independently would be a very handy feature.""The product needs to have a better support group for its online support, specifically for its help desk.""The product needs to improve its mobile application.""For the web filter, I think they can do better especially on the free model.""The web content filtering needs improvement.""The hardware can be improved.""We seek the availability of the hardware in our region. The hardware-based firewall from Untangle is currently not available in our region. It should have threat protection on a real-time basis. This feature, available in Check Point and Sandstorm kind of scenario, is currently missing in Untangle NG Firewall.""The management console for partners is a bit tricky (buggy)."

More Untangle NG Firewall Cons →

Pricing and Cost Advice
  • "I don't think the product's pricing is a good value. I feel it's very overpriced. I feel a lot of the features for a next gen firewall are there. But I feel it's overpriced, because of the stability issues. As far as support goes, I really can't speak to direct Check Point support, but the third-party was pretty terrible... As far as the licensing goes, it's pretty complex. If anybody was to purchase the Check Point product, definitely make sure they have an account rep come on site, and explain it line by line, what each thing is. It's not straightforward. It's very convoluted. There's no way you could just figure it out by looking at it."
  • "Check Point solutions are very expensive here. They're good, but they're expensive... Check Point is only useful for customers that have a big IT budget."
  • "The price is high in comparison to other solutions."
  • "We pay $5,000-$6,000 a year."
  • "Maybe the pricing is a bit high but you get the durability and the duration."
  • "Licensing issues may be confusing at times."
  • "It is quite an expensive product, although security is a top priority."
  • "This product is not cheap and there are additional costs that depend on what model or package that you buy."
  • More Check Point NGFW Pricing and Cost Advice →

  • "Fortinet has one or two license types, and the VPN numbers are only limited by the hardware chassis make."
  • "These boxes are not that expensive compared to what they can do, their functionality, and the reporting you receive. Fortinet licensing is straightforward and less confusing compared to Cisco."
  • "Go for long term pricing negotiated at the time of purchase."
  • "Work through partners for the best pricing."
  • "The value is the capability of having multiple services with one unique license, not having the limitation per user licensing schema, like other vendors."
  • "Easy to understand licensing requirements."
  • "​We saved a bundle by not needing all the past appliances from an NGFW.​"
  • "The cost is too high... They have to focus on more features with less cost for the customer. If you see the market, where it's going, there are a lot of players offering more features for less cost."
  • More Fortinet FortiGate Pricing and Cost Advice →

  • "It is the most cost-effective to use."
  • "We pay $350 USD per year for the solution. There are no additional costs. As long as you're not using a physical appliance, that's all you need."
  • "It is not expensive. The best part is that it is based on the pay-per-use kind of scenario. An increase or decrease in the number of people doesn't make any difference. We are really happy about using this particular scenario."
  • "It is not expensive. It is cheaper than Fortinet."
  • "The pricing model is better than with SonicWall."
  • "This is not an expensive product. It is affordable and there are different packages available depending on the features that you need, or the sector that you are in."
  • "Untangle is open-source software. So, you can get it for free. That has been a benefit, especially for the residential users because it is free. The license costs start at $25 a month for some additional features, including higher tiers of security intrusion prevention. The free version comes with intrusion detection, and then the license version has intrusion prevention. It also has some additional things for active directory connectors, etc. It starts at $25 a month to cover 12 devices. Then it goes up from $25 to $50 a month for 12 to 25 devices. That's where it really doesn't scale out per site. If you have a site that has more than 50 devices on it, then Untangle quickly becomes cost prohibitive in comparison to several other competitors."
  • "Usually, it's about $350 a year for 12 users, and it's about $600 for 50 users. It's very reasonable as compared to the others. One of the reasons is that they're all open-source. You just buy their appliance and put it in until it dies. Because it's run under open platforms, mine seems to always work on older equipment. I've taken old equipment and put a new hard disk in it. I have taken about nine-year-old computers and put their operating system on them, and ran them like a champ. The only thing that changed was the hard drive because I don't trust a hard drive that's more than three to four years old."
  • More Untangle NG Firewall Pricing and Cost Advice →

    report
    Use our free recommendation engine to learn which Firewalls solutions are best for your needs.
    768,578 professionals have used our research since 2012.
    Comparison Review
    Anonymous User
    I have used both Sophos and Fortinet products in production and I have found the Sophos UTM appliances (hardware and virtual) to be a better fit most of the time -- with a few caveats which I will touch on below. In both instances, the transition from TMG will be mostly straightforward. The main hang-ups will be with the VIP/load balancing and SSL. For some reason that completely escapes me, both of these vendors make getting valid certificates onto their boxes unnecessarily difficult -- the Fortinet appliances more so than the Sophos UTM appliances. At one point a Fortinet engineer had to write an entire manual on how to get an SSL certificate uploaded successfully on the 4.x firmware Sophos: The one feature that is missing (and this makes some amount of sense) from the Sophos appliance is BITS caching for updates. Other than that, Sophos offers a full replacement for TMG on UTM9. The XG platform also offers a replacement for the TMG; however, some of the rumblings about upcoming releases suggests that Sophos is going to give XG the Apple iOS treatment and "streamline" the interface...potentially cutting out/hiding some functionality. On the effectiveness of the NGFW, Sophos is mostly good but has a few issues blocking all pieces of an application. For instance, we had to build custom blocking rules for OpenVPN (the vpn was being used to bypass the content filter) because the default Application Control wasn't effectively blocking the application. Fortinet: If it… Read more →
    Questions from the Community
    Top Answer:I have experience on both from Disti and channel experience. Please find below my comments (nothing new as such)… more »
    Top Answer:Azure Firewall is easy to use and provides excellent support. Valuable features include integration into the overall… more »
    Top Answer:Check Point NGFW provides essential security, featuring no-obligation access for secure connections, strong intrusion… more »
    Top Answer: When you compare these firewalls you can identify them with different features, advantages, practices and usage at… more »
    Top Answer:From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know… more »
    Top Answer:As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite… more »
    Top Answer:The product helps small and medium enterprises secure their networks from intrusions. It also has features like DNS… more »
    Top Answer:The tool's pricing is moderate, and licensing costs are yearly.
    Top Answer:The product needs to improve its mobile application.
    Ranking
    5th
    out of 59 in Firewalls
    Views
    27,863
    Comparisons
    17,209
    Reviews
    86
    Average Words per Review
    560
    Rating
    8.8
    2nd
    out of 59 in Firewalls
    Views
    123,063
    Comparisons
    89,961
    Reviews
    48
    Average Words per Review
    661
    Rating
    8.4
    23rd
    out of 59 in Firewalls
    Views
    13,707
    Comparisons
    9,326
    Reviews
    5
    Average Words per Review
    353
    Rating
    8.0
    Comparisons
    Also Known As
    Check Point NG Firewall, Check Point Next Generation Firewall
    FortiGate 60b, FortiGate 60c, FortiGate 80c, FortiGate 50b, FortiGate 200b, FortiGate 110c, FortiGate
    Learn More
    Overview

    Check Point NGFW is a next generation firewall that enables safe usage of internet applications by blocking malicious applications and unblocking safe applications. Check Point NGFW, which uses deep packet inspection to identify and control applications, has features such as application and user control and integrated intrusion prevention (IPS), as well as more advanced malware prevention capabilities like sandboxing.

    Check Point NGFW includes 23 firewall models optimized for running all threat prevention technologies simultaneously, including full SSL traffic inspection, without compromising on security or performance.

    Benefits of Check Point's Next Generation Firewall

    • Robust security: Check Point NGFW delivers the best possible threat prevention with SandBlast Zero Day protection. The SandBlast protection agent constantly inspects passing network traffic for exploits and vulnerabilities. Suspicious files are then emulated in a virtual sandbox in order to detect and report malicious behavior.

    • Security at hyperscale: On-demand hyperscale threat prevention performance provides cloud level expansion and resiliency on premises.

    • Unified management: Check Point's SmartConsole makes it easy to manage and configure network security environments and policies. With the SmartConsole, users can manage all the firewall gateways and access logs and install databases from one location. Unified management control across the network increases the efficiency of security operations and reduces IT costs.
    • Continuous logging: Check Point NGFW’s Threat Management feature detects vulnerabilities and logs them. Using the logged data, users can easily create and implement efficient security policies.

    • Remote access: The remote access VPN provides a seamless connection for remote users.

    Check Point NGFW is suitable for organizations of all sizes, from small businesses to larger enterprises.

    Reviews from Real Users

    Check Point NGFW stands out among its competitors for a number of reasons. Two major ones are its intrusion prevention feature as well as its centralized management, which makes it very easy to deploy firewall policies to many firewalls with one click.

    Shivani J., a network security administrator, writes, "Check Point has a lot of features. The ones I love are the antivirus, intrusion prevention, and data loss prevention."

    G., a network administrator at Secretaría de Finanzas de Aguascalientes, writes, “Within the organization, the inspection of packages has given us great help in detecting traffic that may be a threat to the institution. The configuration of policies has allowed us to maintain control of access and users for each institution that is incorporated into our headquarters.”

    Arun J., a senior network engineer, notes, “The nicest feature is the centralized management of multiple firewalls. With the centralized management, we can easily use and operate multiple firewalls as well as create a diagram of them.”

    Fortinet FortiGate enhances network security, prevents unauthorized access, and offers robust firewall protection. Valued features include advanced threat protection, reliable performance, and a user-friendly interface. It improves efficiency, streamlines processes, and boosts collaboration, providing valuable insights for informed decision-making and growth.

    Untangle NG Firewall is an open-source firewall and gateway security platform that helps keep networks safe while accessing the internet. It offers a free core firewall platform with paid add-ons, and a cloud-based management platform with a variety of deployment options for smaller teams. The solution also has a cloud-based management console for remote management that can either be deployed on premises or as SaaS, and virtualized or cloud-based. It also has flexible deployment options, including third-party hardware, as a virtual machine, or as a turnkey appliance. Untangle NG Firewall is ideal for small IT teams with limited budgets.

    Untangle NG Firewall Features

    Untangle NG Firewall has many valuable key features. Some of the most useful ones include:

    • Intrusion protection
    • Threat prevention
    • Virus blocker
    • Virus scanner
    • App control
    • SSL inspection
    • Bandwidth control
    • Reporting
    • Logs
    • VPN
    • Web filter
    • IDS/IPS
    • Access controls
    • Location control
    • Proxy
    • Active Directory/LDAP connections

    Untangle NG Firewall Benefits

    There are many benefits to implementing Untangle NG Firewall. Some of the biggest advantages the solution offers include:

    • Simplified network security: Untangle NG Firewall has a single, modular, software platform which simplifies security for all networks and ensures every device is adequately protected.
    • Visibility: The solution provides a browser-based, responsive, and intuitive interface enabling users to gain visibility quickly into the traffic on the network.
    • Deep analysis and insights: With the solution, users can see a network’s status at a glance on the dashboard, ensure compliance with full event logs, and get notifications of network anomalies or unusual user behavior with alert rules. In addition, users can gain insights in real time from database-driven reports.
    • Next-generation filtering: Untangle NG Firewall makes it easy to manage every rogue application, encrypted web request, malware distribution point, and drive-by malvertising attempt.
    • Connectivity and performance: The solution helps your organization maintain visibility and control over remote workers, branch offices, and guest Wi-Fi to keep users connected and data safe regardless of location or level of access.
    • Policy creation: Users can create policies by user, group, device, and time in order to control access.
    • Additional apps: Untangle NG Firewall offers additional apps, allowing organizations to create complete configuration backups to protect against network disruptions.

    Reviews from Real Users

    Untangle NG Firewall is a solution that stands out when compared to many of its competitors. Some of its major advantages are that it is easy to use, has good features, including VPN, reporting, alerting, and filtering, and can be installed on existing hardware.

    “It is very easy to use. The user interface is very straightforward. It may not be as fancy as some of the ones I've seen, but it's very straightforward. It's very easy to find what you need, and it's very easy to get things done,” says Josh E., CEO at DragonTech IT Services, Inc.

    Barry A., Owner at ThinkEzIT, says, “It has good VPN features, helpful reporting and alerting, built-in content filtering, and excellent support.”

    PeerSpot user Victor O., Director at Kisii County Government, explains, “What I like about this product, which is the reason that we continue to use it, is that you can install the software version on your own hardware. In case there is a problem with the hardware, we can just install the firewall in another machine and restore the configuration.”

    Sample Customers
    Control Southern, Optimal Media
    1. Amazon Web Services 2. Microsoft 3. IBM 4. Cisco 5. Dell 6. HP 7. Oracle 8. Verizon 9. AT&T 10. T-Mobile 11. Sprint 12. Vodafone 13. Orange 14. BT Group 15. Telstra 16. Deutsche Telekom 17. Comcast 18. Time Warner Cable 19. CenturyLink 20. NTT Communications 21. Tata Communications 22. SoftBank 23. China Mobile 24. Singtel 25. Telus 26. Rogers Communications 27. Bell Canada 28. Telkom Indonesia 29. Telkom South Africa 30. Telmex 31. Telia Company 32. Telkom Kenya
    North American Stamping Group, Cerebral Palsy of North Jersey (CPNJ), Brown County Schools, IN, City of Bridgeton, MO, Lancaster County, SC, Vision Charter School, Clay County Sheriff’s Department, NC, Breakwater School, Boys & Girls Club of Manchester, NH, Admiral Farragut Academy, Flow Companies, No Ordinary Hotel, KECdesign,
    Top Industries
    REVIEWERS
    Financial Services Firm22%
    Computer Software Company15%
    Comms Service Provider7%
    Manufacturing Company6%
    VISITORS READING REVIEWS
    Educational Organization49%
    Computer Software Company8%
    Financial Services Firm5%
    Comms Service Provider5%
    REVIEWERS
    Comms Service Provider16%
    Computer Software Company9%
    Financial Services Firm8%
    Manufacturing Company7%
    VISITORS READING REVIEWS
    Educational Organization20%
    Computer Software Company15%
    Comms Service Provider8%
    Manufacturing Company6%
    REVIEWERS
    Non Profit18%
    Manufacturing Company18%
    Computer Software Company9%
    Retailer9%
    VISITORS READING REVIEWS
    Computer Software Company13%
    Comms Service Provider12%
    Government9%
    Manufacturing Company5%
    Company Size
    REVIEWERS
    Small Business32%
    Midsize Enterprise19%
    Large Enterprise49%
    VISITORS READING REVIEWS
    Small Business14%
    Midsize Enterprise58%
    Large Enterprise28%
    REVIEWERS
    Small Business48%
    Midsize Enterprise23%
    Large Enterprise30%
    VISITORS READING REVIEWS
    Small Business27%
    Midsize Enterprise32%
    Large Enterprise41%
    REVIEWERS
    Small Business96%
    Midsize Enterprise4%
    VISITORS READING REVIEWS
    Small Business37%
    Midsize Enterprise17%
    Large Enterprise46%
    Buyer's Guide
    Firewalls
    March 2024
    Find out what your peers are saying about Netgate, Fortinet, OPNsense and others in Firewalls. Updated: March 2024.
    768,578 professionals have used our research since 2012.