Most Helpful Review
Find out what your peers are saying about Juniper SRX vs. Palo Alto Networks VM-Series and other solutions. Updated: January 2019.
316,473 professionals have used our research since 2012.
We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
From a protection perspective, it provides a network perimeter security function for our company.
We use it as a firewall at our head office and branches.
It integrates well with Fortinet and Palo Alto.
It uses many applications, like antivirus blocking and web filtering.
The high availability of the application is good.
It protects the data behind our switches.
It helps us perform our daily jobs.
We mostly use the Layer 4 firewall functions: Access rules, NAT, and site-to-site IPsec VPN.
Embedding it into my application development lifecycle prevents data loss and business disruption, allowing the adoption to operate at the speed of my AWS Cloud.
It has a good performance which helps you with the stability of your virtual environment.
In AWS, Palo Alto provides us a better view than flow logs for network traffic.
App-ID and User-ID have repeatedly shown value in securing business critical systems.
It provides complete security posture from end-to-end. This has given us better visibility into what our security aspects are.
You already can scale it if you put it in Auto Scaling groups. If you put it in a load balancer, it should already be able to scale.
It allows us to see all our traffic to properly secure it and only allow what is needed through the firewall.
It offers a single pane of glass for all the different types of installations.
This solution needs to update for "Next Generation" needs.
It did not improve our safety because the IDS does not detect some attacks, but our anti-virus software did.
We tried configuring the IDS for more than four months, but it did not work properly.
The CLI is verbose. You have to say a lot to do a little. I don't like that part of it. Cisco's command syntax seems to be a good bit more concise. When you're trying to get something done, you don't want to have to type a bunch.
Juniper needs to focus more on their perimeter firewalls.
The GUI needs to be easier to handle.
I would like to see endpoint control and endpoint testing security.
I would like them to add a dashboard because it's difficult to operate.
It can definitely improve on the performance.
It has to be more scalable for the deployment of VMs on the cloud.
I would like to see a more thorough QA process. We have had some difficulties from bugs in releases.
We have ran into issues with Palo Alto’s limitations for resolving large IP lists from DNS lookups, as well as the antivirus interfering with App-ID.
The product could provide protection above Layer 3, which gets into the application layer and provides better visibility into those aspects of application security.
On the cloud side, they need to come up with more HA solutions to support the multi-region.
AWS doesn't integrate well with third-party firewalls.
I would like a way to do everything programmatically, or be able to copy the configs from different prices at different levels.
Pricing and Cost Advice
It has a low price.
It is not that expensive.
Pricing is good. Most of the costs are in the UTM (IDS/IPS, virus scanning, etc) subscription.
Palo Alto was nice, but much more expensive.
We were able to lower our overall operating costs over a three year period by 25%, mostly recovered from maintenance/support costs.
Small enterprises or telco have variant licenses, and this licensing should be improved.
I would say about $20,000 for a SRX650 with IDP licence.
Pricing is very good, not expensive.
The pricing and licensing of this product on AWS should be from $1.28/hr or $4,500.00/yr. Then, it would be a good price for the performance that it delivers.
We used BYOL, because of the cost to own.
The pricing and licensing of this product on AWS for a three-year commitment is a great deal, if you can plan that far ahead.
Because the solution was getting deployed on AWS, it was the best place to go and it was available there.
One of the factors for selecting Palo Alto was they had flexible pricing. They had a pay-as-you-go model. Comparable to other products, such as Check Point, the price point was definitely a plus.
The pricing was expensive but it was comparable to the competition.
AWS is available as a AMI that you can purchase from the AWS Marketplace. Therefore, you need to purchase the licensing, since it is per AMI. Then, you deploy it on a regular EC2. Then, for on-premise, you can use both Palo Alto's software and hardware.
The price is not bad. They have a yearly renewal fee, and the pricing is exactly where we expect it to be.
out of 48 in Firewalls
out of 48 in Firewalls
Compared 29% of the time.
Compared 21% of the time.
Compared 8% of the time.
Compared 27% of the time.
Compared 10% of the time.
Compared 9% of the time.
Also Known As
|Juniper||Palo Alto Networks|
|High-performance security with advanced, integrated threat intelligence, delivered on the industry's most scalable and resilient platform. SRX Series gateways set new benchmarks with 100GbE interfaces and feature Express Path technology, which enables up to 1 Tbps performance for the data center.|
The VM-Series is a virtualized form factor of our next-generation firewall that can be deployed in a range of private and public cloud computing environments based on technologies from VMware, Amazon Web Services, Microsoft, Citrix and KVM.
The VM-Series natively analyzes all traffic in a single pass to determine the application identity, the content within, and the user identity. These core elements of your business can then be used as integral components of your security policy, enabling you to improve your security efficacy through a positive control model and reduce your incident response time though complete visibility into applications across all ports.
In both private and public cloud environments, the VM-Series can be deployed as a perimeter gateway, an IPsec VPN termination point, and a segmentation gateway, protecting your workloads with application enablement and threat prevention policies.
Learn more about Juniper SRX
Learn more about Palo Alto Networks VM-Series
|7-Eleven, AARNet Pty Ltd, Allegro Networks, alltours GmbH, Apollo Hotel Papendrecht, Armstrong Atlantic State University, Atlantech Online, Availity, Bajaj Capital, Baloise Insurance, BancABC, BAS Group, Black Lotus, Blue Box, Borealis, Carilion Clinic, Catholic Health System, CATV, Champlain College, Chinas Ministry of Railways, China University of Mining and Technology (CUMT), Cloud Dynamics, CloudSeeds, Cloudwatt, CODONiS, Colt Technology Services, Cork Internet Exchange, CSS Versicherung AG, CyrusOne, Danish Crown, Deloitte Belgium, Department of Energy, Divona Telecom, DQE Communications, DreamHost, European Government Agency, Expedient, Financial Market Information Services Provider, Fluidata, Fonality, Fox Sports, Global Financial Institution, Global Investment Bank, Global Investment Company, Energy Sciences Network (ESnet), Goethe University, HEAnet, High Performance Networks Inc., Hillenbrand||Warren Rogers Associates|
Comms Service Provider44%
Financial Services Firm22%
Comms Service Provider38%
Venture Capital & Private Equity Firm8%
No Data Available