We performed a comparison between Palo Alto Networks NG Firewalls and Untangle NG Firewall based on real PeerSpot user reviews.
Find out in this report how the two Firewalls solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI."The pipe filter application is an outstanding feature."
"A strong point of FortiGate is that the graphical interface is complete and easy to use, especially if we think there is a list of operations that we are able to perform inside."
"The management console is pretty simple, so anyone who understands networking can initially deploy the solution."
"The features that I have found most valuable are the SD-WAN and their IP4 policy."
"The base firewall features are quite valuable to us."
"The solution is stable."
"In terms of security, we have not experienced any security flaws or loopholes, and it has proven to be quite stable."
"The ability to set up remote systems is the most valuable feature."
"I like the navigation of the general Panorama solution. I can easily navigate around and get to the thing I need. I'm not wasting time trying to find something."
"It's quite nice. It's very user-friendly, powerful, and there are barely any bugs."
"Palo Alto Networks NG Firewalls provide a unified platform that natively integrates all security capabilities."
"The most valuable features are the IPS/IDS subscriptions."
"The first time I came across these firewalls, what surprised me the most was their web user interface. It is complete and gives you a lot of information. You can do 80% of the things related to your network and firewall through the web UI. In some of the other devices, the UI is not as complete. App-ID is also very valuable in customer networks. When you're seeing a lot of traffic in your network, you can see in your web UI which users have the applications that are consuming the most bandwidth. You have a broad context, which is very good."
"From my experience, comparing it to other products, the granularity you can have in the application is very good. The application detection is excellent. It's certainly one of the best."
"There are plenty of features available in this solution, such as attack blocker and spam blocker. Additionally, it is very robust and in-depth."
"Their Prisma log collection is pretty great. Our product collects the logs, and it definitely makes the configuration of log collection easier."
"Web Filter is effective, Web Cache offers bandwidth savings, and the VPN setup is easy."
"It is very easy to deploy and monitor. "
"It is not attached to an appliance, meaning if you get a good PC/server, then you can already run a firewall."
"We find the web filter very valuable."
"The most valuable features are IPS, MAPI, NAT, and VPN."
"They have a command center that makes it easy to log into and see all of your appliances nationwide."
"The web blocking for my clients and the application control are valuable."
"Its detection, antivirus, and filtering features are the most valuable. The facility to connect by using the VPN connection is also a very valuable feature. It is very strong, secure, and reliable. We have implemented the Untangle solution in all hardware. It is also a user-friendly solution. It is easy to learn and easy to configure."
"FortiLink is the interface on the firewall that allows you to extend switch management across all of your switches in the network. The problem with it is that you can't use multiple interfaces unless you set them up in a lag. Only then you can run them. So, it forces you to use a core type of switch to propagate that management out to the rest of the switches, and then it is running the case at 200. It leaves you with 18 ports on the firewall because it is also a layer-three router that could also be used as a switch, but as soon as you do that, you can't really use them. They could do a little bit more clean up in the way the stacking interface works. Some use cases and the documentation on the FortiLink checking interface are a little outdated. I can find stuff on version 5 or more, but it is hard to find information on some of the newer firmware. The biggest thing I would like to see is some improvement in the switch management feature. I would like to be able to relegate some of the ports, which are on the firewall itself, to act as a switch to take advantage of those ports. Some of these firewalls have clarity ports on them. If I can use those, it would mean that I need to buy two less switches, which saves time. I get why they don't, but I would still like to see it because it would save a little bit of space in the server rack."
"They should make the rule sets more understandable for the end user. When you're trying to explain to somebody how a computer network is secured, sometimes it's difficult for an end user or customer to understand. If there was a way to make the terminology more accessible to the end user, the set up could be easier. They should translate the technical jargon to an easily relatable and understandable conversation for the end user, the customer, that would be brilliant. Particularly in an environment where the IT structure is audited regularly, there's always pressure from the auditor to up the standards and up the security and you get your USCERT's that come out and there's a warning about this and the customer will want to lock out so much and when you apply it they run into issue where they can't search the internet or print to their remote office. Of course they can't print to your remote office, they just locked it up. They should make the language more understandable for the customer. If there's a product out there that made the jargon understandable to John Q. Public, I would buy that."
"The solution's framework needs to be frequently updated in order to have a stable solution."
"I would like to see improvements in the support from Fortinet. Here in the Philippines, whenever we have problems with a Fortinet product, we mostly ask for support from distributors and resellers and not directly from Fortinet."
"I would like reporting to be improved and should offer a lot more tools to monitor the products."
"In terms of what could be improved, the SD-WAN is quite difficult, because if you install the new box, 15 is okay, but if you change from an old configuration, if there is already configuration and a policy when you change to SD-WAN, you must change the whole policy that you see in the interface."
"They can do more tests before they release new versions because I would like to be more assured. We had some experiences where they release something new and great, but some of the old features are disabled or they don't work well, which impacts the product satisfaction. The manufacturer should be able to prove that everything works or not only that it might work. This is applicable to most of the other services, software, and hardware companies. They all should work on this. We cannot trust every new release, such as a beta release, on the first day. We wait for some comments on the forums and from other companies that we know. We always wait a few weeks before we use the updated version. They should also extend the VPN client application, especially for Linux versions. Currently, it has an application for Linux devices, but it doesn't work the way we want to connect to the VPN. They use only the old connection, not the new one. They have VPN client applications for Windows and Mac, but they can add more useful features to better manage the devices and monitor the current health of each device. Such features would be helpful for our company."
"With FortiGate, the main complaint that I have heard is about the technical support."
"They can improve the handling and management of User-ID. They should also improve its price. Their technical support can also be improved."
"Support should be improved, wait times can be long."
"The stability, scalability for enterprise-level organizations, and technical documentation have room for improvement."
"They can work on the price. They are a little bit expensive, and not all customers are able to afford this solution. Taking into consideration that there is huge competition in the market and there are multiple firewall companies that are much cheaper than them and offer almost the same features, it would be good to improve the price."
"I would like to see some Machine Learning because I have observed new types of attacks that are able to bypass existing security rules."
"Palo Alto should improve their support. It's sometimes difficult to get the right technician or engineer to fix the problem as soon as possible."
"The pricing could be improved upon."
"The initial configuration is complicated to set up."
"We have a minor issue when assigning IP addresses in the ARP tables. You should be able to go into the ARP tables, look at the IP address and say, "Nope, they need to be on this side on this IP address." The ability to set a DHP reservation from the ARP tables would be great. It's no big deal, but it would be nice to have."
"The biggest challenge that we have with this solution is local support. The local support is a problem in our area."
"The web content filtering needs improvement."
"On their low-end appliance, they could have more memory and the largest storage space. The low-end appliance comes with a too-small hard drive, and it could use a little extra room. It only comes with about 4 gigs or 8 gigs of memory, and the hardware space is only 40 gigs, which is really small."
"It does have multi-factor authentication in some areas, but I would love to see a more widely implemented version of that on the devices themselves."
"The pricing should be reduced because it is expensive."
"They don't have any feature that allows you to drop the session."
"For the web filter, I think they can do better especially on the free model."
More Palo Alto Networks NG Firewalls Pricing and Cost Advice →
Palo Alto Networks NG Firewalls is ranked 6th in Firewalls with 161 reviews while Untangle NG Firewall is ranked 23rd in Firewalls with 22 reviews. Palo Alto Networks NG Firewalls is rated 8.6, while Untangle NG Firewall is rated 8.6. The top reviewer of Palo Alto Networks NG Firewalls writes "We get reports back from WildFire on a minute-by-minute basis". On the other hand, the top reviewer of Untangle NG Firewall writes "Its simplicity, variety of features, and low pricing have enabled us to improve the security for our small business clients at a price that they are happy to pay for". Palo Alto Networks NG Firewalls is most compared with Check Point NGFW, Azure Firewall, Meraki MX, Sophos XG and Netgate pfSense, whereas Untangle NG Firewall is most compared with OPNsense, Netgate pfSense, Sophos XG, Sophos UTM and Meraki MX. See our Palo Alto Networks NG Firewalls vs. Untangle NG Firewall report.
See our list of best Firewalls vendors.
We monitor all Firewalls reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.