We performed a comparison between Palo Alto Networks NG Firewalls and WatchGuard XTM [EOL] based on real PeerSpot user reviews.
Find out what your peers are saying about Netgate, Fortinet, OPNsense and others in Firewalls."The Intrusion Prevention System and the web filtering are both working well."
"Security, SD-WAN, and Streetscape are valuable features."
"Whenever I need something, Fortinet improves and updates the software for me."
"There are lots of features and most of them are deployed for internet security. Users are protected if they accidentally go to some malicious sites."
"The application control features, such as Facebook blocking and Spotify blocking, are the most valuable."
"It is a one box solution, which covers most of the edge device’s requirements."
"The IPS is good. It protect my network from attackers."
"Overall security features and performance routing is good."
"There are many valuable features within the solution. This includes security, a user-friendly firewall, antivirus, and global protection."
"I typically get involved with it when it comes to audit and compliance and having to gather evidence of those firewalls, routers, and rule sets. The evidence that I typically need is there."
"I'm using most of its features such as antivirus, anti-spam, and WAF. I'm also using its DNS Security and DNS sinkhole features, as well as the URL filtering and application security features."
"The fact that the Next-Gen firewalls are integrated with identity is the best. It gives us the ability to track what an individual is doing and helps us provide access to only what they need in order to do their job."
"The scalability is very good."
"The most valuable feature is the security provided by the ATP."
"The feature that I like the most is its IPS model, the WildFire model. I really like how the whole threat protection model functions, including the vulnerability and anti-spyware aspects. That is really awesome."
"You just need a web browser to manage it, unlike Cisco, which requires another management system."
"SNMP status monitoring and the Central Management Software."
"I like the hostwatch because I can see what traffic uses the most bandwidth and I can block that site."
"After installing the product, we achieved awareness of our data protection needs and email misuse."
"There is a site-to-site VPN configuration between others people."
"Application Control is fantastic with over 2,500 applications and the granularity that we can either allow people to view but not be able to log on to Facebook; or view it and log onto it if they're in the marketing department, but not play Facebook games. There are all sorts of different options like that. So it's highly granular."
"Reputation Enabled Defense indicates that some websites are so infested that it's not even worth visiting them, and therefore saving the bandwidth of going through the detection process."
"WatchGuard XTM is fairly basic. We use it as the perimeter firewall. The main point is to protect from attack software and hacking."
"It is stable and does not require you to reboot all the time."
"The ease of use could be improved."
"Currently, without the additional reporting module, we only have access to basic reporting."
"The setup is pretty complex and not easy to implement."
"One of the problems I was having was with user mapping, and it is an issue for which I have escalated tickets with Fortinet support."
"As far as wanting more scalability or things in the network diagram, it's going to cost you."
"There is one big configuration file with no separations for the unique VDOMs. Maybe they could separate individual VDOM configuration files with the root VDOM configuration file referencing the individual VDOM config files."
"A lack of integration between our data centers."
"I would like to see improvements in the product's application rules."
"Most other VPN clients include mobile VPNs but Palo Alto does not."
"The solution is not straightforward."
"The only problem that I see with the Palo Alto NGFW being an all-in-one appliance is that because of the different features that are being put into a single appliance, the OS tends to be beefier. Over the eight years, we have seen that the number of features or analyses being put into the appliance itself has a tendency to slow down the appliance, especially at the time of bootup. So, any time we are doing maintenance work, the time required for the appliance to boot up and be fully functional again is significantly longer than eight years ago. They could find a way to make this all-in-one appliance faster."
"The price of the solution is very high."
"Currently, they don't have email protection. They can maybe add it in the future. Currently, if you want to do so, you need to go with another solution."
"I'm thinking about a new feature. They have decryption. It's a good idea to use decryption on Palo Alto. It would be good if they had offloading of the traffic, and if they could decrypt the traffic and offload it. Like, for example, ASM on our site. We have an SSL decryption to offload the traffic. We could use that on Palo Alto."
"Support should be improved, wait times can be long."
"The areas that need to improve are network protection and user identification."
"Sometimes we have had issues with stability of the product."
"One huge issue with WatchGuard XTM is that I'm not getting reports in a readable format. Readable means, I don't want Excel online. We repeat auditing when we trigger the report or setup calendar. That functionality is what we are looking for from WatchGuard XTM here."
"The initial setup is neither simple nor complex. If you know the base in networking and how the firewall works, you will be able to figure it out."
"The VPN errors are not helpful when troubleshooting."
"Syslog (Dimension) is focused on presentation, but needs more focus on utility like SonicWall syslog (GMS/Analyzer)."
"WatchGuard doesn't have a product that allows them to get into the data center. And that's just because there is no hardware to do the job. The software could do it, but there's no hardware that allows that to happen at the moment. So it doesn't scale as well as some other products, that's for sure."
"I would like them to improve the product's overall protections. This would be good for all product users."
"The setting policies need improvement. It needs an easier way to do static NAT and check on what policy is being used for that specific traffic."
More Palo Alto Networks NG Firewalls Pricing and Cost Advice →
Earn 20 points
Palo Alto Networks NG Firewalls is ranked 6th in Firewalls with 161 reviews while WatchGuard XTM [EOL] doesn't meet the minimum requirements to be ranked in Firewalls. Palo Alto Networks NG Firewalls is rated 8.6, while WatchGuard XTM [EOL] is rated 8.0. The top reviewer of Palo Alto Networks NG Firewalls writes "We get reports back from WildFire on a minute-by-minute basis". On the other hand, the top reviewer of WatchGuard XTM [EOL] writes "The multi-layer security of the products are the primary reason we use these appliances, however, the gateway wireless functionality for managing access points leaves much to be desired". Palo Alto Networks NG Firewalls is most compared with Check Point NGFW, Azure Firewall, Meraki MX, Sophos XG and Netgate pfSense, whereas WatchGuard XTM [EOL] is most compared with .
See our list of best Firewalls vendors.
We monitor all Firewalls reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.