System Engineer at a tech consulting company with 501-1,000 employees
MSP
A solid operating system with all the necessary data center security features
Pros and Cons
  • "They now know the details about their network traffic that they did not know before: Applications that they are using and some application they did not know they were using."
  • "A solid operating system with all the necessary data center security features."

    What is our primary use case?

    I have some financial experience with the program. We use it with Cisco and Fortinet technology, and have integrated it with NSXi.  

    It has had good performance.

    As an integrator, we need to understand the business case:

    1. The customer's needs. 
    2. The implementation phase. 
    3. Provide clarity and clarify details with the customer.
    4. Relate to their business's needs more than the technology system. 

    How has it helped my organization?

    I am an integrator. Palo Alto Networks has improved my position in the cyber security market here in Paraguay. It is easy to sell. Basically, I just need to implement the demo and the program starts itself. So, it has improved our position in this market. It is a program with very strong performance in an excellent position along with quality data sharing. Overall, it has improved our width. 

    My clients have a group who will be on the security scheme. They now know the details about their network traffic that they did not know before: Applications that they are using and some application they did not know they were using. It has improved the retail control of their traffic and the users on their network. 

    What is most valuable?

    • Its strong intelligence is the feature that I like the most.
    • A solid operating system with all the necessary data center security features. 
    • Easy to manage.

    What needs improvement?

    When you have a client compare box against box, a lot of times Palo Alto is a bit more expensive, but its network firewalls have a very rich ratio.

    Buyer's Guide
    Palo Alto Networks VM-Series
    April 2024
    Learn what your peers think about Palo Alto Networks VM-Series. Get advice and tips from experienced pros sharing their opinions. Updated: April 2024.
    769,976 professionals have used our research since 2012.

    For how long have I used the solution?

    One to three years.

    What do I think about the stability of the solution?

    No issues. We did integration with NSXi and the system works likes a charm. There have not been any issues in regards to the format, delivery, or management. It has worked great.

    What do I think about the scalability of the solution?

    I have not encountered any problems.

    How are customer service and support?

    I have not had to call the technical support yet, which makes me very happy.

    Their pre-sale team, who assisted us initially, consists of very responsive, kind people.

    Which solution did I use previously and why did I switch?

    We were previously Cisco partners. It is different since it is a network company.

    How was the initial setup?

    It is very simple. They have a very unique approach to simplicity. You have to do some basic set up to some parts where it will be needed. Therefore, it is simple compared to Cisco or Check Point. Also, it is very flexible.

    What's my experience with pricing, setup cost, and licensing?

    The licensing is pretty much like everyone else.

    Which other solutions did I evaluate?

    In each case, it depends on the expectations of the customer. 

    I have worked with Fortinet, Cisco, and Check Point. However, once I began to work with the Palo Alto Networks, it became my preference for cyber security.

    Compared to Cisco, Palo Alto is a much better product.

    What other advice do I have?

    It is a great product. It is a great company, and I am very glad to work with them. 

    Use the learning material that Palo Alto has free on their webpage. The customer should compare it with other products. They need to see the product and understand the power that that technology brings to cyber security. In this case, they can see the benefit against risks to your network and its capacity to prevent threats.

    Disclosure: My company has a business relationship with this vendor other than being a customer: Integrator and partner.
    PeerSpot user
    Director at a financial services firm with 1,001-5,000 employees
    Real User
    It allows us to see all our traffic to properly secure it
    Pros and Cons
    • "It allows us to see all our traffic to properly secure it and only allow what is needed through the firewall."
    • "AWS doesn't integrate well with third-party firewalls."

    What is our primary use case?

    We use it to secure all traffic leaving and entering AWS.

    How has it helped my organization?

    It allows us to see all our traffic to properly secure it and only allow what is needed through the firewall.

    What is most valuable?

    • Full content inspection
    • Visibility into the traffic in AWS.

    What needs improvement?

    There is work to be done on the integration side, as AWS doesn't integrate well with third-party firewalls.

    I would like to see AWS have more integration with Palo Alto from a routing standpoint, so it could become a routing egress without having to redesigning it.

    For how long have I used the solution?

    One to three years.

    What do I think about the stability of the solution?

    It is very stable, and we are not putting stress on it.

    What do I think about the scalability of the solution?

    It is fairly scalable. We have a couple hundred servers already.

    What other advice do I have?

    They are the leading next-generation firewall. I would recommend deploying a next-generation firewall.

    I am using the on-premise and AWS version. They are exactly the same.

    Disclosure: I am a real user, and this review is based on my own experience and opinions.
    PeerSpot user
    Buyer's Guide
    Palo Alto Networks VM-Series
    April 2024
    Learn what your peers think about Palo Alto Networks VM-Series. Get advice and tips from experienced pros sharing their opinions. Updated: April 2024.
    769,976 professionals have used our research since 2012.
    it_user798924 - PeerSpot reviewer
    Technical Lead Infrastructure at a healthcare company with 201-500 employees
    Real User
    We now have a lot more details about what our users are doing on the network
    Pros and Cons
    • "We now know a lot more detail about what our users are doing on the network."
    • "It is very stable. It is fairly easy to use."
    • "I have not actually called their support line, because we have a direct contact to a senior engineer in the company for any issues that we handle with them. I will say they are very responsive, and they do give you the information you need when you need it.​"
    • "The user-friendliness of the UI could be improved."
    • "The interface is all Java-based. I would prefer an HTML5 interface."
    • "Just sometimes it can be a bit sluggish navigating through pages. That is just purely because of Java.​"

    What is our primary use case?

    We use it to monitor all traffic, so we can do URL filtering with it. We can also use the VPN features, which we have not set up yet, but we know the functionalities are there. In addition, we use it to monitor all our trusted and non-trusted traffic, then block it as appropriate. 

    It does a lot of threat management as well. It is like a threat management gateway and it does some virus scanning. From that perspective, it is really good.

    How has it helped my organization?

    We now have a lot more details about what our users are doing on the network. Whereas before, we did not know certain things they were accessing, websites they were going to, and what vulnerabilities were potentially being introduced into our network. Now, we have a very good understanding of what is actually traversing our network, what is coming in, and what is going out.

    What is most valuable?

    Threat management. That is very important, obviously. There has been a lot of press about hacking, virus vulnerabilities, the cron bug, etc. It is very important that we detect these as soon as it happens, so we can implement measures before they get on to our network. It is very good at doing that; it is very good at identifying these vulnerabilities.

    What needs improvement?

    The interface, maybe. It is all Java-based and I would prefer an HTML5 interface. It would make things a bit quicker. It is not that it is really bad once you are in, it is just another Java-based application that is not amazing. I am not really a fan of Java-based applications. 

    The user-friendliness of the UI could be improved.

    For how long have I used the solution?

    Less than one year.

    What do I think about the stability of the solution?

    No issues, it is very stable. It is fairly easy to use. I would not say it is difficult, just sometimes it can be a bit sluggish navigating through pages. That is just purely because of Java.

    What do I think about the scalability of the solution?

    We picked the PA-3050s. They can handle a lot of traffic, so we are nowhere near our limits on it. We are not really touching its full capacity at the moment.

    How are customer service and technical support?

    It is very good. I have not actually called their support line, because we have a direct contact to a senior engineer in the company for any issues that we handle with them. I will say they are very responsive, and they do give you the information you need when you need it.

    Which solution did I use previously and why did I switch?

    We previously used Cisco ASA. We switched to Palo Alto because it can do a lot more. They are called Next-Generation Firewalls (NGFW). They can do a lot of threat detection and things that the Cisco firewalls could not, or could only do with plugins, and the firewalls were not really built for that purpose. Palo Alto can handle a lot more and give us more insight into our network. 

    How was the initial setup?

    The hardware install was mildly complex; it was somewhere in the middle. It was just about working out the best way to monitor our traffic, because you can have a segregation of interfaces. You can use something called vwire, which is like a bump in the wire, or you can use Layer 3 interfaces. It was just working out which way to go with. We could not really configure the Layer 3 interface solution properly, so we just went for a different setup. 

    It was not overly complex. There was enough information online and enough support. There is enough info in the community on their website to allow you to do what you need to do.

    What's my experience with pricing, setup cost, and licensing?

    For what you get, it does do what it says it does. It is a good value for an enterprise firewall.

    Which other solutions did I evaluate?

    We had a look at Check Point firewalls, as well as Huawei. 

    • With Check Point, it was a feature-rich product, but it was a bit more expensive. 
    • With Huawei, it was not really a valuable solution or as advanced as the other two, so we discounted them straight away.

    What other advice do I have?

    Make sure you have a detailed plan of what you want to get out of it, you fully understand your network infrastructure beforehand and you have all the IP addresses documented and things that you might need before you actually implement it. Also, it is a feature-rich product, so ensure you have looked at what it can give you, and decide if you need all that functionality in your network. If you do not need it, then you can obviously go for something that is a bit less feature-rich.

    Disclosure: I am a real user, and this review is based on my own experience and opinions.
    PeerSpot user
    it_user1386156 - PeerSpot reviewer
    Technology Specialist at Accretive Technologies Pvt Ltd
    Real User
    Great templates and very stable but needs more documentation
    Pros and Cons
    • "In Palo Alto the most important feature is the App-ID."
    • "The solution needs to have more easily searchable details or documentation about it online, so it's easier to Google if you have queries."

    What is our primary use case?

    We primarily use the solution for IT. I am from the Palo Alto Partner end, so I am not using it deliberately. I usually deploy to clients in various industries, including the payment gateway industry. 

    What is most valuable?

    In Palo Alto the most important feature is the App-ID. It's the biggest selling point in my opinion.

    Another important application feature is the Content-ID.

    The solution offers great templates.

    Overall, the solution has a lot of great features on offer.

    What needs improvement?

    Even when the solution locks away a virus, there seems to be a delay for four or five minutes. It should be as little as one. Right now, it's such a long delay. It can be frustrating for clients and I need to answer a lot of questions surrounding that.

    The solution needs to have more easily searchable details or documentation about it online, so it's easier to Google if you have queries.

    The solution requires more use cases.

    For how long have I used the solution?

    I've been on this Firewall for the last two years.

    What do I think about the stability of the solution?

    The stability is very good. There aren't bugs, glitches, or crashes. It's very reliable.

    What do I think about the scalability of the solution?

    Although I haven't personally tried to scale the solution, my understanding is that it's easy to do so. It's convenient for enterprises. It's my understanding it would scale especially well for enterprises.

    How are customer service and technical support?

    I've had to reach out to technical support many times. Sometimes, I find that it can take a while to reach support, or for them to get back to us. This is especially true on weekends and holidays. Other than that, it's been pretty good. We're pretty satisfied with the level of support we get.

    Which solution did I use previously and why did I switch?

    I only have experience with Palo Alto; I don't know much about other VM firewall solutions.

    How was the initial setup?

    The initial setup is not complex. It's quite straightforward. The deployment process is great. It only takes about five to ten minutes or so.

    I handle the maintenance and troubleshoot any issues that arise. 

    What about the implementation team?

    I mostly figured out the deployment myself and used Google to assist when I had questions.

    What's my experience with pricing, setup cost, and licensing?

    I don't have any dealings with the accounting side of the solution. That's handled by someone else. I'm not sure what the cost is or if we pay monthly or yearly.

    What other advice do I have?

    We're partners with Palo Alto. We're using the latest version of the solution.

    We have a VM-Series via Palo Alto and K2K and the hardware Series.

    I'd rate the solution seven out of ten.

    Which deployment model are you using for this solution?

    Public Cloud

    If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

    Microsoft Azure
    Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
    PeerSpot user
    Network Security Engineer at a tech vendor with 51-200 employees
    Real User
    Stable with good support, and the VMs have configurable hardware resources
    Pros and Cons
    • "The VM series has an advantage over the physical version because we are able to change the sources that the machine has, such as the amount of available RAM."
    • "The implementation should be simplified."

    What is our primary use case?

    We are a solution provider and the Palo Alto VM-Series is one of the products that we implement for our customers. Our customers use this virtualized next-generation firewall as part of their security solution.

    What is most valuable?

    The VM series has an advantage over the physical version because we are able to change the sources that the machine has, such as the amount of available RAM. With a physical machine, you cannot the resources without adding something to the machine.

    The management can be done from a single console window.

    What needs improvement?

    The implementation should be simplified.

    For how long have I used the solution?

    We have been using the Palo Alto Networks VM-Series for three years. 

    What do I think about the stability of the solution?

    This solution is stable.

    What do I think about the scalability of the solution?

    The VM-Series is a scalable product.

    How are customer service and technical support?

    The support is good.

    How was the initial setup?

    The implementation involves setting up policies.

    What about the implementation team?

    We deploy this product with our in-house team.

    What other advice do I have?

    I would rate this solution an eight out of ten.

    Which deployment model are you using for this solution?

    On-premises
    Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
    PeerSpot user
    Buyer's Guide
    Download our free Palo Alto Networks VM-Series Report and get advice and tips from experienced pros sharing their opinions.
    Updated: April 2024
    Buyer's Guide
    Download our free Palo Alto Networks VM-Series Report and get advice and tips from experienced pros sharing their opinions.