We performed a comparison between Check Point NGFW and Juniper SRX Series Firewall based on our users’ reviews in five categories. After reading all of the collected data, you can find our conclusion below.
Features: Check Point NGFW is highly recommended for its extensive security features, convenient centralized management, and impressive virtualization capabilities. Juniper SRX Series Firewall is well-known for its user-friendly interface, effortless usage, and excellent support.
Check Point should focus on improving integration, upgrading hardware, reducing costs, and enhancing stability. Juniper needs to work on capacity scalability, pricing strategy, reporting capabilities, user interface, device reliability, and feature enhancements.
Service and Support: The customer service for Check Point NGFW has garnered varying opinions, with some customers finding it helpful and responsive, while others believe there is room for improvement. Juniper SRX Series Firewall's customer service is generally deemed satisfactory, with customers appreciating its helpfulness and knowledge. However, there have been occasions where response times were slower and the need for escalation arose.
Ease of Deployment: Check Point NGFW's initial setup can be complex and may need expertise and experience for specific configurations and migrations. Juniper SRX Series Firewall generally has a simple setup process, although it may require CLI experience and coordination with the vendor.
Pricing: Check Point NGFW is known for its expensive setup cost, particularly when compared to other options. Users have found the process of adding new licensing to existing devices to be complex, especially for larger enterprise-level devices. Juniper SRX Series Firewall offers a more reasonable and affordable setup cost. Its setup process is straightforward, and the pricing is considered reasonable.
ROI: Check Point NGFW offers cost savings, simplicity, and effective security enforcement, providing peace of mind once the protection level is understood. Juniper SRX Series Firewall is a valuable investment, delivering positive returns and enhanced security features.
Comparison Results: Based on the review answers, the Check Point NGFW is preferred over the Jun SRX Series Firewall. Check Point NGFW offers comprehensive security features such as URL filtering, intrusion prevention systems, identity and access management, and application control capabilities. It also provides centralized management and virtualization features, stability, ease of use, and scalability. Despite its higher pricing, Check Point NGFW is considered more reliable and secure. Additionally, its customer service and support are generally satisfactory.
"The performance is good."
"The tool is a nice product and easy to handle. The software's user interface is also good. You can easily implement remote access in the solution."
"The most valuable features of the solution are SD-WAN, filtering testing applications, web filtering, and the new VPN."
"It has improved our organization with control data."
"A strong point of FortiGate is that the graphical interface is complete and easy to use, especially if we think there is a list of operations that we are able to perform inside."
"Fortinet FortiGate's ease of management is the most valuable feature."
"The most valuable features are that it is very simple to configure and to manage."
"Our security improved from being able to put in rules and close off unwanted traffic."
"We have between five and ten firewalls on-premises, and if we want to configure or push the same configuration to all of the firewalls, then the centralized management system is very helpful."
"The detection rate for any cyberattacks/suspicious activity is very high (more than 90%)."
"The management in Check Point is exceptional."
"The QoS blade is very good for controlling traffic such as Windows patches, mail traffic and other stuff."
"Check Point helps a lot with automatization which definitely reduces the effort to maintain the environment."
"I like the Next-Generation Firewall."
"The most valuable feature of the solution is the Quantum Intrusion Prevention System (IPS). I also like the solution's functionality, like autonomous threat prevention."
"We have all the features we want or need in this appliance. It's been good so far."
"The main features are safeguarding their data and ensuring robust security services for organizational data."
"Technical support is perfect."
"What I like the most about Juniper is that they have the same CLI on all routers, switches, and firewalls. If you have worked with any Juniper device, such as a Juniper router, you will be able to work with an SRX, which is really cool. It is a nice experience to work with every device of Juniper, not only firewalls."
"The deployment is quite easy and fast."
"Juniper has the "recovery safety feature", so if you perform a "commit confirmed" and the new configuration disconnects you. then there is no "confirmed" command with X mins (default = 10 mins). It automatically reverts (recovers) to the previous configuration. This is handy for when you do not want to make that trip down range just to reboot a router."
"I like the Junos OS, which has been very good for me. It's very clever."
"The most valuable feature is the virtualization because it can be used for customers who are using the mobile data network to request a private connection to a remote site."
"Juniper is one of the most powerful network security solutions while remaining simple to use, set up, and scale."
"The support from Fortinet FortiGate could improve. They are not easily accessible when we need them. They could improve their response time."
"The visibility of the network can be better. The GUI can be improved for better visibility of the network flow. Other solutions have better GUI in terms of network visibility."
"Bandwidth usage in reporting could be improved for Fortinet FortiGate."
"It needs to improve its ISP load balancing."
"The product does need better support in the cloud environment. It's not exactly cloud-native right now."
"The UTM filtering needs improvement."
"The pricing could be reduced or include the first year warranty."
"The graphical user interface of Fortinet's FortiGate product does not function well with text-based interfaces."
"The SmartUpdate interface is a little bit crowded if your company has a lot of software items."
"I feel the only thing that I see as a possible improvement in Check Point software is the lack of ability to create "static discard routes" which makes it difficult for NAT ranges to be advertised via BGP to neighbors."
"I would like to see better Data Leakage protection options and easier-to-understand deployment models for this."
"The complexity could be fixed. It's a bit complex to set up, for example."
"I primarily work on the network side, so my expertise lies in configuring and working with firewalls. I have experience in firewall policies and know how to configure them within CheckPoint, including blocking URLs and specific website categories. However, I acknowledge that there's room for improvement, particularly in areas related to application-level control within the firewall. While I can't pinpoint a specific area for improvement, I am trying open to enhancing my skills and knowledge in various aspects of firewall management."
"When installed on Windows, the system with low storage space slows down."
"The upgrade is something we would like to be improved in the future as the frequency of hotfixes is too much, and by the time we finish the one round, we already have the new version released and are required to upgrade."
"The tool’s architecture could be improved a bit."
"The capacity can be limiting. We have outgrown its capacity. You can only scale up to a certain extent, depending on the device purchased."
"It must be 5G ready. The 5G network is rolling out soon in India, and Juniper must upgrade their firewall slot to the 5G network, or they must manufacture a 5G dongle card for the Juniper firewall. I want Juniper to upgrade their dongle from 4G to 5G. Presently, they have an expansion slot in the SRX 322 series and higher firewalls. In that expansion slot, they can put a 4G mobility SIM card so that whenever our primary link is down, it will automatically connect through this GSM network and form a tunnel."
"It could improve areas which need high performance."
"Their models for service providers could improve."
"Both the web management and the graphical user interface are inadequate and should be improved."
"Third-party support for Juniper is a lot less than Cisco. This is no surprise, but a definite consideration if you are expecting to use a lot of third party support. In my guesstimate, for every 100 Cisco shops, you will find one Juniper shop."
"In terms of other features, I'd like to see a web filter, 10 point control, application control and a DNA filter in the next release."
"The user interface is something that Juniper needs to improve."
Check Point NGFW is ranked 5th in Firewalls with 277 reviews while Juniper SRX Series Firewall is ranked 18th in Firewalls with 86 reviews. Check Point NGFW is rated 8.8, while Juniper SRX Series Firewall is rated 7.8. The top reviewer of Check Point NGFW writes "Good antivirus protection and URL filtering with very good user identification capabilities". On the other hand, the top reviewer of Juniper SRX Series Firewall writes "Highly scalable, user-friendly UI, and easy to maintain". Check Point NGFW is most compared with Palo Alto Networks NG Firewalls, Sophos XG, Cisco Secure Firewall, Netgate pfSense and Meraki MX, whereas Juniper SRX Series Firewall is most compared with Cisco Secure Firewall, Palo Alto Networks WildFire, Netgate pfSense, Palo Alto Networks NG Firewalls and Meraki MX. See our Check Point NGFW vs. Juniper SRX Series Firewall report.
See our list of best Firewalls vendors, best Unified Threat Management (UTM) vendors, and best Firewalls vendors.
We monitor all Firewalls reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.