Huawei NGFW vs Juniper SRX Series Firewall comparison

Sponsored
 

Comparison Buyer's Guide

Executive Summary
 

Categories and Ranking

Fortinet FortiGate
Sponsored
Ranking in Firewalls
2nd
Average Rating
8.4
Number of Reviews
310
Ranking in other categories
Software Defined WAN (SD-WAN) Solutions (2nd), WAN Edge (1st)
Huawei NGFW
Ranking in Firewalls
31st
Average Rating
7.2
Number of Reviews
21
Ranking in other categories
Unified Threat Management (UTM) (13th)
Juniper SRX Series Firewall
Ranking in Firewalls
16th
Average Rating
7.8
Number of Reviews
87
Ranking in other categories
Unified Threat Management (UTM) (5th)
 

Mindshare comparison

As of June 2024, in the Firewalls category, the mindshare of Fortinet FortiGate is 22.6%, up from 20.2% compared to the previous year. The mindshare of Huawei NGFW is 1.0%, up from 0.4% compared to the previous year. The mindshare of Juniper SRX Series Firewall is 1.7%, down from 1.8% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Firewalls
Unique Categories:
Software Defined WAN (SD-WAN) Solutions
21.5%
WAN Edge
24.4%
Unified Threat Management (UTM)
7.5%
 

Featured Reviews

Viraj Fernandopulle - PeerSpot reviewer
Mar 7, 2024
Includes built-in APIs, is easy to deploy, and provides good insight into our network
FortiGate offers visibility into the types, brands, versions, and users of connected devices. This visibility is crucial for our industrial devices, as their reliable operation is essential to our business. Fortinet Security Fabric empowers us to comply with regulations, governance, and compliance requirements across regions like the US and Europe, ensuring smooth operations for our global business. FortiGate's built-in APIs enable us to integrate with the vendors of our choice. Fortinet's FortiGate is easy to deploy in our environment thanks to its well-written and easy-to-follow documentation. FortiGate is a highly benchmarked product that improves efficiency and adds value to our organization. Although we don't see a benefit overnight, we gradually see the benefits of FortiGate over the years. It has provided a lot of insight into our organization's activities. FortiGate significantly helped reduce the risk of cyberattacks that could disrupt our production. This has protected us against financial losses. Fortinet has its management suite so it helps to centralize the management of network and security operations in our company. This helps us easily manage the issues and solutions that are required. Fortinet FortiGate provides us with actionable data to inform our decisions about the most appropriate course of action. It delivers insights into resource consumption and compromised hosts, helping us identify the source of unauthorized login attempts. This comprehensive view allows us to understand what's entering our network. Fortinet Security Fabric improved security across our industrial control systems. Fortinet FortiGate helped reduce our mean time to remediate. Fortinet FortiGate helped to mature our approach to cybersecurity for protecting our industrial equipment. The level of detail we can see regarding incoming traffic and ongoing activities is quite high. This detailed visibility extends to host configuration and other such aspects, providing us with valuable insights. As a result, Fortinet can provide a clear understanding of how to manage our network and quickly mitigate any issues that may arise.
Muhammad-Nadeem - PeerSpot reviewer
Jun 14, 2023
A scalable and easy-to-setup product that can be used to configure different policies for specific users
In other next-generation firewalls, if you are creating virtual systems, they will create separate hardware resources for different virtual systems. Other products will create a different routing table when we create a routing protocol. In Huawei, the routing table, control plan, and data plan will share the resources. Every virtual system should have separate resources, routing tables, and hardware resources. We have created multiple segments and virtual systems, and we don't want one segment to communicate with another. The product must divide the virtual firewalls with different utilization systems. The hardware, routing switch, and security bundle should be separate and different. The solution does not have sandboxing features. It should provide a sandboxing solution. It should also work on zero-day attacks. The solution should be comparable with the products provided by Palo Alto, Check Point, and Cisco.
SB
Jul 14, 2020
This best in class Next-Gen firewall is elegant in its ease-of-use and architecture
I have not given a lot of thought as to what needs to be improved because so much of technology and capabilities are expanding. Probably Juniper could come up with their own dedicated endpoint security. Today they have an integration with Sophos. If you really look at what SRX has as far as antivirus capability, it is really only the integration with Sophos. Sophos is good, I am not saying Sophos is a bad solution. But Juniper having their own antivirus solution may be a batter idea to make it a stand-alone product. If you look at Check Point. They have a lot of experience in the area of security which is integrated with their product. In comparison, Juniper could start developing its own strong capabilities with antivirus and have its own security which may even surpass relying on Sophos. Sophos could improve more but it is definitely a wonderful architecture.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"This is an easy solution to deploy."
"The most valuable features of Fortinet FortiGate are the ability to work in proxy mode, which other solutions, such as Palo Alto cannot. There are some features that are better that come at no extra license or subscriptions cost, such as basic SD-WAN. The DLT is useful, other solutions have the same feature too, such as Palo Alto."
"The interface is very user-friendly and I like it very much."
"It's great for capturing the traffic and troubleshooting it."
"One of the nice things about FortiGate is that it can be deployed on the cloud or on-premises. You can actually do both. That's the biggest reason why I stick with this solution as opposed to something like Cisco Meraki. Another nice thing is that I can log directly into a FortiGate or get to it through their FortiCloud access products. They're pretty reliable and consistent. One of the reasons why I started using the product was their single pane of management. I can deploy their line of firewalls in conjunction with their switching and access points, and I can manage the entire network from one interface. I don't have to log into one interface for the firewall, another one for the access points, and another one for the switches. These firewalls have access point controller functionality built right into the system, so I don't even have to purchase additional devices to manage them."
"The most valuable feature is the policy routing and application control."
"Overall security features and performance routing is good."
"I have found Fortinet FortiGate to be scalable."
"I had no difficulty using the Huawei NGFW."
"It enables us to configure different policies and restrictions for specific users within the same subnet."
"The support for the solution has been excellent. If we ever had an issue they would send an engineer to help us with our problem."
"The stability is fine. I would rate the stability a nine out of ten."
"The solution's initial setup process is easy."
"Huawei was able to assist us in the installation of their product. The installation was very fast."
"The mapping features and traffic logging are good."
"I like that the initial setup is straighforward. It's also a scalable solution."
"The reason that we picked Juniper SRX is for the scalability, the fit for purpose, the tools that are available, the ongoing support and the ability to monitor, but particularly for the virtual routers in our data centers so that we can quickly upscale them when needed, when we need more throughput."
"It'sa very secure device, it has good attack prevention capabilities using UTM."
"We use it as a firewall at our head office and branches."
"Great as an inter-segmentation firewall or border or arch-firewall."
"We did not have problems with scaling, as we have less than 500 users in our organization."
"The high availability of the application is good."
"Troubleshooting with the solution is quite easy. If you compare the process to, for example, Fortigate, Juniper is much easier."
"I have used technical support quite a bit, and they are really good."
 

Cons

"The support from Fortinet FortiGate could improve. They are not easily accessible when we need them. They could improve their response time."
"Currently, without the additional reporting module, we only have access to basic reporting."
"I would like to see improvements in the support from Fortinet. Here in the Philippines, whenever we have problems with a Fortinet product, we mostly ask for support from distributors and resellers and not directly from Fortinet."
"We were not able to build a full-mesh VPN; however, I am not sure if this was the fault of Fortinet FortiGate."
"The visibility of the network can be better. The GUI can be improved for better visibility of the network flow. Other solutions have better GUI in terms of network visibility."
"It should have a better pricing plan. It is too expensive. It should also have a more granular view of the attack. I don't have FortiAnalyzer, and it is difficult for me to have a complete view when there is an attack on my server."
"Some configuration elements cannot be easily altered once created."
"The advanced models are expensive."
"The documentation needs to be improved. When they retire old models, they also retire the documentation. However, if you are still using an older model, you still need access to that documentation. And yet, they go ahead and removed it. It's gone. You are therefore stuck with a device with no documentation and technical support that isn't very helpful as they also remove support assistance as well."
"There needs to be more security equipment for the solution."
"The user interface could be more user-friendly."
"The solution requires a more interactive dashboard. That would make it easier than playing with configurations the way we have to now."
"One issue we've encountered with Huawei NGFW is that after using a firewall for two or three years, we need to replace it. The new firewalls often have more features and better memory or throughput. However, sometimes, they lack some features that the old ones had."
"With the Huawei firewall, none of the features comes at the top. We found out later that customer support is really not good. For this firewall, because of our customers' routine, for example, every six months they'll do a penetration test to find weaknesses. So whenever they came up with VAPT reports, they are looking to Huawei for help. I think that's basically because it's a different culture. Chinese culture and our culture is different. They have always tried to help find some excuses or say some other things that cannot help you solve the problem immediately."
"Huawei NGFW should have better reporting and a dashboard for the visibility of traffic."
"The solution is scalable but it is difficult because you need to purchase new systems, it is not just one click."
"The Juniper product has to improve in terms of innovation."
"To compare with Fortinet, Juniper needs to improve their security features."
"The range of devices should be expanded to include those suitable for a small implementation. Juniper does not have any lower-priced SRX models, useful perhaps for a single ATM or a single bank branch."
"The configuration is difficult and it should be easier."
"Does not offer protection for IoT devices"
"JTAC (Juniper Networks Technical Assistance Center) is just okay for technical assistance. However, if you are used to Cisco TAC responsiveness, you will need to adjust your expectations with Juniper Networks TAC."
"In some cases, customers encounter issues related to network interfaces, while others prioritize security concerns."
"There is room for improvement in scalability and performance. It's scalable and reliable, but when using next-generation firewall features, the performance decreases significantly for Juniper SRX."
 

Pricing and Cost Advice

"It is a good product from a price perspective versus functionality."
"Pricing and licensing is a little bit complicated in FortiGate. They are always on the higher side. This is one issue that we always raise with the company that they should reduce the price according to Indian market requirements. There are no costs in addition to the standard licensing fees."
"The licensing costs are very low."
"As far as I'm aware, in our case, it's just a yearly pricing arrangement with no additional licensing costs."
"When you look at these end security systems and firewalls, these firewalls even five years ago were $50,000 or perhaps $25,000 to implement in some types of customer sites. Now we're talking about tools that are $1,000. In this case, it might have been $500 or something like that."
"The beauty is the price performance ratio is great with FortiGate. It provides all the features we needed and the price is comparable with others' firewalls. The price is quite competitive with the firewalls with similar features."
"I had to pay for the license for the firewall, but it is guaranteed to have updates. I expect a good service for it. It was about €1000 for a year, and there was no additional cost."
"The initial setup is super straight forward and as far as the licensing goes for the small product that we have, the pricing was pretty competitive. It wasn't as simple and as cheap as a SonicWall but for the service we would get it was a good price."
"I believe that we are entitled to a one-year extension on our licensing."
"The solution is inexpensive."
"The solution isn't cheap. It's market price."
"The pricing is cheap."
"When you compare the price with other products, it's quite cost-effective. But the problem is always after, let's say, two years or three years later because they are not able to provide updates or patches very quickly."
"Huawei is 30% cheaper than Arista."
"Huawei is priced lower than most competitors."
"Licensing fees are billed on an annual basis."
"For a medium-sized organization, the cost for the licensing and implementation of Juniper SRX for 10 users would be about $300-400."
"I rate the solution's pricing as a four."
"The direct support with Juniper is expensive. When you stop using the solution and miss one year of payments, if you want the support back on a specific node, they ask you to pay for the year that you haven't used the node."
"Pricing is very good, not expensive."
"There is value for money. It offers a good solution at a good price. The price is normal for such a product."
"We were able to lower our overall operating costs over a three year period by 25%, mostly recovered from maintenance/support costs."
"The price is reasonable"
"I would say about $20,000 for a SRX650 with IDP licence."
report
Use our free recommendation engine to learn which Firewalls solutions are best for your needs.
787,817 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Educational Organization
21%
Computer Software Company
15%
Comms Service Provider
7%
Manufacturing Company
6%
Computer Software Company
16%
Financial Services Firm
13%
Comms Service Provider
9%
Government
7%
Educational Organization
44%
Computer Software Company
10%
Comms Service Provider
5%
Government
5%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

Which is the better NGFW: Fortinet Fortigate or Cisco Firepower?
When you compare these firewalls you can identify them with different features, advantages, practices and usage a...
What is the biggest difference between Sophos XG and FortiGate?
From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know...
What are the biggest technical differences between Sophos UTM and Fortinet FortiGate?
As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite ...
What do you like most about Huawei NGFW?
The solution's implementation is pretty easy.
What needs improvement with Huawei NGFW?
I stopped using the tool because it didn't meet my expectations. I tried integrating the solution with Arista’s Edge ...
What do you like most about Juniper SRX?
Juniper SRX Series Firewall is a stable solution.
What is your experience regarding pricing and costs for Juniper SRX?
I would rate the pricing eight out of ten. The solution is available at a reasonable and transparent price point.
What advice do you have for others considering Juniper SRX?
I would overall rate the product a ten out of ten. I would definitely recommend the product the others, but at our co...
 

Also Known As

FortiGate 60b, FortiGate 60c, FortiGate 80c, FortiGate 50b, FortiGate 200b, FortiGate 110c, FortiGate
Huawei USG Firewalls, USG9500 Series, USG6600 Series, USG6300 Series
Juniper SRX
 

Overview

 

Sample Customers

1. Amazon Web Services 2. Microsoft 3. IBM 4. Cisco 5. Dell 6. HP 7. Oracle 8. Verizon 9. AT&T 10. T-Mobile 11. Sprint 12. Vodafone 13. Orange 14. BT Group 15. Telstra 16. Deutsche Telekom 17. Comcast 18. Time Warner Cable 19. CenturyLink 20. NTT Communications 21. Tata Communications 22. SoftBank 23. China Mobile 24. Singtel 25. Telus 26. Rogers Communications 27. Bell Canada 28. Telkom Indonesia 29. Telkom South Africa 30. Telmex 31. Telia Company 32. Telkom Kenya
KMITL, Peking University
7-Eleven, AARNet Pty Ltd, Allegro Networks, alltours GmbH, Apollo Hotel Papendrecht, Armstrong Atlantic State University, Atlantech Online, Availity, Bajaj Capital, Baloise Insurance, BancABC, BAS Group, Black Lotus, Blue Box, Borealis, Carilion Clinic, Catholic Health System, CATV, Champlain College, Chinas Ministry of Railways, China University of Mining and Technology (CUMT), Cloud Dynamics, CloudSeeds, Cloudwatt, CODONiS, Colt Technology Services, Cork Internet Exchange, CSS Versicherung AG, CyrusOne, Danish Crown, Deloitte Belgium, Department of Energy, Divona Telecom, DQE Communications, DreamHost, European Government Agency, Expedient, Financial Market Information Services Provider, Fluidata, Fonality, Fox Sports, Global Financial Institution, Global Investment Bank, Global Investment Company, Energy Sciences Network (ESnet), Goethe University, HEAnet, High Performance Networks Inc., Hillenbrand
Find out what your peers are saying about Huawei NGFW vs. Juniper SRX Series Firewall and other solutions. Updated: May 2024.
787,817 professionals have used our research since 2012.