Juniper vSRX vs Palo Alto Networks NG Firewalls comparison

Sponsored
 

Comparison Buyer's Guide

Executive Summary
 

Categories and Ranking

Fortinet FortiGate
Sponsored
Ranking in Firewalls
2nd
Average Rating
8.4
Number of Reviews
306
Ranking in other categories
Software Defined WAN (SD-WAN) Solutions (2nd), WAN Edge (1st)
Juniper vSRX
Ranking in Firewalls
24th
Average Rating
7.8
Number of Reviews
33
Ranking in other categories
Virtualization Security (3rd), Unified Threat Management (UTM) (8th)
Palo Alto Networks NG Firew...
Ranking in Firewalls
5th
Average Rating
8.6
Number of Reviews
164
Ranking in other categories
No ranking in other categories
 

Market share comparison

As of June 2024, in the Firewalls category, the market share of Fortinet FortiGate is 22.9% and it increased by 13.2% compared to the previous year. The market share of Juniper vSRX is 0.2% and it decreased by 47.9% compared to the previous year. The market share of Palo Alto Networks NG Firewalls is 1.9% and it decreased by 43.0% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Firewalls
Unique Categories:
Software Defined WAN (SD-WAN) Solutions
21.5%
WAN Edge
24.4%
Unified Threat Management (UTM)
3.8%
No other categories found
 

Featured Reviews

AN
Apr 25, 2023
Good threat prevention capabilities, good price, and very easy to deploy and manage
I have deployed it for a bank at a core level. On the perimeter, there was a Palo Alto firewall, and at the core level, we deployed the FortiGate firewall at DC and DR locations. After that, we deployed SD-WAN. We replaced the MPLS switch with the Fortinet SD-WAN device, so the whole branch traffic comes to the SD-WAN box, and from there, it comes to the FortiGate firewall, and then it goes to the Palo Alto firewall for the internet access and resource access. While migrating branches from MPLS to SD-WAN, we did require a maintenance window. There was no difficulty. It was very user-friendly. I have had many difficulties with the Check Point firewall. I have deployed major projects on the FortiGate firewall. I migrated more than a thousand branches on Fortinet SD-WAN and implemented FortiGate super massive firewalls at DC and DR locations. There were no complexities. Only at one location, I had an issue related to SD-WAN, but my query was resolved by Fortinet's local team. It's an on-premises firewall for the DC and DR locations. I have never worked on cloud projects, but if there is any opportunity to deploy it on the cloud, I will do it. I have only done on-premises deployment.
Adnan Abushagur - PeerSpot reviewer
Nov 1, 2023
The product is stable and has excellent command features, but the security feature must be improved
The command feature is valuable. The product provides restore and backup features, too The GUI is complex. The security feature must be improved. I have been using the solution for two years. I rate the tool’s stability an eight out of ten. I rate the tool’s scalability an eight out of ten. We…
Ishan Kumara - PeerSpot reviewer
Mar 29, 2023
Performs well and protects our internal network from external threats
We use the solution to protect our internal network from external threats. Up until recently we were not using multilayer firewalls and were using several solutions that are combined in Palo Alto Networks NG Firewalls We are required to provide our network test results to our central bank, and…

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Layer-3 firewall and routing are the most valuable features."
"The interface is very user-friendly and I like it very much."
"Security solution with a straightforward and quick setup. It's a stable and scalable product."
"The interface is very good."
"The product offers very good security."
"We have been able to offer several services to customers in a single box."
"We are a visual effects company, and there have been a number of high profile security issues in our industry. This has brought us to a higher standard of security, which our clients are very keen on these days."
"The most valuable features are SD-WAN, application control, IPS control, and FortiSandbox."
"This solution works well. Their switches and firewall are good."
"One of Juniper vSRX's most valuable features is its integration with safety applications. It keeps the software secure from developers without relying on third-party solutions."
"The technical support has been good."
"The initial setup is pretty simple."
"There are a few valuable features that offer very good quality on the solution. Especially NetScreen. We used to use NetScreen for the the product line. It was a very mature solution, very robust, easy to configure, easy to manage, etc. It made it easy to do everything."
"It is deployed on the customer site, and we manage the firewalls on this side."
"The technical support services are excellent."
"The product’s quality and performance are better than other vendors."
"One of the things I really like about it is that we have the same features and functions available on the entry-level device (PA-220), as do large corporations with much more costly appliances."
"The first time I came across these firewalls, what surprised me the most was their web user interface. It is complete and gives you a lot of information. You can do 80% of the things related to your network and firewall through the web UI. In some of the other devices, the UI is not as complete. App-ID is also very valuable in customer networks. When you're seeing a lot of traffic in your network, you can see in your web UI which users have the applications that are consuming the most bandwidth. You have a broad context, which is very good."
"URL filtering and WildFire features are most valuable. It is very user-friendly. It is a very solid product, and it definitely works."
"The initial setup process is quite easy."
"With its single pane of glass, it makes monitoring and troubleshooting a bit more homogeneous. We are not looking at multiple platforms and monitoring management tools. It is more efficient from that perspective. It is more of a common monitoring and control system for multiple aspects of what used to be different systems. It provides efficiency and time savings."
"The structure is much faster and more sophisticated than Cisco."
"The DNS sync code in your filtering is the most valuable feature of the Palo Alto Networks NG Firewalls."
"Palo Alto Networks NG Firewalls enable efficient application search, viewing, and configuration access across various services for different user groups within our company."
 

Cons

"With the addition of some features, it is possible that FortiGate can be used in all verticals."
"The reports are very basic."
"There is room for improvement related to the logging and reporting aspect."
"The support from Fortinet FortiGate could improve. They are not easily accessible when we need them. They could improve their response time."
"There is one big configuration file with no separations for the unique VDOMs. Maybe they could separate individual VDOM configuration files with the root VDOM configuration file referencing the individual VDOM config files.​"
"The process of configuring firewall rules appears excessively complex."
"FortiGate support could do some improvements on their IPv6 configuration. Right now it's still in the very early stage for utilizing in an enterprise level network environment."
"There are mainly two areas of improvement in Fortinet FortiGate— the licensing cost and the timing of upgrading licenses for boxes."
"In the next release, I would like to see improvements made to the GUI because it isn't very good."
"It is pretty complex to manage and could be easier."
"Fortinet is more user friendly than Juniper. In terms of remote access, I actually prefer using Fortinet. It's much easier to configure."
"The tool's basic license does not cover everything. It needs to improve visibility and availability."
"The reporting can be improved."
"The GUI interface needs improvement."
"The solution should consider improving its licensing policies."
"There are too many types of licenses, which can be confusing."
"The built-in machine learning features provide some automation, but I think there should be an option for manual review because nothing replaces the human eye."
"Palo Alto Networks NG Firewalls don't provide a unified platform that natively integrates all security capabilities. It's missing some features for geofencing and understanding locations."
"We are not happy with Palo Alto at all. It would be better if they provided more support for the firewall. We have a few pending issues with the configuration for each application. We cannot deploy them yet due to some support-related problems in the firewall. We have deployed a few policies for DNS spoofing and DNS attacks, but we could only block a few IP addresses through the policy. That's DNS security, and we have configured a few policies for DNS spoofing and more. URL categorization and URL filtering are not yet adequately maintained. For example, if you created a few rules in the rule-based configuration and made some rules downstairs, you will lose some of them if you give access upstairs. It's not giving us a proper solution for which route it is using. We need to apply the application-based policies and URL filtering-based policies. It creates more issues because we are not getting good support from the team."
"When we looked at it originally, we needed to host the Panorama environment ourselves. I would prefer it if we could take this as a service. It might be that it is available, but for some reason we didn't choose it. The downsides of hosting are that we need to feed and water the machines. We are trying to move to a more SaaS environment where we have less things in our data centers, whether they be in our cloud data centers or physical data centers, which can reduce our physical data center footprint."
"The price of the solution is very high."
"Its stability can be better. Their technical response from the support side can also be better."
"For an upcoming release, they could improve on the way to build security rules per user."
"The machine learning in Palo Alto NG Firewalls for securing networks against threats that are able to evolve and morph rapidly is good, in general. But there have been some cases where we get false positives and Palo Alto has denied traffic when there have been new updates and signature releases. Valid traffic gets blocked. We have had some bad experiences with this. If there were an ability, before it denies traffic, to get some kind of notification that some traffic is going to be blocked, that would be good."
 

Pricing and Cost Advice

"If you compare Fortinet FortiGate with Sophos and other firewall products available in the market, this solution is affordable."
"Fortinet FortiGate is expensive."
"Fortigate's pricing is competitive."
"Compared to other firewall products, it's a little cheaper in terms of pricing."
"Its pricing is fine. It is on a yearly basis. Other than the licensing fee, there is no extra fee."
"Pricing and licensing is a little bit complicated in FortiGate. They are always on the higher side. This is one issue that we always raise with the company that they should reduce the price according to Indian market requirements. There are no costs in addition to the standard licensing fees."
"It is a good product from a price perspective versus functionality."
"For medium and enterprise organizations, FortiGate is more affordable."
"The pricing is reasonable."
"The solution could have been cheaper."
"We like pricing through the AWS Marketplace."
"I rate the tool's pricing a five out of ten."
"It is not that costly."
"After some research, I think that the cost of Juniper is more than Check Point, Palo Alto, and Fortinet."
"As a customer, the pricing is good for us."
"Our experience purchasing the solution through the AWS Marketplace was good."
"Palo Alto Networks NG Firewalls' price is expensive."
"Its price is comparable to other companies. The license is on a one-year or three-year basis. It depends on the customers what they want to go for. There are some features that require an additional license, and there is also the cost of the support."
"It has a yearly subscription."
"Reducing costs is important, especially since Prisma can be expensive. It would be great if it were more affordable."
"It's pretty good."
"That solution's pricing and/or licensing are very convoluted."
"With Palo Alto, the licensing is very straightforward. For example, if you only have a requirement for a firewall, you can go with that. If you want to go with a subscription, you get all the features with it."
"It could be less expensive."
report
Use our free recommendation engine to learn which Firewalls solutions are best for your needs.
787,061 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Educational Organization
21%
Computer Software Company
15%
Comms Service Provider
7%
Manufacturing Company
6%
Educational Organization
81%
Computer Software Company
4%
Financial Services Firm
2%
Comms Service Provider
2%
Computer Software Company
16%
Financial Services Firm
9%
Manufacturing Company
8%
Government
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

Which is the better NGFW: Fortinet Fortigate or Cisco Firepower?
When you compare these firewalls you can identify them with different features, advantages, practices and usage a...
What is the biggest difference between Sophos XG and FortiGate?
From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know...
What are the biggest technical differences between Sophos UTM and Fortinet FortiGate?
As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite ...
What do you like most about Juniper vSRX?
One of Juniper vSRX's most valuable features is its integration with safety applications. It keeps the software secur...
What is your experience regarding pricing and costs for Juniper vSRX?
The tool is sold in a package. Hence, the individual price is very low.
What needs improvement with Juniper vSRX?
The biggest downside of Juniper vSRX is its pricing, which may be too high for smaller organizations. While it's a de...
What is a better choice, Azure Firewall or Palo Alto Networks NG Firewalls?
Azure Firewall Vs. Palo Alto Network NG Firewalls Both solutions provide stellar stability and security. Azure Firew...
Features comparison between Palo Alto and Fortinet firewalls
In the best tradition of these questions, Feature-wise both are quite similar, but each has things it's better at, it...
Which is better - Palo Alto Networks NG Firewalls or Sophos XG?
Palo Alto Networks NG Firewalls have both great features and performance. I like that Palo Alto has regular threat si...
 

Also Known As

FortiGate 60b, FortiGate 60c, FortiGate 80c, FortiGate 50b, FortiGate 200b, FortiGate 110c, FortiGate
No data available
Palo Alto NGFW, Palo Alto Networks Next-Generation Firewall
 

Overview

 

Sample Customers

1. Amazon Web Services 2. Microsoft 3. IBM 4. Cisco 5. Dell 6. HP 7. Oracle 8. Verizon 9. AT&T 10. T-Mobile 11. Sprint 12. Vodafone 13. Orange 14. BT Group 15. Telstra 16. Deutsche Telekom 17. Comcast 18. Time Warner Cable 19. CenturyLink 20. NTT Communications 21. Tata Communications 22. SoftBank 23. China Mobile 24. Singtel 25. Telus 26. Rogers Communications 27. Bell Canada 28. Telkom Indonesia 29. Telkom South Africa 30. Telmex 31. Telia Company 32. Telkom Kenya
Expedient Data Centers
SkiStar AB, Ada County, Global IT Services PSF, Southern Cross Hospitals, Verge Health, University of Portsmouth, Austrian Airlines, The Heinz Endowments
Find out what your peers are saying about Juniper vSRX vs. Palo Alto Networks NG Firewalls and other solutions. Updated: May 2024.
787,061 professionals have used our research since 2012.