Try our new research platform with insights from 80,000+ expert users

Arista Edge Threat Management NG Firewall vs Forcepoint Next Generation Firewall comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Sep 16, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Fortinet FortiGate
Sponsored
Ranking in Firewalls
1st
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
581
Ranking in other categories
Secure Web Gateways (SWG) (2nd), Intrusion Detection and Prevention Software (IDPS) (1st), Software Defined WAN (SD-WAN) Solutions (1st), WAN Edge (1st), ZTNA (1st), Unified Threat Management (UTM) (1st)
Arista Edge Threat Manageme...
Ranking in Firewalls
40th
Average Rating
7.0
Reviews Sentiment
6.6
Number of Reviews
3
Ranking in other categories
No ranking in other categories
Forcepoint Next Generation ...
Ranking in Firewalls
20th
Average Rating
7.6
Reviews Sentiment
6.6
Number of Reviews
49
Ranking in other categories
Software Defined WAN (SD-WAN) Solutions (8th), WAN Edge (8th)
 

Mindshare comparison

As of February 2026, in the Firewalls category, the mindshare of Fortinet FortiGate is 18.7%, down from 20.9% compared to the previous year. The mindshare of Arista Edge Threat Management NG Firewall is 0.2%, up from 0.1% compared to the previous year. The mindshare of Forcepoint Next Generation Firewall is 0.6%, up from 0.4% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Firewalls Market Share Distribution
ProductMarket Share (%)
Fortinet FortiGate18.7%
Forcepoint Next Generation Firewall0.6%
Arista Edge Threat Management NG Firewall0.2%
Other80.5%
Firewalls
 

Featured Reviews

Vasu Gala - PeerSpot reviewer
Manager, Information Technology Operation/Presales at TechMonarch
A stable solution with an intuitive interface and quick customer service
I have been working with Fortinet FortiGate, WatchGuard, Sophos, and SonicWall. I'm not as comfortable with SonicWall because of their UI and limitations. I prefer Fortinet above all other options. When it comes to configuration, I am confident in my ability to handle various tasks, including creating policies such as firewall rules, web policies, and application policies. Additionally, I can configure VPNs and implement load balancing, among other tasks. Overall, I feel much more comfortable working with Fortinet. Fortinet has made significant improvements by integrating AI with firewalls for threat analysis and prevention. In the past 2-3 years, they have launched FortiSASE and SIEM, and they also provide SOC services. Both Palo Alto and Fortinet FortiGate are excellent. While Fortinet FortiGate comes at higher prices, the functionality and support justify the cost. They promptly resolve firmware issues and inform all support providers about configuration changes.
reviewer2785293 - PeerSpot reviewer
systems engineer at a computer software company with 51-200 employees
Perimeter security has reduced botnet attacks and now needs better interface and logging
The best features Arista Edge Threat Management NG Firewall offers are its ability to push a lot of traffic along with bandwidth management and traffic policy. Bandwidth management and traffic policy help my organization by keeping our internet subscription low. Arista Edge Threat Management NG Firewall has positively impacted my organization by reducing botnet attacks. Immediately after I installed the firewall, it stopped a few botnet attacks.
reviewer2774055 - PeerSpot reviewer
Cybersecurity Engineer at a tech consulting company with 51-200 employees
Improved network segmentation has reduced lateral movement while the interface still needs modernization
For threat prevention, I noticed on another customer that there were repeated scanning and exploit attempts against some public-facing service running on HTTPS. I configured Forcepoint Next Generation Firewall to handle IPS by enabling it with critical and high severity signatures only to reduce false positives. I turned on IP reputation filtering to filter out known malicious networks, applied rate limiting on specific services in the DMZ, and logged events centrally for correlation. As a result, exploit attempts were much less than before, being blocked before reaching the back-end servers from the firewall itself, with no performance degradation on the applications. The security team received clear and actionable logs that were centralized, so they knew what was happening all the time. Strong network segmentation is my favorite feature that Forcepoint Next Generation Firewall offers. The policies are very deterministic and readable, and it has excellent east-west blocking and least privilege architecture. Application awareness identifies traffic beyond just the port itself; I can identify the application using a specific port and block risky applications even if they use allowed ports, which is great for environments with shadow IT. The integrated threat prevention is also very good, with IPS featuring well-tuned signatures and reputation-based filtering that blocks known bad actors before they can touch any applications. It supports both IPsec and SSL VPN tunnels, along with site-to-site, client-to-site, and hybrid cloud links, integrating well with Active Directory and LDAP. Additionally, centralized log management and reporting are very actionable and structured, with clarity in the policies for auditing. Overall, its stability and reliability are commendable. A real example of how Forcepoint Next Generation Firewall's readable policies and application awareness features made my work easier was fixing a flat network problem without breaking actual applications. I inherited an environment where users, application servers, and databases were loosely segmented, with port-based and messy firewall rules. Security audits flagged lateral movement risks, and application owners were scared of outages if I tightened security too much. Forcepoint Next Generation Firewall made it easy by providing very easy-to-read and logical policies. I built policies that are clear, showing communications from the user zone to the application zone to specific applications, or from the app zone to the database zone, using only required database protocols. By default, I applied a deny rule between zones unless explicitly allowed by the readable rules I implemented. The policy view clarified who talks to whom, which rules exist, why they exist, and the business function they support, effectively stopping port abuse. Security posture has definitely improved greatly since using Forcepoint Next Generation Firewall. From a flat or semi-flat network, I now have clear zone-based segmentation, with increased operational efficiency. The admins using the firewall have rules that are easy to read and intent-based, making changes easier to review and approve. There is less fear that one wrong rule could break production and fewer outages caused by security changes, without hidden matches or rule shadowing surprises. Clear hit count visibility helps me clean unused rules, leading to much fewer outages caused by changes on the firewalls. The centralized log management with supported log types provides better visibility for the SOC team and the SIEM team, as Forcepoint Next Generation Firewall sends very easy-to-parse and search clear logs to the SOC team. I did see measurable, defensible results after using Forcepoint Next Generation Firewall, including fewer security incidents reaching the back-end servers. This reduction is due to strong segmentation, application awareness, and IPS features, leading to a 60 to 70 percent reduction in security alerts that actually reach the servers. DMZ exploit attempts dropped to near zero, and no lateral movement incidents were detected post network segmentation. Additionally, overall SOC efficiency improved due to well-structured and contextual logs reflecting clear policy intent, resulting in a 35 to 40 percent reduction in mean time to triage. SOC analysts stopped chasing noise and false positives, as they had much clearer logs to use confidently.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The most valuable feature is the ease of configuration."
"We purchased Fortinet because of the pricing, its functionality, because it met our requirements, and the total cost of ownership over five years was quite reasonable. In the market, Fortinet is rated quite well."
"FortiGate Next Generation Firewall has a very high ROI"
"It is stable and easy to use. There are a lot of good resources available on the web."
"FortiGate improved our security. It's one of the best hardware firewalls."
"The tool is a nice product and easy to handle. The software's user interface is also good. You can easily implement remote access in the solution."
"The simplicity of the product is great. It's very easy to use, which is a compliment we get all the time in terms of feedback."
"Fortinet is the best choice for small enterprises because it provides security as per their requirement and comes under their budget, making the pricing very acceptable for medium-level and small-level enterprise customers."
"Arista Edge Threat Management NG Firewall has positively impacted my organization by reducing botnet attacks."
"Phish Blocker is a valuable feature."
"The product's initial setup phase is easy."
"With Forcepoint, this process is simplified compared to others like Fortinet."
"Forcepoint is a complete package because it has network and systems applications. Other firewalls are only for the network."
"The product's initial setup phase is easy."
"They offer templates that provide detailed reports categorized by user, device, and internal network access."
"The feature that we like the most about Forcepoint is that we know the technology and have confidence in it. We can have several functionalities to simplify operations and management. We can combine functionalities like log ownership to review the number of devices in the infrastructure."
"I have found that Forcepoint Next Generation Firewall is easy to use, highly secure, and the main VPN tunnel is created automatically which is a benefit."
"Forcepoint's stability is satisfactory, for the most part."
"The central security management center and the content management center are very good."
 

Cons

"During a recent upgrade from old devices to the latest ones, corporate IT faced challenges as there was no straightforward migration process, requiring many manual steps."
"The area that Fortinet may improve is customer support. When you have an incident, situation, or open a case, the support is not as good as Cisco or other platforms I have tested."
"Fortinet FortiGate could improve by having a frequent ask questions(FAQ) area for people to receive quick answers to popular questions. Additionally, it would be beneficial to have an SMS notification feature. For example, if you cannot access your email you could receive an SMS message."
"Vulnerability scanning could be improved."
"I have to say that the initial setup was complex. The deployment took a few days to get set up. Initially, we were using an IPVanish. We switched to this tool since we thought it would be easier. But it turns out it wasn't easier to set up and run."
"There's a limitation wherein you can only have about 30 virtual or secondary IPs on a particular interface."
"Even though our currency in this part of the world is becoming increasingly weak, the pricing is now expensive for us. I have tried pushing Fortinet FortiGate to some customers, however, sometimes the transactions don't conclude due to pricing issues."
"The price could be improved."
"The documentation is not clear."
"The product has a lot to improve in the area of policy implementation."
"Arista Edge Threat Management NG Firewall can be improved, particularly the user interface, which is not very good, and also the logs, which are not very good."
"The optimization is not really ready. If you want very good optimization, you have to add it to the network."
"You do need knowledge of the solution in order to set the product up properly."
"They should have a local vendor who can provide support. Most of the support is overseas, so the time zones can be a problem."
"Forcepoint is a little difficult to configure compared to its competitors."
"In larger companies with extensive infrastructure, retrieving logs for a longer period of time can sometimes take a bit longer than desired."
"The security features need to be improved."
"Configuration is not easy because it has an old-fashioned interface. The configuration interface is highly complex, and it's been the same for years. They have to change the interface."
"My experience with this Forcepoint Next Generation Firewall wasn't very pleasant due to its complexity. For example, the firewall loses some features when working in a cluster, which is a huge challenge. It caused me several weeks to solve an issue to make the VPN work, even after opening several cases with support. Also, the debug, which should provide essential knowledge about everything going on, the flow of traffic, and how the engine works, wasn't very informative in identifying the issue."
 

Pricing and Cost Advice

"The price is okay."
"The pricing is flexible."
"The pricing is very reasonable."
"We have the full version of Fortinet FortiGate and we are on a three-year contract with a commitment of five years."
"The solution is offered as an annual license."
"Its pricing is good. The advantages of Fortinet FortiGate over its competitors include good pricing and meeting our requirements at a lower cost."
"It is too expensive for us. My organization is very small, and we have a total of ten users. We have three internal users and seven external users. The FortiGate 100D series is too expensive for renewing the licenses."
"They need to be competitive with other solutions."
"I consider it an averagely-priced tool."
"The tool is quite cheap."
"It is expensive."
"There is a need to make payments towards the licensing charges attached to the product. The product is not expensive."
"Forcepoint Next Generation Firewall is reasonable, it is priced the same as other firewalls."
"The pricing of the solution is normally competitive with other products."
"It is an affordable product. We purchase its yearly license."
"We would love to take other solution from Forcepoint, but unfortunately the price is too high. That's why we are not considering using Forcepoing for our proxy and DLB. They have a very good DLB, but the matter in the end is the cost."
"We have found the price could be reduced. It is a little expensive."
"We have just a subscription for the cloud, and this license is great. The license is so good."
report
Use our free recommendation engine to learn which Firewalls solutions are best for your needs.
881,821 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
12%
Comms Service Provider
9%
Manufacturing Company
8%
Financial Services Firm
6%
No data available
Manufacturing Company
10%
Financial Services Firm
8%
Government
7%
Computer Software Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business357
Midsize Enterprise133
Large Enterprise189
No data available
By reviewers
Company SizeCount
Small Business28
Midsize Enterprise10
Large Enterprise11
 

Questions from the Community

Which is the better NGFW: Fortinet Fortigate or Cisco Firepower?
When you compare these firewalls you can identify them with different features, advantages, practices and usage a...
What is the biggest difference between Sophos XG and FortiGate?
From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know...
What are the biggest technical differences between Sophos UTM and Fortinet FortiGate?
As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite ...
What is your experience regarding pricing and costs for Arista Edge Threat Management NG Firewall?
I consider it an averagely-priced tool. Adding additional features does not cost extra. My small company pays around ...
What needs improvement with Arista Edge Threat Management NG Firewall?
Arista Edge Threat Management NG Firewall can be improved, particularly the user interface, which is not very good, a...
What advice do you have for others considering Arista Edge Threat Management NG Firewall?
My advice to others looking into using Arista Edge Threat Management NG Firewall is that it is effective and accompli...
What is your experience regarding pricing and costs for Forcepoint Next Generation Firewall?
My experience with pricing, setup cost, and licensing is limited because I do not work with pricing, but I have exper...
What needs improvement with Forcepoint Next Generation Firewall?
Forcepoint Next Generation Firewall can be improved, perhaps in the user interface and policy management. While the p...
 

Also Known As

Fortinet FortiGate Next-Generation Firewall
No data available
Forcepoint NGFW, Stonesoft Next Generation Firewall, McAfee Network Security Platform, Intel Security Network Security Platform
 

Overview

 

Sample Customers

Amazon Web Services, Microsoft, IBM, Cisco, Dell, HP, Oracle, Verizon, AT&T, T-Mobile, Sprint, Vodafone, Orange, BT Group, Telstra, Deutsche Telekom, Comcast, Time Warner Cable, CenturyLink, NTT Communications, Tata Communications, SoftBank, China Mobile, Singtel, Telus, Rogers Communications, Bell Canada, Telkom Indonesia, Telkom South Africa, Telmex, Telia Company, Telkom Kenya
Information Not Available
California Department of Corrections and Rehabilitation (CDCR)
Find out what your peers are saying about Arista Edge Threat Management NG Firewall vs. Forcepoint Next Generation Firewall and other solutions. Updated: February 2026.
881,821 professionals have used our research since 2012.