Cato SASE Cloud Platform vs FortiGate Next Generation Firewall (NGFW) comparison

Cancel
You must select at least 2 products to compare!
Comparison Buyer's Guide
Executive Summary

We performed a comparison between Cato SASE Cloud Platform and FortiGate Next Generation Firewall (NGFW) based on real PeerSpot user reviews.

Find out in this report how the two ZTNA solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI.
To learn more, read our detailed Cato SASE Cloud Platform vs. FortiGate Next Generation Firewall (NGFW) Report (Updated: March 2024).
770,141 professionals have used our research since 2012.
Featured Review
Quotes From Members
We asked business professionals to review the solutions they use.
Here are some excerpts of what they said:
Pros
"The visibility control and security aspects are amazing.""The most valuable feature of Cato Networks is the CASB and the documentation is useful.""It's a pretty straightforward solution.""The solution is a simple WAN solution. We've onboarded the socket on the Cato platform, and it provides connectivity. There is no complex routing.""We appreciate the optimization and acceleration of the performance of SDP users.""The most valuable features of Cato Networks are the always-on VPN for remote workers and centralized management. Additionally, web filtering and antivirus are good.""It's a cloud-based solution that integrates well with everything.""Cato offers all the functionality found in other solution. The life cycle management is always very stable."

More Cato SASE Cloud Platform Pros →

"It is a scalable solution.""The solution's application control is very powerful.""FortiGate Next Generation Firewall is a good solution because it has a range of options and a clear ecosystem.""The solution has helped our organization secure our network and connect remote sites.""FortiGate Next Generation Firewall has a simple configuration.""The most valuable features we found are the SD-WAN, FortiGate SD-WAN, and the standard UTM protection, among others.""FortiGate Next Generation Firewall (NGFW) 's most valuable features are reporting and filtering.""The product is user-friendly and not complex."

More FortiGate Next Generation Firewall (NGFW) Pros →

Cons
"Cato Networks security could be better.""For a packaged solution, needing external intervention or a system integrator to get other features not offered by Cato Networks could be an area for improvement. Cato Networks does what it's meant to do and is even overstretching capabilities when introducing new features. The product can only have very few features added on top of what its currently doing. Managed service providers can deliver the extra features you'd need. It's a set of managed services, and what Cato Networks does is very comprehensive. So, for the time being, when the actual incarnation of the SASE solution is deployed, Cato Networks is a very effective product. Naturally, technology will evolve, so everybody knows that in three, four, or five years, there will be a new kid on the block, a new game. Still, at the moment, Cato Networks only needs to improve a little regarding SASE delivery. The product is doing very well, but one feature the Cato Networks team is doing right is preparing for the future through deploying the SSE 360, so the security service is at that edge. It's an excellent strategy to prepare for the future. SSE 360 is what Cato Networks should invest in the most to keep prospering.""They can't do one-to-one NAT (Network Address Translation) in AP (their access point), and that is something that Palo Alto can do.""The different languages in the user interface should be enhanced.""Web application firewalling (WAF) is a feature we would like to have in this solution and does not exist yet.""Its functionality is a bit limited in some areas as compared to a Cisco solution. It is not as granular. It doesn't have the manageability, feature set, and capabilities of a larger or an enterprise-level solution. It just needs a more robust feature set and granularity.""A little tweaking or improvement of the UI in terms of logging when troubleshooting would be an improvement because it's very detailed.""The price could be better."

More Cato SASE Cloud Platform Cons →

"I see problems with the licensing. If I have to add a new feature, we need to add a license.""There are some issues with security features and aspects like logs not being up to the mark.""There should be better customization in the IPS.""The licensing model and pricing need improvement.""The web process often has a memory leak.""The product has to be upgraded every few weeks.""The solution must improve the support provided for customers around the globe, considering the time differences in different places.""The vendors offer models with different levels of productivity of the product to its users, which is not possible in FortiGate Next Generation Firewall (NGFW). It lacks integration options."

More FortiGate Next Generation Firewall (NGFW) Cons →

Pricing and Cost Advice
  • "The price is not an issue for us, as it is priced more competitively than some other vendors."
  • "If you compare with VeloCloud, the price is the same or even cheaper."
  • "You pay yearly based on the speed of your network. If you increase the speed of your network, you increase the cost for your throughput. It is by bandwidth for the most part and then licenses for VPN. There is some per-seat licensing for VPN access, but the majority of it is minimal. It is like $30 a year per client. The rest is based on how much bandwidth you'll use. You pay for that upfront for the year, and if you have to increase it, you increase it, and then they let you send more data through. There are no additional costs in addition to the standard licensing fees."
  • "Cato Networks seems more expensive than Cisco Meraki."
  • "The pricing of this solution depends on what you need. It is based on bandwidth."
  • "I rate the price of Cato Networks a four out of five."
  • "Cato Networks is an expensive product, but it works out of the box, so that's the usual trade-off, make versus buy. If you decide to buy a product that doesn't require much programming, then you'd want to go for Cato Networks, which will work naturally, and immediately without any complex setup. However, the product is a little bit more expensive than the competitors. On a scale of one to five, I'd rate the pricing for Cato Networks as four."
  • "The product is very competitively priced, and that's compelling. They don't charge the customer based on the operational cost like other brands such as Palo Alto. Cato has its own fully-fledged cloud, with their own data centers, equipment, and so on, which is an advantage. I rate the solution five out of five for affordability."
  • More Cato SASE Cloud Platform Pricing and Cost Advice →

  • "The product is a little bit expensive."
  • "I think price-wise, the solution is totally reasonable since it has many products to serve, starting from small homes to massive scale sites."
  • "If we have an older version, the support costs get quite high."
  • "FortiGate Next-Generation Firewall is cheaper than Cisco or CheckPoint."
  • "FortiGate Next Generation Firewall is an expensive solution."
  • "The solution's price is average."
  • "FortiGate Next Generation Firewall is a very cheap solution."
  • "The solution is more expensive than Sophos. It could be cheaper. The licensing is on a yearly basis. We have had it for about three years. We must only pay extra for the license, additional requirements, and the hardware box."
  • More FortiGate Next Generation Firewall (NGFW) Pricing and Cost Advice →

    report
    Use our free recommendation engine to learn which ZTNA solutions are best for your needs.
    770,141 professionals have used our research since 2012.
    Questions from the Community
    Top Answer:The solution is a simple WAN solution. We've onboarded the socket on the Cato platform, and it provides connectivity. There is no complex routing.
    Top Answer:We use the solution as a WAN, but we plan to optimize it by incorporating security features like zero trust for enhanced insights.
    Top Answer:In terms of security, we are planning to deploy more features and our current usage is primarily focused on branch networking. I rate the tool a nine out of ten. I rate the product a nine out of ten… more »
    Top Answer:The tool's most valuable feature is IPS. In my experience, I haven't encountered any issues with integration. It easily integrates with the FortiGate solution. However, verifying through documentation… more »
    Top Answer:The tool's pricing is neither cheap nor expensive. Overall, I find it to be competitive in the market.
    Ranking
    Views
    6,691
    Comparisons
    3,733
    Reviews
    10
    Average Words per Review
    500
    Rating
    8.8
    4th
    out of 34 in ZTNA
    Views
    176
    Comparisons
    129
    Reviews
    35
    Average Words per Review
    481
    Rating
    8.4
    Comparisons
    Also Known As
    Cato Networks
    Learn More
    Overview

    Cato Networks is a leading SASE (Secure Access Service Edge) platform, combining SD-WAN and network security to obtain a cloud-native service. Cato Networks optimizes and secures application access for users and identities. The platform delivers a next-generation secure networking architecture that minimizes legacy IT infrastructures’ complexity, costs, and risks. The goal of Cato Suite is to connect any user to any application securely and optimally.

    Cato Suite runs on a private global network of more than 65 PoPs (points of presence) connected via SLA-backed network providers. The service can connect branches, data centers, users, and clouds. Cato can be deployed in stages to augment legacy network services.

    Cato Suite delivers end-to-end route optimization for WAN and cloud traffic. The architecture is self-healing, enabling a high service uptime.

    Cato Features

    Cato Cloud has a global backbone to deliver a reliable, global network. Here are some key SD-WAN features of Cato Cloud.

    • Optimizes traffic flows: The Cato Suite can individually optimize traffic flows in the last mile - from the customer’s location to the point of presence, and also between PoPs. This feature eliminates the need for internet providers to hand off traffic to each other, avoiding the resulting latency and congestion.
    • Controls and manages bandwidth: The software-defined overlay is encrypted across the entire cloud infrastructure. This overlay uses application-aware routing, analyzing latency and loss data to choose the best route according to network conditions. These features, like protocol priority marking, enable the system to ensure the performance of real-time applications.
    • Delivers redundancy and failover: By connecting the points of presence with multiple Tier-1 IPs, Cato builds the redundancy needed to ensure security and highly available service.
    • Cloud-native: Cato is built as a scalable, resilient, and elastic cloud service.
    • Converged: The platform converges SD-WAN and network security into a single infrastructure framework.
    • Secures all edges: Cato Network can secure and optimize traffic from all users, locations, applications, and clouds.

    What challenges does Cato Network solve?

    • Migration to SD-WAN

    MPLS (multi-protocol label switching) networks are usually expensive and limited in their capacity. Cato simplifies migrating to a faster, higher-capacity internet and SASE cloud. Cato SD-WAN appliances enable customers to improve usable capacity and resiliency.

    • Global connectivity optimization

    Customers who suffer from the challenge of high latency and network inconsistency can use Cato to deliver a consistent connection and user experience to access on-premises and cloud applications.

    • Securing branch internet access

    Cato’s complete network security stack connects all branch locations to the Cato cloud, therefore protecting all traffic, both internet-bound and WAN, with enterprise-grade, cloud-based security services. This capability avoids having to backhaul internet traffic to a data center or hub or having to implement stand-alone cloud security solutions.

    • Cloud acceleration and control

    Organizations using Cato notice an acceleration of cloud traffic. Cato achieves this by routing all traffic from the edges to the PoP closest to the data center. Because of the close distance between the two, the latency is near zero.

    Reviews from Real Users

    An IT manager/project coordinator at a healthcare company says that “[Cato is] a cloud-based solution that integrates well with everything. They are the classic SaaS solution.”

    Yeong-Gi L., a network engineer at Snetsystems, notes that “The solution is very stable. The scalability is quite good. Technical support was always helpful and responsive. The integration capabilities are not a problem at all.”

    "The most valuable feature is that it also works as a next-gen firewall because it has security features," says Lorenzo S., senior solutions consultant Lead at MDI.

    The FortiGate Next Generation Firewall (NGFW) from Fortinet is a comprehensive cybersecurity solution designed to cater to a wide array of organizational needs. It integrates seamlessly into the Fortinet Security Fabric, offering robust protection against various internal and external threats, including attacks, malware, and vulnerabilities. The NGFW is known for its advanced features such as SSL inspection, application control, visibility enhancements, and an effective intrusion prevention system (IPS). This IPS plays a critical role in identifying and blocking malicious traffic by monitoring and inspecting incoming data.

    FortiGate NGFW can be deployed in diverse environments, including on-premises, in the cloud, or hybrid setups. The firewall is equipped with next-generation antivirus capabilities, IPS, web filtering, sandboxing, and intelligent security automation features like threat intelligence integration and automated incident response. Its reporting and analytics tools are comprehensive, aiding in enhancing an organization's security posture.

    A notable aspect of the FortiGate NGFW is its diverse and highly rated features, including a powerful VPN, a user-friendly Firewall Management Console, policy-based controls, and advanced reporting and logging capabilities. The system also supports Identification Technologies, Visualization Tools, Content Inspection, and seamless integration with Active Directory and LDAP directories. Its High Availability and the flexibility to deploy in various configurations, such as on-premises or as a Virtual Machine, make it a versatile choice for different business needs.

    The FortiGate NGFW also excels in providing secure connectivity. It supports various VPN protocols, offers SD-WAN for intelligent traffic routing, and integrates SASE for unified security and networking solutions. These features contribute to improved security, reduced operational costs, and increased agility for organizations.

    When it comes to user experiences and satisfaction, FortiGate NGFW has garnered positive feedback, with an average rating of about 4.26 out of 5 on PeerSpot Reviews. Users from diverse roles, including core network teams, technical officers, and cybersecurity engineers, and from various sectors such as tech services, education, and finance, have found the solution effective. This indicates its versatility and suitability across different company sizes and types.

    However, there are areas for improvement. Enhancing the details in Logging Services and making 10 Gigabit Interfaces available for lower models are some suggested enhancements. Simplifying the installation of FortiAP services is also noted as a potential area for improvement.

    Sample Customers
    Paysafe, AdRoll, Pet Lovers Centre, Arlington Orthopedics, Humphreys & Partners Architects
    Information Not Available
    Top Industries
    REVIEWERS
    Healthcare Company18%
    Retailer18%
    Insurance Company9%
    Energy/Utilities Company9%
    VISITORS READING REVIEWS
    Computer Software Company28%
    Manufacturing Company9%
    Financial Services Firm6%
    Retailer6%
    REVIEWERS
    Educational Organization11%
    Computer Software Company11%
    Security Firm11%
    Financial Services Firm11%
    VISITORS READING REVIEWS
    Computer Software Company26%
    Educational Organization9%
    Financial Services Firm9%
    Comms Service Provider8%
    Company Size
    REVIEWERS
    Small Business43%
    Midsize Enterprise24%
    Large Enterprise33%
    VISITORS READING REVIEWS
    Small Business25%
    Midsize Enterprise30%
    Large Enterprise45%
    REVIEWERS
    Small Business68%
    Midsize Enterprise24%
    Large Enterprise8%
    VISITORS READING REVIEWS
    Small Business45%
    Midsize Enterprise23%
    Large Enterprise32%
    Buyer's Guide
    Cato SASE Cloud Platform vs. FortiGate Next Generation Firewall (NGFW)
    March 2024
    Find out what your peers are saying about Cato SASE Cloud Platform vs. FortiGate Next Generation Firewall (NGFW) and other solutions. Updated: March 2024.
    770,141 professionals have used our research since 2012.

    Cato SASE Cloud Platform is ranked 5th in Secure Access Service Edge (SASE) with 21 reviews while FortiGate Next Generation Firewall (NGFW) is ranked 4th in ZTNA with 37 reviews. Cato SASE Cloud Platform is rated 8.8, while FortiGate Next Generation Firewall (NGFW) is rated 8.4. The top reviewer of Cato SASE Cloud Platform writes "Useful remote worker VPN, centralized management, and simple on-boarding process". On the other hand, the top reviewer of FortiGate Next Generation Firewall (NGFW) writes "Easy to set up but needs better pricing and more helpful support". Cato SASE Cloud Platform is most compared with Zscaler Zero Trust Exchange, Cisco SD-WAN, Prisma Access by Palo Alto Networks, Fortinet FortiGate and VMware SD-WAN, whereas FortiGate Next Generation Firewall (NGFW) is most compared with OPNsense, Netgate pfSense, Tailscale, Fortinet FortiGate and Twingate. See our Cato SASE Cloud Platform vs. FortiGate Next Generation Firewall (NGFW) report.

    See our list of best ZTNA vendors.

    We monitor all ZTNA reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.