Try our new research platform with insights from 80,000+ expert users

Check Point Application Control vs WatchGuard Firebox comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Aug 5, 2025

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Fortinet FortiGate
Sponsored
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
410
Ranking in other categories
Firewalls (2nd), Software Defined WAN (SD-WAN) Solutions (1st), WAN Edge (1st)
Check Point Application Con...
Average Rating
8.8
Reviews Sentiment
7.6
Number of Reviews
41
Ranking in other categories
Application Control (3rd)
WatchGuard Firebox
Average Rating
8.4
Reviews Sentiment
7.5
Number of Reviews
125
Ranking in other categories
Data Loss Prevention (DLP) (11th), Firewalls (14th), Intrusion Detection and Prevention Software (IDPS) (8th), Anti-Malware Tools (13th), Endpoint Detection and Response (EDR) (21st), Application Control (7th), Unified Threat Management (UTM) (2nd)
 

Featured Reviews

Vasu Gala - PeerSpot reviewer
A stable solution with an intuitive interface and quick customer service
I have been working with Fortinet FortiGate, WatchGuard, Sophos, and SonicWall. I'm not as comfortable with SonicWall because of their UI and limitations. I prefer Fortinet above all other options. When it comes to configuration, I am confident in my ability to handle various tasks, including creating policies such as firewall rules, web policies, and application policies. Additionally, I can configure VPNs and implement load balancing, among other tasks. Overall, I feel much more comfortable working with Fortinet. Fortinet has made significant improvements by integrating AI with firewalls for threat analysis and prevention. In the past 2-3 years, they have launched FortiSASE and SIEM, and they also provide SOC services. Both Palo Alto and Fortinet FortiGate are excellent. While Fortinet FortiGate comes at higher prices, the functionality and support justify the cost. They promptly resolve firmware issues and inform all support providers about configuration changes.
Jivesh Sharma - PeerSpot reviewer
Control application access and optimize bandwidth for enhanced productivity
Check Point Application Control can be improved, particularly in policy management. When we add applications in the policy, we currently have the option to select individual applications, but a feature allowing categorization of applications based on types, such as social media applications, would make it easier to add multiple or bulk applications in the policy. This feature would be very valuable if introduced. Feedback from management about how these changes improved productivity and network performance has been positive. Users were spending their time watching videos on YouTube or streaming content, wasting time on Instagram and Facebook while in the office. Managers complained about this, leading to compliance policies being defined to restrict access to these kinds of applications.
Rajesh  Makwana - PeerSpot reviewer
Efficient bandwidth management and secure network access with a strong firewall
The primary use case of the Firebox mainly revolves around bandwidth management, unnecessary web blocking, application control, and protection against brute force attacks. It is also implemented for load balancing, SD-WAN, and branch-to-branch connectivity from one location to another. We also use…

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The most valuable feature of this solution is the analytics."
"The most valuable features of the solution are SD-WAN, filtering testing applications, web filtering, and the new VPN."
"Layer-3 firewall and routing are the most valuable features."
"The web tutor and automatic rules by schedule are good features."
"The reporting you receive out of this appliance is excellent. You will not need an external management system."
"The product is very stable, easy to troubleshoot, and configure, so it has reduced the time it takes for support."
"Overall security features and performance routing is good."
"The dashboard I have found the most valuable in Fortinet FortiGate."
"The best value we have is their actionable reports on user analytics, events, and activity that are extracted from their database."
"The most valuable feature of Check Point Application Control is VPN access and the ability to lock out sites we do not want users to have access. The reporting monitoring software in Check Point Application Control is fantastic. For example, log filtering is beneficial."
"It has many important features that have greatly helped the company and the IT department."
"The overall security of the environment has been greatly improved by the Check Point NGFWs. Before implementing the Check Point solutions, we relied on the Cisco ACLs and Zone-Based firewalls configured on the switches and routers, which in fact a simple stateful firewall, and currently appear to be not an efficient solution for protecting from the advanced threats."
"We can control bandwidth and high-risk application access from our network using application control."
"The ability to be able to do dynamic rate limiting on specific applications has been a valuable feature."
"We can easily switch from a classical firewall to a next-gen firewall using application security."
"The most important characteristic is granularity, which allows our teams to have different security profiles depending on the department to be protected."
"The features that I have found most valuable are the FireWall features. The management side of WatchGuard is quite easy because it supports two ways to manage it - by the web and the other one they call WatchGuard systems manager. I used to be familiar with WSM only, but they improved their GUI in the web browser and now it is much easier to do it within the web browser."
"I recommend Firebox since this device will not let anyone down."
"The main features of the solution are the control of the site-to-site network access and the overall features."
"The most valuable feature of WatchGuard Firebox is its ease of use."
"The most valuable feature, in my opinion, is the dimension logging platform and the network traffic filtering."
"HostWatch makes it so I can see, in real-time, activity in the event that there is something weird happening on the network. This simplifies my job."
"The Firebox offers valuable features such as network security, URL filtering, UTM features, intrusion prevention and detection, and authentication."
"I like that this product has very few issues."
 

Cons

"The WAF is extremely limited."
"In terms of pricing, Fortinet needs to do more to compete effectively."
"Fortinet FortiGate can improve the integration with Active Directory. Additionally, I would like to have a Cloud Controller, such as they do in the Cisco Meraki solution."
"The routing capability on the FortiGate devices has room for improvement."
"The solution needs to improve its integration with cybersecurity."
"FortiGate can only retain logs for 24 hours or 7 days. I'm not sure if it holds them for a longer period, such as for a month."
"The integration with third-party tools may be something that they should work on."
"I often ask for help from the local provider. I haven't found the required efficient help."
"Check Point licenses are somewhat expensive."
"It is expensive."
"Seeing the capabilities and features that we are using today, we can say that we could expect an additional feature that could allow us to integrate this management and even security with APIs."
"Usability needs to be improved."
"The guides used today are a bit complex, and we need efficient and simple access to them so that any administrative or technical person can solve, analyze, and configure each of the rules and identities seamlessly."
"Custom applications for internal applications must be defined frequently."
"Check Point Application Control needs to ensure that they release up-to-date security patches regularly. It should release better documentation so end-users can use the product without depending on the support team."
"If you want to use Application Control over your whole environment you have to license it for all gateways. Otherwise, you can only work with a subset of it. Therefore, pricing can be quite an issue."
"The software base, the management piece that goes onto a server, is not as user-friendly as I would like. There are three different pieces that you have to manage, so it's a little bit convoluted, in my opinion."
"I think one area for improvement in this solution would be enhancing communication with tools like Active Directory. This would make the tool easier to integrate and effective for users."
"WatchGuard Data Loss Prevention needs to improve its support."
"The UI and web view aren't nice."
"The reporting is a little on the weak side. I would like to see a better reporting set and easier drill-down options."
"The pricing could be improved. It is definitely one of the more expensive products."
"I would like to see more training become available for us."
"There should be more reports available on different subjects."
 

Pricing and Cost Advice

"Fortinet costs are 25% lower than the high-cost provider. There is an equipment cost and a recurring monthly cost for licenses and technical support."
"Their licensing costs are annual. The UTM feature license along with their support is called FortiCare. We include that as a part of the annual maintenance cost. Palo Alto or Juniper also have an annual subscription charge for UTM. Price, of course, can always be more competitive, but it is not the most expensive product. The price-performance ratio is quite high for FortiGate."
"The pricing of the solution is very competitive."
"If you purchase a one-year subscription with the hardware and then you want to renew for the second year, it is very costly."
"The price of FortiGate is comparable to that of most other firewall solutions and is more affordable than Cisco."
"The Fortinet FortiGate security features cost approximately $1,500 a year. The firewall itself doesn't have a recurring cost. It's the security features on top of that that you pay for."
"The price is high compared to some of the other solutions."
"Price-wise, it's at a good price point for our market."
"Check Point Application Control is expensive. The tool's licensing costs are yearly."
"I think application control has become a basic feature and it should be enabled automatically, without having to purchase a separate license for it."
"It's a bit expensive and it could be cheaper, but it's part of business politics."
"The blade has its cost but you can take advantage of the license package to pay less for it."
"The price of Check Point Application Control is high. The support and ecosystem around the solution are expensive."
"The price is comparable."
"They license it. When we buy it, we buy it with a three-year license. That's the most cost-effective way to do it. So, if you're going to buy it, then buy it with the three-year licensing."
"Their price point worked, which is the reason why we stayed with WatchGuard."
"WatchGuard Firebox is a cheap solution."
"We pay about $3,500 every three years."
"The solution's most valuable feature is its pricing."
"The price is so small that I don't pay attention to it anymore. I think we pay a few thousand dollars for two to three years, so about $100 per month. That's for all of our users. There is an additional cost if we want to go with a deeper licensing model, but we just pay for antivirus, IPS, and main product support."
"It costs me about $800 a year."
report
Use our free recommendation engine to learn which Application Control solutions are best for your needs.
865,140 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
16%
Comms Service Provider
9%
Manufacturing Company
7%
Financial Services Firm
6%
Computer Software Company
14%
Performing Arts
11%
Financial Services Firm
11%
Manufacturing Company
8%
Computer Software Company
14%
Comms Service Provider
11%
Retailer
6%
Manufacturing Company
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

Which is the better NGFW: Fortinet Fortigate or Cisco Firepower?
When you compare these firewalls you can identify them with different features, advantages, practices and usage a...
What is the biggest difference between Sophos XG and FortiGate?
From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know...
What are the biggest technical differences between Sophos UTM and Fortinet FortiGate?
As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite ...
What do you like most about Check Point Application Control?
It has many important features that have greatly helped the company and the IT department.
What is your experience regarding pricing and costs for Check Point Application Control?
My experience with the pricing, setup cost, and licensing for Check Point Application Control is that the pricing is ...
What needs improvement with Check Point Application Control?
Check Point Application Control could be improved, particularly regarding the application categorization accuracy as ...
What is your primary use case for WatchGuard Firebox?
We are providing our services to all WatchGuard customers in the region.
What is your primary use case for WatchGuard Firebox?
We just use it as a secondary WiFi device. We're a small office and we needed to set up a WiFi device for a few of ou...
What is your primary use case for WatchGuard Firebox?
We're a hospital and we use it for developing our incoming and outgoing policies, and we also use it for VPN.
 

Also Known As

FortiGate 60b, FortiGate 60c, FortiGate 80c, FortiGate 50b, FortiGate 200b, FortiGate 110c, FortiGate, Fortinet Firewall
No data available
WatchGuard Threat Detection and Response, WatchGuard Application Control, WatchGuard Data Loss Prevention, WatchGuard Gateway AntiVirus, WatchGuard Intrusion Prevention Service
 

Overview

 

Sample Customers

Amazon Web Services, Microsoft, IBM, Cisco, Dell, HP, Oracle, Verizon, AT&T, T-Mobile, Sprint, Vodafone, Orange, BT Group, Telstra, Deutsche Telekom, Comcast, Time Warner Cable, CenturyLink, NTT Communications, Tata Communications, SoftBank, China Mobile, Singtel, Telus, Rogers Communications, Bell Canada, Telkom Indonesia, Telkom South Africa, Telmex, Telia Company, Telkom Kenya
SEB, Luma Arles, Terma, Aerospace, Midwest Rubber
Ellips, Diecutstickers.com, Clarke Energy, NCR, Wrest Park, Homeslice Pizza, Fortessa Tableware Solutions, The Phoenix Residence
Find out what your peers are saying about Check Point Application Control vs. WatchGuard Firebox and other solutions. Updated: August 2025.
865,140 professionals have used our research since 2012.