

Check Point Cloud Firewall (formerly CloudGuard Network Security) and OPNsense compete in the network security category. Check Point Cloud Firewall, known for its robust cloud security, has the upper hand in terms of scalability and integration, while OPNsense is more cost-effective, particularly for small-scale deployments.
Features: Check Point Cloud Firewall offers advanced threat prevention, centralized management, and zero-day attack protection, making it ideal for complex hybrid cloud environments. In contrast, OPNsense provides an intuitive web-based interface, open-source flexibility, and essential firewall capabilities, appealing to budget-conscious users looking for straightforward security solutions.
Room for Improvement: Check Point users report a need for enhanced integration with other platforms and better documentation, along with support for container security and a simplified onboarding process. OPNsense could benefit from improved VPN functionality, better reporting features, and clearer documentation for complex configurations.
Ease of Deployment and Customer Service: Check Point Cloud Firewall is noted for its flexible deployment in public and hybrid clouds but faces criticism for the complexity of initial setup and inconsistent customer support experiences across regions. OPNsense is praised for straightforward on-premises deployment and open-source accessibility, though it may require additional training for optimal use.
Pricing and ROI: Check Point Cloud Firewall is considered a premium solution with enterprise-level features, offering good value through flexible pricing models aligned with large operational needs. OPNsense is favored for its low cost, being open-source with no licensing fees, providing substantial ROI for small businesses willing to invest in the associated technical setup.
The value lies in maintaining operational integrity with zero downtime or incidents, facilitating secure, ongoing business operations.
The compliance has improved as our overall compliance score against CIS benchmark has improved from around 72 to 92% within the first three months of adoption.
This helped my team cut manual review time by roughly twenty to twenty-five percent, allowing me to reallocate effort to proactive cloud security improvements.
The network attacks reduced by approximately 60% after using that, even without customizing the custom configuration yet.
For a very little investment, I was able to increase the security of my network.
They usually respond quite fast, and they are very knowledgeable about what they do.
We had an endless loop of emails trying to fix this, and the suggestion was to reinstall the gateway and do it from scratch, which was not an option at that point because it would leave that specific location without access.
I think TAC of Check Point Cloud Firewall (formerly CloudGuard Network Security) is very competent; they really know what they are doing.
Compared to some open-source projects with weak support, OPNsense stands out for having both a strong community and commercial backing options.
I mainly rely on community support since the solution is open source.
If you say you do not have one, it is finished. This is where the monopoly starts.
Visibility scales without performance issues as my environment expands.
It is capable of managing the increased load and performs well as our needs expand.
I can deploy it everywhere I need it.
I use Zenarmor, pinning it to one core for packet inspection, and the CPU performance seems very good.
OPNsense's scalability is excellent; I just need to resize my hardware and upgrade the server, and voilà, I am good to go.
In theory, OPNsense can handle small home networks and even large enterprise environments if deployed on sufficiently powerful hardware or virtualized on a clustered system.
The firewall itself, Gaia itself, tells you: "Look, there is this error, this problem; verify if your device is affected; if so, here is the solution."
If there are errors, it is sometimes challenging to elaborate or troubleshoot since it is not transparent enough to understand what to search for.
I have not observed any downtime.
For home and small network use, OPNsense is also reliable, providing enterprise-grade security at no cost.
The only challenge faced was its inadequacy to manage large voice traffic effectively, even with dedicated hardware.
At the latest code level, I haven't experienced any crashes.
Scalability could be improved as well; needing to purchase a new license each time I want to add a new interface is not ideal.
Better documentation would be welcome.
The user interface could be more intuitive, and the initial setup and configuration can be complex, requiring a technical team.
Enhancing its performance for significant amounts of data traffic would make it closer to a perfect solution.
It would be beneficial if they could create some videos on how to set it up themselves.
The documentation should be clearer because I faced some difficulties navigating many options.
The pricing and licensing are expensive, costing between seven thousand to eight thousand dollars.
Check Point is expensive, however, with the features and capabilities, I can justify the cost.
It is the highest in the market.
I consider the pricing of OPNsense to be high when compared with other market products.
OPNsense is free, the licensing and setup was easy.
One of the most valuable features is the automated threat prevention, which helps us detect and block potential cyberattacks in real-time, minimizing data breaches.
Centralized management is the feature I like best, resulting in reduced workload and more continuous policy.
Network Security provides us with unified security management across hybrid and cloud as well as on-prem.
The most valuable features include the basic firewall functionality and the GeoIP location services.
I can have a Wi-Fi VLAN and feel secure that the server network or the VM network that I have on a different VLAN are isolated, and they cannot talk to one another, which adds a great level of security.
It offers enterprise-grade features such as intrusion detection and prevention system, VPN support, traffic shaping, and web filtering, all without license cost.
| Product | Mindshare (%) |
|---|---|
| OPNsense | 7.9% |
| Check Point Cloud Firewall (formerly CloudGuard Network Security) | 2.7% |
| Other | 89.4% |


| Company Size | Count |
|---|---|
| Small Business | 132 |
| Midsize Enterprise | 53 |
| Large Enterprise | 142 |
| Company Size | Count |
|---|---|
| Small Business | 32 |
| Midsize Enterprise | 6 |
| Large Enterprise | 8 |
Check Point Cloud Firewall, previously known as CloudGuard Network Security, provides advanced threat prevention, centralized management, and VPN capabilities, enabling robust cloud security across various platforms including Azure and AWS.
Check Point Cloud Firewall delivers seamless cloud integration with advanced automated threat prevention and centralized management to enhance security posture. It offers auto-scaling for dynamic environments and a comprehensive policy enforcement framework in hybrid settings. The unified interface streamlines administration across cloud infrastructures, ensuring consistent protection and reducing risk.
What important features does it offer?In manufacturing and conglomerate sectors, Check Point Cloud Firewall is utilized for protecting cloud environments and implementing network segmentation. It supports secure cloud migration on AWS, Azure, and GCP, ensuring compliance, perimeter defense, and traffic inspection, facilitating sophisticated threat prevention strategies.
OPNsense is an adaptable open-source firewall and routing platform appreciated for its flexibility, scalability, and user-friendly interface. It is equipped with robust security features and offers excellent reporting and visibility, essential for small businesses and home setups.
OPNsense stands out for its modular design, allowing cost-effective customization. This system supports VPNs and various firewall capabilities, making it suitable for securing networks from malicious traffic. Its frequent updates and extensive documentation, combined with a supportive online community, enhance user experience. However, there is room for improvement in integration with virtual servers and Azure. Scalability and hardware updates are important for large-scale environments, and users desire more reliable VPN solutions and enhanced threat intelligence tools.
What are OPNsense's most important features?OPNsense is implemented in industries requiring VPN and firewall functions, supporting site-to-site connections, protecting servers, and managing commercial network traffic. Companies apply it for security, UTM, SD-WAN, content filtering, intrusion detection, and prevention, utilizing its open-source nature and effectiveness as a next-generation firewall.
We monitor all Firewalls reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.