Check Point NGFW vs Fortinet FortiGate vs Untangle NG Firewall comparison

Cancel
You must select at least 2 products to compare!
Check Point Software Technologies Logo
27,173 views|16,714 comparisons
96% willing to recommend
Fortinet Logo
120,425 views|88,209 comparisons
90% willing to recommend
Untangle Logo
13,231 views|8,934 comparisons
94% willing to recommend
Comparison Buyer's Guide
Executive Summary

We performed a comparison between Check Point NGFW, Fortinet FortiGate, and Untangle NG Firewall based on real PeerSpot user reviews.

Find out what your peers are saying about Netgate, Fortinet, OPNsense and others in Firewalls.
To learn more, read our detailed Firewalls Report (Updated: April 2024).
769,599 professionals have used our research since 2012.
Featured Review
Quotes From Members
We asked business professionals to review the solutions they use.
Here are some excerpts of what they said:
Pros
"The initial setup is very straightforward.""Check Point is more expensive but easier to manage, and their presales and after-sale support are way better than Fortinet's.""I have to say that it was Application Control and web filtering are excellent.""I love the redesigned interface starting with R80 as well as the ability for multiple engineers to work on the policy simultaneously.""One of the solution's best features include a packet-filtering firewall that examines packets in isolation.""Its greatest asset lies in its user-friendly interface, making it exceptionally suitable and reliable for managing gateways.""Some of the most valuable features are URL filtering, web filtering, and content filtering.""I like the SmartEvent feature. When we see a threat, SmartEvent can create a rule for that. SmartEvent works with the SmartCenter to block a threat attack with a block monitor. The SmartCenter has the management for all the firewalls and data centers in a single dashboard."

More Check Point NGFW Pros →

"It's super reliable. I don't think I've ever had a reliability issue with it.""FortiGate firewalls are easy to manage through a user-friendly web interface. They also have advanced features like DDoS and DLP. However, I wouldn't recommend enabling all of these features on one device because it can cause performance issues.""The features that I have found most valuable are the SD-WAN and their IP4 policy.""The solution has very good threat and content filtering switches.""With FortiClient, you can easily connect when you are home, check out what you want to do, and connect to your network when you are not at work. You can switch on servers and you can check what is wrong.""It's a firewall that secures our internal network. I have been using it since 2013, and I find that most of the features are advanced, and very user friendly.""The response is very quick and they can visually resolve our problems in a short period.""The most valuable feature is the SSL VPN, as it allows us to connect and it separates this product from other firewalls."

More Fortinet FortiGate Pros →

"Web Filter is effective, Web Cache offers bandwidth savings, and the VPN setup is easy.""The interface is very good.""The product’s most valuable features are endpoint protection management, load balancing, and connectivity with Active Directory.""It is not attached to an appliance, meaning if you get a good PC/server, then you can already run a firewall.""None of my clients has had a ransom or breach using Untangle.""Its detection, antivirus, and filtering features are the most valuable. The facility to connect by using the VPN connection is also a very valuable feature. It is very strong, secure, and reliable. We have implemented the Untangle solution in all hardware. It is also a user-friendly solution. It is easy to learn and easy to configure.""The initial setup is very easy.""The most valuable features are IPS, MAPI, NAT, and VPN."

More Untangle NG Firewall Pros →

Cons
"Check Point Smart Dashboard does not support my Apple MacBook Air. It only supports Windows versions.""There is no email security.""There is room for enhancement in the support system in India.""Check Point should improve services related to the cloud-based solution.""The biggest improvement they could make is having one software to install on all three levels of their products, so that the SMBs, the normal models, and the chassis would all run the same software. Now, while there is central management, everything that has to be configured on the gateway itself works differently on the three kinds of devices.""In terms of what could be improved, we have a cluster with two nodes and usually we have some problems when process gets really high and it has to choose which services it keeps going. I would like to have a better solution here, like if instead of just one we could use both at the same time. It would be good if it could work together. Then when one has a failure or something like that, the other one is there to transfer, to take all the services and keep working.""It would be beneficial if Check Point included more licenses bundled with the base model, reducing the need for additional subscription charges for essential functionalities.""The policy installation length is still too long. It was promised that the time would be severely reduced in newer versions, but it is still too long."

More Check Point NGFW Cons →

"The feedback that I have received is that the performance could be better, and the user experience is not as good compared to a previous solution we used. It could be more user-friendly. Of course, it still works fine for our operations.""I think the only issue that needs improvement is the interface.""The routing capability on the FortiGate devices has room for improvement.""Difficult to add or define, and not that easy to configure and manage.""There were quite a few problems with the stability of the system.""Its price could be better.""It should have a better pricing plan. It is too expensive. It should also have a more granular view of the attack. I don't have FortiAnalyzer, and it is difficult for me to have a complete view when there is an attack on my server.""It should be more stable. There should be full integration within Fortinet products themselves as well as with other third-party products. Especially when you're not dealing with SIEM and the correlation of the security box, we want Fortinet to be able to share that information with as many other products as it can."

More Fortinet FortiGate Cons →

"The product needs to improve its mobile application.""The common center facility that Untangle provides should be available on-premises. There are great corporations here in Mexico that like the Untangle solution, but they don't like the fact that the monitoring and access to the appliance are in the cloud. They request for the common center facility to be available and installed on-premises.""The storage is minimal, so we have to set the system to delete data after seven days.""There is room for improvement in the logs. Like with Cisco, I can do almost everything and know almost anything about what's running. Untangle works very much out of the box. It's very user-friendly, but it's not engineer-friendly. So, it's good for a home user. For something fairly easy, but at the same time, with good technology to have at home, because at home, I'm not a millionaire or anything like that. So it's not like I'm worried to get hacked. I didn't want something like a Cisco firewall; it would be a bit overkill to have at home. So that's why I went for Untangle. But it lacks a few features. It's just a tick-box kind of thing. So they have apps and turn on and off the apps. The VPN's configuration is all very ticked. They have a few custom configurations, but it's not that much.""The biggest challenge that we have with this solution is local support. The local support is a problem in our area.""They don't have any feature that allows you to drop the session.""We have a minor issue when assigning IP addresses in the ARP tables. You should be able to go into the ARP tables, look at the IP address and say, "Nope, they need to be on this side on this IP address." The ability to set a DHP reservation from the ARP tables would be great. It's no big deal, but it would be nice to have.""For the web filter, I think they can do better especially on the free model."

More Untangle NG Firewall Cons →

Pricing and Cost Advice
  • "I don't think the product's pricing is a good value. I feel it's very overpriced. I feel a lot of the features for a next gen firewall are there. But I feel it's overpriced, because of the stability issues. As far as support goes, I really can't speak to direct Check Point support, but the third-party was pretty terrible... As far as the licensing goes, it's pretty complex. If anybody was to purchase the Check Point product, definitely make sure they have an account rep come on site, and explain it line by line, what each thing is. It's not straightforward. It's very convoluted. There's no way you could just figure it out by looking at it."
  • "Check Point solutions are very expensive here. They're good, but they're expensive... Check Point is only useful for customers that have a big IT budget."
  • "The price is high in comparison to other solutions."
  • "We pay $5,000-$6,000 a year."
  • "Maybe the pricing is a bit high but you get the durability and the duration."
  • "Licensing issues may be confusing at times."
  • "It is quite an expensive product, although security is a top priority."
  • "This product is not cheap and there are additional costs that depend on what model or package that you buy."
  • More Check Point NGFW Pricing and Cost Advice →

  • "Fortinet has one or two license types, and the VPN numbers are only limited by the hardware chassis make."
  • "These boxes are not that expensive compared to what they can do, their functionality, and the reporting you receive. Fortinet licensing is straightforward and less confusing compared to Cisco."
  • "Go for long term pricing negotiated at the time of purchase."
  • "Work through partners for the best pricing."
  • "The value is the capability of having multiple services with one unique license, not having the limitation per user licensing schema, like other vendors."
  • "Easy to understand licensing requirements."
  • "​We saved a bundle by not needing all the past appliances from an NGFW.​"
  • "The cost is too high... They have to focus on more features with less cost for the customer. If you see the market, where it's going, there are a lot of players offering more features for less cost."
  • More Fortinet FortiGate Pricing and Cost Advice →

  • "It is the most cost-effective to use."
  • "We pay $350 USD per year for the solution. There are no additional costs. As long as you're not using a physical appliance, that's all you need."
  • "It is not expensive. The best part is that it is based on the pay-per-use kind of scenario. An increase or decrease in the number of people doesn't make any difference. We are really happy about using this particular scenario."
  • "It is not expensive. It is cheaper than Fortinet."
  • "The pricing model is better than with SonicWall."
  • "This is not an expensive product. It is affordable and there are different packages available depending on the features that you need, or the sector that you are in."
  • "Untangle is open-source software. So, you can get it for free. That has been a benefit, especially for the residential users because it is free. The license costs start at $25 a month for some additional features, including higher tiers of security intrusion prevention. The free version comes with intrusion detection, and then the license version has intrusion prevention. It also has some additional things for active directory connectors, etc. It starts at $25 a month to cover 12 devices. Then it goes up from $25 to $50 a month for 12 to 25 devices. That's where it really doesn't scale out per site. If you have a site that has more than 50 devices on it, then Untangle quickly becomes cost prohibitive in comparison to several other competitors."
  • "Usually, it's about $350 a year for 12 users, and it's about $600 for 50 users. It's very reasonable as compared to the others. One of the reasons is that they're all open-source. You just buy their appliance and put it in until it dies. Because it's run under open platforms, mine seems to always work on older equipment. I've taken old equipment and put a new hard disk in it. I have taken about nine-year-old computers and put their operating system on them, and ran them like a champ. The only thing that changed was the hard drive because I don't trust a hard drive that's more than three to four years old."
  • More Untangle NG Firewall Pricing and Cost Advice →

    report
    Use our free recommendation engine to learn which Firewalls solutions are best for your needs.
    769,599 professionals have used our research since 2012.
    Comparison Review
    Anonymous User
    I have used both Sophos and Fortinet products in production and I have found the Sophos UTM appliances (hardware and virtual) to be a better fit most of the time -- with a few caveats which I will touch on below. In both instances, the transition from TMG will be mostly straightforward. The main hang-ups will be with the VIP/load balancing and SSL. For some reason that completely escapes me, both of these vendors make getting valid certificates onto their boxes unnecessarily difficult -- the Fortinet appliances more so than the Sophos UTM appliances. At one point a Fortinet engineer had to write an entire manual on how to get an SSL certificate uploaded successfully on the 4.x firmware Sophos: The one feature that is missing (and this makes some amount of sense) from the Sophos appliance is BITS caching for updates. Other than that, Sophos offers a full replacement for TMG on UTM9. The XG platform also offers a replacement for the TMG; however, some of the rumblings about upcoming releases suggests that Sophos is going to give XG the Apple iOS treatment and "streamline" the interface...potentially cutting out/hiding some functionality. On the effectiveness of the NGFW, Sophos is mostly good but has a few issues blocking all pieces of an application. For instance, we had to build custom blocking rules for OpenVPN (the vpn was being used to bypass the content filter) because the default Application Control wasn't effectively blocking the application. Fortinet: If it… Read more →
    Questions from the Community
    Top Answer:I have experience on both from Disti and channel experience. Please find below my comments (nothing new as such)… more »
    Top Answer:Azure Firewall is easy to use and provides excellent support. Valuable features include integration into the overall… more »
    Top Answer:Check Point NGFW provides essential security, featuring no-obligation access for secure connections, strong intrusion… more »
    Top Answer: When you compare these firewalls you can identify them with different features, advantages, practices and usage at… more »
    Top Answer:From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know… more »
    Top Answer:As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite… more »
    Top Answer:The product helps small and medium enterprises secure their networks from intrusions. It also has features like DNS… more »
    Top Answer:The tool's pricing is moderate, and licensing costs are yearly.
    Top Answer:The product needs to improve its mobile application.
    Ranking
    5th
    out of 59 in Firewalls
    Views
    27,173
    Comparisons
    16,714
    Reviews
    84
    Average Words per Review
    561
    Rating
    8.8
    2nd
    out of 59 in Firewalls
    Views
    120,425
    Comparisons
    88,209
    Reviews
    42
    Average Words per Review
    690
    Rating
    8.4
    24th
    out of 59 in Firewalls
    Views
    13,231
    Comparisons
    8,934
    Reviews
    5
    Average Words per Review
    353
    Rating
    8.0
    Comparisons
    Also Known As
    Check Point NG Firewall, Check Point Next Generation Firewall
    FortiGate 60b, FortiGate 60c, FortiGate 80c, FortiGate 50b, FortiGate 200b, FortiGate 110c, FortiGate
    Learn More
    Overview

    Check Point NGFW is a next generation firewall that enables safe usage of internet applications by blocking malicious applications and unblocking safe applications. Check Point NGFW, which uses deep packet inspection to identify and control applications, has features such as application and user control and integrated intrusion prevention (IPS), as well as more advanced malware prevention capabilities like sandboxing.

    Check Point NGFW includes 23 firewall models optimized for running all threat prevention technologies simultaneously, including full SSL traffic inspection, without compromising on security or performance.

    Benefits of Check Point's Next Generation Firewall

    • Robust security: Check Point NGFW delivers the best possible threat prevention with SandBlast Zero Day protection. The SandBlast protection agent constantly inspects passing network traffic for exploits and vulnerabilities. Suspicious files are then emulated in a virtual sandbox in order to detect and report malicious behavior.

    • Security at hyperscale: On-demand hyperscale threat prevention performance provides cloud level expansion and resiliency on premises.

    • Unified management: Check Point's SmartConsole makes it easy to manage and configure network security environments and policies. With the SmartConsole, users can manage all the firewall gateways and access logs and install databases from one location. Unified management control across the network increases the efficiency of security operations and reduces IT costs.
    • Continuous logging: Check Point NGFW’s Threat Management feature detects vulnerabilities and logs them. Using the logged data, users can easily create and implement efficient security policies.

    • Remote access: The remote access VPN provides a seamless connection for remote users.

    Check Point NGFW is suitable for organizations of all sizes, from small businesses to larger enterprises.

    Reviews from Real Users

    Check Point NGFW stands out among its competitors for a number of reasons. Two major ones are its intrusion prevention feature as well as its centralized management, which makes it very easy to deploy firewall policies to many firewalls with one click.

    Shivani J., a network security administrator, writes, "Check Point has a lot of features. The ones I love are the antivirus, intrusion prevention, and data loss prevention."

    G., a network administrator at Secretaría de Finanzas de Aguascalientes, writes, “Within the organization, the inspection of packages has given us great help in detecting traffic that may be a threat to the institution. The configuration of policies has allowed us to maintain control of access and users for each institution that is incorporated into our headquarters.”

    Arun J., a senior network engineer, notes, “The nicest feature is the centralized management of multiple firewalls. With the centralized management, we can easily use and operate multiple firewalls as well as create a diagram of them.”

    Fortinet FortiGate enhances network security, prevents unauthorized access, and offers robust firewall protection. Valued features include advanced threat protection, reliable performance, and a user-friendly interface. It improves efficiency, streamlines processes, and boosts collaboration, providing valuable insights for informed decision-making and growth.

    Untangle NG Firewall is an open-source firewall and gateway security platform that helps keep networks safe while accessing the internet. It offers a free core firewall platform with paid add-ons, and a cloud-based management platform with a variety of deployment options for smaller teams. The solution also has a cloud-based management console for remote management that can either be deployed on premises or as SaaS, and virtualized or cloud-based. It also has flexible deployment options, including third-party hardware, as a virtual machine, or as a turnkey appliance. Untangle NG Firewall is ideal for small IT teams with limited budgets.

    Untangle NG Firewall Features

    Untangle NG Firewall has many valuable key features. Some of the most useful ones include:

    • Intrusion protection
    • Threat prevention
    • Virus blocker
    • Virus scanner
    • App control
    • SSL inspection
    • Bandwidth control
    • Reporting
    • Logs
    • VPN
    • Web filter
    • IDS/IPS
    • Access controls
    • Location control
    • Proxy
    • Active Directory/LDAP connections

    Untangle NG Firewall Benefits

    There are many benefits to implementing Untangle NG Firewall. Some of the biggest advantages the solution offers include:

    • Simplified network security: Untangle NG Firewall has a single, modular, software platform which simplifies security for all networks and ensures every device is adequately protected.
    • Visibility: The solution provides a browser-based, responsive, and intuitive interface enabling users to gain visibility quickly into the traffic on the network.
    • Deep analysis and insights: With the solution, users can see a network’s status at a glance on the dashboard, ensure compliance with full event logs, and get notifications of network anomalies or unusual user behavior with alert rules. In addition, users can gain insights in real time from database-driven reports.
    • Next-generation filtering: Untangle NG Firewall makes it easy to manage every rogue application, encrypted web request, malware distribution point, and drive-by malvertising attempt.
    • Connectivity and performance: The solution helps your organization maintain visibility and control over remote workers, branch offices, and guest Wi-Fi to keep users connected and data safe regardless of location or level of access.
    • Policy creation: Users can create policies by user, group, device, and time in order to control access.
    • Additional apps: Untangle NG Firewall offers additional apps, allowing organizations to create complete configuration backups to protect against network disruptions.

    Reviews from Real Users

    Untangle NG Firewall is a solution that stands out when compared to many of its competitors. Some of its major advantages are that it is easy to use, has good features, including VPN, reporting, alerting, and filtering, and can be installed on existing hardware.

    “It is very easy to use. The user interface is very straightforward. It may not be as fancy as some of the ones I've seen, but it's very straightforward. It's very easy to find what you need, and it's very easy to get things done,” says Josh E., CEO at DragonTech IT Services, Inc.

    Barry A., Owner at ThinkEzIT, says, “It has good VPN features, helpful reporting and alerting, built-in content filtering, and excellent support.”

    PeerSpot user Victor O., Director at Kisii County Government, explains, “What I like about this product, which is the reason that we continue to use it, is that you can install the software version on your own hardware. In case there is a problem with the hardware, we can just install the firewall in another machine and restore the configuration.”

    Sample Customers
    Control Southern, Optimal Media
    1. Amazon Web Services 2. Microsoft 3. IBM 4. Cisco 5. Dell 6. HP 7. Oracle 8. Verizon 9. AT&T 10. T-Mobile 11. Sprint 12. Vodafone 13. Orange 14. BT Group 15. Telstra 16. Deutsche Telekom 17. Comcast 18. Time Warner Cable 19. CenturyLink 20. NTT Communications 21. Tata Communications 22. SoftBank 23. China Mobile 24. Singtel 25. Telus 26. Rogers Communications 27. Bell Canada 28. Telkom Indonesia 29. Telkom South Africa 30. Telmex 31. Telia Company 32. Telkom Kenya
    North American Stamping Group, Cerebral Palsy of North Jersey (CPNJ), Brown County Schools, IN, City of Bridgeton, MO, Lancaster County, SC, Vision Charter School, Clay County Sheriff’s Department, NC, Breakwater School, Boys & Girls Club of Manchester, NH, Admiral Farragut Academy, Flow Companies, No Ordinary Hotel, KECdesign,
    Top Industries
    REVIEWERS
    Financial Services Firm22%
    Computer Software Company15%
    Comms Service Provider7%
    Manufacturing Company6%
    VISITORS READING REVIEWS
    Educational Organization50%
    Computer Software Company8%
    Financial Services Firm5%
    Comms Service Provider5%
    REVIEWERS
    Comms Service Provider16%
    Computer Software Company9%
    Financial Services Firm8%
    Manufacturing Company7%
    VISITORS READING REVIEWS
    Educational Organization20%
    Computer Software Company15%
    Comms Service Provider8%
    Manufacturing Company6%
    REVIEWERS
    Non Profit18%
    Manufacturing Company18%
    Computer Software Company9%
    Retailer9%
    VISITORS READING REVIEWS
    Computer Software Company12%
    Comms Service Provider12%
    Government9%
    Manufacturing Company6%
    Company Size
    REVIEWERS
    Small Business32%
    Midsize Enterprise19%
    Large Enterprise49%
    VISITORS READING REVIEWS
    Small Business14%
    Midsize Enterprise58%
    Large Enterprise28%
    REVIEWERS
    Small Business48%
    Midsize Enterprise23%
    Large Enterprise30%
    VISITORS READING REVIEWS
    Small Business27%
    Midsize Enterprise32%
    Large Enterprise41%
    REVIEWERS
    Small Business96%
    Midsize Enterprise4%
    VISITORS READING REVIEWS
    Small Business37%
    Midsize Enterprise17%
    Large Enterprise46%
    Buyer's Guide
    Firewalls
    April 2024
    Find out what your peers are saying about Netgate, Fortinet, OPNsense and others in Firewalls. Updated: April 2024.
    769,599 professionals have used our research since 2012.