Try our new research platform with insights from 80,000+ expert users

Check Point NGFW vs Palo Alto Networks K2-Series comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Apr 6, 2025

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Fortinet FortiGate
Sponsored
Ranking in Firewalls
2nd
Average Rating
8.4
Reviews Sentiment
7.1
Number of Reviews
373
Ranking in other categories
Software Defined WAN (SD-WAN) Solutions (1st), WAN Edge (1st)
Check Point NGFW
Ranking in Firewalls
5th
Average Rating
8.8
Reviews Sentiment
7.4
Number of Reviews
324
Ranking in other categories
Unified Threat Management (UTM) (1st)
Palo Alto Networks K2-Series
Ranking in Firewalls
34th
Average Rating
8.4
Reviews Sentiment
7.7
Number of Reviews
34
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of July 2025, in the Firewalls category, the mindshare of Fortinet FortiGate is 21.2%, up from 17.7% compared to the previous year. The mindshare of Check Point NGFW is 3.0%, down from 3.2% compared to the previous year. The mindshare of Palo Alto Networks K2-Series is 0.1%, up from 0.0% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Firewalls
 

Featured Reviews

Vasu Gala - PeerSpot reviewer
A stable solution with an intuitive interface and quick customer service
I have been working with Fortinet FortiGate, WatchGuard, Sophos, and SonicWall. I'm not as comfortable with SonicWall because of their UI and limitations. I prefer Fortinet above all other options. When it comes to configuration, I am confident in my ability to handle various tasks, including creating policies such as firewall rules, web policies, and application policies. Additionally, I can configure VPNs and implement load balancing, among other tasks. Overall, I feel much more comfortable working with Fortinet. Fortinet has made significant improvements by integrating AI with firewalls for threat analysis and prevention. In the past 2-3 years, they have launched FortiSASE and SIEM, and they also provide SOC services. Both Palo Alto and Fortinet FortiGate are excellent. While Fortinet FortiGate comes at higher prices, the functionality and support justify the cost. They promptly resolve firmware issues and inform all support providers about configuration changes.
Hailemichael Yigrem - PeerSpot reviewer
Advanced security features enhance threat detection and prevention
Check Point NGFW provides granular application control and detailed visibility over application and user activity. It integrates with the ThreatCloud ecosystem, enabling real-time threat detection and prevention. The User Identity Awareness blade integrates with Active Directory, identifying user traffic sources. Check Point NGFW is highly scalable and has centralized management through SmartConsole, which manages policies, logs, and threat data. It reduced our incidents and decreased the time to analyze cyber threats by 70 percent.
Krishnakumar M - PeerSpot reviewer
One of the best tools for the prevention of evasive threats
There is a feature called granular application controls, which I liked. Instead of relying on ports and IP addresses, they use AMP ID. This kind of solution is very good. Another valuable feature is the prevention of evasive threats, which is one of the best tools I've encountered. SSL decryption and app ID-based SSL decryption are also impressive, along with the integration with user ID. Identity-based policies ensuring only authorized users can access specific resources are excellent features. Normally, there is something called SIM or SCIM in IDA IDM, but this feature is provided on the box, which is exemplary.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The most valuable feature of Fortinet FortiGate is the simple configuration."
"The stability of the solution is excellent, as it is with other Fortinet products."
"Security, SD-WAN, and Streetscape are valuable features."
"Fortinet FortiGate is a stable solution."
"One of the nice things about FortiGate is that it can be deployed on the cloud or on-premises. You can actually do both. That's the biggest reason why I stick with this solution as opposed to something like Cisco Meraki. Another nice thing is that I can log directly into a FortiGate or get to it through their FortiCloud access products. They're pretty reliable and consistent. One of the reasons why I started using the product was their single pane of management. I can deploy their line of firewalls in conjunction with their switching and access points, and I can manage the entire network from one interface. I don't have to log into one interface for the firewall, another one for the access points, and another one for the switches. These firewalls have access point controller functionality built right into the system, so I don't even have to purchase additional devices to manage them."
"The tool is a nice product and easy to handle. The software's user interface is also good. You can easily implement remote access in the solution."
"The SD-WAN is the most valuable feature."
"This product is definitely scalable."
"There are also additional features, compared to a Layer 4 or Layer 3 firewall, such as AV signatures and devices, which are very helpful for securing the company's network."
"Check Point's rule management helped us simplify access control. At one point, we had more than 1,000 access control policies, and it was challenging to manage them all. We cut it down to 300 policies using Check Point's management features, and we are still working on reducing this further to achieve the best way to manage policies. Its logging and monitoring enable us to trace and investigate suspicious traffic."
"The feature I like the most is their central management, the Smart controller which you can use to manage all the firewalls from one location... Being able to access almost everything in one location — manage all your gateways and get all your logs — for me, is the best feature to work with."
"Investing in Check Point NGFW has saved us a lot of money by protecting us from many cyberattacks, thus maintaining our security posture."
"I would absolutely recommend this solution to others for its robust security and scalability."
"The most valuable feature is the central management system through the Security Management Server. Apart from that, the graphical user interface helps us to do things easily."
"The price point is good."
"One of the most valuable features is performance improvement, wherewith ClusterXL and CoreXL, you can improve performance."
"As long as the solution is kept updated, it's pretty stable."
"Palo Alto has better and finer controls than, say, Cisco or Check Point."
"Simple integrations with the domain controllers and other inventories"
"The company is inventive and always adds a lot of great features."
"The most valuable feature of Palo Alto Networks K2-Series is the configuration, it is very clear."
"The most valuable feature is availability."
"The scalability of the product is quite high."
"One of the most valuable features is Palo Alto's firewall management. We find it easier to manage the firewall centrally."
 

Cons

"The central management for the FortiGate Fortinet Firewall needs improvement. They have the manager to do the essential management for both SD-WAN and for the security policy. They should also improve the SD-WAN function."
"I would like to see a more intuitive dashboard."
"The Wi-Fi controller needs a lot of improvement."
"FortiOS is not simple."
"This product needs to have an analysis feature, rather than having the analysis done through the integration of a different product."
"The pricing could be a bit better, especially when you consider how they have the most basic offering priced."
"The configuration part was challenging, especially converting configurations from another OEM to FortiGate."
"They are doing good, but they can improve the distributor assignment. The availability of the product and the timeline of delivery are the main things. The distribution should be swift, and the distributor should not reach out to end customers directly. They should work as a distributor. There should also be one more local distributor. Currently, there is only one distributor in Pakistan, and the rest of them are in UAE. It is difficult to work with only one distributor. Sometimes, you don't get along with the same distributor, and that's why they should have one more distributor. Their licensing should also be improved. The activation or renewal of the product should be done from the date of renewal, not from the date on which the license expired."
"If you check each and every point from this part, you will find some flow in an area, or you will discover another flow in another area."
"I hope for product simplification. It would be better to use one security console, instead of many of them (for licensing and monitoring). The solution is hard for newcomers and takes much time to deep in. Also, I want a historical graph for throughput and system resources usage. Maybe it will be great to make easy step-by-step installation and configuration cookbooks as Fortinet did, and integrate the documentation within the solution."
"The policy installation length is still too long. It was promised that the time would be severely reduced in newer versions, but it is still too long."
"The tool must improve its support."
"There is room for improvement in application-based filtering, as with other firewalls available in the market today."
"The client for the central tools is very big - maybe using web access in future releases, similar to other vendors should be possible."
"For the user or anyone else who is using Check Point, they are more into the GUI stuff. Check Point has its SmartConsole. On the console, you have to log into the MDS or CMS. Then, from there, you have to go onto that particular firewall and put in the changes. If the management console could be integrated onto the GUI itself, that would be one thing that I would recommend."
"You need to merge all the old consoles into one new one and make the interface more convenient for the novice administrator."
"Threat prevention could use improvement. Not just in malware exploits and C2 traffic; enhancing web traffic protection would be a great upgrade."
"They should implement the features that the other firewalls have."
"It is recommended that the Palo Alto Networks K2-Series be implemented step by step for the Panorama. Sometimes we can't overwrite the configurations because it fails."
"When it comes to renewing the solution, they tend to try to jack up the pricing."
"The ease of management and configuration should be improved."
"The scalability for on-premises version is limited as it depends on the model."
"Its networking features could be better."
"The URL Filtering module needs to have more categories added to it."
 

Pricing and Cost Advice

"It's very affordable."
"Fortinet FortiGate is reasonably priced."
"It is a good product from a price perspective versus functionality."
"The main reason we chose Fortinet FortiGate was that the price was better than the competition."
"We find the most valuable aspect of this solution is the price. It is affordable, and cheaper than other firewalls."
"I would rate the pricing a five out of ten"
"On a scale of one being cheap and ten being expensive, I rate the tool's price as an eight."
"Its pricing is good. The advantages of Fortinet FortiGate over its competitors include good pricing and meeting our requirements at a lower cost."
"The price could be decreased, because the competitors of Check Point Firewall are giving lower prices in comparison."
"The licensing fees are paid on a monthly basis and I am happy with the pricing."
"The technology itself is impressive, but I find the pricing a bit on the higher side."
"Palo Alto is somehow not as good as Check Point, budget-wise and performance-wise. Palo Alto is more costly than Check Point."
"The solution is indeed costly."
"We pay the licensing fees on a yearly basis."
"While it may be slightly more expensive, when compared with competition it is reasonable."
"Licensing is on a yearly basis and I am happy with the pricing."
"Pricing is a sensitive issue because the cost is high in this market."
"If you compare K2-Series' quality with its price, I think it is reasonable."
"This product is designed for large companies. The price would not be suitable for a small or medium size company."
"The overall price of Palo Alto Networks K2-Series could be reduced."
"This is an expensive solution, although you will get value for the price."
"The price of this solution is too high."
"This solution is expensive compared to other, similar products."
"Palo Alto Networks K2-Series is an expensive solution, the price could be reduced. They are more expensive than some of their competitors."
report
Use our free recommendation engine to learn which Firewalls solutions are best for your needs.
860,632 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
15%
Educational Organization
11%
Comms Service Provider
8%
Manufacturing Company
7%
Educational Organization
34%
Computer Software Company
11%
Financial Services Firm
7%
Comms Service Provider
4%
Computer Software Company
19%
Performing Arts
14%
Manufacturing Company
10%
Comms Service Provider
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

Which is the better NGFW: Fortinet Fortigate or Cisco Firepower?
When you compare these firewalls you can identify them with different features, advantages, practices and usage a...
What is the biggest difference between Sophos XG and FortiGate?
From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know...
What are the biggest technical differences between Sophos UTM and Fortinet FortiGate?
As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite ...
How does Check Point NGFW compare with Fortinet Fortigate?
I have experience on both from Disti and channel experience. Please find below my comments (nothing new as such). -Ch...
Which would you recommend - Azure Firewall or Check Point NGFW?
Azure Firewall is easy to use and provides excellent support. Valuable features include integration into the overall ...
What do you like most about Check Point NGFW?
Check Point NGFW provides essential security, featuring no-obligation access for secure connections, strong intrusion...
Features comparison between Palo Alto and Fortinet firewalls
In the best tradition of these questions, Feature-wise both are quite similar, but each has things it's better at, it...
What is your experience regarding pricing and costs for Palo Alto Networks K2-Series?
The pricing for the Palo Alto Networks K2-Series solution is affordable and there are no complaints about the licensing.
 

Also Known As

FortiGate 60b, FortiGate 60c, FortiGate 80c, FortiGate 50b, FortiGate 200b, FortiGate 110c, FortiGate, Fortinet Firewall
Check Point NG Firewall, Check Point Next Generation Firewall
No data available
 

Overview

 

Sample Customers

Amazon Web Services, Microsoft, IBM, Cisco, Dell, HP, Oracle, Verizon, AT&T, T-Mobile, Sprint, Vodafone, Orange, BT Group, Telstra, Deutsche Telekom, Comcast, Time Warner Cable, CenturyLink, NTT Communications, Tata Communications, SoftBank, China Mobile, Singtel, Telus, Rogers Communications, Bell Canada, Telkom Indonesia, Telkom South Africa, Telmex, Telia Company, Telkom Kenya
Control Southern, Optimal Media
State of North Dakota, SEGA, Alameda County Office of Education, Temple University, VERGE, CAME
Find out what your peers are saying about Check Point NGFW vs. Palo Alto Networks K2-Series and other solutions. Updated: July 2025.
860,632 professionals have used our research since 2012.