Try our new research platform with insights from 80,000+ expert users

Check Point NGFW vs Stormshield Network Security comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Jul 13, 2025

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Fortinet FortiGate
Sponsored
Average Rating
8.4
Reviews Sentiment
7.0
Number of Reviews
388
Ranking in other categories
Firewalls (2nd), Software Defined WAN (SD-WAN) Solutions (1st), WAN Edge (1st)
Check Point NGFW
Average Rating
8.8
Reviews Sentiment
7.4
Number of Reviews
324
Ranking in other categories
Firewalls (5th), Unified Threat Management (UTM) (1st)
Stormshield Network Security
Average Rating
7.8
Reviews Sentiment
6.0
Number of Reviews
17
Ranking in other categories
Unified Threat Management (UTM) (13th)
 

Featured Reviews

Vasu Gala - PeerSpot reviewer
A stable solution with an intuitive interface and quick customer service
I have been working with Fortinet FortiGate, WatchGuard, Sophos, and SonicWall. I'm not as comfortable with SonicWall because of their UI and limitations. I prefer Fortinet above all other options. When it comes to configuration, I am confident in my ability to handle various tasks, including creating policies such as firewall rules, web policies, and application policies. Additionally, I can configure VPNs and implement load balancing, among other tasks. Overall, I feel much more comfortable working with Fortinet. Fortinet has made significant improvements by integrating AI with firewalls for threat analysis and prevention. In the past 2-3 years, they have launched FortiSASE and SIEM, and they also provide SOC services. Both Palo Alto and Fortinet FortiGate are excellent. While Fortinet FortiGate comes at higher prices, the functionality and support justify the cost. They promptly resolve firmware issues and inform all support providers about configuration changes.
Hailemichael Yigrem - PeerSpot reviewer
Advanced security features enhance threat detection and prevention
Check Point NGFW provides granular application control and detailed visibility over application and user activity. It integrates with the ThreatCloud ecosystem, enabling real-time threat detection and prevention. The User Identity Awareness blade integrates with Active Directory, identifying user traffic sources. Check Point NGFW is highly scalable and has centralized management through SmartConsole, which manages policies, logs, and threat data. It reduced our incidents and decreased the time to analyze cyber threats by 70 percent.
Benjamin - PeerSpot reviewer
The intrusion detection system helps our organization by automatically detecting and responding to potential threats
The tool's most valuable feature is its dashboard, which helps you manage different aspects of a single page. The intrusion detection system helps our organization by automatically detecting and responding to potential threats. It operates similarly to Darktrace, which detects and responds automatically based on the security rules you apply. Initially, you configure everything to block, and then you can whitelist specific items as needed.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"It's very good and very stable for businesses. It works very well."
"It enables our organization to become more productive. Also, it protects our NEtWare from viruses and malware."
"I find the ease of configuring specific policies to be the most valuable feature of the Fortinet FortiGate firewall."
"Fortinet FortiGate positively provides my clients' organizations with a high return on investment."
"The most valuable feature is the SSL VPN, as it allows us to connect and it separates this product from other firewalls."
"The solution is extremely reliable."
"I'm looking forward to FortiGate's dashboard features, insights, application oversight, and monitoring, which could help us significantly."
"Fortinet FortiGate is a scalable solution."
"We can define security policies based on a variety of criteria, including user identity, application, and content type."
"Provides very good performance."
"It creates granular security policies based on users or groups to identify, block or limit the usage of web applications."
"Advanced logging capabilities: Check Point generates extensive logs which may be very useful to figure out the issues. Its logs also contain too much information which can be used to modify the policy as per user need and organizational security environment. The same can be used to figure out probable attack surface or necessary steps for mitigation."
"The Smart Dashboard and other user interfaces are very easy to use and can be handled without any significant IT skills."
"The best feature is the ability to increase the capacity of the solution by exactly what you add, not losing anything for High Availability."
"The logging and central policy management are the most valuable aspects for us as we were not having success earlier with the ASA in terms of upgrading/managing."
"The architecture of the solution is extraordinary"
"A very robust product."
"I like how you can configure the rules. There is the task for the rules and a task for the network configuration. It also provides SMD filtering, and it can be integrated with the active directory for the users, their mission, and the VPN configuration. We are here in Sudan, and Stormshield didn't work in Sudan for more than a decade. Stormshield is a very strong firewall and very easy to configure and maintain. I am just working with the firewall solution, and we don't have any other solutions like endpoint solutions or something like that."
"The tool's most valuable feature is its dashboard, which helps you manage different aspects of a single page."
"The tool's most valuable feature is its dashboard, which helps you manage different aspects of a single page. The intrusion detection system helps our organization by automatically detecting and responding to potential threats. It operates similarly to Darktrace, which detects and responds automatically based on the security rules you apply. Initially, you configure everything to block, and then you can whitelist specific items as needed."
"I can see what traffic is going on. I can easily block any programs from attacks."
"Our organization's main concern is stability, and this is a stable solution."
"It's an easy, straightforward management platform to use."
"I like that it works fine. Stormshield is a very good solution."
 

Cons

"At this moment, we believe that Fortinet FortiGate should be improved by injecting more AI because the kind of threats we are seeing are more ransomware threats."
"The performance could be a bit better. Right now, I find it to be lacking. Having good performance is very important for our work."
"The licensing could be improved as it is a little confusing and too granular for Fortinet FortiGate."
"I would like reporting to be improved and should offer a lot more tools to monitor the products."
"I cannot say definitively about the return on investment with Fortinet FortiGate because I have always been in the technical field, but most of our clients are very happy since threats were stopped, generating confidence in the Fortinet brand among our clients."
"I would like some automated custom reporting."
"The visibility of the network can be better. The GUI can be improved for better visibility of the network flow. Other solutions have better GUI in terms of network visibility."
"I don't like that anything more than very basic reporting is not included."
"Some features, like the VPN, antispam, data loss prevention, etc., are managed in an external console. In the future, I'd like all features in the same console, in one place, where we can see and configure all features."
"It could be more stable and scalable. Check Point price and support could be better."
"Timely updates to security databases, firmware, and software are crucial for addressing new threats."
"The virtual infrastructure of the central management requires a huge amount of resources to work properly and manage all the logs without problems."
"The routing rules and some more network settings should be listed on the Check Point Smart Console instead of GAIA Web GUI."
"The naming in the inline layers and ordered layers needs improvement. It makes things very complicated. I've seen quite a lot of people saying that. For audit policies, it is okay since it's very simple to see. However, this area is for very large organizations, which have too many policies, and they need to share all these policies. For small to medium-sized businesses, they don't need it. Even if somebody has 500 rules, if they try to use it, it can be very confusing."
"The initial setup is a bit complex."
"One area which is still lacking is the site-to-site VPN solution."
"Not all the fields are activated yet and we were informed that it will take at least one month."
"Improvement is needed in terms of the technical support of the manufacturer."
"This solution has a big problem with web filtering and it needs to be improved."
"The filtering configuration could be better. We have some difficulties with the filtering configuration and the filter extension. It's not that easy. It's not that straightforward. In the next release, I would like to see a reporting system. Stormshield doesn't have any tutorials on how to do the configuration and things like that. They just have documentation on the website. If you want to configure, for example, Cisco or Fortinet, you can find tutorials on YouTube. They show you how to configure the features, and so on. In Stormshield, there is nothing on social media or the internet on how to configure different things. The lack of documentation or the lack of material makes it difficult for others to adopt this solution."
"The biggest issue was their support department was not able to help us, then everything stops. This is a no-go area for me."
"This is not a next-generation firewall."
"A more user-friendly interface would be helpful."
"Stormshield Network Security is quite expensive."
 

Pricing and Cost Advice

"We pay for the solution annually."
"Its price is affordable and lesser than Cisco. Cisco is expensive. In terms of licensing, there is only one issue. If a customer's license has expired a month ago and they do the renewal after one month, Fortinet renews the license from the start of the previous month. The activation of the product is done from the previous month, not from the date of renewal. The customers usually shout and complain that because they are paying today, the renewal should start from today. The support contract renewals or licensing should be renewed from the date of renewal, but Fortinet starts from the day it had expired. It is a loss for customers. They might have had some problems because of which they did not take the license one month before. Fortinet should work on this. Cisco doesn't do this. Cisco always starts from the day they apply for the license."
"It's very competitive."
"The license of Fortinet FortiGate should be reduced."
"This is not a cheap solution but it isn't expensive, either. It's a good solution for the right price."
"The price is fair compared to the other competitors."
"The price of Fortinet FortiGate is reasonable for an SME."
"The pricing depends on the FortiGate model we are using, ranging from $3,000 to $20,000 US dollars."
"Licensing is pretty straightforward and is based on the blades available, such as NGFW, NGTP, and NGTX."
"The price of Check Point is lower than Palo Alto but higher than Cisco ASA."
"The pricing and licensing part is something that could be improved. Check Point license and pricing are a bit higher compared to competing firewalls. I think they can work on that."
"It's expensive."
"The licensing includes the cost of support."
"We pay $5,000-$6,000 a year."
"It is more expensive than Cisco ASA but cheaper than Palo Alto."
"The cost of the pricing and licensing are okay. They are giving me a good product as far as I know. It is more expensive than Cisco, but cheaper than Palo Alto, which is fine. It has many good features, so it deserves a good price as well."
"The pricing could be better."
"We chose Stormshield for its price, as the Azure firewall was too expensive."
"I think the price is good."
"The price of this solution and the price of support are ok."
"For mid-sized companies, they sell their appliances for good prices."
"We bought a three-year license, and we renew it whenever it expires. The price could be better. It's always very expensive."
"The SN200 series costs between $500 USD and $600 USD per year, whereas the SN700 series costs approximately $1,000 annually."
report
Use our free recommendation engine to learn which Unified Threat Management (UTM) solutions are best for your needs.
862,077 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
16%
Comms Service Provider
8%
Educational Organization
8%
Manufacturing Company
7%
Educational Organization
20%
Computer Software Company
13%
Financial Services Firm
9%
Comms Service Provider
5%
Computer Software Company
21%
Comms Service Provider
14%
Government
9%
Manufacturing Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

Which is the better NGFW: Fortinet Fortigate or Cisco Firepower?
When you compare these firewalls you can identify them with different features, advantages, practices and usage a...
What is the biggest difference between Sophos XG and FortiGate?
From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know...
What are the biggest technical differences between Sophos UTM and Fortinet FortiGate?
As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite ...
How does Check Point NGFW compare with Fortinet Fortigate?
I have experience on both from Disti and channel experience. Please find below my comments (nothing new as such). -Ch...
Which would you recommend - Azure Firewall or Check Point NGFW?
Azure Firewall is easy to use and provides excellent support. Valuable features include integration into the overall ...
What do you like most about Check Point NGFW?
Check Point NGFW provides essential security, featuring no-obligation access for secure connections, strong intrusion...
 

Also Known As

FortiGate 60b, FortiGate 60c, FortiGate 80c, FortiGate 50b, FortiGate 200b, FortiGate 110c, FortiGate, Fortinet Firewall
Check Point NG Firewall, Check Point Next Generation Firewall
NETASQ Firewalls
 

Overview

 

Sample Customers

Amazon Web Services, Microsoft, IBM, Cisco, Dell, HP, Oracle, Verizon, AT&T, T-Mobile, Sprint, Vodafone, Orange, BT Group, Telstra, Deutsche Telekom, Comcast, Time Warner Cable, CenturyLink, NTT Communications, Tata Communications, SoftBank, China Mobile, Singtel, Telus, Rogers Communications, Bell Canada, Telkom Indonesia, Telkom South Africa, Telmex, Telia Company, Telkom Kenya
Control Southern, Optimal Media
ACESUR group, Ministry of Education Oman, Anios Laboratories, Zain, DLM Location
Find out what your peers are saying about Check Point NGFW vs. Stormshield Network Security and other solutions. Updated: July 2025.
862,077 professionals have used our research since 2012.