No more typing reviews! Try our Samantha, our new voice AI agent.

Check Point Quantum Force (NGFW) vs ShieldX comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Jan 25, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Fortinet FortiGate
Sponsored
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
591
Ranking in other categories
Secure Web Gateways (SWG) (2nd), Firewalls (1st), Intrusion Detection and Prevention Software (IDPS) (1st), Software Defined WAN (SD-WAN) Solutions (1st), WAN Edge (1st), ZTNA (1st), Unified Threat Management (UTM) (1st)
Check Point Quantum Force (...
Average Rating
8.8
Reviews Sentiment
7.2
Number of Reviews
347
Ranking in other categories
Firewalls (7th), Unified Threat Management (UTM) (2nd)
ShieldX
Average Rating
9.2
Number of Reviews
4
Ranking in other categories
Microsegmentation Software (11th)
 

Mindshare comparison

Firewalls Mindshare Distribution
ProductMindshare (%)
Check Point Quantum Force (NGFW)3.0%
Fortinet FortiGate15.1%
OPNsense8.5%
Other73.4%
Firewalls
Microsegmentation Software Mindshare Distribution
ProductMindshare (%)
ShieldX2.0%
Illumio23.8%
Akamai Guardicore Segmentation20.4%
Other53.8%
Microsegmentation Software
 

Featured Reviews

Vasu Gala - PeerSpot reviewer
Manager, Information Technology Operation/Presales at TechMonarch
A stable solution with an intuitive interface and quick customer service
I have been working with Fortinet FortiGate, WatchGuard, Sophos, and SonicWall. I'm not as comfortable with SonicWall because of their UI and limitations. I prefer Fortinet above all other options. When it comes to configuration, I am confident in my ability to handle various tasks, including creating policies such as firewall rules, web policies, and application policies. Additionally, I can configure VPNs and implement load balancing, among other tasks. Overall, I feel much more comfortable working with Fortinet. Fortinet has made significant improvements by integrating AI with firewalls for threat analysis and prevention. In the past 2-3 years, they have launched FortiSASE and SIEM, and they also provide SOC services. Both Palo Alto and Fortinet FortiGate are excellent. While Fortinet FortiGate comes at higher prices, the functionality and support justify the cost. They promptly resolve firmware issues and inform all support providers about configuration changes.
DS
Network Security Engineer at Connecting Cyber Networks
Advanced threat prevention has protected our perimeter and simplifies daily security operations
Check Point Quantum Force (NGFW) can be improved in several areas. First, the interface could be a little more intuitive for new users. The Smart Console is powerful, but it has a steep learning curve when you start using it. Some simple functions for common tasks would help. Second, the initial setup and configuration take quite a bit of time and expertise. It would be helpful if there were more guides, wizards, or templates to speed that up. Third, the price model could be more transparent and flexible. The license cost can add up quickly, specifically when you want to add more advanced features. Finally, I would appreciate seeing better integration with some third-party security tools we use. Right now, we have to do a lot of manual work to make everything talk to each other. Overall, these are minor things. The core product is really solid and does what it is supposed to do very well. The documentation could be more comprehensive in some areas. When we run into issues, the documentation does not have clear answers, so we end up contacting support. Speaking of support, the response time could be faster sometimes. We have had cases where we need help with a certain security issue, and it takes longer than we would prefer to get a response. As for features, it would be nice to have more general reporting options so we can customize reports for different teams and stakeholders without having to do manual work afterward. One more thing, better mobile access to the dashboard would be helpful. Sometimes we need to check on security alerts when we are away from the office, and the mobile experience is not as smooth as it could be. Again, these are improvements that would make it even better, not issues with the core product itself.
MP
IT Director at park holidays uk
Proactively monitors, blocks, and reports what it has blocked; and self-updates meaning there is zero maintenance
The most valuable feature is the automatic scaling. With its microservices, it scales both up and down, depending on traffic and throughput. The traffic through our website depends on holiday bookings. It's very quiet in November through January, and then our traffic picks up quite rapidly and, at our peak, we will take in excess of a million pounds of business a day through our website. The UI was also one of the huge selling points. My web development manager was blown away with the detail and the granularity that you can get out of the UI. It is a very strong and informative UI, with the amount of data it provides. Uptime on the system has been 648 days and we do very little to it because it self-updates and alerts. It does everything that we need it to do, so the administration side of it is zero. One of the beauties about ShieldX is that it's such a good "fire-and-forget" product.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The interface is very user-friendly and I like it very much."
"It is quite easy to handle."
"The features that prevent internet connections, the filtering are the most valuable because we did not have any internet protection before."
"Load Sharing VDOM Security Profiles Vulnerability Assessment"
"It is easy to use and performs very well."
"The best features of Fortinet FortiGate are that it does the job effectively and protects our environment."
"Fortinet FortiGate offer a good value for money solution"
"The IPsec tunnels are very easily created, and quite interoperable with devices from other vendors."
"This solution helps to keep our network safe and secure, protecting our investment."
"The AntiSpam/Mail blade was also one of the main reasons we went with this product since we hosted our email server locally. This was an extra layer of protection on top of the existing solution."
"Check Point NGFW provides a bunch of different products or Blades, as they call it in Check Point, and while the firewall engine is what we use the most, we also use the IPS IDS and Anti-Bot features, so the solution provides many features."
"Check Point has a really cool GUI."
"The interface allows us to quickly adapt to new security requirements and maintain compliance with organizational policies."
"The way in which it manages the nodes within a cluster architecture is excellent, offering fault tolerance which is, in my experience, practically imperceptible when one of the nodes fails."
"It is generally easy to configure and manage using SmartCenter."
"Check Point firewall products include a lot of modules including Application Control, IPS, Email security, Mobile access, Content Awareness, URL Filtering, Antivirus, Antibot, and DLP, and Check Point meets our customers' requirements at the perimeter with an all-in-one solution."
"...It takes the exact same policies that you would apply to your on-premise environment and enables you to simply apply them to the cloud. It becomes one policy for both on-prem and for the cloud."
"We were able to see what devices are talking to each other, giving us more visibility."
"The UI was also one of the huge selling points. My web development manager was blown away with the detail and the granularity that you can get out of the UI. It is a very strong and informative UI, with the amount of data it provides."
"ShieldX has been designed from the very beginning to work well in cloud environments. It understands autoscaling, automation, and auto-configuration. These are the things which are important in today's operating environment."
"Once you install it you can virtually forget about it; it's very low-maintenance and high-protection."
"For other security professions who are looking for something which is low in cost that does microsegmentation, they should look at ShieldX."
"ShieldX makes it a lot easier and a lot simpler to define your policies and define your rules, and that greatly reduces the opportunity for user error."
"It has helped us tighten our security posture. Now, staff can only access things that they should be accessing."
 

Cons

"Its performance can be better. We have had performance issues in the past, but we sometimes tend to find that it is more related to what we do in our network than anything else. It is quite a good product, and there isn't much to improve."
"There is room for improvement in being proactive about identifying and integrating new signatures."
"The interface and product support could use improvement."
"The cloud management and automation capability could be improved."
"FortiLink is the interface on the firewall that allows you to extend switch management across all of your switches in the network. The problem with it is that you can't use multiple interfaces unless you set them up in a lag. Only then you can run them. So, it forces you to use a core type of switch to propagate that management out to the rest of the switches, and then it is running the case at 200. It leaves you with 18 ports on the firewall because it is also a layer-three router that could also be used as a switch, but as soon as you do that, you can't really use them. They could do a little bit more clean up in the way the stacking interface works. Some use cases and the documentation on the FortiLink checking interface are a little outdated. I can find stuff on version 5 or more, but it is hard to find information on some of the newer firmware. The biggest thing I would like to see is some improvement in the switch management feature. I would like to be able to relegate some of the ports, which are on the firewall itself, to act as a switch to take advantage of those ports. Some of these firewalls have clarity ports on them. If I can use those, it would mean that I need to buy two less switches, which saves time. I get why they don't, but I would still like to see it because it would save a little bit of space in the server rack."
"The solution needs to improve its integration with cybersecurity."
"FortiGate Next Generation Firewall could be made a little less expensive."
"The solution’s stability could be improved because we sometimes faced some drops."
"For the SMB appliances, the use case is tricky because I don't actually like them too much."
"In the rule creation process, we need to decide on the source address, destination address, and services. There are improvements needed in this area."
"The user interface should be user-friendly"
"There are some GUI features in Check Point's SmartConsole that are still from the old versions and are in separate or duplicated interfaces; it would be most useful if it is integrated and not on different menus."
"They could make the licensing a bit easier to deal with, especially for enterprise-level options."
"From a stability standpoint, sometimes when upgrading to a new version, there are some stability issues."
"The routing rules and some more network settings should be listed on the Check Point Smart Console instead of GAIA Web GUI."
"The command line interface of Check Point Quantum Force (NGFW) needs improvement. During troubleshooting of configuration-related issues, it is difficult to work through the CLI as it is entirely Linux-based."
"I would like better reports and in-depth reporting."
"We are having some issues with their LDAP and integrating it with the Active Directory. We can't seem to set it up."
"They need to be consistent in performance and capabilities over time, given the fact that this is new and I want to see where this goes in the next year or so. As the vendor continues to evolve and add future functionality, we want to make sure that we are still keeping up with the integrations, etc. Time will be the key factor here. The proper support for some of the latest technologies, Docker containers, etc. They need to keep up with threat landscape, so we will see how the security get layered. This is what we are going to be keeping an eye on."
"There should be a bit more customer care, with regular review meetings on it or regular reports. It would be nice to have a quarterly or biannual review of what ShieldX has blocked."
"They need to be consistent in performance and capabilities over time, given the fact that this is new and I want to see where this goes in the next year or so."
"With any kind of tool like ShieldX, where you're in the cloud instead of a traditional firewall, you're using CPU resources in those environments to provide the protection. So there's a cost associated with CPU resources. I'm pressing upon them to make the product much more efficient and use less CPUs to do the same thing."
 

Pricing and Cost Advice

"It's one of the more expensive brands. The 100 series costs around $4,000. They are similar in pricing to what you might get from Cisco solutions and probably other similar ones. They're not more expensive than other similar solutions, but they're certainly not cheaper either."
"In my opinion, the pricing of the product is reasonable."
"Price-wise, it's at a good price point for our market."
"Fortinet prices are around $600 for the small 40F model, and for licenses, the simplest option is about $300 for a year. They sell licenses that can last for 1, 2, 3, or 5 years."
"There is a license required to use Fortinet FortiGate with all the features. It has to be updated with the threats on an ongoing basis for the signatures to prevent threats and a license is needed to receive those security updates."
"It is more affordable than Check Point and Palo Alto. Another thing is that all the features and the OS remain the same irrespective of the size of the device. Pricing-wise, Fortinet typically provides one-year support with the firewall appliance. There is also an option for three years which is how their licensing works."
"It scales well if you know what to buy from a physical box standpoint. They seem to offer something for every level."
"Although the solution's pricing is high, compared with other products, it may be cheap."
"One of the main reasons that we went with Check Point is that they provide a good solution for a firewall but at an affordable price. As a state agency, we can't afford Cisco Firepower. It's just out of our budget to be able to pay for something where licensing and hardware are so expensive. Check Point has really met our needs for a budget-friendly solution."
"I rate the solution's pricing an eight out of ten. It costs around 100,000-200,000 dollars per month. Besides standard licensing fees, we paid extra for enterprise-level premium support. There were also onboarding costs factored in. These additional costs made it more expensive overall. The total cost was around 100,000 dollars, which was challenging for our budget. Check Point was also pricey, not much different from Palo Alto Networks. However, we decided switching to Check Point was better because it offered more capabilities for a similar price."
"We had to get separate licenses for the different blades. It would be nice to have a feature where we can get the multiple licenses all-in-one instead."
"The prices are good for its features. The benefit of its license is we get timely security prevention updates. The price is good for the technology that we get."
"The product is not that expensive for what it is offering, but it could be cheaper."
"The price may be perceived as relatively high when compared to the features and capabilities they provide."
"The tool's price is reasonable in case you are not using it in a high-load environment."
"Cisco pushes clients to purchase their hardware, and this is not the case with Check Point. This helps to easily manage costs."
"Security policies are now applied as applications are going up. Because it's automated, we don't have the three to four week delay. The insertion of applications in the cloud for us dropped from an average of three to four weeks to a couple of days."
"We are actually expecting our costs to drop in the coming year, but it is just a matter of the licensing expiring. That is going to happen in the next six months or so. Then, we will start to see a decrease in overall spend."
"For other security professions who are looking for something which is low in cost that does microsegmentation, they should look at ShieldX. It might not be the big name out there, but it does everything that you are looking for in microsegmentation at a very low price."
"We are very happy with the pricing and licensing. It's about getting a site-wide license. One of the challenges that we've had with our previous vendor had been the cost of licensing."
"ShieldX ensures that we can have the separation needed for our environment to avoid drastically increasing the cost on the licensing side. From this perspective, it's been very positive and helpful."
"ShieldX also enables us to migrate to cloud environments faster. That is an important part of it for sure because it takes the exact same policies that we would apply to our on-premise environment and enables us to simply apply them to the cloud. It becomes one policy for both on-prem and for the cloud."
"For a three-year deal we paid £55,000 plus tax... But, and this is a big "but," this was over two years ago. ShieldX had only just hit the market. We were the first company in Europe to buy ShieldX."
report
Use our free recommendation engine to learn which Firewalls solutions are best for your needs.
899,204 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
10%
Comms Service Provider
10%
Manufacturing Company
9%
Financial Services Firm
7%
Outsourcing Company
13%
Financial Services Firm
11%
Computer Software Company
10%
Construction Company
8%
No data available
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business370
Midsize Enterprise136
Large Enterprise195
By reviewers
Company SizeCount
Small Business163
Midsize Enterprise94
Large Enterprise199
No data available
 

Questions from the Community

Which is the better NGFW: Fortinet Fortigate or Cisco Firepower?
When you compare these firewalls you can identify them with different features, advantages, practices and usage a...
What is the biggest difference between Sophos XG and FortiGate?
From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know...
What are the biggest technical differences between Sophos UTM and Fortinet FortiGate?
As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite ...
How does Check Point NGFW compare with Fortinet Fortigate?
I have experience on both from Disti and channel experience. Please find below my comments (nothing new as such). -Ch...
Which would you recommend - Azure Firewall or Check Point NGFW?
Azure Firewall is easy to use and provides excellent support. Valuable features include integration into the overall ...
What is your experience regarding pricing and costs for Check Point NGFW?
Our experience with pricing for Check Point Quantum Force (NGFW) has been mixed. The initial setup costs were fairly ...
Ask a question
Earn 20 points
 

Also Known As

Fortinet FortiGate Next-Generation Firewall
Check Point NG Firewall, Check Point Next Generation Firewall
APEIRO, ShieldX APEIRO
 

Overview

 

Sample Customers

Amazon Web Services, Microsoft, IBM, Cisco, Dell, HP, Oracle, Verizon, AT&T, T-Mobile, Sprint, Vodafone, Orange, BT Group, Telstra, Deutsche Telekom, Comcast, Time Warner Cable, CenturyLink, NTT Communications, Tata Communications, SoftBank, China Mobile, Singtel, Telus, Rogers Communications, Bell Canada, Telkom Indonesia, Telkom South Africa, Telmex, Telia Company, Telkom Kenya
Control Southern, Optimal Media
Iowa State University
Find out what your peers are saying about Fortinet, Netgate, Sophos and others in Firewalls. Updated: May 2026.
899,204 professionals have used our research since 2012.