No more typing reviews! Try our Samantha, our new voice AI agent.

Forcepoint Next Generation Firewall vs Hillstone E-Series comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Sep 16, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Fortinet FortiGate
Sponsored
Ranking in Firewalls
1st
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
589
Ranking in other categories
Secure Web Gateways (SWG) (2nd), Intrusion Detection and Prevention Software (IDPS) (1st), Software Defined WAN (SD-WAN) Solutions (1st), WAN Edge (1st), ZTNA (1st), Unified Threat Management (UTM) (1st)
Forcepoint Next Generation ...
Ranking in Firewalls
19th
Average Rating
7.6
Reviews Sentiment
6.4
Number of Reviews
51
Ranking in other categories
Software Defined WAN (SD-WAN) Solutions (8th), WAN Edge (8th)
Hillstone E-Series
Ranking in Firewalls
39th
Average Rating
9.2
Reviews Sentiment
7.7
Number of Reviews
10
Ranking in other categories
SSL VPN (9th), Enterprise Infrastructure VPN (24th)
 

Mindshare comparison

As of March 2026, in the Firewalls category, the mindshare of Fortinet FortiGate is 18.3%, down from 21.1% compared to the previous year. The mindshare of Forcepoint Next Generation Firewall is 0.6%, up from 0.4% compared to the previous year. The mindshare of Hillstone E-Series is 0.5%, up from 0.3% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Firewalls Mindshare Distribution
ProductMindshare (%)
Fortinet FortiGate18.3%
Forcepoint Next Generation Firewall0.6%
Hillstone E-Series0.5%
Other80.6%
Firewalls
 

Featured Reviews

Vasu Gala - PeerSpot reviewer
Manager, Information Technology Operation/Presales at TechMonarch
A stable solution with an intuitive interface and quick customer service
I have been working with Fortinet FortiGate, WatchGuard, Sophos, and SonicWall. I'm not as comfortable with SonicWall because of their UI and limitations. I prefer Fortinet above all other options. When it comes to configuration, I am confident in my ability to handle various tasks, including creating policies such as firewall rules, web policies, and application policies. Additionally, I can configure VPNs and implement load balancing, among other tasks. Overall, I feel much more comfortable working with Fortinet. Fortinet has made significant improvements by integrating AI with firewalls for threat analysis and prevention. In the past 2-3 years, they have launched FortiSASE and SIEM, and they also provide SOC services. Both Palo Alto and Fortinet FortiGate are excellent. While Fortinet FortiGate comes at higher prices, the functionality and support justify the cost. They promptly resolve firmware issues and inform all support providers about configuration changes.
reviewer2774055 - PeerSpot reviewer
Cybersecurity Engineer at a tech consulting company with 51-200 employees
Improved network segmentation has reduced lateral movement while the interface still needs modernization
For threat prevention, I noticed on another customer that there were repeated scanning and exploit attempts against some public-facing service running on HTTPS. I configured Forcepoint Next Generation Firewall to handle IPS by enabling it with critical and high severity signatures only to reduce false positives. I turned on IP reputation filtering to filter out known malicious networks, applied rate limiting on specific services in the DMZ, and logged events centrally for correlation. As a result, exploit attempts were much less than before, being blocked before reaching the back-end servers from the firewall itself, with no performance degradation on the applications. The security team received clear and actionable logs that were centralized, so they knew what was happening all the time. Strong network segmentation is my favorite feature that Forcepoint Next Generation Firewall offers. The policies are very deterministic and readable, and it has excellent east-west blocking and least privilege architecture. Application awareness identifies traffic beyond just the port itself; I can identify the application using a specific port and block risky applications even if they use allowed ports, which is great for environments with shadow IT. The integrated threat prevention is also very good, with IPS featuring well-tuned signatures and reputation-based filtering that blocks known bad actors before they can touch any applications. It supports both IPsec and SSL VPN tunnels, along with site-to-site, client-to-site, and hybrid cloud links, integrating well with Active Directory and LDAP. Additionally, centralized log management and reporting are very actionable and structured, with clarity in the policies for auditing. Overall, its stability and reliability are commendable. A real example of how Forcepoint Next Generation Firewall's readable policies and application awareness features made my work easier was fixing a flat network problem without breaking actual applications. I inherited an environment where users, application servers, and databases were loosely segmented, with port-based and messy firewall rules. Security audits flagged lateral movement risks, and application owners were scared of outages if I tightened security too much. Forcepoint Next Generation Firewall made it easy by providing very easy-to-read and logical policies. I built policies that are clear, showing communications from the user zone to the application zone to specific applications, or from the app zone to the database zone, using only required database protocols. By default, I applied a deny rule between zones unless explicitly allowed by the readable rules I implemented. The policy view clarified who talks to whom, which rules exist, why they exist, and the business function they support, effectively stopping port abuse. Security posture has definitely improved greatly since using Forcepoint Next Generation Firewall. From a flat or semi-flat network, I now have clear zone-based segmentation, with increased operational efficiency. The admins using the firewall have rules that are easy to read and intent-based, making changes easier to review and approve. There is less fear that one wrong rule could break production and fewer outages caused by security changes, without hidden matches or rule shadowing surprises. Clear hit count visibility helps me clean unused rules, leading to much fewer outages caused by changes on the firewalls. The centralized log management with supported log types provides better visibility for the SOC team and the SIEM team, as Forcepoint Next Generation Firewall sends very easy-to-parse and search clear logs to the SOC team. I did see measurable, defensible results after using Forcepoint Next Generation Firewall, including fewer security incidents reaching the back-end servers. This reduction is due to strong segmentation, application awareness, and IPS features, leading to a 60 to 70 percent reduction in security alerts that actually reach the servers. DMZ exploit attempts dropped to near zero, and no lateral movement incidents were detected post network segmentation. Additionally, overall SOC efficiency improved due to well-structured and contextual logs reflecting clear policy intent, resulting in a 35 to 40 percent reduction in mean time to triage. SOC analysts stopped chasing noise and false positives, as they had much clearer logs to use confidently.
TahirMahmood - PeerSpot reviewer
IT Manager at Zubair Feeds
Offers good features like URL filtering, IPS, and IDS to users
We received an update for the tool in July. The update was provided for the tool as there was a problem with the firewall, where too much memory was consumed, and the firewall was hanging a lot. When we updated the tool's features, everything became okay. The tool only had some memory-related problems. It took the tool a month to fix the issues.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Good anti-malware and web filtering features."
"The features I found most valuable in Fortinet FortiGate include their SD-WAN features and their VPN; they are good and very useful, and my remote user and I are using them all the time."
"The most valuable features of Fortinet FortiGate are the different types of profiling. It has been the most effective for me. The WAF and the antivirus profile are the most effective in network protection."
"I'm happy with FortiGate; it's a product I can recommend to others because it doesn't give me any issues."
"We are happy to use this product."
"In terms of security, we have not experienced any security flaws or loopholes, and it has proven to be quite stable."
"We use a southern institution that's audited for IT security and the reporting that automatically comes off the unit makes it much easier to meet compliance standards and makes it easier as far as the amount of time that has to be spent to compile that information. If you get your reporting set up correctly when you initially set it up, you just select the one you want and hit print. The auditing trail on it is the best feature."
"Run Script is the best tool to use in Fortinet FortiGate with multiple environments."
"When it comes to the detection rate of the IP, it is the most powerful solution for detection-ready tests, like evasion techniques etc."
"Forcepoint is my favorite enterprise firewall."
"When comparing this solution to others this one has better reporting, user management, and is easy to use."
"Forcepoint Next Generation Firewall has positively impacted my organization by providing always-on perimeter security."
"The security management center is one of the best parts of the product."
"Next Generation Firewall's best feature is that it can be managed on one platform."
"Forcepoint is a very big company with a very good product line, and it fulfills most of the needs of the customers, especially enterprise customers in the financial sector."
"The technical support for Forcepoint is fine, they are polite and available twenty-four hours and usually resolve problems the same day."
"The most valuable features of the Hillstone E-Series are its hardware capacity, innovation, and the throughput that the hardware can take."
"Five out of five ROI."
"With Hillstone, TCO and ROI are very good, it's an easy sale."
"The installation is easy, we have not had any complaints from our customers."
"I am impressed with the application filtering feature."
"This solution has two main features that we find very valuable; a threat-intelligence option, and a web/application filtering option. The technical support team are very good and very quick."
"Working with the Hillstone E-Series has, from a remote perspective, allowed me to give my clients secure connectivity from a remote location to their offices or their servers."
"The initial setup was straightforward. It only took a few hours to deploy."
 

Cons

"The initial setup is medium complex and takes between five days and a week."
"I haven't had a single issue since using Fortinet."
"Improvements could be made when companies expand and need better equipment and more licenses."
"It would be good if they had fewer updates."
"Fortinet should improve its software, as we are seeing lots of firmware versions generated for each vulnerability issue. It becomes difficult for us to keep updating the firmware frequently due to bugs."
"The way everything is set up could be easier. Currently, people need a lot of experience and knowledge to administer it and to link it to devices."
"This product could be improved with Active directory integration and better handling in IPsec and GRE Tunnels."
"The scalability could be better."
"The company should update the URL filtering database. They need to enhance the URL filtering and make it easier to customize."
"They should provide more details on potential cyber threats."
"However, we did have a horrible experience with Forcepoint in the past."
"Something that I've noticed that Forcepoint lacks is the training that they offer to their customers."
"Intel could ditch the Java-based GUI rendering and could use some serious revamp on the way they manage their GUI."
"Forcepoint would be improved if there were more training available."
"My team is looking for more throughput and better integration with our security framework."
"They need to increase the local support here. There are also some bugs or fixes on which they need to work."
"SSL VPN license cost is not cheap."
"The current usage reporting is very basic. I would like to be able to access more granular data."
"The solution doesn't have a web proxy built into the system like Sophos. This is something they should work to change."
"The solution doesn't have a web proxy built into the system like Sophos. This is something they should work to change."
"Having frequent live webinars on a monthly basis would really help."
"I am not sure if this solution offers active directory integration. Adding that feature will definitely be an advantage."
"The room for improvement would be the SSL VPN license cost."
"I am not sure if this solution offers active directory integration. Adding that feature will definitely be an advantage."
 

Pricing and Cost Advice

"Pricing is lower than Cisco."
"If the customer is looking for SD-WAN, it comes free with FortiGate."
"When comparing this solution to others, I would rate it a ten out of ten in terms of pricing. However, the issue of requiring a separate license for redundancy is a drawback, and I would rate it a nine out of ten."
"It is too expensive for us. My organization is very small, and we have a total of ten users. We have three internal users and seven external users. The FortiGate 100D series is too expensive for renewing the licenses."
"It is not the cheapest one, but its price is very competitive."
"The price depends on the size of the company. From the beginning, you just want to know the internet bandwidths, speed, and the number of users to be able to offer the right product and model. They have a lot of products in FortiGate according to the size of the company, like 200D and 300D."
"In terms of the market, it's not a cheap product, but it's cost-effective."
"I pay €1,200 per year for the license along with Fortinet's 81E firewall appliance. I would rate this pricing as 3/5 stars, and I believe the price is reasonably similar to its competitors in the market, being somewhere in the middle."
"There is a license required to use this solution and we can purchase it for one, two, three, or five years."
"Forcepoint is very expensive but it's really secure."
"I consider Forcepoint Next Generation Firewall's price to be good."
"We would love to take other solution from Forcepoint, but unfortunately the price is too high. That's why we are not considering using Forcepoing for our proxy and DLB. They have a very good DLB, but the matter in the end is the cost."
"It requires a yearly subscription."
"I believe the licensing fee is for one year, three years, and five years, or something like that. If you wants to increase the support level from a simpler level to platinum, I think that there's a cost. There are differences between every kind of support, but I don't know the numbers."
"It could be cheaper like Fortinet."
"It is expensive."
"Hillstone's pricing is economical and neither very high nor very low."
"The cost per year for licensing, and hardware, is approximately $850 for the basic plan."
"The tool's pricing is reasonable. It depends on the model. The product's pricing is around 600 USD. You need to buy a software license to activate the features. You need to pay around 150 USD for that."
"The licensing model is very complex with many subcategories of licenses you can purchase. They could make it more simplified for customers to understand."
report
Use our free recommendation engine to learn which Firewalls solutions are best for your needs.
885,376 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
11%
Comms Service Provider
9%
Manufacturing Company
8%
Financial Services Firm
6%
Manufacturing Company
9%
Computer Software Company
9%
Construction Company
8%
Financial Services Firm
7%
Comms Service Provider
14%
Construction Company
10%
Manufacturing Company
9%
Financial Services Firm
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business364
Midsize Enterprise135
Large Enterprise190
By reviewers
Company SizeCount
Small Business29
Midsize Enterprise10
Large Enterprise12
By reviewers
Company SizeCount
Small Business9
Midsize Enterprise1
 

Questions from the Community

Which is the better NGFW: Fortinet Fortigate or Cisco Firepower?
When you compare these firewalls you can identify them with different features, advantages, practices and usage a...
What is the biggest difference between Sophos XG and FortiGate?
From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know...
What are the biggest technical differences between Sophos UTM and Fortinet FortiGate?
As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite ...
What is your experience regarding pricing and costs for Forcepoint Next Generation Firewall?
My experience with pricing, setup cost, and licensing is limited because I do not work with pricing, but I have exper...
What needs improvement with Forcepoint Next Generation Firewall?
I found one problem with Forcepoint Next Generation Firewall. They still do not have any VPN clients for Windows comp...
What needs improvement with Hillstone E-Series?
We received an update for the tool in July. The update was provided for the tool as there was a problem with the fire...
What is your primary use case for Hillstone E-Series?
I use the solution in my company for site-to-site VPN, SSL VPNs, URL filtering, IPS, IDS and all the other features w...
What advice do you have for others considering Hillstone E-Series?
Our company did not use the tool's micro-segmentation features. There were no issues while integrating the tool. I ha...
 

Also Known As

Fortinet FortiGate Next-Generation Firewall
Forcepoint NGFW, Stonesoft Next Generation Firewall, McAfee Network Security Platform, Intel Security Network Security Platform
No data available
 

Overview

 

Sample Customers

Amazon Web Services, Microsoft, IBM, Cisco, Dell, HP, Oracle, Verizon, AT&T, T-Mobile, Sprint, Vodafone, Orange, BT Group, Telstra, Deutsche Telekom, Comcast, Time Warner Cable, CenturyLink, NTT Communications, Tata Communications, SoftBank, China Mobile, Singtel, Telus, Rogers Communications, Bell Canada, Telkom Indonesia, Telkom South Africa, Telmex, Telia Company, Telkom Kenya
California Department of Corrections and Rehabilitation (CDCR)
Bank of China Macao, Instituto Tecnológico Bolivariano, Ministry of Labor in San Salvador, FEDCO
Find out what your peers are saying about Forcepoint Next Generation Firewall vs. Hillstone E-Series and other solutions. Updated: March 2026.
885,376 professionals have used our research since 2012.