No more typing reviews! Try our Samantha, our new voice AI agent.

Forcepoint Next Generation Firewall vs Zyxel Unified Security Gateway comparison

Sponsored
 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Fortinet FortiGate
Sponsored
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
589
Ranking in other categories
Secure Web Gateways (SWG) (2nd), Firewalls (1st), Intrusion Detection and Prevention Software (IDPS) (1st), Software Defined WAN (SD-WAN) Solutions (1st), WAN Edge (1st), ZTNA (1st), Unified Threat Management (UTM) (1st)
Forcepoint Next Generation ...
Average Rating
7.6
Reviews Sentiment
6.4
Number of Reviews
51
Ranking in other categories
Firewalls (19th), Software Defined WAN (SD-WAN) Solutions (8th), WAN Edge (8th)
Zyxel Unified Security Gateway
Average Rating
6.6
Reviews Sentiment
4.9
Number of Reviews
4
Ranking in other categories
Unified Threat Management (UTM) (13th)
 

Featured Reviews

Vasu Gala - PeerSpot reviewer
Manager, Information Technology Operation/Presales at TechMonarch
A stable solution with an intuitive interface and quick customer service
I have been working with Fortinet FortiGate, WatchGuard, Sophos, and SonicWall. I'm not as comfortable with SonicWall because of their UI and limitations. I prefer Fortinet above all other options. When it comes to configuration, I am confident in my ability to handle various tasks, including creating policies such as firewall rules, web policies, and application policies. Additionally, I can configure VPNs and implement load balancing, among other tasks. Overall, I feel much more comfortable working with Fortinet. Fortinet has made significant improvements by integrating AI with firewalls for threat analysis and prevention. In the past 2-3 years, they have launched FortiSASE and SIEM, and they also provide SOC services. Both Palo Alto and Fortinet FortiGate are excellent. While Fortinet FortiGate comes at higher prices, the functionality and support justify the cost. They promptly resolve firmware issues and inform all support providers about configuration changes.
reviewer2774055 - PeerSpot reviewer
Cybersecurity Engineer at a tech consulting company with 51-200 employees
Improved network segmentation has reduced lateral movement while the interface still needs modernization
For threat prevention, I noticed on another customer that there were repeated scanning and exploit attempts against some public-facing service running on HTTPS. I configured Forcepoint Next Generation Firewall to handle IPS by enabling it with critical and high severity signatures only to reduce false positives. I turned on IP reputation filtering to filter out known malicious networks, applied rate limiting on specific services in the DMZ, and logged events centrally for correlation. As a result, exploit attempts were much less than before, being blocked before reaching the back-end servers from the firewall itself, with no performance degradation on the applications. The security team received clear and actionable logs that were centralized, so they knew what was happening all the time. Strong network segmentation is my favorite feature that Forcepoint Next Generation Firewall offers. The policies are very deterministic and readable, and it has excellent east-west blocking and least privilege architecture. Application awareness identifies traffic beyond just the port itself; I can identify the application using a specific port and block risky applications even if they use allowed ports, which is great for environments with shadow IT. The integrated threat prevention is also very good, with IPS featuring well-tuned signatures and reputation-based filtering that blocks known bad actors before they can touch any applications. It supports both IPsec and SSL VPN tunnels, along with site-to-site, client-to-site, and hybrid cloud links, integrating well with Active Directory and LDAP. Additionally, centralized log management and reporting are very actionable and structured, with clarity in the policies for auditing. Overall, its stability and reliability are commendable. A real example of how Forcepoint Next Generation Firewall's readable policies and application awareness features made my work easier was fixing a flat network problem without breaking actual applications. I inherited an environment where users, application servers, and databases were loosely segmented, with port-based and messy firewall rules. Security audits flagged lateral movement risks, and application owners were scared of outages if I tightened security too much. Forcepoint Next Generation Firewall made it easy by providing very easy-to-read and logical policies. I built policies that are clear, showing communications from the user zone to the application zone to specific applications, or from the app zone to the database zone, using only required database protocols. By default, I applied a deny rule between zones unless explicitly allowed by the readable rules I implemented. The policy view clarified who talks to whom, which rules exist, why they exist, and the business function they support, effectively stopping port abuse. Security posture has definitely improved greatly since using Forcepoint Next Generation Firewall. From a flat or semi-flat network, I now have clear zone-based segmentation, with increased operational efficiency. The admins using the firewall have rules that are easy to read and intent-based, making changes easier to review and approve. There is less fear that one wrong rule could break production and fewer outages caused by security changes, without hidden matches or rule shadowing surprises. Clear hit count visibility helps me clean unused rules, leading to much fewer outages caused by changes on the firewalls. The centralized log management with supported log types provides better visibility for the SOC team and the SIEM team, as Forcepoint Next Generation Firewall sends very easy-to-parse and search clear logs to the SOC team. I did see measurable, defensible results after using Forcepoint Next Generation Firewall, including fewer security incidents reaching the back-end servers. This reduction is due to strong segmentation, application awareness, and IPS features, leading to a 60 to 70 percent reduction in security alerts that actually reach the servers. DMZ exploit attempts dropped to near zero, and no lateral movement incidents were detected post network segmentation. Additionally, overall SOC efficiency improved due to well-structured and contextual logs reflecting clear policy intent, resulting in a 35 to 40 percent reduction in mean time to triage. SOC analysts stopped chasing noise and false positives, as they had much clearer logs to use confidently.
reviewer2399337 - PeerSpot reviewer
Sales and technical consultant at a manufacturing company with 10,001+ employees
User has benefited from stable performance and effective completion of security tasks
I use it mostly for VPN and for some firewall solutions When considering my main use case with VPN, I can say that I got the Zyxel Unified Security Gateway, and it works fine. However, we are thinking about using a different solution based on open source because Zyxel Unified Security Gateway…

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"We use the FortiGate Sandbox to detect zero-day vulnerabilities, such as anomalies or malware, that are unknown and have not yet been discovered."
"ROI is exceptionally good."
"The firewall engine is very good, very suitable for picking up Zero-day threats, and it has protected us from two or three instances, thanks to this engine."
"This solution works well on a daily basis, detecting various types of malicious traffic."
"The stability is great; there are no issues with crashing or freezing, and there are no bugs or glitches."
"FortiGate's threat detection capability is excellent."
"The product's most valuable features are SD-WAN and the integration of WiFi and switches."
"It is complemented by other equipment, such as the Fortinet switch, and it is integrated with other tools that help to prevent cyberattacks, including a web filter, IPS, and application control."
"When our customer needs some optimization, along with performance and security. If they want everything in one package, I recommend Forcepoint because they have everything."
"The people we deal with is a local partner in Cambodia and we can get good support from them."
"The most valuable features of Forcepoint Next Generation Firewall are the advanced threat protection, including features like IPS and DDoS prevention, which help avoid internal DDoS attacks."
"Forcepoint is stable and we plan to continue using it in the future."
"It provides decent protection for the LAN, especially in run mode."
"The most valuable feature is the console management."
"The support is great, they also have very good categorization, and it captures a lot of threats."
"The most valuable feature is SD-WAN."
"The Zyxel Unified Security Gateway solution is stable and does its job effectively."
"This is a capable appliance and the standard features work well for us."
"This is a capable appliance and the standard features work well for us."
"The cost is very low."
"The solution can scale well."
"The most valuable features of the solution stem from web filtering, malware protection, and antivirus."
 

Cons

"A sandbox would be good in order to be able to inspect the emails containing spam and be able to validate the emails that contain malware, prior to delivering to the customer."
"The solution has limited scalability. You have to change the hardware in order to ensure the solution can scale."
"We faced some technical issues on the Fortinet side."
"The central management for the FortiGate Fortinet Firewall needs improvement. They have the manager to do the essential management for both SD-WAN and the security policy."
"The anti-malware engine could use an upgrade."
"The solution could improve the configuration, there are times the configuration is missing."
"The solution should allow more user-friendly integrations or deployment"
"It is quite new for us, and we need to go more in-depth into the monitoring tools. It provides different features that we need to do what we want. So far, it is okay for us. In terms of improvement, in the future, they can provide a faster implementation of features. Some of the features are first available in other solutions. Fortinet sometimes takes a little bit longer than other solutions, such as Check Point, to implement new features."
"However, one downside that I see is that they need to improve some network functionality."
"They should have a GUI on the product itself, not a separate management tool to be used on the management server or on a server to be used to manage the file. It should be all in one device. The device should be controlled through its own GUI. They also have to improve the learning center and the documents as the documents don't really help."
"It is really hard to work with their customer support. For example, unlike Fortinet where you can escalate an issue and quickly get responses from the development team, Forcepoint's process seems slow and challenging."
"While the policies are easy to read, the UI feels a bit dated and sometimes clunky on certain pages."
"Management could be better. They can improve the management. I think all our customers can't accept firewalls that have standalone management. So, they prefer Fortinet or Palo Alto. But overall, inspection and other features are working fine."
"The company should update the URL filtering database. They need to enhance the URL filtering and make it easier to customize."
"The network interface could be better, and it could be cheaper."
"We would love to take another solution from Forcepoint, but unfortunately, the price is too high."
"Although manageable, the user interface is a little bit slow and could be improved. The advanced UI allows me to do whatever I want, but this is where the issue of speed exists."
"The product has some scalability and data management issues where improvements are required."
"Although manageable, the user interface is a little bit slow and could be improved."
"Sometimes it reboots when you least expect it, and that's the main issue."
"I have never seen it in any company that I've worked with before, and I would advise other companies not to buy it."
 

Pricing and Cost Advice

"I do not have first-hand experience with the rice of Fortinet FortiGate, but I have heard the price was reasonable."
"Easy to understand licensing requirements."
"It has been two years. I don't remember the actual price, but it was affordable. We buy the boxes and then use the license for three years."
"The product is a little bit expensive."
"Go for long term pricing negotiated at the time of purchase."
"Pricing for this product is comparatively lower than other products. It's an affordable solution, but when expanding the number of users, they'll ask you to replace the model, so that's an added cost."
"The price of Fortinet FortiGate is affordable. Most of our customers are on a three-year license to use the solution. All the features and support are included in the price."
"The pricing is better compared to other solutions like Check Point, Arista, or Cisco."
"The training that they offer to their end-customers. It's quite expensive, I believe it costs roughly $11,000"
"The big advantage of this solution is that we can select the right model for our requirements, which is not too expensive."
"It requires a yearly subscription."
"The cost is fair, but it could be improved."
"I believe the licensing fee is for one year, three years, and five years, or something like that. If you wants to increase the support level from a simpler level to platinum, I think that there's a cost. There are differences between every kind of support, but I don't know the numbers."
"There is a need to make payments towards the licensing charges attached to the product. The product is not expensive."
"It is an affordable product. We purchase its yearly license."
"It could be cheaper like Fortinet."
"This gateway is pretty cheap."
"The price of Zyxel Unified Security Gateway is good compared to other similar products in the market."
report
Use our free recommendation engine to learn which Firewalls solutions are best for your needs.
885,376 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
11%
Comms Service Provider
9%
Manufacturing Company
8%
Financial Services Firm
6%
Manufacturing Company
9%
Computer Software Company
9%
Construction Company
8%
Financial Services Firm
7%
Comms Service Provider
21%
Computer Software Company
8%
Outsourcing Company
8%
Construction Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business364
Midsize Enterprise135
Large Enterprise190
By reviewers
Company SizeCount
Small Business29
Midsize Enterprise10
Large Enterprise12
No data available
 

Questions from the Community

Which is the better NGFW: Fortinet Fortigate or Cisco Firepower?
When you compare these firewalls you can identify them with different features, advantages, practices and usage a...
What is the biggest difference between Sophos XG and FortiGate?
From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know...
What are the biggest technical differences between Sophos UTM and Fortinet FortiGate?
As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite ...
What is your experience regarding pricing and costs for Forcepoint Next Generation Firewall?
My experience with pricing, setup cost, and licensing is limited because I do not work with pricing, but I have exper...
What needs improvement with Forcepoint Next Generation Firewall?
I found one problem with Forcepoint Next Generation Firewall. They still do not have any VPN clients for Windows comp...
What do you like most about Zyxel Unified Security Gateway?
The most valuable features of the solution stem from web filtering, malware protection, and antivirus.
What is your experience regarding pricing and costs for Zyxel Unified Security Gateway?
I cannot definitively comment on whether Zyxel Unified Security Gateway is an affordable product as I haven't done co...
What needs improvement with Zyxel Unified Security Gateway?
The integration capability is quite challenging. The system is very complicated, and many features are hidden. I'm lo...
 

Also Known As

Fortinet FortiGate Next-Generation Firewall
Forcepoint NGFW, Stonesoft Next Generation Firewall, McAfee Network Security Platform, Intel Security Network Security Platform
No data available
 

Overview

 

Sample Customers

Amazon Web Services, Microsoft, IBM, Cisco, Dell, HP, Oracle, Verizon, AT&T, T-Mobile, Sprint, Vodafone, Orange, BT Group, Telstra, Deutsche Telekom, Comcast, Time Warner Cable, CenturyLink, NTT Communications, Tata Communications, SoftBank, China Mobile, Singtel, Telus, Rogers Communications, Bell Canada, Telkom Indonesia, Telkom South Africa, Telmex, Telia Company, Telkom Kenya
California Department of Corrections and Rehabilitation (CDCR)
Information Not Available
Find out what your peers are saying about Forcepoint Next Generation Firewall vs. Zyxel Unified Security Gateway and other solutions. Updated: March 2026.
885,376 professionals have used our research since 2012.