Try our new research platform with insights from 80,000+ expert users

Fortinet FortiGate SWG vs Prisma Access by Palo Alto Networks comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Dec 4, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

iboss
Sponsored
Ranking in Secure Web Gateways (SWG)
7th
Average Rating
8.4
Reviews Sentiment
7.1
Number of Reviews
19
Ranking in other categories
Internet Security (3rd), Web Content Filtering (1st), Cloud Access Security Brokers (CASB) (7th), ZTNA as a Service (11th), Secure Access Service Edge (SASE) (10th)
Fortinet FortiGate SWG
Ranking in Secure Web Gateways (SWG)
3rd
Average Rating
8.6
Reviews Sentiment
7.1
Number of Reviews
43
Ranking in other categories
No ranking in other categories
Prisma Access by Palo Alto ...
Ranking in Secure Web Gateways (SWG)
4th
Average Rating
8.4
Reviews Sentiment
7.1
Number of Reviews
63
Ranking in other categories
Cloud Access Security Brokers (CASB) (1st), Enterprise Infrastructure VPN (5th), ZTNA as a Service (2nd), Secure Access Service Edge (SASE) (2nd)
 

Mindshare comparison

As of June 2025, in the Secure Web Gateways (SWG) category, the mindshare of iboss is 2.1%, up from 1.6% compared to the previous year. The mindshare of Fortinet FortiGate SWG is 6.3%, down from 7.1% compared to the previous year. The mindshare of Prisma Access by Palo Alto Networks is 11.0%, up from 9.5% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Secure Web Gateways (SWG)
 

Featured Reviews

Matt Crockford - PeerSpot reviewer
It's easy to roll out, and their understanding of our business made it seamless
One aspect we value about iboss is its simplicity. Their customer service is brilliant, and they are super responsive and knowledgeable. It's easy to roll out, and their understanding of our business made it seamless. We were impressed by the solution's mental health function, which can detect if someone needs help. It scans what users are browsing and flags warning signs so we can check to see if they are okay. We've had to use it a couple of times. The user interface is highly intuitive. Our IT team picked it up with minimal training. It's arranged so that it's easy to find where things are. Another advantage is the single pane of glass console, which gives you visibility into what's happening. We're not fully there yet because we haven't implemented zero trust, but we're excited about the possibilities from the demos we've seen. We launched a POC of iboss' ChatGPT Risk Protection feature two weeks ago. AI is a great tool, but you need to be careful what you put into it. My biggest fear is employees inputting sensitive corporate information or customer PII data into one of these chatbots. I was impressed by our trial of the feature. It's exactly what we wanted. Now, when a user goes to ChatGPT, there's a banner warning them not to share information, and we can block conversations containing customer data like bank details and email addresses. I don't want to stop people from using it, but we need visibility. We've only tried it on a test group of 15 people. You can configure it to look for specific keywords or integrate it with your DLP policy if you have that configured
Ayman Said - PeerSpot reviewer
Enables seamless traffic handling and effective network protection
We are using Fortinet FortiGate SWG for web filtering, application control, and IDPS. Additionally, we utilize it for VPN and the main features of a firewall Web filtering is very good, as well as IDPS. SD-WAN is a perfect feature. Additionally, the VPN is stable and very good. These features…
Amar-Patil - PeerSpot reviewer
Enables seamless policy management and supports secure remote work
Our primary use case for Prisma Access by Palo Alto Networks is to control the internet and serve as an internet proxy. Additionally, we use it for secure remote work One of the most valuable features of Prisma Access by Palo Alto Networks is the ability to manage on-premise firewalls. We can…

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Granular setup, which was able to set different levels of filters using the OUs in the AD."
"iboss is easy to use despite its complexity. Multiple engineers manage it, but it's significantly more straightforward to administer than traditional VPNs and web proxies."
"The security aspect of the solution, particularly the malware behind it, is excellent. That's something that really helped us out. It's not just a simple proxy that just blocks the insights of potential threats that come on behind it. They do malware detection and that helps us a lot."
"First of all, the security policies are essential. I do not have to rely solely on Active Directory for our users."
"I would rate the technical support of iboss a solid 10 without a shadow of a doubt."
"Our primary use case for this product is DLP,"
"iboss is among the few products providing inline filtering where no application is needed on the device."
"Its initial setup was straightforward."
"The most useful features are application control, web filtering, and SD-WAN."
"The interface and other reports are all user-friendly."
"Web filtering is the most useful feature."
"It is simpler to configure. It is not like Cisco Firepower, where you go crazy trying to follow the Cisco documentation to figure out how to configure one little thing. Unlike Cisco Firepower, where you can't do everything through the web interface and you have got to do some command line stuff, Fortinet FortiGate SWG is simpler. There are four different things in Cisco to get in, which is not the case with Fortinet FortiGate SWG. It is one of my favorite solutions to work with. I would much rather work with it than Cisco Firepower, for example. Even though I've got 20 years of Cisco experience with different firewalls, I would much prefer this solution."
"The solution is easy to implement and easy to configure. The most valuable feature is FortiGate’s content filtering."
"It's a flexible solution."
"The product is easy to install since we only need to follow the user manual, documents, and articles provided by Fortinet to install the product."
"FortiGate is easy to configure. We configured one of the units and sent it to Indiana to be installed. We asked them to give us a call when they got it, so we could help them through the process, but they called us back to tell us it works great."
"The most valuable features of the solution are in the areas of the secure remote access it provides while also being user-friendly."
"The solution improved the consistency of our security controls and the BCP. There has been a 20 percent reduction in TCO. Prisma Access also enabled us to deliver better applications by centralizing security management."
"The remediation process is easy compared to other platforms."
"The always-on feature is fantastic for the users. They don't have to think about it. When they go to a coffee shop to do work, there's no need to remember to toggle the VPN on. We'll protect them. URL filtering is the same at home as it is in the office."
"Security is absolutely spot-on, really top-notch. It's the result of all the components that come together, such as the HIP [Host Information Profile] and components like Forcepoint, providing end-user content inspection, and antivirus. It incorporates DLP features and that's fantastic because Prisma Access makes sure that all of the essential prerequisites are in place before a user can log in or can be tunneled into."
"I like it because it's very easy to use. You install the client and you have to know your gateway, but that's something we give to our users. Beyond that, it takes about three seconds to train them on how to use it. And it just works well. That's great for us because it means less administrative time."
"The solution is not very complex and is easy to manage for people who may or may not have knowledge about Palo Alto Networks."
"The most valuable features of the solution stem from the fact that it offers stability and scalability while being a very secure product."
 

Cons

"I'd like to see them accelerate development on the security side, particularly around data loss prevention."
"Their on-premise hardware's network interface is capped at one gigabit, which is sort of a problem. If you stand a filter up where all traffic flows through that, according to them, in order to go above a gigabit, you have to have multiple devices, which in today's IT seems a little bit silly. They could easily put in an SFP port into their device that could accommodate 10 gigs or at least offer a box."
"One thing I would like to see differently with their Zero Trust platform is that some of the AI aspects related to high-risk activities have more false positives."
"For zero trust implementation, we encountered complexity issues, especially with a large infrastructure company ExxonMobil."
"SSL decryption: We had issues with learners using apps instead of using web browsers. This type of encryption is tough for any appliance in a BYOD environment."
"I am currently doing a PoC of the zero trust aspect of it. Compared to other similar solutions, it is hard to get around each feature. It takes a while to get used to it."
"Sometimes when you call in support, you get someone who is just following a sheet. It feels like a runaround. You feel that you are running into that support wall."
"Fold that in with the risk intelligence they're getting from all of the different subscriptions they are a part of. Now, these security companies subscribe to things like emerging threats, databases, etc. You can fold all this intelligence to decide what's happening on an endpoint. I would love to see them start moving into that space. That would compete directly with Microsoft. Maybe that's why they haven't. Having that ability native within the solution would be great. The other area in which I would love to see improvement is more detailed descriptions of why they block websites."
"The product’s price is high."
"The solution has many heightened points which we cannot get to without working on CLI."
"The UI/UX experience can be a little better."
"Zero trust could be added. Nowadays, solutions like Zscaler, Netskope, and even SecureWorks combine multiple features into a single product."
"Fortinet FortiGate SWG could improve the price, it is expensive."
"There's room for improvement in the interface, especially following their upgrade to version nineteen."
"We also have FortiAnalyzer deployed here, so we want to enable the soft functionality of FortiGate and built-in compression for a firewall VPN use case. We want the ability to deploy a gateway for HTTPS enabled on this firewall. It is currently only for use in our headquarters."
"We are providing VoIP and the IP licensing could improve in Fortinet FortiGate SWG."
"Palo Alto's operational and support model needs improvement since we have faced issues with resolving problems."
"We are using the SaaS offering. We use our applications for microservices. We use Twistlock to scan containers, and it displays these results in Prisma, which is a good feature because we can see vulnerabilities with respect to these containers. We can see everything in a very detailed manner. However, when you have different environments for a single application, such as DEV, QA, PROD, and TEST, all these environments run multiple containers, which can lead to a very high number of containers. In such a scenario, it shows you the alerts for all those containers that have vulnerabilities. If you show the results of all the containers that share the same image, it is not going to add any value. Therefore, they should narrow down the alerts based on a container. It should show information for a single container. Otherwise, the person who is looking at the results gets the impression that he has to fix all these issues. This is something that they can improve."
"I would like the solution to support a different type of authentication. We can't configure a secondary method for our portal."
"It is a managed firewall. When you run into issues and have to troubleshoot, there is a fair amount of restriction. You run into a couple of restrictions where you don't have any visibility on what is happening on the Palo Alto managed infrastructure, and you need to get on a call to get technical assistance from Palo Alto's technical support. You have to get them to work with you to fix the problem. I would definitely like them to work on the visibility into what happens inside Palo Alto's infrastructure. It is not about getting our hands onto their infrastructure to do troubleshooting or fixing problems; it is just about getting more visibility. This will help us in guiding technical support folks to the area where they need to work."
"Prisma's integration between operational technology and IT should be more seamless. Right now, it requires additional setup and maintenance."
"The product's current price is an area of shortcoming where improvements are required."
"Dependencies of applications sometimes is a bit confusing."
"When it comes to the VPN, it uses the global protect VPN functionality to connect remotely, but it has a feature limitation for assigning multiple IP sub-links to different user groups. It would be much better if we are able to assign the current IP blocks for the sub-links based on the user groups."
 

Pricing and Cost Advice

"It is expensive compared to one of its competitors."
"It is probably in line with other solutions, but I do not deal with the financial side."
"We had the cost of purchasing a new appliance along with the implementation and licensing costs. However, the following year, the cost of just licensing was similar to what was paid the previous year for a new appliance along with the implementation and licensing costs."
"It is not expensive, and it is also not cheap. iboss is priced right in the sweet spot for the number of features it offers."
"The overall pricing for iboss is very competitive and transparent."
"We have not priced the solution recently, but they were competitive with other vendors in the past."
"FortiGate SWG is reasonably priced."
"It is around $50,000 per month."
"I rate the product's pricing a seven out of ten. Its one-year license cost is competitive with three and five-year licenses offered by other products."
"Fortinet FortiGate SWG is an affordable solution."
"We pay about $4,000 for a yearly license, and there aren't any additional fees."
"It is a cost-effective solution that meets the user's needs."
"I would rate the pricing a six out of ten, where one is cheap and ten is expensive."
"FortiGate SWG is a cost-effective solution well-suited for organisations of all sizes."
"I would advise choosing your options according to your company's needs. Just go for what you want and do not pay for anything extra in terms of licensing. You need to determine how much bandwidth is required in your company network, and according to that, you should pay for the license. The mobile user license is based on the number of users who are going to use the VPN solution. You need to determine how many mobile users you are going to have in your network, and you should pay according to that. There are no other costs in addition to licensing, but if you go for the consultant services of Palo Alto networks to deliver the solution for you, then you need to pay something extra. That is not a part of licensing."
"Palo Alto is the Cadillac solution, so their products are pretty expensive. That's just the way it is. Their solution surpasses anything else. Cisco AnyConnect, Zscaler, and all of the other products don't compare. Palo Alto is the market leader with the most features. It saves you work, and you don't have to worry about it."
"Actually the solution is very expensive. I don't know the particulars since the purchasing team dealt with it."
"The licensing model for this product is complicated and changes all the time, making it very hard for the user to comprehend the configuration."
"The price has been good for the ROI during these difficult times for the cruise industry. There are no hidden costs; what the product offers is what you get."
"As compared to other solutions, Prisma Access is much cheaper. It is probably 30% to 40% cheaper than other solutions, but I do not know the exact cost."
"The solution requires a license and the technical support has extra costs. The licensing model could improve."
"Prisma SaaS is more expensive than similar solutions but I think it's worth it."
report
Use our free recommendation engine to learn which Secure Web Gateways (SWG) solutions are best for your needs.
856,873 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
12%
Financial Services Firm
11%
Manufacturing Company
8%
Government
6%
Computer Software Company
15%
Comms Service Provider
8%
Government
8%
Financial Services Firm
7%
Computer Software Company
14%
Manufacturing Company
13%
Financial Services Firm
12%
Government
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about iboss?
Content filtering is the most useful feature of iboss.
What needs improvement with iboss?
For zero trust implementation, we encountered complexity issues, especially with a large infrastructure company Exxon...
What is your primary use case for iboss?
Previously when I used iboss, we did the POC for iboss for ExxonMobil. Four or five people wanted to move from our ol...
What do you like most about Fortinet FortiGate SWG?
The interface and other reports are all user-friendly.
What is your experience regarding pricing and costs for Fortinet FortiGate SWG?
Fortinet products are very expensive compared to competitors like Sophos and SonicWall. From a pricing perspective, I...
What needs improvement with Fortinet FortiGate SWG?
More improvement in AI would be a good edge. We would like the VPN to act as a web filtering solution because users o...
What is the better solution - Prisma Access or Zscaler Private Access?
We looked into Prisma Access before choosing Zscaler Private Access (ZPA). Palo Alto’s Prisma Access is a secure ac...
What do you like most about Prisma Access by Palo Alto Networks?
The most valuable features of the solution are in the areas of the secure remote access it provides while also being ...
What is your experience regarding pricing and costs for Prisma Access by Palo Alto Networks?
From my experience, Palo Alto is more expensive compared to solutions like Netskope and Triscale.
 

Also Known As

iBoss Cloud Platform
FortiGate SWG, FortiGate Secure Web Gateway
Palo Alto Networks Prisma Access, Prisma Access, GlobalProtect, Palo Alto GlobalProtect Mobile Security Manager, Prisma SaaS by Palo Alto Networks, Prisma Access
 

Overview

 

Sample Customers

More than 4,000 global enterprises trust the iboss Cloud Platform to support their modern workforces, including a large number of Fortune 50 companies.
Salt Lake County, Catholic College Bendigo, Azienda Unita Sanitaria
Concord Hospital, State of Colorado, Essilor International, RheinLand Versicherungsgruppe, University of Westminster, Universidade Nove de Julho, SPAR Austria, CAME Group, ZipRealty, Greenhill & Co., IKT Agder, Aviva Stadium, Animal Logic, Management & Training Corporation, Brigham Young University Hawaii, School District of Chilliwack
Find out what your peers are saying about Fortinet FortiGate SWG vs. Prisma Access by Palo Alto Networks and other solutions. Updated: June 2025.
856,873 professionals have used our research since 2012.