Try our new research platform with insights from 80,000+ expert users

Fortinet FortiGate-VM vs Palo Alto Networks K2-Series comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Sep 16, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Fortinet FortiGate
Sponsored
Ranking in Firewalls
2nd
Average Rating
8.4
Reviews Sentiment
7.2
Number of Reviews
330
Ranking in other categories
Software Defined WAN (SD-WAN) Solutions (1st), WAN Edge (1st)
Fortinet FortiGate-VM
Ranking in Firewalls
9th
Average Rating
8.4
Reviews Sentiment
7.5
Number of Reviews
120
Ranking in other categories
No ranking in other categories
Palo Alto Networks K2-Series
Ranking in Firewalls
29th
Average Rating
8.4
Reviews Sentiment
7.7
Number of Reviews
34
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of May 2025, in the Firewalls category, the mindshare of Fortinet FortiGate is 21.4%, up from 17.7% compared to the previous year. The mindshare of Fortinet FortiGate-VM is 1.9%, up from 1.5% compared to the previous year. The mindshare of Palo Alto Networks K2-Series is 0.0%, up from 0.0% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Firewalls
 

Q&A Highlights

DL
Mar 23, 2021
 

Featured Reviews

EhabAli - PeerSpot reviewer
Efficient, user-friendly, and affordable
In the past, NSS Labs was utilized to test files and verify the numbers and datasheets. It would be beneficial to have an organization or testing lab that can verify the numbers in our datasheets since changes are frequently made, which can be inconvenient for review. For instance, when comparing different competitors such as Forcepoint, Palo Alto, and Check Point, the throughput or numbers in the datasheet may be lower than the actual numbers. Conversely, Fortinet typically reports very high numbers, but they cannot be replicated in the real world. Therefore, it would be advantageous for them to partner with a neutral testing organization such as NSS Labs to validate these numbers, thus providing more credibility and comfort to everyone regarding the accuracy of the datasheets. For the migration, everyone has a firewall in use and I am selling Fortinet. Typically, I am replacing another firewall. Previously, there was a tool available to convert configurations from one firewall, such as Palo Alto, to Fortinet, but this tool is no longer free. If it could be made free again, it would be very beneficial. This tool shows a lot of promise and is very good. Making it free would help many companies deliver their products in a more efficient and integrated way. It would also be more valuable to include the tool with the firewall package or license instead of having to pay extra for it. Paying extra puts more pressure on small companies to deliver the firewall and complete the configuration, especially if they have hundreds or thousands of policies. It's very painful to move through these policies line by line. The stability has room for improvement. When it comes to Secure SD-WAN, everything is fine. They are going the right way. SD-WAN is very promising. They can provide the SD-WAN solution separately, but they will not take this approach because even the smallest firewall can support the features, so there is no need to have a separate service or appliance. They are following the right steps, and there is nothing to be improved. Feature-wise, I'm really satisfied with the new release, and the features they have added. For now, it's fine.
Pietro Di Blasi - PeerSpot reviewer
Organize networks efficiently while benefiting from strong reliability and support
The main use is for clients who are migrating to the cloud. We started this journey during the pandemic, and the main case is with clients who are moving to either a private or a public cloud The solution allows us to organize our networks and access within one vendor, using an integrated…
Krishnakumar M - PeerSpot reviewer
One of the best tools for the prevention of evasive threats
There is a feature called granular application controls, which I liked. Instead of relying on ports and IP addresses, they use AMP ID. This kind of solution is very good. Another valuable feature is the prevention of evasive threats, which is one of the best tools I've encountered. SSL decryption and app ID-based SSL decryption are also impressive, along with the integration with user ID. Identity-based policies ensuring only authorized users can access specific resources are excellent features. Normally, there is something called SIM or SCIM in IDA IDM, but this feature is provided on the box, which is exemplary.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The security features are about the best that I've seen anywhere."
"The feature I like most is the SD-WAN. It allows you to manage more than one ISP at the same time. And there is a high-availability mode, so if one of your ISPs is down, you still have a backup."
"FortiGate firewalls are easy to manage through a user-friendly web interface. They also have advanced features like DDoS and DLP. However, I wouldn't recommend enabling all of these features on one device because it can cause performance issues."
"The virtual firewall feature is the most valuable. We have around 1,500 firewalls. We did not buy individual hardware, and the virtual firewalls made sense because we don't have to keep on buying the hardware. FortiGate is easier to use as compared to Checkpoint devices. It is user friendly and has a good UI. You don't need much expertise to work on this firewall. You don't need to worry much about DCLA, commands, and things like that."
"Run Script is the best tool to use in Fortinet FortiGate with multiple environments."
"It has improved our organization with control data."
"We can detect any attack of viruses or malware at the first point of contact."
"It's a user-friendly firewall. Most of the tasks are very simple. It's simple to configure and troubleshoot this firewall."
"In terms of administration, it's perfect."
"The platform has enhanced our organization's security posture by providing effective threat protection, bandwidth management, and SDN capabilities."
"The initial setup was quite straightforward."
"The configuration, graphical interface and command line are easy to use."
"The solution integrates well with other Fortinet products."
"Technical support is very helpful."
"It provides an ease of management and configuration as well."
"The most valuable features are locking applications from in and out of my test network and testing malware on different devices. I use malware detection, antivirus, and basic firewall policies to check for different types of security breaches. The UI is really nice and easy to use."
"Palo Alto has better and finer controls than, say, Cisco or Check Point."
"The company is inventive and always adds a lot of great features."
"Mainly, it is very easy to understand, and the logs are very good."
"One of the most valuable features is Palo Alto's firewall management. We find it easier to manage the firewall centrally."
"Palo Alto has an approach that makes the configuration easier not only for the customers but also for the IT help for the customers."
"We've found the solution offers us good stability."
"Overall product rating: Nine out of ten."
"This firewall is very good for our customers because they don't have to write their own rules for adding an application."
 

Cons

"Fortinet FortiGate could improve if it had a cloud-managed solution."
"The solution could have licensing fees reduced in the future."
"The inability to scale the FortiAnalyzer to match our growth necessitates the purchase of new hardware."
"Their software support needs improvement. I would prefer to have better support for bug fixes. Sometimes, we open a ticket, and it is very difficult to get a solution. Specifically, we are not at all happy with their support for load balancing."
"Fortinet FortiGate could improve by adding enhancements to FortiMail, FortiSOAR, and FortiDeceptor."
"They sometimes hide some features and if you want to enable them, you have to go in the CLI, enable the feature and configure it through the CLI. Customers, typically, like everything to be done by the GUI."
"The pricing could always be better."
"The cloud features and integration could be improved."
"The product may not be as robust as Palo Alto. However, unless you are a big bank, you probably won't need it to be."
"Now they do have the ability to pop up a command line, which is nice, however, the fact that you can't do everything within the GUI is probably a problem."
"To improve FortiGate-VM, Fortinet needs to harden it more. For example, if you are using Hyper-V, then you need guidelines for hardening FortiGate-VM that are specific to the Hyper-V environment. If it's VMware, there should be at least a guideline on how to harden the firewall."
"The product does not have a good graphical interface."
"The user interface needs to be improved."
"There were challenges during setup, and many of them were self-inflicted."
"In the next releases, it would be nice to see central cloud management."
"In the next release, I would like to see integration capability with SIEM tools, such as QRadar, and LogRhythm."
"They could improve by providing more features in the solution."
"Palo Alto releases a lot of bug fixes for their firewalls, which means it's necessary to do frequent upgrades. They should work on decreasing their bugs so that upgrades aren't needed so often."
"Sometimes there are interactions with support or the provider that are not ideal."
"It would be nice if it could easily be integrated with Elasticsearch or Nagios."
"There are a lot of bugs in this solution."
"The graphical user interface is a little complex and difficult to manage. L1 engineers cannot work on the Palo Alto Networks K2-Series because it's too complex, which requires L2 and above level of engineers."
"The licensing cost is a typical complaint with many clients. The solution is expensive."
"They should implement the features that the other firewalls have."
 

Pricing and Cost Advice

"No comment."
"If the price of the license in Fortinet FortiGate was less expensive it would be better."
"The price could be lower."
"Its price is affordable and lesser than Cisco. Cisco is expensive. In terms of licensing, there is only one issue. If a customer's license has expired a month ago and they do the renewal after one month, Fortinet renews the license from the start of the previous month. The activation of the product is done from the previous month, not from the date of renewal. The customers usually shout and complain that because they are paying today, the renewal should start from today. The support contract renewals or licensing should be renewed from the date of renewal, but Fortinet starts from the day it had expired. It is a loss for customers. They might have had some problems because of which they did not take the license one month before. Fortinet should work on this. Cisco doesn't do this. Cisco always starts from the day they apply for the license."
"The pricing depends on the FortiGate model we are using, ranging from $3,000 to $20,000 US dollars."
"It scales well if you know what to buy from a physical box standpoint. They seem to offer something for every level."
"It was worth the money overall. It's good value."
"The pricing for this solution is good."
"We have been waiting a long time for the vendor to give us licenses, it has been five months and we are still waiting. However, the price is reasonable."
"The pricing and licensing are not as expensive as its competitors."
"The price falls somewhere in the middle; it's neither cheap nor expensive."
"The price of the solution is competitive. Fortinet FortiGate-VM had a lot of advantages when it came to pricing. However, the competition has also geared up to a larger extent and it has become comparable now to the other solutions."
"I rate Fortinet FortiGate-VM's pricing a six out of ten."
"The license we pay is a yearly fee. I can't say it's very expensive; it is a good price and is highly suitable for our usage."
"We are on an annual license for this solution and it could be cheaper."
"The license can be purchased at intervals of one, three, and five years."
"We are on an annual license to use Palo Alto Networks K2-Series."
"When comparing Palo Alto Networks K2-Series with other solutions it is on the higher end of the price scale."
"This solution is expensive compared to other, similar products."
"Pricing is a sensitive issue because the cost is high in this market."
"The overall price of Palo Alto Networks K2-Series could be reduced."
"Palo Alto Networks K2-Series is an expensive solution, the price could be reduced. They are more expensive than some of their competitors."
"Products by the leader in the field are justifiably a bit more expensive compared to other vendors."
"This product is designed for large companies. The price would not be suitable for a small or medium size company."
report
Use our free recommendation engine to learn which Firewalls solutions are best for your needs.
850,236 professionals have used our research since 2012.
 

Answers from the Community

DL
Mar 23, 2021
Mar 23, 2021
In the best tradition of these questions, Feature-wise both are quite similar, but each has things it's better at, it kind of depends what you value most. PA is good at app control, web filtering and such like, they have always been top of the pile there. The GUI is very good, and their product is very user-focused. Fortinet is good for scalability and predictable high throughput (ASICs in the...
2 out of 4 answers
AT
Mar 20, 2021
Hi, Both FT and PA have compelling features for large Enterprises. I would like to add a few good points about Fortinetwhich might be helpful ( from my 13 years of engagement with them as Distributor and Partner) Fortinet:  Have higher throughput; which comes with competitive rates Wide range of models to select to meet your requirement, without spending heavliy Outstanding customer support and very active customer care team Easly available skilled resources from the channel for deployment and post-implementation support  Regards Abhilash
LD
Mar 22, 2021
Hi PaloAlto is better when working on app control feature and special virtual wire links. Execpt that specific point, Fortinet is above. Best Regards, Damien
 

Top Industries

By visitors reading reviews
Educational Organization
20%
Computer Software Company
14%
Comms Service Provider
7%
Manufacturing Company
6%
Computer Software Company
20%
Financial Services Firm
8%
Comms Service Provider
6%
Government
6%
Computer Software Company
28%
Manufacturing Company
9%
Media Company
7%
Energy/Utilities Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

Which is the better NGFW: Fortinet Fortigate or Cisco Firepower?
When you compare these firewalls you can identify them with different features, advantages, practices and usage a...
What is the biggest difference between Sophos XG and FortiGate?
From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know...
What are the biggest technical differences between Sophos UTM and Fortinet FortiGate?
As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite ...
Features comparison between Palo Alto and Fortinet firewalls
In the best tradition of these questions, Feature-wise both are quite similar, but each has things it's better at, it...
Which would you recommend - FortiGate VM or Azure Firewall?
Both of these solutions are excellent options that provide flexible scalability and solid security. Fortinet Fortigat...
What do you like most about Fortinet FortiGate-VM?
An enhanced security solution for any kind of alert that we have configured.
What is your experience regarding pricing and costs for Palo Alto Networks K2-Series?
The pricing for the Palo Alto Networks K2-Series solution is affordable and there are no complaints about the licensing.
What needs improvement with Palo Alto Networks K2-Series?
The graphical user interface is a little complex and difficult to manage. L1 engineers cannot work on the Palo Alto N...
 

Also Known As

FortiGate 60b, FortiGate 60c, FortiGate 80c, FortiGate 50b, FortiGate 200b, FortiGate 110c, FortiGate, Fortinet Firewall
FortiGate Virtual Appliance, FortiGate-VM
No data available
 

Overview

 

Sample Customers

Amazon Web Services, Microsoft, IBM, Cisco, Dell, HP, Oracle, Verizon, AT&T, T-Mobile, Sprint, Vodafone, Orange, BT Group, Telstra, Deutsche Telekom, Comcast, Time Warner Cable, CenturyLink, NTT Communications, Tata Communications, SoftBank, China Mobile, Singtel, Telus, Rogers Communications, Bell Canada, Telkom Indonesia, Telkom South Africa, Telmex, Telia Company, Telkom Kenya
Security7 Networks, COOPENAE
State of North Dakota, SEGA, Alameda County Office of Education, Temple University, VERGE, CAME
Find out what your peers are saying about Fortinet FortiGate-VM vs. Palo Alto Networks K2-Series and other solutions. Updated: April 2025.
850,236 professionals have used our research since 2012.