Fortinet FortiGate-VM vs Palo Alto Networks VM-Series comparison

Sponsored
 

Comparison Buyer's Guide

Executive Summary
 

Categories and Ranking

Fortinet FortiGate
Sponsored
Ranking in Firewalls
2nd
Average Rating
8.4
Number of Reviews
314
Ranking in other categories
Software Defined WAN (SD-WAN) Solutions (2nd), WAN Edge (1st)
Fortinet FortiGate-VM
Ranking in Firewalls
9th
Average Rating
8.4
Number of Reviews
114
Ranking in other categories
No ranking in other categories
Palo Alto Networks VM-Series
Ranking in Firewalls
12th
Average Rating
8.6
Number of Reviews
54
Ranking in other categories
Advanced Threat Protection (ATP) (12th)
 

Mindshare comparison

As of July 2024, in the Firewalls category, the mindshare of Fortinet FortiGate is 22.6%, up from 18.8% compared to the previous year. The mindshare of Fortinet FortiGate-VM is 2.1%, up from 1.7% compared to the previous year. The mindshare of Palo Alto Networks VM-Series is 0.7%, down from 0.8% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Firewalls
Unique Categories:
Software Defined WAN (SD-WAN) Solutions
19.7%
WAN Edge
21.4%
No other categories found
Advanced Threat Protection (ATP)
0.3%
 

Q&A Highlights

DL
Mar 23, 2021
 

Featured Reviews

Ubeyd  Kara - PeerSpot reviewer
Apr 25, 2023
They're easy to manage and more affordable than competing solutions, but there are some stability issues
FortiGate is easy to deploy. The deployment time varies depending on the customer's network topology. How many policies does the customer require, and what kind of license do they have? FortiGate is easier than Palo Alto Networks and Check Point and takes less time. We typically start by analyzing the customer's topology and understanding their requirements, including policies, routines, etc. We implement the device once we know what the customer needs. One engineer is usually enough to deploy FortiGate in a small or medium-sized environment. An enterprise project requires a more detailed analysis of the network requirements before implementation. That can take two or three days. Once we understand the network, it may take another two or three days to configure the device and one or two days to implement it.
AE
Mar 9, 2023
A good brand that integrates well with other Fortigate products and decent pricing
I primarily use the solution as a firewall. It's used for security. I use it for the DMZ. It's related to architecture and is strategically positioned in the network.  Based on its position, it offers good control over the communication between users and the data center. It's a good unified…
JL
Sep 21, 2020
An excellent solution for the right situations and businesses
We would really like to see Palo Alto put an effort into making a real Secure Access Service Edge (SASE). Especially right now where we are seeing companies where everybody is working from home, that becomes an important feature. Before COVID, employees were all sitting in the office at the location and the requirements for firewalls were a different thing. $180 billion a year is made on defense contracts. Defense contracts did not stop because of COVID. They just kept going. It is a situation where it seems that no one cared that there was COVID they just had to fulfill the contracts. When people claimed they had to work from home because it was safer for them, they ended up having to prove that they could work from home safely. That became a very interesting situation. Especially when you lack a key element, like the Secure Access Services. Palo Alto implemented SASE with Prisma. In my opinion, they made a halfhearted attempt to put in DLP (Data Loss Prevention), those things need to be fixed.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"This version is stable. I don't have any issues with this solution, in our environment, it works well."
"The most valuable feature is the VDOM, which allows the customer to have multiple firewalls in a single campus."
"The most valuable features of Fortinet FortiGate are the different types of profiling. It has been the most effective for me. The WAF and the antivirus profile are the most effective in network protection."
"The solution is easy to configure and maintain remotely."
"This solution made it very easy to manage our bandwidth."
"You can create multiple Virtual Domains (VDOMs), which are treated as separate firewall instances."
"Security management tool that's easy to integrate and easy to work with. No issues found with its stability and scalability."
"The scalability is good in Fortinet FortiGate."
"The product is easy to implement."
"The tool improved the security in our company's virtualized environment, as it was helpful in creating an additional layer of security for the organization and for the use of the internet."
"FortiGate integrates well."
"The most valuable features are the web proxy for protection and web gateway for deployment."
"The IPS module is my favorite because of the security advantage reached with a few clicks and its automatic updates."
"It’s easy to integrate the solution with our network infrastructure."
"It is very versatile."
"Overall, it's an excellent solution."
"A solid operating system with all the necessary data center security features."
"The most valuable features of the solution are its stability, ease of implementation, ease of operation, and security."
"The initial setup was straightforward."
"It is nice to have a rock solid security platform that we can count on."
"The VM series has an advantage over the physical version because we are able to change the sources that the machine has, such as the amount of available RAM."
"The feature that I have found the most useful is that it meets all our requirements technically."
"It offers a single pane of glass for all the different types of installations."
"In terms of security breaches, the product aids in categorizing and monitoring traffic, allowing for the identification of potentially malicisous or incorrectly formatted applications."
 

Cons

"They are doing good, but they can improve the distributor assignment. The availability of the product and the timeline of delivery are the main things. The distribution should be swift, and the distributor should not reach out to end customers directly. They should work as a distributor. There should also be one more local distributor. Currently, there is only one distributor in Pakistan, and the rest of them are in UAE. It is difficult to work with only one distributor. Sometimes, you don't get along with the same distributor, and that's why they should have one more distributor. Their licensing should also be improved. The activation or renewal of the product should be done from the date of renewal, not from the date on which the license expired."
"Fortinet FortiGate needs to improve the logging and reporting. Additionally, the next-generation application's policies should be improved. When they were released they had bugs."
"The solution could have licensing fees reduced in the future."
"The platform's interface could improve."
"The inability to scale the FortiAnalyzer to match our growth necessitates the purchase of new hardware."
"The performance and speed are aspects of the solution that could always be improved upon."
"The scalability could be better."
"One issue that I have had is that sometimes I need to monitor the traffic, so I need to filter it according to the user and which user is using it the most. I experience a bottleneck most of the time, particularly at the peak time when the number of contracts and users are at maximum."
"Fortinet FortiGate-VM should improve its asset identification, wherein the device can identify assets on the network, like computers."
"It is difficult to size the VM in terms of machine resources, and for this reason, clients prefer the appliance."
"The technical support is not very responsive and is an area that needs to be improved."
"Right now, we have two data centers that are a thousand kilometers apart. It would be nice to be able to string them together."
"The solution can improve by adding separate interfaces for proxy and flow-based usage."
"The operating system isn't stable, so it goes to memory counters every night."
"Support could be improved a little."
"Their offering for MFA isn't the cleanest."
"The implementation should be simplified."
"It would be good if the common features work consistently in physical and virtual environments. There was an integration issue in the virtual deployment where it didn't report the interface counters, and we had to upgrade to the latest version, whereas the same thing has been working in the physical deployment for ages now. It seems that it was because of Azure. We were using VMware before, and we didn't have any such issues. We do see such small issues where we expect things to work, but they don't because of some incompatibilities. There also seems to be a limitation on how to do high availability in a virtualized environment. All features should be consistently available in physical and virtual environments. It is not always easy to integrate Palo Alto in the network management system. We would like to be able to compare two network management systems. They can maybe allow monitoring an interface through the GUI to create a reference or do a baseline check about whether your network monitoring system is actually giving you the correct traffic figures. You need traffic figures to be able to recognize the trends and plan the capacity."
"There is no proper support channel to follow up on cases."
"Its web interface is a bit outdated, and it needs to be updated. They can also improve the NAT functionality. We have had issues with the NAT setup."
"In the next release, I would like to see better integration of multi-factor authentication vendors."
"The solution must improve Zero Trust integration and use cases."
"From time to time, they have released some content updates that have some issues, maybe twice a year."
"There should be an option for direct integration with the Azure platform."
 

Pricing and Cost Advice

"While Fortinet FortiGate has a higher price point compared to Sophos XG, its user-friendly interface justifies the cost."
"The pricing is very reasonable."
"Its pricing is fine. It is on a yearly basis. Other than the licensing fee, there is no extra fee."
"The initial setup is super straight forward and as far as the licensing goes for the small product that we have, the pricing was pretty competitive. It wasn't as simple and as cheap as a SonicWall but for the service we would get it was a good price."
"Their licensing costs are annual. The UTM feature license along with their support is called FortiCare. We include that as a part of the annual maintenance cost. Palo Alto or Juniper also have an annual subscription charge for UTM. Price, of course, can always be more competitive, but it is not the most expensive product. The price-performance ratio is quite high for FortiGate."
"The price is fair compared to the other competitors."
"It is more expensive than Sophos. Fortinet is overall more expensive than Sophos. The small range of Fortinet, such as 60F and 80F, is more expensive than the small range of Sophos. Sophos is cheaper. In addition, if you jump from 80F Series to 100F Series, the price doubles."
"It has been two years. I don't remember the actual price, but it was affordable. We buy the boxes and then use the license for three years."
"The license can be purchased at intervals of one, three, and five years."
"There is a benefit in terms of the cost of using this solution because the price is very good."
"There are yearly or monthly licenses which you can choose from."
"There is an annual license required to use the solution."
"VMs can be affordable, but for high-demand scenarios, I'd still recommend the hardware. For the cost, it's a ten out of ten."
"It is more expensive than its competitor, e.g. Sophos."
"There should be a reduction in the setup price and licensing costs."
"It has a flexible pay-as-you-go pricing model."
"​The licensing is pretty much like everyone else."
"I know Palo Alto is not cheap. They have been telling me, the members of the finance team, it is not a cheap solution. It is a solution whose target is that no matter how big your organization is, small, medium, or large, it is about the maturity of your security team or infrastructure team whom you want to work with."
"Palo Alto can be as much as two times the price of competing products that have twice the capabilities."
"Palo Alto Networks VM-Series is the most expensive tool among competitors"
"For what you get, it does do what it says. It is a good value for an enterprise firewall.​"
"The product is costly but provides all essential security features. I rate the pricing a seven out of ten."
"Sometimes, it's cheaper to buy a new firewall with licensing instead of renewing the licenses of an old firewall."
"This is not the cheapest firewall but it's not the most expensive of the options on the market."
report
Use our free recommendation engine to learn which Firewalls solutions are best for your needs.
793,295 professionals have used our research since 2012.
 

Answers from the Community

DL
Mar 23, 2021
Mar 23, 2021
In the best tradition of these questions, Feature-wise both are quite similar, but each has things it's better at, it kind of depends what you value most. PA is good at app control, web filtering and such like, they have always been top of the pile there. The GUI is very good, and their product is very user-focused. Fortinet is good for scalability and predictable high throughput (ASICs in the...
2 out of 4 answers
AT
Mar 20, 2021
Hi, Both FT and PA have compelling features for large Enterprises. I would like to add a few good points about Fortinetwhich might be helpful ( from my 13 years of engagement with them as Distributor and Partner) Fortinet:  Have higher throughput; which comes with competitive rates Wide range of models to select to meet your requirement, without spending heavliy Outstanding customer support and very active customer care team Easly available skilled resources from the channel for deployment and post-implementation support  Regards Abhilash
LD
Mar 22, 2021
Hi PaloAlto is better when working on app control feature and special virtual wire links. Execpt that specific point, Fortinet is above. Best Regards, Damien
 

Top Industries

By visitors reading reviews
Educational Organization
21%
Computer Software Company
15%
Manufacturing Company
6%
Comms Service Provider
6%
Computer Software Company
23%
Financial Services Firm
7%
Manufacturing Company
7%
Government
6%
Computer Software Company
17%
Financial Services Firm
11%
Manufacturing Company
7%
Government
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

Which is the better NGFW: Fortinet Fortigate or Cisco Firepower?
When you compare these firewalls you can identify them with different features, advantages, practices and usage a...
What is the biggest difference between Sophos XG and FortiGate?
From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know...
What are the biggest technical differences between Sophos UTM and Fortinet FortiGate?
As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite ...
Features comparison between Palo Alto and Fortinet firewalls
In the best tradition of these questions, Feature-wise both are quite similar, but each has things it's better at, it...
Which would you recommend - FortiGate VM or Azure Firewall?
Both of these solutions are excellent options that provide flexible scalability and solid security. Fortinet Fortigat...
What do you like most about Fortinet FortiGate-VM?
An enhanced security solution for any kind of alert that we have configured.
How does Azure Firewall compare with Palo Alto Networks VM Series?
Both products are very stable and easily scalable. The setup of Azure Firewall is easy and very user-friendly and the...
What is your experience regarding pricing and costs for Palo Alto Networks VM-Series?
The licensing model should be improved. Palo Alto Networks VM-Series is the most expensive tool among competitors.
 

Also Known As

FortiGate 60b, FortiGate 60c, FortiGate 80c, FortiGate 50b, FortiGate 200b, FortiGate 110c, FortiGate
FortiGate Virtual Appliance, FortiGate-VM
No data available
 

Overview

 

Sample Customers

1. Amazon Web Services 2. Microsoft 3. IBM 4. Cisco 5. Dell 6. HP 7. Oracle 8. Verizon 9. AT&T 10. T-Mobile 11. Sprint 12. Vodafone 13. Orange 14. BT Group 15. Telstra 16. Deutsche Telekom 17. Comcast 18. Time Warner Cable 19. CenturyLink 20. NTT Communications 21. Tata Communications 22. SoftBank 23. China Mobile 24. Singtel 25. Telus 26. Rogers Communications 27. Bell Canada 28. Telkom Indonesia 29. Telkom South Africa 30. Telmex 31. Telia Company 32. Telkom Kenya
Security7 Networks, COOPENAE
Warren Rogers Associates
Find out what your peers are saying about Fortinet FortiGate-VM vs. Palo Alto Networks VM-Series and other solutions. Updated: July 2024.
793,295 professionals have used our research since 2012.