We performed a comparison between Fortinet FortiGate, Fortinet FortiGate-VM, and Palo Alto Networks NG Firewalls based on real PeerSpot user reviews.
Find out what your peers are saying about Netgate, Fortinet, OPNsense and others in Firewalls."It's very fast and easy to configure."
"The features that I have found most valuable are the SD-WAN and their IP4 policy."
"There are great templates, so you don't have to customize them if you don't want to. You do have the option to custom create some folders and some reports, however, with what is there, you don't really need to go through extra effort, as they already give you a lot of predefined views of reports and so forth."
"Its stability is the most valuable."
"It is easy to use and performs very well."
"It is user friendly, and has all the features you need."
"This product is definitely scalable."
"The IPS is good. It protect my network from attackers."
"The product can scale."
"The solution is very easy to set up. It doesn't take a lot of time and offers a quick deployment, so you can start using it almost right away."
"The user interface is the most valuable aspect of the solution."
"I've found the UTM features and the SD-WAN to be most valuable."
"Use of this product does not require daily interactions."
"This product is affordable and it's a good, high-performance appliance."
"The functionality provided is very good."
"I rate the tool's stability a ten out of ten."
"Protection from a single packet and ease of making security rules."
"The configuration is quite simple to understand."
"Mechanically, all firewalls work in a similar fashion, but what makes Palo Alto different is that it also has some of the threat hunt capabilities. It is a little bit better than other vendors."
"I like the navigation of the general Panorama solution. I can easily navigate around and get to the thing I need. I'm not wasting time trying to find something."
"We standardized on the product and got rid of several other types of firewalls from different vendors."
"The most valuable features are the IPS/IDS subscriptions."
"One of the simple features I like about Palo Alto firewalls is that it's extremely easy to find out what's happening in the network. The reporting is phenomenal, and it's easy to find which threats have been detected and what traffic is going through the box. When a customer notices something is wrong, you can quickly check the amount of traffic going through the firewall around that time. If there is anything out of the ordinary, you can decide it needs to be investigated further."
"We utilize advanced threat prevention features like web filtering and SSL decryption, which haven't caused any issues."
"It can be a little bit more user-friendly in terms of policy definition and implementation. It seems a little bit complicated, and it could be simplified."
"For the migration, everyone has a firewall in use and I am selling Fortinet. Typically, I am replacing another firewall. Previously, there was a tool available to convert configurations from one firewall, such as Palo Alto, to Fortinet, but this tool is no longer free. If it could be made free again, it would be very beneficial."
"Fortinet FortiGate needs to improve to be on par with its competitors, such as Palo Alto and Sophos. They are the market leaders. Fortinet FortiGate needs to improve its capabilities. However, we are happy with Fortinet FortiGate."
"One of the problems I was having was with user mapping, and it is an issue for which I have escalated tickets with Fortinet support."
"The pricing could always be better."
"I would like to see more advanced developments of a wireless controller in the future."
"The license renewal process, annual renewal price, and the web application firewall features should be improved."
"Fortinet FortiGate could improve by having more storage in the hardware for log data."
"The management tools should be more user-friendly."
"If I could add one feature, it would be free security profiles."
"The stability of the product is an area of concern where improvements are required."
"The GUI could be improved."
"Customization needs improvement."
"There should be integration with an active directory — with Microsoft."
"It has a monitoring tool, but it could be improved."
"The costs could be lowered."
"Surfacing actionable intelligence right away could be better. You have to dig far to get some of the information. If the solution could surface the two or three things out of the 10,000 a day that we really need to deal with, it would be helpful."
"The data loss prevention (DLP) capabilities need to be beefed up."
"Customers don't want to buy extra things for extra capabilities"
"The solution would benefit from having a dashboard."
"I would like the option to be able to block the traffic from a specific country in a few clicks."
"We need better affiliations for profiling the user."
"The VPN connectors should be better. We had some challenges in terms of the VPN with Palo Alto Networks NG Firewall, and that's one of the main reasons why we moved to Sophos. Its load handling can also be improved. There were challenges when traffic was high. During peak business hours, it did not function very well. There was a lot of slowness, and the users used to complain, especially when they were connecting from outside. We even reported this to the support team. Their support should also be improved. Technical support was a bit of a concern while using this solution. We didn't get very good support from the Palo Alto team."
"The only real drawback to this product is that it is expensive. But you get what you pay for and there is no way to put a price on top-notch security."
More Palo Alto Networks NG Firewalls Pricing and Cost Advice →
In the best tradition of these questions, Feature-wise both are quite similar, but each has things it's better at, it kind of depends what you value most.
PA is good at app control, web filtering and such like, they have always been top of the pile there. The GUI is very good, and their product is very user-focused.
Fortinet is good for scalability and predictable high throughput (ASICs in the hardware), and useful things like authentication flexibility, CLI config (if you have any networking/Cisco people, they always seem to prefer CLI over GUI) and have better OT features, maybe relevant to your manufacturing use?
Fortinet seem to have a broader integration offering with their security fabric than PA do, plus they can do Fortinet-based wifi, switching, etc. Depends if you are prepared to go all-in with a single vendor.
Hi,
Both FT and PA have compelling features for large Enterprises. I would like to add a few good points about Fortinetwhich might be helpful ( from my 13 years of engagement with them as Distributor and Partner)
Fortinet:
Have higher throughput; which comes with competitive rates
Wide range of models to select to meet your requirement, without spending heavliy
Outstanding customer support and very active customer care team
Easly available skilled resources from the channel for deployment and post-implementation support
Regards
Abhilash
Hello. The question is what you are going to have as a result of application