We performed a comparison between Fortinet FortiGate, Juniper SRX Series Firewall, and Sophos UTM based on real PeerSpot user reviews.
Find out what your peers are saying about Netgate, Fortinet, OPNsense and others in Firewalls."FortiGate is flexible and easy to use."
"This solution made it very easy to manage our bandwidth."
"Its performance in fulfilling our requirements has been satisfactory."
"FortiGate's web and URL filtering are unlike any other firewall I've used. The functionality of URL filtering in those solutions is problematic because everything is encrypted, and firewalls can't break that encryption protocol. Fortinet has an SSL proxy, so the encryption is done before the packet ever leaves the FortiGate. The URL filter is definitely one of the most helpful features."
"Good anti-malware and web filtering features."
"Easy to implement, and it is also reliable."
"One of the nice things about FortiGate is that it can be deployed on the cloud or on-premises. You can actually do both. That's the biggest reason why I stick with this solution as opposed to something like Cisco Meraki. Another nice thing is that I can log directly into a FortiGate or get to it through their FortiCloud access products. They're pretty reliable and consistent. One of the reasons why I started using the product was their single pane of management. I can deploy their line of firewalls in conjunction with their switching and access points, and I can manage the entire network from one interface. I don't have to log into one interface for the firewall, another one for the access points, and another one for the switches. These firewalls have access point controller functionality built right into the system, so I don't even have to purchase additional devices to manage them."
"The CLI is robust and powerful, enabling rapid, consistent changes via SSH."
"I've found the security features, such as IDS and the VPN most valuable."
"The solution has proven to be quite stable."
"The most valuable features are the security cloud ACP and KPP features."
"It's easily scalable."
"The most valuable feature is robustness."
"The setup is pretty straightforward."
"It uses many applications, like antivirus blocking and web filtering."
"I like that Juniper SRX is easy to use, scalable, and stable with good performance."
"It has allowed us to design a bespoke cloud space for our clients, while still having an excellent level of protection."
"Configuration could not be made any easier."
"I have no problem with the cost or licensing of this solution. This is a primary reason whay I wanted this solution. It does the same thing cheaper than other name brands."
"Stability-wise, I rate this solution a ten out of ten...Scalability-wise, I rate this solution a ten out of ten."
"The firewall itself is very strong and provides great security."
"The most valuable feature is the IPS. It also protects us from malware."
"The management suite is easy and the agent is easy to develop."
"They are all good, but most-used are Network Protection and Web Filtering."
"For the migration, everyone has a firewall in use and I am selling Fortinet. Typically, I am replacing another firewall. Previously, there was a tool available to convert configurations from one firewall, such as Palo Alto, to Fortinet, but this tool is no longer free. If it could be made free again, it would be very beneficial."
"Fortinet FortiGate is not very easy to use. The navigation could be improved to make it easier to use."
"It needs to improve its ISP load balancing."
"The inability to scale the FortiAnalyzer to match our growth necessitates the purchase of new hardware."
"Its reporting and pricing need improvement."
"FortiLink is the interface on the firewall that allows you to extend switch management across all of your switches in the network. The problem with it is that you can't use multiple interfaces unless you set them up in a lag. Only then you can run them. So, it forces you to use a core type of switch to propagate that management out to the rest of the switches, and then it is running the case at 200. It leaves you with 18 ports on the firewall because it is also a layer-three router that could also be used as a switch, but as soon as you do that, you can't really use them. They could do a little bit more clean up in the way the stacking interface works. Some use cases and the documentation on the FortiLink checking interface are a little outdated. I can find stuff on version 5 or more, but it is hard to find information on some of the newer firmware. The biggest thing I would like to see is some improvement in the switch management feature. I would like to be able to relegate some of the ports, which are on the firewall itself, to act as a switch to take advantage of those ports. Some of these firewalls have clarity ports on them. If I can use those, it would mean that I need to buy two less switches, which saves time. I get why they don't, but I would still like to see it because it would save a little bit of space in the server rack."
"FortiGate support could do some improvements on their IPv6 configuration. Right now it's still in the very early stage for utilizing in an enterprise level network environment."
"The updates Fortinet provides are sometimes unstable."
"Both the web management and the graphical user interface are inadequate and should be improved."
"It was very difficult to deal with and required a lot of support, and the UI is very poor."
"IPS is one that I would definitely want to be improved. I would also like SSL VPN to be integrated."
"The range of devices should be expanded to include those suitable for a small implementation. Juniper does not have any lower-priced SRX models, useful perhaps for a single ATM or a single bank branch."
"Juniper SRX's UI is very bad."
"I've noticed that the management interface could use some updates and upgrades."
"Its logging is very good, but we would like to have an easier way of creating more reports. We would like to be able to manipulate the reports or manage the way the reports are coming out."
"We purchased three devices and all three have been replaced under RMA."
"The technical support only communicates via email. I would prefer to communicate directly with someone."
"The solution needs better integration with captive portals and XGs."
"It's stable, but the reaction time of the GUI is terrible."
"I didn't like it much. It suits only small businesses. It isn't scalable and reliable. There is a very critical issue with the power supply."
"It is a pretty straightforward setup, but it should be some sort of documentation that takes you step-by-step to help set it up for your VPC."
"The solution could be improved by adding cloud soundboxing."
"The classification segregation of applications lacks sufficient definition."
"Anti-phishing functionality should be improved."