Fortinet FortiGate vs Palo Alto Networks NG Firewalls vs Untangle NG Firewall comparison

Cancel
You must select at least 2 products to compare!
Fortinet Logo
123,063 views|89,961 comparisons
90% willing to recommend
Palo Alto Networks Logo
26,212 views|16,745 comparisons
96% willing to recommend
Untangle Logo
13,707 views|9,326 comparisons
94% willing to recommend
Comparison Buyer's Guide
Executive Summary

We performed a comparison between Fortinet FortiGate, Palo Alto Networks NG Firewalls, and Untangle NG Firewall based on real PeerSpot user reviews.

Find out what your peers are saying about Netgate, Fortinet, OPNsense and others in Firewalls.
To learn more, read our detailed Firewalls Report (Updated: March 2024).
768,924 professionals have used our research since 2012.
Featured Review
Quotes From Members
We asked business professionals to review the solutions they use.
Here are some excerpts of what they said:
Pros
"Overall, the pricing of the solution is very good. The product offers good value.""The most valuable features are the policies, filtering, and configuration.""It's a user-friendly firewall. Most of the tasks are very simple. It's simple to configure and troubleshoot this firewall.""Centralized monitoring, policy management, and virtualized appliances allow us to take control over our public and private infrastructure.""Easy to use support and licensing portal as well as activation process.""The interface is very good.""It's quite comfortable to handle the FortiGate firewall.""The pricing is great and very reasonable."

More Fortinet FortiGate Pros →

"The interface is very nice. We generally like the UI the product offers.""With App-ID, we can identify exact traffic. Even if someone tries to fool the firewall with a different port number, or with the correct port number, Palo Alto is able to identify what kind of traffic it is.""We have not had to replace hardware routers nor purchase additional hardware. So, that has provided a little bit of an ROI.""The solution is very stable.""The most valuable aspect of this solution is pre-sales and post-sales because of the support and relationship building.""The feature that I like the most is its IPS model, the WildFire model. I really like how the whole threat protection model functions, including the vulnerability and anti-spyware aspects. That is really awesome.""The GUI is simple and the solution is straightforward.""In general, I appreciate the regular firewall function of Palo Alto Networks NG Firewalls."

More Palo Alto Networks NG Firewalls Pros →

"The majority of our clients are very small businesses, and Untangle devices have been fantastic for these small clients. We've basically standardized our stack to just simply use Untangle. We include the hardware and the service option, which makes it very easy and affordable for us to just simply push that into the monthly per-user costing that we provide as a managed services provider. It's really a no-brainer. They're easy to use, and they're easy to set up and configure. Support is generally good about resolving any issues that we have. We haven't had any real complaints.""The product’s most valuable features are endpoint protection management, load balancing, and connectivity with Active Directory.""The product is easy to implement.""They have a command center that makes it easy to log into and see all of your appliances nationwide.""NG Firewalls allow us to permit or deny applications we don't want to run. We also use content filtering, SSL inspection, and all the other things we run on the firewall to keep our clients protected and ensure they're not going where they shouldn't. It's a great firewall that works as intended.""The web blocking for my clients and the application control are valuable.""Web Filter is effective, Web Cache offers bandwidth savings, and the VPN setup is easy.""The features I have found the most useful are the web filter, the captive portal, the SSL inspector, and the ad-blocker. They're awesome."

More Untangle NG Firewall Pros →

Cons
"This product could be improved with Active directory integration and better handling in IPsec and GRE Tunnels.""If I had any criticism that I would give FortiGate, it would be that they need to stop changing their logging format. Every time we do a firmware upgrade, it is a massive issue on the SIM. Parsers have to be rebuilt. Even the FortiGate guys came in and said that they don't play well in the sandbox.""Bandwidth usage in reporting could be improved for Fortinet FortiGate.""I would prefer to have more detailed logs within the FortiGate products themselves rather than relying on a separate tool.""The user interface could be improved.""The solution lacks multi-language support.""The solution could be more secure and stable.""The license renewal process, annual renewal price, and the web application firewall features should be improved."

More Fortinet FortiGate Cons →

"Personally, I feel that their dashboards for reporting and things like that need some improvement.""The price could be more friendly, which would be good for Palo Alto and us. If the price were a little lower, then it would be a viable option for mid-level businesses, who may not be able to deploy at the current price point.""With new features and applications you get bugs.""The level of control and granularity in terms of rule customization could be enhanced. However, compared to our previous solution, Palo Alto provides much better drill-down capabilities.""There is room for improvement in the area of customer service.""Generating reports is not so easy.""In the cloud, the HA could be a lot better. Its price could also be better. It is very expensive.""The customer-facing side needs to be improved in terms of the engagement and involvement of support staff."

More Palo Alto Networks NG Firewalls Cons →

"The pricing should be reduced because it is expensive.""It would be much easier if there was a mobile app.""The management console for partners is a bit tricky (buggy).""Whenever there are a large number of endpoint VPN clients, connectivity becomes slow.""We have a minor issue when assigning IP addresses in the ARP tables. You should be able to go into the ARP tables, look at the IP address and say, "Nope, they need to be on this side on this IP address." The ability to set a DHP reservation from the ARP tables would be great. It's no big deal, but it would be nice to have.""The storage is minimal, so we have to set the system to delete data after seven days.""It does have multi-factor authentication in some areas, but I would love to see a more widely implemented version of that on the devices themselves.""The product must improve its reporting features."

More Untangle NG Firewall Cons →

Pricing and Cost Advice
  • "Fortinet has one or two license types, and the VPN numbers are only limited by the hardware chassis make."
  • "These boxes are not that expensive compared to what they can do, their functionality, and the reporting you receive. Fortinet licensing is straightforward and less confusing compared to Cisco."
  • "Go for long term pricing negotiated at the time of purchase."
  • "Work through partners for the best pricing."
  • "The value is the capability of having multiple services with one unique license, not having the limitation per user licensing schema, like other vendors."
  • "Easy to understand licensing requirements."
  • "​We saved a bundle by not needing all the past appliances from an NGFW.​"
  • "The cost is too high... They have to focus on more features with less cost for the customer. If you see the market, where it's going, there are a lot of players offering more features for less cost."
  • More Fortinet FortiGate Pricing and Cost Advice →

  • "Annually, the licensing costs are too much."
  • "Pricing is yearly, but it depends. You could pay on a yearly basis, or every three years. If you want to add a device or two, there would be an additional cost. Also, if you want to do an assessment, or other similar add-on, you have to pay accordingly for the additional service."
  • "It will be worth your time to hire a contractor to set it up and configure it for you, especially if you are not very knowledgeable with PA firewalls."
  • "Don't buy a device with more power than you really need, because licensing depends on the cost of the box you have."
  • "The licensing is annual, and there aren't any additional fees on top of that."
  • "The price of this product should be reduced."
  • "The pricing is competitive in the market."
  • "This is an expensive product, which is why some of our customers don't adopt it."
  • More Palo Alto Networks NG Firewalls Pricing and Cost Advice →

  • "It is the most cost-effective to use."
  • "We pay $350 USD per year for the solution. There are no additional costs. As long as you're not using a physical appliance, that's all you need."
  • "It is not expensive. The best part is that it is based on the pay-per-use kind of scenario. An increase or decrease in the number of people doesn't make any difference. We are really happy about using this particular scenario."
  • "It is not expensive. It is cheaper than Fortinet."
  • "The pricing model is better than with SonicWall."
  • "This is not an expensive product. It is affordable and there are different packages available depending on the features that you need, or the sector that you are in."
  • "Untangle is open-source software. So, you can get it for free. That has been a benefit, especially for the residential users because it is free. The license costs start at $25 a month for some additional features, including higher tiers of security intrusion prevention. The free version comes with intrusion detection, and then the license version has intrusion prevention. It also has some additional things for active directory connectors, etc. It starts at $25 a month to cover 12 devices. Then it goes up from $25 to $50 a month for 12 to 25 devices. That's where it really doesn't scale out per site. If you have a site that has more than 50 devices on it, then Untangle quickly becomes cost prohibitive in comparison to several other competitors."
  • "Usually, it's about $350 a year for 12 users, and it's about $600 for 50 users. It's very reasonable as compared to the others. One of the reasons is that they're all open-source. You just buy their appliance and put it in until it dies. Because it's run under open platforms, mine seems to always work on older equipment. I've taken old equipment and put a new hard disk in it. I have taken about nine-year-old computers and put their operating system on them, and ran them like a champ. The only thing that changed was the hard drive because I don't trust a hard drive that's more than three to four years old."
  • More Untangle NG Firewall Pricing and Cost Advice →

    report
    Use our free recommendation engine to learn which Firewalls solutions are best for your needs.
    768,924 professionals have used our research since 2012.
    Comparison Review
    Anonymous User
    I have used both Sophos and Fortinet products in production and I have found the Sophos UTM appliances (hardware and virtual) to be a better fit most of the time -- with a few caveats which I will touch on below. In both instances, the transition from TMG will be mostly straightforward. The main hang-ups will be with the VIP/load balancing and SSL. For some reason that completely escapes me, both of these vendors make getting valid certificates onto their boxes unnecessarily difficult -- the Fortinet appliances more so than the Sophos UTM appliances. At one point a Fortinet engineer had to write an entire manual on how to get an SSL certificate uploaded successfully on the 4.x firmware Sophos: The one feature that is missing (and this makes some amount of sense) from the Sophos appliance is BITS caching for updates. Other than that, Sophos offers a full replacement for TMG on UTM9. The XG platform also offers a replacement for the TMG; however, some of the rumblings about upcoming releases suggests that Sophos is going to give XG the Apple iOS treatment and "streamline" the interface...potentially cutting out/hiding some functionality. On the effectiveness of the NGFW, Sophos is mostly good but has a few issues blocking all pieces of an application. For instance, we had to build custom blocking rules for OpenVPN (the vpn was being used to bypass the content filter) because the default Application Control wasn't effectively blocking the application. Fortinet: If it… Read more →
    Questions from the Community
    Top Answer: When you compare these firewalls you can identify them with different features, advantages, practices and usage at… more »
    Top Answer:From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know… more »
    Top Answer:As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite… more »
    Top Answer:Azure Firewall Vs. Palo Alto Network NG Firewalls Both solutions provide stellar stability and security. Azure… more »
    Top Answer:In the best tradition of these questions, Feature-wise both are quite similar, but each has things it's better at, it… more »
    Top Answer:Palo Alto Networks NG Firewalls have both great features and performance. I like that Palo Alto has regular threat… more »
    Top Answer:The product helps small and medium enterprises secure their networks from intrusions. It also has features like DNS… more »
    Top Answer:The tool's pricing is moderate, and licensing costs are yearly.
    Top Answer:The product needs to improve its mobile application.
    Ranking
    2nd
    out of 59 in Firewalls
    Views
    123,063
    Comparisons
    89,961
    Reviews
    48
    Average Words per Review
    661
    Rating
    8.4
    6th
    out of 59 in Firewalls
    Views
    26,212
    Comparisons
    16,745
    Reviews
    64
    Average Words per Review
    965
    Rating
    8.8
    23rd
    out of 59 in Firewalls
    Views
    13,707
    Comparisons
    9,326
    Reviews
    5
    Average Words per Review
    353
    Rating
    8.0
    Comparisons
    Also Known As
    FortiGate 60b, FortiGate 60c, FortiGate 80c, FortiGate 50b, FortiGate 200b, FortiGate 110c, FortiGate
    Palo Alto NGFW, Palo Alto Networks Next-Generation Firewall
    Learn More
    Overview

    Fortinet FortiGate enhances network security, prevents unauthorized access, and offers robust firewall protection. Valued features include advanced threat protection, reliable performance, and a user-friendly interface. It improves efficiency, streamlines processes, and boosts collaboration, providing valuable insights for informed decision-making and growth.

    Palo Alto Networks NG Firewalls are next-generation firewalls used for security to protect networks from threats and attacks. It is used for perimeter security, data center protection, and managing secure access to environments. Users highlight the NGFW's effectiveness in providing comprehensive security without impacting network performance. Users appreciate its ease of use, particularly in setup and ongoing management, making it a favored choice for businesses looking to secure their cloud environments.

    The firewall provides application control, malware protection, scalability, stability, user-friendly interface, threat hunt capabilities, application visibility and awareness, URL filtering, traffic monitoring, machine learning for attack prevention, a unified platform for all security capabilities, DNS security, VPN, and embedded machine learning. Palo Alto Networks NG Firewalls is easy to manage, reliable, and balances security and network performance well. It also provides complete visibility through logs and alerting.

    Palo Alto Networks NG Firewalls Features

    Palo Alto Networks NG Firewalls has many valuable key features. Some of the most useful ones include:

    • Secure Application Enablement (App-ID, User-ID, Content-ID)
    • Malware Detection and Prevention (threat prevention service, buffer overflows and port scans, anti-malware capabilities, command-and-control protection, and WildFire)
    • DNS Security (URL filtering, predict and block malicious domains, signature-based protection, extensible cloud-based architecture)
    • Panorama Security Management (including graphical views and analytics, manage rules and dynamic updates, customizable application command center (ACC), log collection mode, physical or virtual appliance)
    • Threat Intelligence (high-fidelity threat intelligence, priority alerts, automatic extraction and sharing of prevention indicators, native integration with Palo Alto Networks products)

    Palo Alto Networks NG Firewalls Benefits

    There are several benefits to implementing Palo Alto Networks NG Firewalls. Some of the biggest advantages the solution offers include:

    • Dedicated management interface for managing and initial configuration of the device
    • Regular threat signatures and updates
    • Import addresses and URL objects from the external server
    • Configure and manage with REST API integration
    • Great throughput and connection speed is fair even in high traffic load
    • Deep visibility into the network activity through Application and Command Control
    • Easy to manage and very user friendly

    Reviews from Real Users

    Below are some reviews and helpful feedback written by Palo Alto Networks NG Firewalls users.

    A Solutions Architect at a communications service provider says, “The product stability and level of security are second to none in the industry. We value the security of our client's infrastructure so these features are valuable to us. An example of a very valuable feature behind Palo Alto is the application-aware identifiers that help the firewall know what its users are trying to do. It can block specific activities instead of just blocking categories. For example, you can block an application, or all unknown applications.”

    PeerSpot user Gerry H., CyberSecurity Network Engineer at a university, mentions that the solution has a “Nice user interface, good support, is stable, and has extensive logging capabilities.” He also adds, “Wildfire has been a very good feature. This solution provides a unified platform that natively integrates all security capabilities, which is 100% important to us. This is a great feature.”

    Eric S., Network Analyst at a recreational facilities/services company, states, "With its single pane of glass, it makes monitoring and troubleshooting a bit more homogeneous. We are not looking at multiple platforms and monitoring management tools. It is more efficient from that perspective. It is more of a common monitoring and control system for multiple aspects of what used to be different systems. It provides efficiency and time savings."

    Untangle NG Firewall is an open-source firewall and gateway security platform that helps keep networks safe while accessing the internet. It offers a free core firewall platform with paid add-ons, and a cloud-based management platform with a variety of deployment options for smaller teams. The solution also has a cloud-based management console for remote management that can either be deployed on premises or as SaaS, and virtualized or cloud-based. It also has flexible deployment options, including third-party hardware, as a virtual machine, or as a turnkey appliance. Untangle NG Firewall is ideal for small IT teams with limited budgets.

    Untangle NG Firewall Features

    Untangle NG Firewall has many valuable key features. Some of the most useful ones include:

    • Intrusion protection
    • Threat prevention
    • Virus blocker
    • Virus scanner
    • App control
    • SSL inspection
    • Bandwidth control
    • Reporting
    • Logs
    • VPN
    • Web filter
    • IDS/IPS
    • Access controls
    • Location control
    • Proxy
    • Active Directory/LDAP connections

    Untangle NG Firewall Benefits

    There are many benefits to implementing Untangle NG Firewall. Some of the biggest advantages the solution offers include:

    • Simplified network security: Untangle NG Firewall has a single, modular, software platform which simplifies security for all networks and ensures every device is adequately protected.
    • Visibility: The solution provides a browser-based, responsive, and intuitive interface enabling users to gain visibility quickly into the traffic on the network.
    • Deep analysis and insights: With the solution, users can see a network’s status at a glance on the dashboard, ensure compliance with full event logs, and get notifications of network anomalies or unusual user behavior with alert rules. In addition, users can gain insights in real time from database-driven reports.
    • Next-generation filtering: Untangle NG Firewall makes it easy to manage every rogue application, encrypted web request, malware distribution point, and drive-by malvertising attempt.
    • Connectivity and performance: The solution helps your organization maintain visibility and control over remote workers, branch offices, and guest Wi-Fi to keep users connected and data safe regardless of location or level of access.
    • Policy creation: Users can create policies by user, group, device, and time in order to control access.
    • Additional apps: Untangle NG Firewall offers additional apps, allowing organizations to create complete configuration backups to protect against network disruptions.

    Reviews from Real Users

    Untangle NG Firewall is a solution that stands out when compared to many of its competitors. Some of its major advantages are that it is easy to use, has good features, including VPN, reporting, alerting, and filtering, and can be installed on existing hardware.

    “It is very easy to use. The user interface is very straightforward. It may not be as fancy as some of the ones I've seen, but it's very straightforward. It's very easy to find what you need, and it's very easy to get things done,” says Josh E., CEO at DragonTech IT Services, Inc.

    Barry A., Owner at ThinkEzIT, says, “It has good VPN features, helpful reporting and alerting, built-in content filtering, and excellent support.”

    PeerSpot user Victor O., Director at Kisii County Government, explains, “What I like about this product, which is the reason that we continue to use it, is that you can install the software version on your own hardware. In case there is a problem with the hardware, we can just install the firewall in another machine and restore the configuration.”

    Sample Customers
    1. Amazon Web Services 2. Microsoft 3. IBM 4. Cisco 5. Dell 6. HP 7. Oracle 8. Verizon 9. AT&T 10. T-Mobile 11. Sprint 12. Vodafone 13. Orange 14. BT Group 15. Telstra 16. Deutsche Telekom 17. Comcast 18. Time Warner Cable 19. CenturyLink 20. NTT Communications 21. Tata Communications 22. SoftBank 23. China Mobile 24. Singtel 25. Telus 26. Rogers Communications 27. Bell Canada 28. Telkom Indonesia 29. Telkom South Africa 30. Telmex 31. Telia Company 32. Telkom Kenya
    SkiStar AB, Ada County, Global IT Services PSF, Southern Cross Hospitals, Verge Health, University of Portsmouth, Austrian Airlines, The Heinz Endowments
    North American Stamping Group, Cerebral Palsy of North Jersey (CPNJ), Brown County Schools, IN, City of Bridgeton, MO, Lancaster County, SC, Vision Charter School, Clay County Sheriff’s Department, NC, Breakwater School, Boys & Girls Club of Manchester, NH, Admiral Farragut Academy, Flow Companies, No Ordinary Hotel, KECdesign,
    Top Industries
    REVIEWERS
    Comms Service Provider16%
    Computer Software Company9%
    Financial Services Firm8%
    Manufacturing Company7%
    VISITORS READING REVIEWS
    Educational Organization20%
    Computer Software Company15%
    Comms Service Provider8%
    Manufacturing Company6%
    REVIEWERS
    Comms Service Provider15%
    Financial Services Firm14%
    Computer Software Company13%
    Educational Organization9%
    VISITORS READING REVIEWS
    Computer Software Company16%
    Financial Services Firm9%
    Manufacturing Company7%
    Government7%
    REVIEWERS
    Non Profit18%
    Manufacturing Company18%
    Computer Software Company9%
    Government9%
    VISITORS READING REVIEWS
    Computer Software Company13%
    Comms Service Provider12%
    Government9%
    Manufacturing Company6%
    Company Size
    REVIEWERS
    Small Business48%
    Midsize Enterprise23%
    Large Enterprise30%
    VISITORS READING REVIEWS
    Small Business27%
    Midsize Enterprise32%
    Large Enterprise41%
    REVIEWERS
    Small Business36%
    Midsize Enterprise27%
    Large Enterprise38%
    VISITORS READING REVIEWS
    Small Business24%
    Midsize Enterprise17%
    Large Enterprise58%
    REVIEWERS
    Small Business96%
    Midsize Enterprise4%
    VISITORS READING REVIEWS
    Small Business37%
    Midsize Enterprise17%
    Large Enterprise46%
    Buyer's Guide
    Firewalls
    March 2024
    Find out what your peers are saying about Netgate, Fortinet, OPNsense and others in Firewalls. Updated: March 2024.
    768,924 professionals have used our research since 2012.