No more typing reviews! Try our Samantha, our new voice AI agent.

Fortinet FortiProxy vs Prisma Access by Palo Alto Networks comparison

Why PeerSpot?
Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Dec 4, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

iboss
Sponsored
Ranking in Secure Web Gateways (SWG)
6th
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
24
Ranking in other categories
Internet Security (3rd), Web Content Filtering (1st), Cloud Access Security Brokers (CASB) (6th), ZTNA as a Service (6th), Secure Access Service Edge (SASE) (6th)
Fortinet FortiProxy
Ranking in Secure Web Gateways (SWG)
14th
Average Rating
8.0
Reviews Sentiment
6.3
Number of Reviews
11
Ranking in other categories
No ranking in other categories
Prisma Access by Palo Alto ...
Ranking in Secure Web Gateways (SWG)
5th
Average Rating
8.2
Reviews Sentiment
6.9
Number of Reviews
65
Ranking in other categories
Cloud Access Security Brokers (CASB) (1st), Enterprise Infrastructure VPN (5th), ZTNA as a Service (4th), Secure Access Service Edge (SASE) (1st)
 

Mindshare comparison

As of September 2026, in the Secure Web Gateways (SWG) category, the mindshare of iboss is 3.4%, up from 2.2% compared to the previous year. The mindshare of Fortinet FortiProxy is 2.1%, down from 5.1% compared to the previous year. The mindshare of Prisma Access by Palo Alto Networks is 7.1%, down from 11.1% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Secure Web Gateways (SWG) Mindshare Distribution
ProductMindshare (%)
Prisma Access by Palo Alto Networks7.1%
iboss3.4%
Fortinet FortiProxy2.1%
Other87.4%
Secure Web Gateways (SWG)
 

Featured Reviews

Ashok Ananthula - PeerSpot reviewer
Senior Consultant Proxy Engineering at a financial services firm with 10,001+ employees
Cloud gateway has strengthened remote web security and now needs better Mac and ISP support
The problem our organization had is that iboss failed for the Mac devices. It is not able to give a successful agent for the Mac agents. That is where in 2025, we had to migrate to the Palo Alto-based platform. If your use case is for just Windows laptops,you can consider this platform as an option One issue is the data center resiliency part. In India especially, they are not tied up with the Tier 1 ISPs like Tata or Airtel; they were having Tier 2 ISPs and encountered many issues reaching few major sites that my organization depends on, and they were having problems that they could not fix quickly. They also lack a mechanism to route that traffic within their data center; rather, they ask customers to make a pac file change to route it to Singapore explicitly. It would be better if they route from their backend , i mean even if I send it to India DC, they should be able to route it internally to make that work; however, they fail to do that and ask the customer to route it in the pac file. Another suggestion is that in China, they do not have the proper setup; they used to have numerous problems with slowness and lack of premium circuits in China as well. That leads to multiple sites working slowly with latency-related issues. So the main issue is the ISP-related problems that need to be solved.
Emmanuel Dasho - PeerSpot reviewer
Cyber Security Engineer | Network/Security at GCET
Ease of configuration and seamless integration enhance operational efficiency
The App Control feature in the Fortinet FortiProx * Deep Packet Inspection (DPI): FortiProxy analyzes traffic at the application layer to detect applications even if they use non-standard ports or are encrypted. * Application Signatures: Uses FortiGuard’s application signature database (constantly updated) to recognize thousands of applications. * Policy Enforcement: You can create policies to Allow, Block, Monitor, or Shape (QoS) based on application type, category, or specific apps.
IgorPinter - PeerSpot reviewer
Director at PULSEC
Zero-trust access has improved remote security and now simplifies cloud-based firewall management
Regarding the integration part for Prisma Access by Palo Alto Networks, the integration with identity providers is pretty much good. It is basically firewall as a service, so it performs well. I completed the integration without any issues. What Palo Alto Networks can do better for Prisma Access by Palo Alto Networks is probably to have the point of presence available in more locations. The point of presence from the Serbia region has the nearest POP in Frankfurt, which is an issue since it is your gateway—when you start browsing the internet, you go through a commercial connection in Germany. They definitely need to spread the service in other countries.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Deploying iboss leads to good return on investment, estimated around 70% to 80%."
"iboss has significantly lowered the number of security incidents. It is crazy how much it blocks and how much it is aware of the outside danger."
"Valuable features: Within the filter: Controls (Web categories, applications, and Allow/Block list) and Network (local Subnets). Within the reporter: Logs (Event Log) and Reports."
"We chose iboss for both zero trust and proxy (SWG) because their SWG was superior."
"The security aspect of the solution, particularly the malware behind it, is excellent. That's something that really helped us out. It's not just a simple proxy that just blocks the insights of potential threats that come on behind it. They do malware detection and that helps us a lot."
"Iboss is a solution that prevents advanced persistent threats, and has a zero tolerance for attacks."
"The solution has massively improved our security posture, giving us full visibility into what our staff does online."
"The iboss system is highly reliable. The false positive rates are small compared to some other systems we've experienced through other partner agencies who use competing solutions."
"The most valuable features of Fortinet FortiProxy are its simplicity and performance."
"It helps to secure the networks at the DNA level and ensure proper identification and filtering of DNS traffic."
"It seamlessly integrates with various security products, enhancing threat intelligence and improving indicators of compromise."
"We can use Fortinet FortiProxy configuration for your network."
"The most valuable feature is intrusion prevention (IPS) and antivirus profiles. These features help control user activity, ensuring that they access only permitted websites and protects from downloading viruses."
"The solution's stability is good."
"The App Control feature in the Fortinet FortiProxy Deep Packet Inspection (DPI): FortiProxy analyzes traffic at the application layer to detect applications even if they use non-standard ports or are encrypted."
"I liked the tool's ability to provide detailed access control. For example, we could allow users to watch YouTube videos but not post comments. This level of control wasn't available in FortiGate."
"From an audit or security perspective, the solution has been very stable so far."
"The product's initial setup phase is simple."
"It's great that we can make sure a machine meets the minimum requirements before users are allowed to log in."
"Palo Alto Firewall is one of the best firewalls in the world."
"It has predefined or preconfigured rules, which are getting periodically updated. They are providing continuous improvements and periodically updating all search queries that they are looking for. That is one thing that helps us to stay vigilant and focused. If we query our AWS account for any breaches or vulnerabilities with any of the cloud tests, and it alerts us based on these predefined rules. It also provides an option to configure our own rules, and based on these rules, it can query the cloud trail logs, pull the information, and trigger alerts in real-time. I haven't explored this feature much because there are multiple accounts, and we don't have enough time to explore this feature. It also provides multiple integrations. When vulnerabilities or breaches are happening, you should be aware of them immediately. It provides integration with tools such as Slack, PagerDuty so that you can get alerted as soon as the high severity stuff comes up. For example, you have a security group that has allowed public traffic on port 22. As TechOps, you should be aware of this immediately. You cannot scan each machine or look into all security groups to identify it. So, Prisma helps us and alerts us when this kind of high-priority stuff comes up. It has different statistics, analytics, and graphs for data. The description of alerts is also pretty good. They describe what are the possible causes for this and what are the solutions. From Prisma Cloud, you can directly go to the AWS account. When you click on an alert, a resource, or a resource ID, it takes you to the AWS console where you need to log in. If you are already logged in, it will take you to that instance directly, and you can fix the issue there. I have found this feature very useful."
"Prisma integrates pretty nicely even if you aren't using other Palo Alto products, is very effective for a CSP solution, and the time to value is almost instant because as soon as you stand it up, it shows value by telling you all the vulnerabilities or risks in that environment."
"The performance is good."
"This solution provides a DLP on the cloud and very few people have a scanning device for data at rest."
 

Cons

"If they could implement an extra security layer preventing access to iboss from the open internet, it would be great."
"Fold that in with the risk intelligence they're getting from all of the different subscriptions they are a part of. Now, these security companies subscribe to things like emerging threats, databases, etc. You can fold all this intelligence to decide what's happening on an endpoint. I would love to see them start moving into that space. That would compete directly with Microsoft. Maybe that's why they haven't. Having that ability native within the solution would be great. The other area in which I would love to see improvement is more detailed descriptions of why they block websites."
"I appreciate that iboss's single pane of glass console gives centralized visibility into web traffic, user activity, security policies, and alerts from one dashboard, allowing us to quickly investigate incidents and monitor policy violations without switching between multiple tools, improving operational efficiency; however, the dashboard customization and reporting could be more flexible."
"Iboss is growing so fast that it is often hard for them to keep up with the challenges."
"The dashboards for local use could be better."
"The solution could be stronger on the integration side and offer more cloud applications like G Suite or Oracle."
"Our biggest problem with their service was it did not recognize the device and filtering did not always work correctly."
"It is stable, but due to growth, it can sometimes be less stable than wanted."
"The hardware version is stable, but the VM version is not stable and contains bugs that cause issues."
"I see that the solution's interface is not in French...It would be good for our company if we could have the tool interface in French."
"For me it may be the wildcards for URLs whitelist or blacklist, somehow the page loads."
"Fortinet FortiProxy should integrate AI/ML technologies. Its pricing needs to be more flexible."
"Integration with existing infrastructure was generally easy, especially if you had tools like LDAP. However, I had to go through a lot of documentation as it was my first time working with a proxy server. We did experience some issues with certain web applications not working properly after implementing Fortinet FortiProxy."
"The tool's most valuable feature is its granular access control. For example, users can browse the main site if you allow access to Amazon, but it stops them from visiting secondary Amazon websites without specific permission. This granular control is really helpful."
"Its web filtering capabilities could be improved."
"Fortinet FortiProxy should improve by adding more documentation and guides."
"The product's current price is an area of shortcoming where improvements are required."
"I haven't seen any SD-WAN configuration capability. If Prisma Access would support SD-WAN, that would help... SD-WAN devices should be able to reach Prisma Access, and Palo Alto should support different, vendor-specific devices, not just Palo Alto devices, for SD-WAN configuration."
"Though the monitoring is fine, the solution should improve its application graphs and interface monitoring."
"The only drawback at the moment is that a cloud solution like Prisma Access requires Palo Alto Panorama, which is normally a VM that sits in your data center."
"It applies commits to the firewalls slowly. There isn't an API you can use for anything. We've previously had trouble with the egress IP addresses though we expressed to engineering that those mustn't change. They changed several times without warning, causing a lot of headaches."
"It is a managed firewall. When you run into issues and have to troubleshoot, there is a fair amount of restriction. You run into a couple of restrictions where you don't have any visibility on what is happening on the Palo Alto managed infrastructure, and you need to get on a call to get technical assistance from Palo Alto's technical support. You have to get them to work with you to fix the problem. I would definitely like them to work on the visibility into what happens inside Palo Alto's infrastructure. It is not about getting our hands onto their infrastructure to do troubleshooting or fixing problems; it is just about getting more visibility. This will help us in guiding technical support folks to the area where they need to work."
"It is a managed firewall. When you run into issues and have to troubleshoot, there is a fair amount of restriction."
"It's not really Prisma's fault, but when you try to create exceptions you don't really have those abilities."
 

Pricing and Cost Advice

"We had the cost of purchasing a new appliance along with the implementation and licensing costs. However, the following year, the cost of just licensing was similar to what was paid the previous year for a new appliance along with the implementation and licensing costs."
"We have not priced the solution recently, but they were competitive with other vendors in the past."
"It is not expensive, and it is also not cheap. iboss is priced right in the sweet spot for the number of features it offers."
"It is probably in line with other solutions, but I do not deal with the financial side."
"The overall pricing for iboss is very competitive and transparent."
"It is expensive compared to one of its competitors."
"It is a cost-effective solution."
"Price-wise, Fortinet FortiProxy is moderate - not the highest among competitors, but not cheap either."
"The tool's pricing is in the middle."
"The solution is neither too expensive nor very cheap."
"It can be considered expensive, with a limited lifespan and support that eventually requires updating to newer solutions."
"It offers a more cost-effective solution than alternatives like FortiMail, FortiGate, and various Barracuda devices."
"The licensing fees are paid on a yearly basis and for what we get, the price is good."
"The price has been good for the ROI during these difficult times for the cruise industry. There are no hidden costs; what the product offers is what you get."
"It is pretty expensive. We have to balance the cost of some features. They need to work on some of the services and products, price-wise."
"Actually the solution is very expensive. I don't know the particulars since the purchasing team dealt with it."
"Prisma is in the middle of the road. It's not the most expensive, but it's not the cheapest. There aren't any additional costs, to my knowledge. I know they have some extra modules, but we didn't use them."
"We have to pay additional costs for maintenance and support services."
"Prisma Access by Palo Alto Networks is an expensive solution, especially when compared to other solutions like Cisco. There are no additional charges apart from the standard licensing costs attached to the solution."
"The pricing can be difficult because it came to us with another agreement, but it can be negotiated. I highly recommend people to compare this product's performance and pricing against BetterCloud, because I feel BetterCloud is better than Prisma SaaS if they're starting from scratch."
report
Use our free recommendation engine to learn which Secure Web Gateways (SWG) solutions are best for your needs.
914,109 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
11%
Manufacturing Company
9%
Comms Service Provider
8%
Construction Company
7%
Financial Services Firm
12%
Computer Software Company
11%
Government
8%
Comms Service Provider
7%
Financial Services Firm
12%
Manufacturing Company
10%
Outsourcing Company
8%
Computer Software Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business12
Midsize Enterprise8
Large Enterprise10
By reviewers
Company SizeCount
Small Business7
Midsize Enterprise1
Large Enterprise3
By reviewers
Company SizeCount
Small Business26
Midsize Enterprise20
Large Enterprise27
 

Questions from the Community

What needs improvement with iboss?
I think iboss could be improved by making reporting and dashboard customization more flexible, and simplifying troubl...
What is your primary use case for iboss?
I use iboss as a cloud-based secure web gateway to provide secure internet access, web filtering, and protect remote ...
What is your experience regarding pricing and costs for iboss?
My experience with iboss's pricing structure, setup cost, and licensing model has been positive, straightforward, and...
What needs improvement with Fortinet FortiProxy?
For me it may be the wildcards for urls whitelist or blacklist, somehow the page loads. Aside from that there no other..
What advice do you have for others considering Fortinet FortiProxy?
My advice to others who are considering Fortinet FortiProxy is that it is seamless, easy to use, and quite straightfo...
What is your experience regarding pricing and costs for Fortinet FortiProxy?
Fortinet FortiProxy is much cheaper compared to other products like Cisco, Palo Alto, and others. It is reasonably pr...
What is the better solution - Prisma Access or Zscaler Private Access?
We looked into Prisma Access before choosing Zscaler Private Access (ZPA). Palo Alto’s Prisma Access is a secure ac...
What is your experience regarding pricing and costs for Prisma Access by Palo Alto Networks?
From my experience, Palo Alto is more expensive compared to solutions like Netskope and Triscale.
What needs improvement with Prisma Access by Palo Alto Networks?
Regarding the integration part for Prisma Access by Palo Alto Networks, the integration with identity providers is pr...
 

Also Known As

iBoss Cloud Platform
FortiProxy
Palo Alto Networks Prisma Access, Prisma Access, GlobalProtect, Palo Alto GlobalProtect Mobile Security Manager, Prisma SaaS by Palo Alto Networks, Prisma Access
 

Overview

 

Sample Customers

More than 4,000 global enterprises trust the iboss Cloud Platform to support their modern workforces, including a large number of Fortune 50 companies.
Information Not Available
Concord Hospital, State of Colorado, Essilor International, RheinLand Versicherungsgruppe, University of Westminster, Universidade Nove de Julho, SPAR Austria, CAME Group, ZipRealty, Greenhill & Co., IKT Agder, Aviva Stadium, Animal Logic, Management & Training Corporation, Brigham Young University Hawaii, School District of Chilliwack
Find out what your peers are saying about Fortinet FortiProxy vs. Prisma Access by Palo Alto Networks and other solutions. Updated: September 2026.
914,109 professionals have used our research since 2012.