No more typing reviews! Try our Samantha, our new voice AI agent.

Hillstone CloudEdge vs Palo Alto Networks NG Firewalls comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Jan 25, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Fortinet FortiGate
Sponsored
Ranking in Firewalls
1st
Average Rating
8.4
Reviews Sentiment
6.8
Number of Reviews
591
Ranking in other categories
Secure Web Gateways (SWG) (2nd), Intrusion Detection and Prevention Software (IDPS) (1st), Software Defined WAN (SD-WAN) Solutions (1st), WAN Edge (1st), ZTNA (1st), Unified Threat Management (UTM) (1st)
Hillstone CloudEdge
Ranking in Firewalls
50th
Average Rating
10.0
Reviews Sentiment
7.8
Number of Reviews
2
Ranking in other categories
No ranking in other categories
Palo Alto Networks NG Firew...
Ranking in Firewalls
6th
Average Rating
8.6
Reviews Sentiment
7.2
Number of Reviews
199
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of May 2026, in the Firewalls category, the mindshare of Fortinet FortiGate is 16.0%, down from 21.6% compared to the previous year. The mindshare of Hillstone CloudEdge is 0.3%, up from 0.0% compared to the previous year. The mindshare of Palo Alto Networks NG Firewalls is 5.1%, up from 3.6% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Firewalls Mindshare Distribution
ProductMindshare (%)
Fortinet FortiGate16.0%
Palo Alto Networks NG Firewalls5.1%
Hillstone CloudEdge0.3%
Other78.6%
Firewalls
 

Featured Reviews

Abhinandan Yadav - PeerSpot reviewer
Network Security Engineer at a consultancy with 51-200 employees
Unified security and sd-wan have improved uptime and cut wan costs for multi-site branches
Users report stability issues in certain versions, which requires regular updates. Real-world attacks have also highlighted the need for urgent patching of vulnerabilities.Fortinet FortiGate, while a powerful and feature-rich web firewall, could improve in areas like firmware stability, documentation, and ease of use. The learning curve can be steep for some users. For beginners, support quality can vary, and frequent updates with occasional vulnerabilities call for careful patch management. However, once Fortinet FortiGate is configured, it remains highly reliable and efficient. Customer support needs improvement, as I find it very slow, with reports from other users reflecting that customer support is inadequate.
Albert-Wang - PeerSpot reviewer
Technical Consultant at SiS Technologies
Comprehensive cloud security with robust threat protection and VPN capabilities
Hillstone CloudEdge is compatible with all the mainstream public cloud providers, such as AWS, Microsoft Azure, and Alibaba Cloud. This solution has a unified OS system for security products, ensuring that the virtual firewall has similar features to the on-premise solutions. Important features include a VPN, VTech VPN, SSL VPN, QoS, antivirus, threat protection, and sandbox capabilities.
Abhinandan Yadav - PeerSpot reviewer
Network Security Engineer at a consultancy with 51-200 employees
Advanced visibility has transformed security policies and provides proactive threat prevention
Palo Alto Networks NG Firewalls are powerful, but there are areas for improvement that could enhance their effectiveness, such as cost and licensing models. One of the main challenges we face is the high cost, especially for small to mid-sized businesses (SMBs), with licensing for features such as threat prevention, URL filtering, and WildFire being quite expensive. Additionally, centralized management with Panorama is a dependency for managing multiple firewalls, leading to added costs and complexity, and the built-in centralized management features could be made more user-friendly. Moreover, the learning curve associated with the initial setup and advanced configuration including NAT, decryption, and routing can be complex for new users, and enhancements in logging and reporting could also improve the user experience. There are a few more areas where improvements could streamline operations, such as optimizing commit times. Sometimes committing changes takes a noticeable amount of time, particularly for larger configurations, so a faster commit option would significantly help during urgent troubleshooting. Easier policy troubleshooting is necessary as well. Even though logs are detailed, finding the exact rule match and issue can still be time-consuming in complex environments, so having automated policy simulation and a recommendation tool would expedite troubleshooting. Additionally, better default templates and best practices for SMB data centers and branch offices would speed up deployment and reduce errors. Enhancing integration visibility through a unified dashboard would simplify monitoring, and improving the firmware upgrade process to allow for a more seamless zero downtime upgrade would also enhance operations, as upgrades are stable but typically require careful planning and downtime.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Run Script is the best tool to use in Fortinet FortiGate with multiple environments."
"There is an easy process for configuring it, and it is straightforward to implement the device from scratch."
"The most valuable feature is the bundled subscription, which is IPS, TV and web filtering."
"It is easy to use and performs very well."
"The solution provides an easy way to filter information and the Fortinet lab is a great place to discover new things."
"Fortinet FortiGate is a very stable solution."
"The product is very user-friendly, it is quite scalable, I love the interface, the power is great, and I have a limited embedded team in IT with one man on the team for 1,000 users who can manage all the infrastructure due to the fact that the console is very easy, and the people are very happy with the results pertaining to that interface."
"Fortinet is one of the players who is having the full bucket of solutions for protecting applications across the deployment locations, being a branch or a head office or a data center or in the cloud as well."
"Hillstone CloudEdge is compatible with all the mainstream public cloud providers, such as AWS, Microsoft Azure, and Alibaba Cloud."
"I'd rate the solution nine out of ten."
"The solution is very easy to download and configure. The initial setup was very easy. The technical support is very good."
"I would recommend this product to any business that wants to protect its cloud environment, cloud server, or on-premises virtual servers."
"With its single pane of glass, it makes monitoring and troubleshooting a bit more homogeneous. We are not looking at multiple platforms and monitoring management tools. It is more efficient from that perspective. It is more of a common monitoring and control system for multiple aspects of what used to be different systems. It provides efficiency and time savings."
"The user experience is good and the configuration is very easy."
"I like the remote access and URL filtering features that are available on global products."
"The packet level inspection is the most valuable feature. The traffic restriction features allow us to restrict the sub-features of any platform."
"This is arguably the best security protection that you can buy."
"They are regularly releasing new versions that include more integration with third-party services."
"The key aspect of this solution that provides the most value is its next-gen capabilities, which represented a significant change for us."
"The most valuable feature of the solution is the network protection."
 

Cons

"If I had any criticism that I would give FortiGate, it would be that they need to stop changing their logging format."
"The solution needs to improve its support."
"We'd like to have multi-factor authentication via fiber."
"Security is a continuous process. In every product, there is a requirement for improvement. Its pricing should also be improved according to Indian market requirements. They must also improve on the reporting part. Its reporting can be more precise. If we can get a real-time report in a specific format, it will be helpful for customers to know about the current status of their security."
"It could use better throughput on some of the smaller boxes for the branch offices."
"The user interface needs a bit of upgrading."
"FortiWAN was supposed to help in doing intersite linking, but we've realized that most of the ISPs use BGP."
"FortiGate NGFW can improve technical support. The engineer who answers the technical support call, email, or phone call, whatever the medium may be. The response time is very bad."
"The solution needs more granular level reporting on system usage."
"The solution needs more granular level reporting on system usage."
"There is room for improvement in AI features, particularly for zero-day attacks and providing maintenance guidance."
"There is room for improvement in AI features, particularly for zero-day attacks and providing maintenance guidance."
"If you enable SSL you will face a problem. The throughput of the firewall will be degraded. SSL is a big issue on all firewalls. All products suffer from issues with SSL, but Palo Alto firewalls suffer more from it."
"In the future, I would like to see more OTP features."
"My customers have been attacked by ransomware. It's difficult to understand how the ransomware got through Palo Alto Panorama and Palo Alto dashboard monitoring from reporting."
"The solution could offer better pricing. We'd like it if it could be a bit more affordable for us."
"The machine learning in Palo Alto NG Firewalls for securing networks against threats that are able to evolve and morph rapidly is good, in general. But there have been some cases where we get false positives and Palo Alto has denied traffic when there have been new updates and signature releases. Valid traffic gets blocked. We have had some bad experiences with this. If there were an ability, before it denies traffic, to get some kind of notification that some traffic is going to be blocked, that would be good."
"Palo Alto Firewalls could improve by introducing more features, particularly in load balancing."
"Sometimes some of the applications the customer has do not respond as they normally should."
"It is a complete product, but the SSL inspection feature requires some improvements."
 

Pricing and Cost Advice

"Fortinet is the least expensive solution."
"We pay about $4,000 for a yearly license, and there aren't any additional fees."
"The price of Fortinet FortiGate is reasonable for an SME."
"Work through partners for the best pricing."
"Fortinet FortiGate SWG is an affordable solution."
"The price of Fortinet FortiGate could improve, it is expensive."
"The pricing is perfect."
"It was worth the money overall. It's good value."
Information not available
"It's cheaper to replace the equipment every three years than to upgrade. We have done two refreshes of their appliances. What I have seen is that the initial hardware cost is low, but you need a subscription and you need maintenance plans. After every three years, if you're trying to renew your maintenance or subscription, that can be very costly. It's cheaper to just get a newer solution with a three-year subscription and maintenance. It's cheaper to replace your hardware completely with a new subscription plan and a new maintenance plan than to renew the maintenance subscription on existing hardware."
"This is not the firewall to choose if you are looking for the cheapest and fastest solution. Palo Alto NGFWs are expensive. By the time you license them up and get them fully functional, you have spent quite a bit of money. If it is a small branch office with 10 to 15 users, that is hard to justify."
"While Palo Alto Networks NG Firewalls come at a premium, exceeding the cost of most competitors by 45 percent, their advanced security features, superior performance, and comprehensive threat prevention capabilities justify the investment."
"Its price should be improved."
"Unfortunately, Palo Alto Networks products aren't cheap, but you have to pay the price for good security technology. I don't know the exact price, but it's about $10,000 to $15,000 without a subscription. Cisco is priced similarly. FortiGate is inexpensive in Poland, so a lot of customers prefer that. Though it's pricey, customers ultimately realize Palo Alto is the best security solution because it's stable and the network security functions are practical. Cisco has some problems from time to time, but I feel comfortable with Palo Alto Networks."
"Palo Alto Networks NG Firewalls are expensive compared to WatchGuard XTM firewalls."
"Pricing is yearly, but it depends. You could pay on a yearly basis, or every three years. If you want to add a device or two, there would be an additional cost. Also, if you want to do an assessment, or other similar add-on, you have to pay accordingly for the additional service."
"The pricing is very high."
report
Use our free recommendation engine to learn which Firewalls solutions are best for your needs.
896,202 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
10%
Comms Service Provider
10%
Manufacturing Company
9%
Financial Services Firm
7%
No data available
Computer Software Company
9%
Manufacturing Company
9%
Financial Services Firm
7%
Comms Service Provider
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business367
Midsize Enterprise135
Large Enterprise193
No data available
By reviewers
Company SizeCount
Small Business77
Midsize Enterprise56
Large Enterprise85
 

Questions from the Community

Which is the better NGFW: Fortinet Fortigate or Cisco Firepower?
When you compare these firewalls you can identify them with different features, advantages, practices and usage a...
What is the biggest difference between Sophos XG and FortiGate?
From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know...
What are the biggest technical differences between Sophos UTM and Fortinet FortiGate?
As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite ...
What needs improvement with Hillstone CloudEdge?
There is room for improvement in AI features, particularly for zero-day attacks and providing maintenance guidance. M...
What is your primary use case for Hillstone CloudEdge?
Our primary use case is to provide cloud-based security solutions for customers using public cloud platforms. We dist...
What is a better choice, Azure Firewall or Palo Alto Networks NG Firewalls?
Azure Firewall Vs. Palo Alto Network NG Firewalls Both solutions provide stellar stability and security. Azure Firew...
Features comparison between Palo Alto and Fortinet firewalls
In the best tradition of these questions, Feature-wise both are quite similar, but each has things it's better at, it...
Which is better - Palo Alto Networks NG Firewalls or Sophos XG?
Palo Alto Networks NG Firewalls have both great features and performance. I like that Palo Alto has regular threat si...
 

Also Known As

Fortinet FortiGate Next-Generation Firewall
No data available
Palo Alto NGFW, Palo Alto Networks Next-Generation Firewall
 

Overview

 

Sample Customers

Amazon Web Services, Microsoft, IBM, Cisco, Dell, HP, Oracle, Verizon, AT&T, T-Mobile, Sprint, Vodafone, Orange, BT Group, Telstra, Deutsche Telekom, Comcast, Time Warner Cable, CenturyLink, NTT Communications, Tata Communications, SoftBank, China Mobile, Singtel, Telus, Rogers Communications, Bell Canada, Telkom Indonesia, Telkom South Africa, Telmex, Telia Company, Telkom Kenya
LinkTime
SkiStar AB, Ada County, Global IT Services PSF, Southern Cross Hospitals, Verge Health, University of Portsmouth, Austrian Airlines, The Heinz Endowments
Find out what your peers are saying about Hillstone CloudEdge vs. Palo Alto Networks NG Firewalls and other solutions. Updated: April 2026.
896,202 professionals have used our research since 2012.