Try our new research platform with insights from 80,000+ expert users

IPFire vs Palo Alto Networks NG Firewalls comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Oct 19, 2025

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Fortinet FortiGate
Sponsored
Ranking in Firewalls
1st
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
580
Ranking in other categories
Secure Web Gateways (SWG) (2nd), Intrusion Detection and Prevention Software (IDPS) (1st), Software Defined WAN (SD-WAN) Solutions (1st), WAN Edge (1st), ZTNA (1st), Unified Threat Management (UTM) (1st)
IPFire
Ranking in Firewalls
35th
Average Rating
8.0
Reviews Sentiment
8.5
Number of Reviews
2
Ranking in other categories
No ranking in other categories
Palo Alto Networks NG Firew...
Ranking in Firewalls
6th
Average Rating
8.6
Reviews Sentiment
7.3
Number of Reviews
196
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of January 2026, in the Firewalls category, the mindshare of Fortinet FortiGate is 18.7%, down from 20.5% compared to the previous year. The mindshare of IPFire is 1.9%, up from 1.2% compared to the previous year. The mindshare of Palo Alto Networks NG Firewalls is 4.6%, up from 3.2% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Firewalls Market Share Distribution
ProductMarket Share (%)
Fortinet FortiGate18.7%
Palo Alto Networks NG Firewalls4.6%
IPFire1.9%
Other74.80000000000001%
Firewalls
 

Featured Reviews

Vasu Gala - PeerSpot reviewer
Manager, Information Technology Operation/Presales at TechMonarch
A stable solution with an intuitive interface and quick customer service
I have been working with Fortinet FortiGate, WatchGuard, Sophos, and SonicWall. I'm not as comfortable with SonicWall because of their UI and limitations. I prefer Fortinet above all other options. When it comes to configuration, I am confident in my ability to handle various tasks, including creating policies such as firewall rules, web policies, and application policies. Additionally, I can configure VPNs and implement load balancing, among other tasks. Overall, I feel much more comfortable working with Fortinet. Fortinet has made significant improvements by integrating AI with firewalls for threat analysis and prevention. In the past 2-3 years, they have launched FortiSASE and SIEM, and they also provide SOC services. Both Palo Alto and Fortinet FortiGate are excellent. While Fortinet FortiGate comes at higher prices, the functionality and support justify the cost. They promptly resolve firmware issues and inform all support providers about configuration changes.
DS
Head Competence Team IT at Duktig Brand
Blocking access from specific countries and ensuring robust security have been effortlessly achieved
I use IPFire to protect my home The best feature of IPFire is the location block functionality. It allows me to block certain countries from accessing my site. Additionally, it is a solution that is available for free, which is perfect. The graphical interface could be much better. I have…
VR
Director IT Infrastructure and Operations at a analyst firm with 51-200 employees
Cost-effective with operational and maintenance ease
Understanding the flow and application of securities can be complex, requiring navigation across different sections. Further integration into a unified system could improve usability. It is a bit complex to understand the flows and how the securities are applied to each of those flows. It was a little bit challenging because we had to go to two different sections to figure that out. It would be helpful if it is all unified so that we can see the way the firewall connections and security are set up and the applications that are using those connections. It could be structured differently so that it is more understandable. It has been a while, but it was a bit of a complex way. We had to hop from one area to the other and go back and forth to figure out how a specific connection and application was set up.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Their reliability and their policy of pre-shipping replacements when a unit has failed."
"The IPS and the application control feature are the most valuable."
"The solution is superior to Cisco in terms of security."
"The main benefit is the grouping of our security monitoring."
"FortiGate has a very strong unified threat management system."
"It's inexpensive compared to some of the other technology out there."
"It does a lot for you for intrusion protection and as an antivirus. The threat management bundle is worth the money. You don't need another company to monitor your web traffic for you. You can do everything yourself on the firewall. You restrict your own black list for people on the firewall. You don't need to pay some other company for another product to do that for you. The firewall can do that for you. So, it's an easy-to-use product for people to be independent. They don't need to rely on other vendors to do what the firewall can do. They can do everything."
"The most valuable feature is the ease of configuration."
"I would rate the stability as ten out of ten for IPFire."
"IPFire has prevented any kind of hacking and enables us to comply with customer requirements."
"It is critical that Palo Alto Networks NG Firewalls embeds machine learning in the core of the firewall to provide inline, real-time attack prevention. In my environments, we have an integration with a third-party vendor. As soon as there is new information about new threats and the destination that they are trying to reach on any of our network devices, that traffic will be stopped."
"The interface and dashboards are good."
"The most significant benefit is threat protection. Anti-malware uses signatures, so dynamic analyzers like WildFire are the best way to protect the company. It is a firewall based on application control, user ID, and security policy. We can use it based on user and application ID without a stateless firewall or TCPIP ports."
"The most valuable features are the power of the threat prevention and the WildFire service. Its strength comes from the huge number of sensors all over the world. The firewalls have a rich library of signatures."
"The most important feature is the firewall. We can make rules to filter the application layer of traffic. It's a very helpful feature."
"The most valuable features include the usual firewall functionalities, such as IPS and antivirus, which are effective."
"The most valuable features are the threat prevention and policy-based routing features."
"Innovative, advanced threat protection is the most valuable feature."
 

Cons

"The renewal price and the availability could be improved."
"The solution must improve the support provided for customers around the globe, considering the time differences in different places."
"The non-error conserve mode has room for improvement."
"The graphical user interface of Fortinet FortiGate SWG is an area of concern where improvements are required."
"The renewal cost is much higher than other firewalls. It is not reasonable."
"The support structure needs to be improved because every time we contact them, there is a delay in the response."
"I would rate Fortinet support a six out of ten. The immediate response is not that good, particularly when raising a critical or P1 ticket; they lag in the immediate response."
"Quality control on their firmware versions needs improvement. When they introduce new firmware, there tend to be bugs."
"Accessing the internet was a bit complicated."
"The graphical interface could be much better."
"I believe the configuration part can be improved, particularly because the management tools like Panorama and the cloud management solutions are not fully aligned."
"Palo Alto claims their NG Firewalls are highly customizable, but this isn't always true."
"The cost has room for improvement."
"Overall it is good. It is reliable and easy to understand. However, the monitoring feature could be improved."
"It is a good product, but they can add some functions for port scanning and network scanning."
"In terms of what could be improved, comparatively the price is very high. That would be the one thing."
"Personally, I feel that their dashboards for reporting and things like that need some improvement."
"There has been a recent change in the graphical interface. For the monitoring part, they could have a better UI."
 

Pricing and Cost Advice

"It was probably about $2,500 per firewall. It was all included. It included support, services, threat management software, and 24/7 FortiCare on it. Cisco products are more expensive."
"It's expensive, but compared to the competition it's okay."
"The pricing is comprehensive and clear. You can easily understand what you are purchasing, including which features correspond to each license and maintenance contract. Overall, the information is straightforward. Additionally, compared to other vendors, their prices are competitive."
"It is quite affordable for our customers. There is a separate cost for IPS, antivirus, web filtering, and other features. They have a great choice of licenses. You can go for the license that you want, which is quite useful."
"The license of Fortinet FortiGate should be reduced."
"Its price is affordable and lesser than Cisco. Cisco is expensive. In terms of licensing, there is only one issue. If a customer's license has expired a month ago and they do the renewal after one month, Fortinet renews the license from the start of the previous month. The activation of the product is done from the previous month, not from the date of renewal. The customers usually shout and complain that because they are paying today, the renewal should start from today. The support contract renewals or licensing should be renewed from the date of renewal, but Fortinet starts from the day it had expired. It is a loss for customers. They might have had some problems because of which they did not take the license one month before. Fortinet should work on this. Cisco doesn't do this. Cisco always starts from the day they apply for the license."
"Fortinet is competitive price-wise."
"Fortinet's pricing is more straightforward than other solutions. If Fortinet doesn't stick out when you're searching for a solution, you are a glutton for punishment. You only need to know two things when purchasing a Fortinet solution: your total bandwidth and bandwidth at the site. You need to estimate the future bandwidth with other solutions if your customer plans to upgrade."
Information not available
"The Palo Alto solution is actually not expensive. It was comparable to the old firewall manufacturers that we were using. From the benefits that we have gotten out of the Palo Alto products, it is well worth the difference in cost, even though the difference in cost is not much at all."
"The licensing leaves a lot to be desired. We buy the license and then we can't transfer the license without paying an exorbitant fee to our client if they leave us, and that just seems to be a bit of a pain point for us, and there's really no way to partner effectively to make that more reasonable."
"I rate the product’s pricing an eight out of ten."
"Its price should be improved."
"Reducing costs is important, especially since Prisma can be expensive. It would be great if it were more affordable."
"I am not sure about the specific licensing costs of Palo Alto Networks NG Firewalls, but FortiGate and Palo Alto are generally cheaper than some high-end Cisco devices."
"This solution is quite expensive."
"The cost of Palo Alto Network NG Firewalls is significantly higher compared to Huawei."
report
Use our free recommendation engine to learn which Firewalls solutions are best for your needs.
879,425 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
14%
Comms Service Provider
9%
Manufacturing Company
8%
Financial Services Firm
6%
Comms Service Provider
21%
Computer Software Company
13%
Government
8%
University
7%
Computer Software Company
12%
Financial Services Firm
9%
Manufacturing Company
8%
Educational Organization
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business357
Midsize Enterprise133
Large Enterprise188
No data available
By reviewers
Company SizeCount
Small Business74
Midsize Enterprise56
Large Enterprise84
 

Questions from the Community

Which is the better NGFW: Fortinet Fortigate or Cisco Firepower?
When you compare these firewalls you can identify them with different features, advantages, practices and usage a...
What is the biggest difference between Sophos XG and FortiGate?
From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know...
What are the biggest technical differences between Sophos UTM and Fortinet FortiGate?
As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite ...
What needs improvement with IPFire?
The graphical interface could be much better.
What is your primary use case for IPFire?
I use IPFire ( /products/ipfire-reviews ) to protect my home.
What advice do you have for others considering IPFire?
Sometimes configuring IPFire is challenging. Overall, I would rate this solution as eight out of ten.
What is a better choice, Azure Firewall or Palo Alto Networks NG Firewalls?
Azure Firewall Vs. Palo Alto Network NG Firewalls Both solutions provide stellar stability and security. Azure Firew...
Features comparison between Palo Alto and Fortinet firewalls
In the best tradition of these questions, Feature-wise both are quite similar, but each has things it's better at, it...
Which is better - Palo Alto Networks NG Firewalls or Sophos XG?
Palo Alto Networks NG Firewalls have both great features and performance. I like that Palo Alto has regular threat si...
 

Also Known As

Fortinet FortiGate Next-Generation Firewall
No data available
Palo Alto NGFW, Palo Alto Networks Next-Generation Firewall
 

Overview

 

Sample Customers

Amazon Web Services, Microsoft, IBM, Cisco, Dell, HP, Oracle, Verizon, AT&T, T-Mobile, Sprint, Vodafone, Orange, BT Group, Telstra, Deutsche Telekom, Comcast, Time Warner Cable, CenturyLink, NTT Communications, Tata Communications, SoftBank, China Mobile, Singtel, Telus, Rogers Communications, Bell Canada, Telkom Indonesia, Telkom South Africa, Telmex, Telia Company, Telkom Kenya
1. Siemens 2. IBM 3. Cisco 4. Dell 5. HP 6. Intel 7. Oracle 8. Google 9. Microsoft 10. Amazon 11. Apple 12. Facebook 13. Twitter 14. Netflix 15. Adobe 16. SAP 17. VMware 18. Juniper Networks 19. Ericsson 20. Nokia 21. AT&T 22. Verizon 23. T-Mobile 24. Vodafone 25. Orange 26. Deutsche Telekom 27. British Telecom 28. Comcast 29. Time Warner 30. Sony 31. Samsung 32. LG
SkiStar AB, Ada County, Global IT Services PSF, Southern Cross Hospitals, Verge Health, University of Portsmouth, Austrian Airlines, The Heinz Endowments
Find out what your peers are saying about IPFire vs. Palo Alto Networks NG Firewalls and other solutions. Updated: December 2025.
879,425 professionals have used our research since 2012.