No more typing reviews! Try our Samantha, our new voice AI agent.

IPFire vs Palo Alto Networks PA-Series comparison

Sponsored
 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Fortinet FortiGate
Sponsored
Ranking in Firewalls
1st
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
592
Ranking in other categories
Secure Web Gateways (SWG) (2nd), Intrusion Detection and Prevention Software (IDPS) (1st), Software Defined WAN (SD-WAN) Solutions (1st), WAN Edge (1st), ZTNA (1st), Unified Threat Management (UTM) (1st)
IPFire
Ranking in Firewalls
35th
Average Rating
8.0
Reviews Sentiment
8.3
Number of Reviews
3
Ranking in other categories
No ranking in other categories
Palo Alto Networks PA-Series
Ranking in Firewalls
20th
Average Rating
8.6
Reviews Sentiment
7.0
Number of Reviews
37
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of June 2026, in the Firewalls category, the mindshare of Fortinet FortiGate is 15.1%, down from 21.7% compared to the previous year. The mindshare of IPFire is 1.1%, down from 1.8% compared to the previous year. The mindshare of Palo Alto Networks PA-Series is 1.2%, up from 0.6% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Firewalls Mindshare Distribution
ProductMindshare (%)
Fortinet FortiGate15.1%
Palo Alto Networks PA-Series1.2%
IPFire1.1%
Other82.6%
Firewalls
 

Featured Reviews

JK
IP Network Security Specialist at MTN Ghana
Process-Level CPU Visibility: Introduce detailed CPU-usage metrics per subsystem (e.g., IPS engine, logging) so administrators can quickly identify and address performance spikes.
Analytics with FortiAnalyzer. Being able to pull in logs not just from our FortiGates but from all our other firewalls and then get them in one view has been a game changer. Whether I’m building an executive dashboard or doing a deep dive forensics session, I get everything I need without navigating consoles.Straightforward Application Control. FortiGate spots and blocks unwanted apps (eq. like BitTorrent or streaming services) with accuracy. Segmentation with VDOMs. We’ve carved our data center into four logical ‘mini-firewalls’ enterprise, core, billing, and WAF—all on one box. Each has its own rules and logs, and any traffic between them still gets inspected. It’s like having multiple appliances without the extra hardware. Always-Up-to-Date Threat Feeds. Daily signature updates and AI-driven threat sensing mean we’re blocking the latest vulnerabilities almost as soon as they’re announced.
AE
Chief Technology Officer at Agileware Limited
Firewall deployment has secured mission-critical public apps and simplifies Linux-based management
The best features IPFire offers include its very intuitive nature because, even though it has a Linux back-end, in terms of configuration, it has a very rich GUI interface. The GUI and configuration features of IPFire have made my work easier and more efficient because their positioning and the sequence with which I follow is easy. In terms of all the processes, what you need to do at first and the next thing that you need to do is clear. The GUI is well arranged in sequential order, so you can follow that from whatever you want to do until you get the target objective. IPFire includes features with a very robust and rich community that is very much valid in terms of content. IPFire has positively impacted my organization by giving us some mileage. At least, a lot of organizations now know that we have a solution that can deliver the same value.
Rohit Ghorpade - PeerSpot reviewer
Cloud Network Engineer at a insurance company with 5,001-10,000 employees
Identity-based perimeter control has improved security and supports reliable remote access
Currently, we are working with vendors such as Palo Alto Networks PA-Series, Cisco, Check Point, and Citrix. Palo Alto Networks PA-Series is a better firewall. Deep packet inspection and threat prevention basically comply with whatever traffic is incoming and outgoing through the firewall. I do not think anything improvement is required. The thing is that Palo Alto Networks PA-Series works mostly on a license-based model. If you want to utilize any feature, you have to purchase the license. For example, URL filtering requires a license purchase. It simplifies the implementation because LDAP server profile can be integrated. Basically, that simplifies the implementation of access rule or security policy.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Fortinet FortiGate IPS is a very good firewall; we don't have any complaints, it is doing its job correctly."
"The solution offers very easy usability, the product can scale well, the solution is extremely reliable, the pricing and licensing models are pretty good, and the user interface, both the web and CLI versions, are very good."
"FortiGate Next Generation Firewall (NGFW) is more realistic in application, allowing for more specific, customized security policies without the extensive work involved with static rules."
"I have found the IPS, antivirus, and the feature that allows you to have a firewall in the same appliance most valuable."
"The solution is superior to Cisco in terms of security."
"The most valuable features of Fortinet FortiGate are remote access, web filtering, and IPS."
"The product has the most valuable configuration, offloading, and security features."
"Fortinet FortiGate is among the best options in the market."
"IPFire has prevented any kind of hacking and enables us to comply with customer requirements."
"Regarding IPFire's AI capabilities, I think they are quite focused; in all the deployments I have done, I have not had any incidents or breaches."
"I would rate the stability as ten out of ten for IPFire."
"It is scalable. But that depends on what model you are using."
"App-ID is a really good feature."
"The best features of the Palo Alto Networks PA-Series firewall include Global protector VPN workings, and content filtering is easy to manage and operate."
"The product's initial setup process was simple."
"It functions very well in data centers."
"When I compare the tool with other firewalls, it’s the most powerful. It's the most powerful security engine. All the traffic going to the Internet passes through it as the first layer of protection. Because of its good performance, we also use it for decryption."
"It is stable when you set up something and put it into production. Once it works, you don't have other tasks or actions to perform."
"The direct profiles is a valuable feature."
 

Cons

"Fortinet FortiGate SWG's SSL offloading features need improvement."
"The web-cache feature which was previously on the FortiGate device, but was deleted with the recent upgrade should be returned. It was a very valuable feature for us."
"I'd like to see an improvement in the Bandwidth Management and Traffic limit control. Also, the licenses are expensive, turning off some users."
"It can be a little bit more user-friendly in terms of policy definition and implementation. It seems a little bit complicated, and it could be simplified."
"The representative from the vendor seems to know the basics of the product but when it comes to troubleshooting he seems to lack information."
"We understand that FortiGate cannot be standalone without others, such as FortiManager, so for small businesses, if FortiGate can provide something similar to FortiManager, it will be better."
"The price could be improved."
"The pricing of Fortinet FortiGate IPS could always be improved."
"The graphical interface could be much better."
"Accessing the internet was a bit complicated."
"I would rate IPFire 8 out of 10 because I do not think there is any solution anywhere in the world that is 100 percent efficient."
"Compared to other vendors, the solution's community should be strong enough to solve the problems engineers face."
"The pricing of the solution needs improvement."
"Palo Alto Networks PA-Series is complicated to configure compared to one of its competitors."
"The initial setup of Palo Alto Networks PA-Series is very complicated."
"The solution's licensing price could be improved."
"Currently, they are not protected with any data security when they work from home or outside the network. They surf the Internet directly and should implement a proxy or firewall to monitor the data between the endpoint and the internet."
"With Palo Alto Networks PA-Series, I find that the support team takes a long time to resolve the issues that a user may face during the use of the product."
"There seem to be some issues with TAC (Technical Assistance Center) or Palo Alto support. Anytime you open a case, a level one engineer joins, and then you have to escalate it to level two or three. The support system has changed in the past few years, and that's something they need to look into."
 

Pricing and Cost Advice

"The product is not very expensive."
"In terms of the market, it's not a cheap product, but it's cost-effective."
"​We saved a bundle by not needing all the past appliances from an NGFW.​"
"It has been two years. I don't remember the actual price, but it was affordable. We buy the boxes and then use the license for three years."
"The price range is quite acceptable and normal."
"The solution is more expensive than Sophos. It could be cheaper. The licensing is on a yearly basis. We have had it for about three years. We must only pay extra for the license, additional requirements, and the hardware box."
"Currently, we are paying about $1,500 a month for three sites."
"The platform offers a reasonable price point compared to its competitors."
Information not available
"Palo Alto’s pricing is way higher than any other solution provider."
"This product has an affordable and reasonable price point."
"It is a very expensive solution."
"The pricing is a bit on the higher side."
"From my perspective, managing the price is important, especially because we're a small business. For larger organizations like Barclays, we provide our requirements to the client, and they place the order on BigFix. It's their responsibility to consider their budget and make decisions accordingly. We appreciate the features we get, but the cost-sharing still depends on the client."
"Price-wise, Palo Alto offers high-price products."
"The solution's pricing is high compared to that of Cisco and Fortinet."
"Compared to other vendors, Palo Alto Networks PA-Series is expensive."
report
Use our free recommendation engine to learn which Firewalls solutions are best for your needs.
902,495 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Comms Service Provider
10%
Computer Software Company
9%
Manufacturing Company
9%
Financial Services Firm
7%
Comms Service Provider
21%
Computer Software Company
10%
University
8%
Government
7%
Comms Service Provider
9%
Computer Software Company
8%
Government
8%
Manufacturing Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business369
Midsize Enterprise139
Large Enterprise195
No data available
By reviewers
Company SizeCount
Small Business14
Midsize Enterprise6
Large Enterprise17
 

Questions from the Community

Which is the better NGFW: Fortinet Fortigate or Cisco Firepower?
When you compare these firewalls you can identify them with different features, advantages, practices and usage a...
What is the biggest difference between Sophos XG and FortiGate?
From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know...
What are the biggest technical differences between Sophos UTM and Fortinet FortiGate?
As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite ...
What needs improvement with IPFire?
The graphical interface could be much better.
What is your primary use case for IPFire?
I use IPFire ( /products/ipfire-reviews ) to protect my home.
What advice do you have for others considering IPFire?
Sometimes configuring IPFire is challenging. Overall, I would rate this solution as eight out of ten.
What is your experience regarding pricing and costs for Palo Alto Networks PA-Series?
If we look at the features, then the price is good, but they do charge for the GlobalProtect VPNs. Overall, the prici...
What needs improvement with Palo Alto Networks PA-Series?
There is room for improvement in Palo Alto Networks PA-Series in the areas where they can minimize applications and i...
What is your primary use case for Palo Alto Networks PA-Series?
I am using Palo Alto Networks PA-Series to ensure protection and cybersecurity by preventing and implementing network...
 

Also Known As

Fortinet FortiGate Next-Generation Firewall
No data available
No data available
 

Overview

 

Sample Customers

Amazon Web Services, Microsoft, IBM, Cisco, Dell, HP, Oracle, Verizon, AT&T, T-Mobile, Sprint, Vodafone, Orange, BT Group, Telstra, Deutsche Telekom, Comcast, Time Warner Cable, CenturyLink, NTT Communications, Tata Communications, SoftBank, China Mobile, Singtel, Telus, Rogers Communications, Bell Canada, Telkom Indonesia, Telkom South Africa, Telmex, Telia Company, Telkom Kenya
1. Siemens 2. IBM 3. Cisco 4. Dell 5. HP 6. Intel 7. Oracle 8. Google 9. Microsoft 10. Amazon 11. Apple 12. Facebook 13. Twitter 14. Netflix 15. Adobe 16. SAP 17. VMware 18. Juniper Networks 19. Ericsson 20. Nokia 21. AT&T 22. Verizon 23. T-Mobile 24. Vodafone 25. Orange 26. Deutsche Telekom 27. British Telecom 28. Comcast 29. Time Warner 30. Sony 31. Samsung 32. LG
Information Not Available
Find out what your peers are saying about IPFire vs. Palo Alto Networks PA-Series and other solutions. Updated: June 2026.
902,495 professionals have used our research since 2012.