No more typing reviews! Try our Samantha, our new voice AI agent.

Netgate pfSense Plus Firewall/VPN/Router vs Palo Alto Networks PA-Series comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Netgate pfSense Plus Firewa...
Ranking in Firewalls
23rd
Average Rating
9.0
Reviews Sentiment
4.3
Number of Reviews
5
Ranking in other categories
No ranking in other categories
Palo Alto Networks PA-Series
Ranking in Firewalls
19th
Average Rating
8.6
Reviews Sentiment
7.0
Number of Reviews
37
Ranking in other categories
No ranking in other categories
 

Featured Reviews

Jim Voige - PeerSpot reviewer
Site Manager at a consultancy with 11-50 employees
High availability routing has secured our network and delivers reliable support every day
One downside of Netgate pfSense Plus Firewall_VPN_Router is the need for a better understanding of what hardware it would run on. Right now, we're using Netgate's hardware, but I'm interested in knowing if there are other hardware options available, particularly heavier duty hardware, because the Supermicro 1537 version we have only has a single power supply, which is a shortcoming in an IT environment where dual power supplies are ideal. The pricing for the hardware of Netgate pfSense Plus Firewall_VPN_Router is steep, which is one reason I'd explore other options. I'm familiar with the costs of Supermicro servers, and I believe Netgate charges a premium for their server hardware without enough upside to justify it. The pricing is not justified.
Rohit Ghorpade - PeerSpot reviewer
Cloud Network Engineer at a insurance company with 5,001-10,000 employees
Identity-based perimeter control has improved security and supports reliable remote access
Currently, we are working with vendors such as Palo Alto Networks PA-Series, Cisco, Check Point, and Citrix. Palo Alto Networks PA-Series is a better firewall. Deep packet inspection and threat prevention basically comply with whatever traffic is incoming and outgoing through the firewall. I do not think anything improvement is required. The thing is that Palo Alto Networks PA-Series works mostly on a license-based model. If you want to utilize any feature, you have to purchase the license. For example, URL filtering requires a license purchase. It simplifies the implementation because LDAP server profile can be integrated. Basically, that simplifies the implementation of access rule or security policy.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"I do not have complaints about Netgate pfSense Plus Firewall_VPN_Router with Firewall, VPN, and Router; it is really comfortable for use, and it does a pretty good job."
"It's very simple to use, efficient, up to date, and the hardware is very available; it's very safe."
"They are more satisfied with Netgate pfSense Plus Firewall_VPN_Router in terms of its flexibility and customer support."
"My experience with the product is that it is a stable and good product that is easy to use."
"We use pfSense and Netgate pfSense Plus Firewall/VPN/Router to establish a VPN tunnel between our client and our headquarters to transfer data between client and our equipment; it's very simple to use, efficient, up to date, and the hardware is very available; it's very safe."
"Overall, the entire Netgate pfSense Plus Firewall_VPN_Router product has been reliable, though some of their smaller gear aimed at remote offices hasn't been cost-effective."
"The solution is easy to manage."
"It is stable when you set up something and put it into production. Once it works, you don't have other tasks or actions to perform."
"When I compare the tool with other firewalls, it’s the most powerful. It's the most powerful security engine. All the traffic going to the Internet passes through it as the first layer of protection. Because of its good performance, we also use it for decryption."
"It offers application-based policy enforcement. Palo Alto Networks firewalls help us recognize protocol anomalies, contrasting with other vendors that may require policies based on port numbers. With Palo Alto Networks, the port number isn't a constraint because their devices handle protocol traffic at Layer 7, allowing for accurate identification of protocol usage and port numbers. They can identify which protocol actually uses which port."
"I rate the stability as ten out of ten."
"Palo Alto has predefined applications that you can control at the application level."
"It functions very well in data centers."
"It offers a seamless transition from one option to another, making it exceptionally versatile and user-friendly in an enterprise setting."
 

Cons

"The effectiveness of Netgate pfSense Plus Firewall_VPN_Router traffic shaping is quite good, but I am not very satisfied with the interface for control."
"I would assess the effectiveness of Netgate pfSense Plus Firewall_VPN_Router's traffic shaping as good, but I would give a six marks only for that compared to others because in the past few years, there has been a stop of improvement or lack of improvement showing in Netgate pfSense Plus Firewall_VPN_Router."
"The pricing for the hardware of Netgate pfSense Plus Firewall_VPN_Router is steep, which is one reason I'd explore other options."
"They have to learn something more from FortiGate."
"The most significant drawback in recent years has been the cessation of firmware release downloads."
"The interface is complex."
"Palo Alto Networks PA-Series should improve its price. It should also include a feature similar to Sophos' Security Heartbeat."
"There is room for improvement in Palo Alto Networks PA-Series in the areas where they can minimize applications and implement features that can be useful for us."
"The support has been shaky. Initially, it took one or two hours to get a Palo Alto engineer, which is quite slow. I expect faster response times."
"I experienced some problems with AWS cloud parameters connected to Palo Alto firewall."
"There are constant updates for the operating system. It is a nice thing also, but it has its own disadvantages. Continuous updates are there. The users face issues like, how often do I need to update that? Within a period of five months, I'm updating it two or three times. It gives them a feeling that they are not confident about their product and have to update it so frequently."
"I had opened a case before with the tool because I could not create a wildcard for the security address. We can create wildcards for security addresses in Fortinet, but this feature doesn't exist in the product."
"The technical support offered by Palo Alto is an area of concern where improvements are required."
 

Pricing and Cost Advice

Information not available
"From my perspective, managing the price is important, especially because we're a small business. For larger organizations like Barclays, we provide our requirements to the client, and they place the order on BigFix. It's their responsibility to consider their budget and make decisions accordingly. We appreciate the features we get, but the cost-sharing still depends on the client."
"The pricing is fair."
"The product is offered to users at high prices compared to the pricing model of the other vendors in the market."
"The prices are pretty high, definitely on the upper end."
"Palo Alto’s pricing is way higher than any other solution provider."
"Price-wise, Palo Alto offers high-price products."
"The product is expensive."
"The cost varies depending on the device model, with entry-level firewalls priced around $1,300 to $1,500, while higher-end models can reach prices of several hundred thousand dollars."
report
Use our free recommendation engine to learn which Firewalls solutions are best for your needs.
902,988 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Construction Company
38%
Comms Service Provider
10%
Healthcare Company
8%
Manufacturing Company
7%
Comms Service Provider
9%
Computer Software Company
8%
Government
8%
Manufacturing Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
By reviewers
Company SizeCount
Small Business14
Midsize Enterprise6
Large Enterprise17
 

Questions from the Community

What needs improvement with Netgate pfSense Plus Firewall/VPN/Router?
Netgate pfSense Plus Firewall/VPN/Router regularly provides updates. One aspect they can improve is that most people ask whether an antivirus scanning system is available in pfSense. Other companie...
What is your primary use case for Netgate pfSense Plus Firewall/VPN/Router?
We work with Netgate products. We are a reseller and consultant. We have been working with Netgate and Fortinet for around two years.
What advice do you have for others considering Netgate pfSense Plus Firewall/VPN/Router?
For metrics to measure its impact, we do not measure in a formal way. We use bandwidth monitoring to check how effective the solution is. I have not encountered customers asking for additional feat...
What is your experience regarding pricing and costs for Palo Alto Networks PA-Series?
If we look at the features, then the price is good, but they do charge for the GlobalProtect VPNs. Overall, the pricing is good, but if they included GlobalProtect, it would be more valuable.
What needs improvement with Palo Alto Networks PA-Series?
There is room for improvement in Palo Alto Networks PA-Series in the areas where they can minimize applications and implement features that can be useful for us.
What is your primary use case for Palo Alto Networks PA-Series?
I am using Palo Alto Networks PA-Series to ensure protection and cybersecurity by preventing and implementing network security features to safeguard networks against threats and malware. I have to ...
 

Overview

Find out what your peers are saying about Netgate pfSense Plus Firewall/VPN/Router vs. Palo Alto Networks PA-Series and other solutions. Updated: June 2026.
902,988 professionals have used our research since 2012.