Try our new research platform with insights from 80,000+ expert users

Palo Alto Networks Enterprise Data Loss Prevention vs WatchGuard Firebox comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Nov 9, 2025

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Fortinet FortiGate
Sponsored
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
580
Ranking in other categories
Secure Web Gateways (SWG) (2nd), Firewalls (1st), Intrusion Detection and Prevention Software (IDPS) (1st), Software Defined WAN (SD-WAN) Solutions (1st), WAN Edge (1st), ZTNA (1st), Unified Threat Management (UTM) (1st)
Palo Alto Networks Enterpri...
Average Rating
8.4
Reviews Sentiment
7.1
Number of Reviews
7
Ranking in other categories
Data Loss Prevention (DLP) (17th)
WatchGuard Firebox
Average Rating
8.2
Reviews Sentiment
6.9
Number of Reviews
127
Ranking in other categories
Data Loss Prevention (DLP) (11th), Firewalls (11th), Intrusion Detection and Prevention Software (IDPS) (4th), Anti-Malware Tools (7th), Endpoint Detection and Response (EDR) (18th), Application Control (5th), Unified Threat Management (UTM) (4th)
 

Featured Reviews

Vasu Gala - PeerSpot reviewer
Manager, Information Technology Operation/Presales at TechMonarch
A stable solution with an intuitive interface and quick customer service
I have been working with Fortinet FortiGate, WatchGuard, Sophos, and SonicWall. I'm not as comfortable with SonicWall because of their UI and limitations. I prefer Fortinet above all other options. When it comes to configuration, I am confident in my ability to handle various tasks, including creating policies such as firewall rules, web policies, and application policies. Additionally, I can configure VPNs and implement load balancing, among other tasks. Overall, I feel much more comfortable working with Fortinet. Fortinet has made significant improvements by integrating AI with firewalls for threat analysis and prevention. In the past 2-3 years, they have launched FortiSASE and SIEM, and they also provide SOC services. Both Palo Alto and Fortinet FortiGate are excellent. While Fortinet FortiGate comes at higher prices, the functionality and support justify the cost. They promptly resolve firmware issues and inform all support providers about configuration changes.
ST
Consultant at Tata Consultancy
Good security and DLP capabilities that protects from unauthorized access
There are a lot of problems reported, which get sorted out. I really cannot remember what those problems are. It's mostly performance issues. Performance issues might be based on the pricing, and perhaps the customer has not properly sized the requirement. I have not personally seen this, but maybe I need to check with my committee.
PS
CEO at ajuntament del Prat
Network protection has improved with stronger VPN connectivity but administration remains complex
Deploying WatchGuard Firebox was quite easy, but we have had some problems regarding the VPN and the administration of the tool and the two firewalls that we have. When comparing WatchGuard Firebox with our previous solution, Palo Alto, we have had some problems in administration because of the tools. I think that they have some aspects in their system that are cloud-provided, but they also have an on-premise solution, which makes this combination good. Although I should say that when compared to Palo Alto, we have taken a step backwards. In general, I would rate WatchGuard Firebox around 6-7; it is a good firewall, but they lack good administration tools. We experience many problems with the performance and administration tools on the web, including several issues with VPNs.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Fortinet FortiGate is a very stable solution."
"The best features of Fortinet FortiGate include the simple user interface."
"Their proxy-based inspection is responsive and secure."
"Routing and reporting are two areas where the product has an added advantage compared to any other product."
"The initial setup of Fortinet FortiGate was straightforward."
"The solution effectively controls browsing traffic."
"Fortigate's most valuable feature is that it doesn't need a push policy when writing rules."
"The SD-WAN feature of Fortinet FortiGate has been most impactful in maintaining our network's integrity."
"The security aspect in finance is crucial for controlling from a DLP perspective and ensuring protection."
"Our clients primarily deploy Palo Alto Networks Enterprise DLP to control the flow of information in and out of their networks. The main use cases include monitoring and managing sensitive data such as credit card information and personally identifiable information."
"The most valuable feature of Palo Alto Networks Enterprise Data Loss Prevention is its comprehensive end-to-end solution in Cloud Delivery Security Services, which includes URL, data loss prevention, and advanced threat prevention as features that can be enabled just by clicking a checkbox."
"It is a stable solution with good support."
"The setup is very easy as we just need to switch on and switch off."
"The security aspect in finance is crucial for controlling from a DLP perspective and ensuring protection."
"Another important feature is that the solution doesn't require any additional infrastructure to implement. It's a software license that is compatible with our existing hardware. We were able to install and configure the product seamlessly and effortlessly."
"The primary feature is managing firewalls through Panorama, especially when handling multiple firewalls across different sites like headquarters and remote sites."
"I could still keep the data rates really high, up near the two gigahertz data speeds, without compromise on the security perimeters being acted simultaneously."
"It's pretty simple to use. It's pretty simple to understand, and there's plenty of documentation. It does a pretty good job of what it is meant to do."
"Two of the functionalities we use most are the traffic monitoring and the full panel dashboard. Those are two things that are very useful for us... In addition, it provides us with layered security. It allows us to determine what types of access, to which networks, we want to allow or deny."
"I found several features valuable in WatchGuard Application Control such as the HTTP Proxy, DNSWatch, VPN, and HTTPS Content Inspection."
"The throughput is great. It's perfect. We have no issues whatsoever. The management features are very powerful..."
"WatchGuard Firebox is easy to configure and has a nice user interface."
"After conducting several tests I found the antivirus is working very well. Additionally, they have a very interesting feature, DNS WatchGuard, which is checking DNS requests for phishing, among other things, and it has caught a lot of unwanted attempts and attacks."
"Centralization is a crucial feature for me as it allows me to have all sites and customers accessible under a single click, not limited to just one."
 

Cons

"The routing capability on the FortiGate devices has room for improvement."
"Fortinet can add some Machine Learning and AI to improve its accuracy and give it an edge on IPS detection and protection."
"FortiGate can only retain logs for 24 hours or 7 days. I'm not sure if it holds them for a longer period, such as for a month. It will be useful for assessing our strategy and monitoring our environment without investing in FortiGate Analyzer. It would be beneficial if Fortinet could enhance the FortiGate by providing more statistical and monitoring views for a longer timeframe, rather than requiring access to FortiGate Analyzer."
"Fortigate's hardware capacities could be improved."
"The main area needing improvement is the user-friendliness of FortiGate's integration with other Fortinet tools like FortiAuthenticator and VPN services."
"Fortinet FortiGate SWG's SSL offloading features need improvement."
"Its filtering is sometimes too precise or strict. We sometimes have to bypass and authorize some of the sites, but they get blocked. We know that they are trusted sites, but they are blocked, and we don't know why."
"Previously it had a hiccup around a bug within the authentication VPN due to the firmware, but after updating, it's easier to control."
"The solution needs improvement in stability. There has been feedback regarding the accuracy of file categorization."
"You need to have an external solution to backup everything. For example, you need to have Syslog installed on your server as well so that you can back it up to another place."
"There are mostly performance issues."
"There is room for improvement in the documentation around the maintenance of the product, how the automatic updates work, and pushing out new policies. A little more detail and context in that area would be helpful."
"The product is still overly complicated compared to other vendors such as Check Point, which could be improved."
"The configuration for Palo Alto Networks firewalls requires specifying many details, such as protocols and services."
"Its scalability is not on par with the features of others."
"Pricing is expensive."
"The control software is currently only available for Windows, which can be a little annoying for Linux users."
"When it comes to live-monitoring, the user-interface could be improved to make things easier."
"I'm not really impressed with the reporting side of it. It may be something I just haven't figured out very well, but it's hard to filter down on reporting of the actual valuable information that you would want. There is a lot of information out there so you have to have some kind of tool capture it and then filter through. So far, I haven't found the reporting side of the WatchGuard to be that user-friendly."
"The time they take to classify an application once they find that it is unknown can be better."
"WatchGuard Data Loss Prevention catches so little. When I've implemented it, it just can't look at the traffic in a thorough enough manner to capture as much as it should. And I find that I'm disenchanted with all data loss protection solutions I've tested and looked at."
"In WatchGuard Firebox, the antivirus and malware detection systems are areas with shortcomings that require improvement since they are the most important elements of a cybersecurity tool."
"We use WatchGuard to manage our failover for internet. If a primary internet goes down, it does a failover to the secondary the internet. However, what it doesn't do so well is that if the primary internet has a lot of latency but it's not completely down, it doesn't do a failover to the backup in a timely manner."
"The only downside is that it is missing an API, that you can use to easily collect information from it."
 

Pricing and Cost Advice

"We pay about $4,000 for a yearly license, and there aren't any additional fees."
"Compared to other firewall products, it's a little cheaper in terms of pricing."
"It has been two years. I don't remember the actual price, but it was affordable. We buy the boxes and then use the license for three years."
"Currently, we are paying about $1,500 a month for three sites."
"I rate the price of Fortinet FortiGate SWG a seven and a half out of ten since it is not a cheap solution, though I feel it is a good product for the money one pays."
"FortiGate SWG is reasonably priced."
"The price is relatively expensive compared to other solutions which are providing similar features."
"The product is expensive."
"Palo Alto Networks Enterprise Data Loss Prevention is expensive, and licensing costs are monthly."
"The licensing model is very fair-minded and it's a good value. It scales well... Its licensing model is more streamlined when compared to other DLP solutions."
"The pricing of the solution depends on the buyers. But, from my point of view, it is in line with the rest of the products and the price list of Palo Alto."
"It's expensive."
"It is kind of expensive. I buy it on the appliance. I always buy three-year total security."
"The price of WatchGuard Intrusion Prevention Service is pretty reasonable compared to similar solutions."
"Very competitive pricing regarding throughput compared to other alternatives."
"I think we might be subscribed to one or two of the premium features."
"As per my knowledge, the product is more affordable than alternatives."
"For what we use, the tool's price has been reasonable, but it is not the cheapest. The tool has been quite reasonable."
"It's an affordable tool"
"The licensing costs are comparatively lower than other providers, and I would rate the pricing as five out of five."
report
Use our free recommendation engine to learn which Data Loss Prevention (DLP) solutions are best for your needs.
881,114 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
12%
Comms Service Provider
9%
Manufacturing Company
8%
Financial Services Firm
6%
Performing Arts
13%
Computer Software Company
12%
Manufacturing Company
10%
Healthcare Company
9%
Computer Software Company
11%
Comms Service Provider
11%
Manufacturing Company
7%
Retailer
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business357
Midsize Enterprise133
Large Enterprise188
No data available
By reviewers
Company SizeCount
Small Business92
Midsize Enterprise27
Large Enterprise15
 

Questions from the Community

Which is the better NGFW: Fortinet Fortigate or Cisco Firepower?
When you compare these firewalls you can identify them with different features, advantages, practices and usage a...
What is the biggest difference between Sophos XG and FortiGate?
From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know...
What are the biggest technical differences between Sophos UTM and Fortinet FortiGate?
As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite ...
What is your experience regarding pricing and costs for Palo Alto Networks Enterprise Data Loss Prevention?
Palo Alto Networks' pricing can be complex. Their catalog is extensive. They have a licensing model based on credits ...
What needs improvement with Palo Alto Networks Enterprise Data Loss Prevention?
The product is still overly complicated compared to other vendors such as Check Point, which could be improved. Simpl...
What is your primary use case for Palo Alto Networks Enterprise Data Loss Prevention?
The primary use case is a part of a complete package for Government of Canada. It helps in comparing data loss preven...
What is your primary use case for WatchGuard Firebox?
We are providing our services to all WatchGuard customers in the region.
What is your primary use case for WatchGuard Firebox?
We just use it as a secondary WiFi device. We're a small office and we needed to set up a WiFi device for a few of ou...
What is your primary use case for WatchGuard Firebox?
We're a hospital and we use it for developing our incoming and outgoing policies, and we also use it for VPN.
 

Also Known As

Fortinet FortiGate Next-Generation Firewall
No data available
WatchGuard Threat Detection and Response, WatchGuard Application Control, WatchGuard Data Loss Prevention, WatchGuard Gateway AntiVirus, WatchGuard Intrusion Prevention Service
 

Overview

 

Sample Customers

Amazon Web Services, Microsoft, IBM, Cisco, Dell, HP, Oracle, Verizon, AT&T, T-Mobile, Sprint, Vodafone, Orange, BT Group, Telstra, Deutsche Telekom, Comcast, Time Warner Cable, CenturyLink, NTT Communications, Tata Communications, SoftBank, China Mobile, Singtel, Telus, Rogers Communications, Bell Canada, Telkom Indonesia, Telkom South Africa, Telmex, Telia Company, Telkom Kenya
Information Not Available
Ellips, Diecutstickers.com, Clarke Energy, NCR, Wrest Park, Homeslice Pizza, Fortessa Tableware Solutions, The Phoenix Residence
Find out what your peers are saying about Palo Alto Networks Enterprise Data Loss Prevention vs. WatchGuard Firebox and other solutions. Updated: December 2025.
881,114 professionals have used our research since 2012.