Try our new research platform with insights from 80,000+ expert users

Palo Alto Networks Advanced Threat Prevention vs WatchGuard Firebox comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Aug 5, 2025

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
5.7
Fortinet FortiGate offers cost-effective security with quick deployment, improving efficiency, reducing downtime, and providing a strong return on investment.
Sentiment score
5.7
Palo Alto Networks Advanced Threat Prevention offers financial benefits and high user satisfaction despite its cost, boosting revenues, especially in Italy.
Sentiment score
7.4
WatchGuard Firebox enhances efficiency and security, offering cost savings and improved network control, boosting return on investment.
Clients are now comfortable and not wasting productive hours on IT support.
The automation part is giving us a cost benefit and speed; we can react faster.
It's a very useful tool to mitigate and protect your enterprise.
It offers insights into security threats, despite the inability to quantify its impact in numbers.
 

Customer Service

Sentiment score
6.4
Fortinet FortiGate support is mostly praised for responsiveness and knowledge, though inconsistencies exist in complex cases or regions.
Sentiment score
5.9
Palo Alto Networks' support is praised for expertise but faces inconsistent response times and communication challenges with third-party facilitation.
Sentiment score
7.2
WatchGuard Firebox support is praised for quick, knowledgeable service, though some delays occur in different time zones.
They offer very accurate solutions.
The quick resolution of issues with Fortinet FortiGate is due to the support of the company and the fact that the equipment is easy to work with.
I would rate the technical support for Fortinet FortiGate a ten out of ten.
I rate technical support from Palo Alto as eight out of ten.
I have proof of this rating - when I escalate a case, I receive a reply from TAC support after two days.
Overall, I find the technical support from Palo Alto Networks quite good, although getting a hold of the TAC can be challenging and sometimes requires long phone calls.
On a scale of one to 10, I would rate the technical support of the WatchGuard Firebox a 10.
The technical support is good.
 

Scalability Issues

Sentiment score
7.0
Fortinet FortiGate offers scalability and easy integration for diverse environments, catering to businesses from small to large enterprises.
Sentiment score
7.7
Palo Alto Networks Advanced Threat Prevention is scalable, adaptable, and efficient, though cost may constrain its broad deployment.
Sentiment score
8.1
WatchGuard Firebox is scalable for various needs, with upgrading options, though choices affect its scalability and performance.
They scale up really well from smaller models like the FortiGate 40 and 50 to bigger sites with the FortiGate 100 for more throughput - up to enterprise datacenters.
The variation comes in terms of the interfaces and throughputs, but from a security perspective, you get the same benefit, irrespective of whether you have an entry-level unit or an enterprise.
We determine sizing based on multiple factors: number of users, available links, traffic types, server count, services in use, and whether services will be published.
Palo Alto Networks Advanced Threat Prevention is scalable and works well wherever enforcement points exist.
If we're going for more concurrent users, we need to change the entire box.
I find the WatchGuard Firebox scalable, as it's easy to change configurations from this product to another one.
 

Stability Issues

Sentiment score
7.5
Fortinet FortiGate is highly stable and reliable, excelling in continuous operation with effective network management, despite occasional update issues.
Sentiment score
7.7
Palo Alto Networks Advanced Threat Prevention is praised for its superior stability and performance, though requires careful version selection.
Sentiment score
8.6
WatchGuard Firebox is highly stable and reliable, with few issues, frequent updates, and high user satisfaction ratings.
We're experiencing 99.999% availability consistently.
I would rate the stability of Fortinet FortiGate a ten out of ten.
Currently, we are experiencing a general outage of one of the main internet service providers of the Dominican Republic, and we have not been impacted in our operations because with SD-WAN, we have another internet service provider and we are working with the second WAN connection without any disruption.
Proper sizing of the firewall models ensures that the system does not experience crippling performance issues.
 

Room For Improvement

Users express concern over Fortinet FortiGate's interface stability, functionality, performance issues, and call for improved support and features.
Palo Alto Networks needs improvements in email filtering, setup ease, user experience, support services, and enhanced security features.
WatchGuard Firebox needs a modern interface, better integration, enhanced features, and competitive pricing to improve user experience and marketability.
Investing in a solution that can accommodate such growth would be more cost-effective than repeatedly purchasing new hardware.
While Fortinet claims to offer a comprehensive network solution, it falls short in addressing computer application issues, particularly server security.
When considering Sophos XG, which we also use, the logging and reporting functionality is notably more efficient.
Palo Alto needs to focus on how to bring that technology to end users and how easy it is to use, especially in a hybrid environment where users work from various locations.
The behavioral detection capabilities could be expanded to address all threats at the perimeter, reducing the reliance on endpoint detection and response systems.
The cost for renewal after three years is 75% of the hardware cost, which is a significant problem.
When implementing a rule using a group of IPs, it is not possible to do that directly.
The WatchGuard Firebox has certain features, but the challenge is that we have some clients who don't have a network or are only mobile users, which leads us to think the future is in SASE products, not in the WatchGuard Firebox.
 

Setup Cost

Fortinet FortiGate offers high initial costs but competitive pricing, valued features, and flexible licensing compared to competitors.
Palo Alto Networks Advanced Threat Prevention is costly but valued for strong threat detection, with pricing challenging for smaller businesses.
WatchGuard Firebox offers cost-effective pricing, especially for multi-year plans, with discounts and value for budget-conscious enterprises.
Last year, I renewed the support for three years, which can sometimes be expensive but depends on the security benefits and how it helps us.
It offers cost savings as it is generally cheaper than the competition.
It is about 20% cheaper.
Palo Alto Networks Advanced Threat Prevention requires an add-on license and is considered expensive compared to competitors like Cisco AMP and FortiGate firewalls.
When we tried to renew the Palo Alto license, the cost was beyond any reasonable range.
It's expensive us here.
I have faced challenges with the WatchGuard Firebox regarding price since we work with customers who use the Stormshield product, which is less expensive and French-made.
 

Valuable Features

Fortinet FortiGate offers robust, affordable security with user-friendly interface, centralized management, and efficient SD-WAN capabilities.
Palo Alto Networks excels in threat prevention with features like sandboxing, machine learning, and user-friendly design, enhancing efficiency.
WatchGuard Firebox offers user-friendly setup, robust security, excellent tech support, and scalable performance with comprehensive management features.
In terms of security, we have not experienced any security flaws or loopholes, and it has proven to be quite stable.
FortiGate has helped reduce the risk of cyberattacks that might disrupt our client's production.
These features help reduce our downtime, manage the ISPs, and deploy SLAs for all the website traffic.
As traditional signature-based mechanisms become less effective due to the evolving nature of attacks, this solution's focus on behavioral analysis is crucial.
We are satisfied with the analytic capabilities of Palo Alto Networks Advanced Threat Prevention, especially the reporting features available in the Palo Alto portal in terms of their application visibility interface, which is very good for us to get visibility on all critical applications and the associated users, as well as the risks associated with every category of traffic.
The Firebox offers valuable features such as network security, URL filtering, UTM features, intrusion prevention and detection, and authentication.
Basically, we have received a good return on investment.
I utilize AI within the WatchGuard Firebox, as we use the interconnection with threat syncs, and AI is implemented.
 

Categories and Ranking

Fortinet FortiGate
Sponsored
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
574
Ranking in other categories
Firewalls (1st), Software Defined WAN (SD-WAN) Solutions (1st), WAN Edge (1st)
Palo Alto Networks Advanced...
Average Rating
8.4
Reviews Sentiment
6.6
Number of Reviews
29
Ranking in other categories
Intrusion Detection and Prevention Software (IDPS) (5th)
WatchGuard Firebox
Average Rating
8.4
Reviews Sentiment
7.5
Number of Reviews
125
Ranking in other categories
Data Loss Prevention (DLP) (11th), Firewalls (14th), Intrusion Detection and Prevention Software (IDPS) (9th), Anti-Malware Tools (11th), Endpoint Detection and Response (EDR) (19th), Application Control (7th), Unified Threat Management (UTM) (2nd)
 

Featured Reviews

Vasu Gala - PeerSpot reviewer
A stable solution with an intuitive interface and quick customer service
I have been working with Fortinet FortiGate, WatchGuard, Sophos, and SonicWall. I'm not as comfortable with SonicWall because of their UI and limitations. I prefer Fortinet above all other options. When it comes to configuration, I am confident in my ability to handle various tasks, including creating policies such as firewall rules, web policies, and application policies. Additionally, I can configure VPNs and implement load balancing, among other tasks. Overall, I feel much more comfortable working with Fortinet. Fortinet has made significant improvements by integrating AI with firewalls for threat analysis and prevention. In the past 2-3 years, they have launched FortiSASE and SIEM, and they also provide SOC services. Both Palo Alto and Fortinet FortiGate are excellent. While Fortinet FortiGate comes at higher prices, the functionality and support justify the cost. They promptly resolve firmware issues and inform all support providers about configuration changes.
Partha Dash - PeerSpot reviewer
Advanced protection enables us to confidently secure against evolving threats
Palo Alto Networks can improve Advanced Threat Prevention by catering to the growing adoption of AI and agentic tooling. The Threat Protection modules should have the necessary intelligence to protect against those types of threats, as AI will be there to do a human job; this is an evolving area. From an Advanced Threat Protection perspective, the technology associated with Palo Alto Networks, such as their sandboxing environment, is quite good. However, Palo Alto needs to focus on how to bring that technology to end users and how easy it is to use, especially in a hybrid environment where users work from various locations. While Palo Alto excels in certain setups, they need to improve the user experience in distributed working conditions.
Rajesh  Makwana - PeerSpot reviewer
Efficient bandwidth management and secure network access with a strong firewall
The primary use case of the Firebox mainly revolves around bandwidth management, unnecessary web blocking, application control, and protection against brute force attacks. It is also implemented for load balancing, SD-WAN, and branch-to-branch connectivity from one location to another. We also use…
report
Use our free recommendation engine to learn which Intrusion Detection and Prevention Software (IDPS) solutions are best for your needs.
867,445 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
15%
Comms Service Provider
9%
Manufacturing Company
8%
Financial Services Firm
6%
Computer Software Company
13%
Manufacturing Company
9%
Financial Services Firm
9%
Government
8%
Computer Software Company
14%
Comms Service Provider
11%
Retailer
6%
Manufacturing Company
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business350
Midsize Enterprise129
Large Enterprise187
By reviewers
Company SizeCount
Small Business8
Midsize Enterprise4
Large Enterprise15
By reviewers
Company SizeCount
Small Business91
Midsize Enterprise25
Large Enterprise15
 

Questions from the Community

Which is the better NGFW: Fortinet Fortigate or Cisco Firepower?
When you compare these firewalls you can identify them with different features, advantages, practices and usage a...
What is the biggest difference between Sophos XG and FortiGate?
From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know...
What are the biggest technical differences between Sophos UTM and Fortinet FortiGate?
As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite ...
Which is the best DDoS protection solution for a big ISP for monitoring and mitigating?
Arbor would be the best bid, apart from Arbor, Palo Alto and Fortinet have good solutions. As this is an ISP, I would...
What is your experience regarding pricing and costs for Palo Alto Networks Threat Prevention?
Palo Alto Networks Advanced Threat Prevention requires an add-on license and is considered expensive compared to comp...
What is your primary use case for WatchGuard Firebox?
We are providing our services to all WatchGuard customers in the region.
What is your primary use case for WatchGuard Firebox?
We just use it as a secondary WiFi device. We're a small office and we needed to set up a WiFi device for a few of ou...
What is your primary use case for WatchGuard Firebox?
We're a hospital and we use it for developing our incoming and outgoing policies, and we also use it for VPN.
 

Also Known As

No data available
No data available
WatchGuard Threat Detection and Response, WatchGuard Application Control, WatchGuard Data Loss Prevention, WatchGuard Gateway AntiVirus, WatchGuard Intrusion Prevention Service
 

Overview

 

Sample Customers

Amazon Web Services, Microsoft, IBM, Cisco, Dell, HP, Oracle, Verizon, AT&T, T-Mobile, Sprint, Vodafone, Orange, BT Group, Telstra, Deutsche Telekom, Comcast, Time Warner Cable, CenturyLink, NTT Communications, Tata Communications, SoftBank, China Mobile, Singtel, Telus, Rogers Communications, Bell Canada, Telkom Indonesia, Telkom South Africa, Telmex, Telia Company, Telkom Kenya
University of Arkansas, JBG SMITH, SkiStar AB, TRI-AD, Temple University, Telkom Indonesia
Ellips, Diecutstickers.com, Clarke Energy, NCR, Wrest Park, Homeslice Pizza, Fortessa Tableware Solutions, The Phoenix Residence
Find out what your peers are saying about Palo Alto Networks Advanced Threat Prevention vs. WatchGuard Firebox and other solutions. Updated: September 2025.
867,445 professionals have used our research since 2012.