Try our new research platform with insights from 80,000+ expert users

Prisma Access by Palo Alto Networks vs VMware VeloCloud SD-WAN comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Oct 6, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

iboss
Sponsored
Ranking in Secure Access Service Edge (SASE)
9th
Average Rating
8.4
Reviews Sentiment
7.1
Number of Reviews
18
Ranking in other categories
Secure Web Gateways (SWG) (7th), Internet Security (3rd), Web Content Filtering (3rd), Cloud Access Security Brokers (CASB) (8th), ZTNA as a Service (11th)
Prisma Access by Palo Alto ...
Ranking in Secure Access Service Edge (SASE)
1st
Average Rating
8.4
Reviews Sentiment
7.1
Number of Reviews
63
Ranking in other categories
Secure Web Gateways (SWG) (3rd), Cloud Access Security Brokers (CASB) (1st), Enterprise Infrastructure VPN (5th), ZTNA as a Service (2nd)
VMware VeloCloud SD-WAN
Ranking in Secure Access Service Edge (SASE)
12th
Average Rating
8.2
Reviews Sentiment
6.8
Number of Reviews
54
Ranking in other categories
Software Defined WAN (SD-WAN) Solutions (3rd), WAN Edge (4th)
 

Mindshare comparison

As of May 2025, in the Secure Access Service Edge (SASE) category, the mindshare of iboss is 1.7%, up from 1.2% compared to the previous year. The mindshare of Prisma Access by Palo Alto Networks is 16.7%, down from 19.1% compared to the previous year. The mindshare of VMware VeloCloud SD-WAN is 2.2%, down from 2.9% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Secure Access Service Edge (SASE)
 

Featured Reviews

Matt Crockford - PeerSpot reviewer
It's easy to roll out, and their understanding of our business made it seamless
One aspect we value about iboss is its simplicity. Their customer service is brilliant, and they are super responsive and knowledgeable. It's easy to roll out, and their understanding of our business made it seamless. We were impressed by the solution's mental health function, which can detect if someone needs help. It scans what users are browsing and flags warning signs so we can check to see if they are okay. We've had to use it a couple of times. The user interface is highly intuitive. Our IT team picked it up with minimal training. It's arranged so that it's easy to find where things are. Another advantage is the single pane of glass console, which gives you visibility into what's happening. We're not fully there yet because we haven't implemented zero trust, but we're excited about the possibilities from the demos we've seen. We launched a POC of iboss' ChatGPT Risk Protection feature two weeks ago. AI is a great tool, but you need to be careful what you put into it. My biggest fear is employees inputting sensitive corporate information or customer PII data into one of these chatbots. I was impressed by our trial of the feature. It's exactly what we wanted. Now, when a user goes to ChatGPT, there's a banner warning them not to share information, and we can block conversations containing customer data like bank details and email addresses. I don't want to stop people from using it, but we need visibility. We've only tried it on a test group of 15 people. You can configure it to look for specific keywords or integrate it with your DLP policy if you have that configured
Partha Dash - PeerSpot reviewer
Makes us part of a bigger security ecosystem with updates taken care of for us, but pricing and support need work
There are definitely a number of things that could be improved. One of them is geographic coverage. China is still an issue because the solution does not operate there properly due to government regulations. I believe Palo Alto is trying pretty hard to get into partnerships with Alibaba and other cloud providers, but they do not have the same compelling offering in China that they have in the rest of the world. Businesses that are operating within China have to be very sure to evaluate the solution before making a buying decision. It is not an issue with Palo Alto, rather it is predominantly the result of government rules, but it's something that Palo Alto needs to work on. There is also room for improvement when it comes to latency in a couple of regions, including India and South America. They might have to increase their presence in those locations and come up with more modern cloud architectures. The third area is that, while Palo Alto has understood the essence of building capabilities around cloud technology and have come up with a CASB offering, that is a very new product. There are other companies that have better offerings for understanding cloud applications and have more graceful controls. That's something that Palo Alto needs to work on.
Sami-Isoaho - PeerSpot reviewer
To fully utilize cloud vendors' hardware networking, Microsoft and VMware support everything
To improve the product, the company, alone or with a good partner, should manufacture their own hardware brand with boxes to make the product more shippable. Implementing VMware is much more difficult, time-consuming, and expensive than implementing Fortinet or Check Point. With Fortinet, you pay a couple of hundred dollars for hosting and a low-cost firewall, there's only one box to ship to each site, and it's much easier to manage. Moreover, it would be easy for the large telecom operators and system integrators to sell the solution. It would also be a good fit for customers with multiple small offices, who I currently advise to choose hardware-vendor SD-WAN solutions over VMware.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"From a use-case scenario, what I like the most is the plug-in. I like the fact that we can do the filtering of these devices offsite independent of the network they are connected to, and we do not have to have traffic coming back inside our network."
"First of all, the security policies are essential. I do not have to rely solely on Active Directory for our users."
"Its initial setup was straightforward."
"Because of iboss, I did not have to assign web filtering tasks to my techs on a daily basis."
"The console is cloud-based, which is something I really appreciate."
"iboss is pretty scalable. They provide good support. The case managers you work with to coordinate what you need are pretty good."
"iboss has significantly lowered the number of security incidents. It is crazy how much it blocks and how much it is aware of the outside danger."
"iboss is among the few products providing inline filtering where no application is needed on the device. It operates on the network side and is not device-based. This feature was one of the main reasons why we stayed with them for so long."
"It has predefined or preconfigured rules, which are getting periodically updated. They are providing continuous improvements and periodically updating all search queries that they are looking for. That is one thing that helps us to stay vigilant and focused. If we query our AWS account for any breaches or vulnerabilities with any of the cloud tests, and it alerts us based on these predefined rules. It also provides an option to configure our own rules, and based on these rules, it can query the cloud trail logs, pull the information, and trigger alerts in real-time. I haven't explored this feature much because there are multiple accounts, and we don't have enough time to explore this feature. It also provides multiple integrations. When vulnerabilities or breaches are happening, you should be aware of them immediately. It provides integration with tools such as Slack, PagerDuty so that you can get alerted as soon as the high severity stuff comes up. For example, you have a security group that has allowed public traffic on port 22. As TechOps, you should be aware of this immediately. You cannot scan each machine or look into all security groups to identify it. So, Prisma helps us and alerts us when this kind of high-priority stuff comes up. It has different statistics, analytics, and graphs for data. The description of alerts is also pretty good. They describe what are the possible causes for this and what are the solutions. From Prisma Cloud, you can directly go to the AWS account. When you click on an alert, a resource, or a resource ID, it takes you to the AWS console where you need to log in. If you are already logged in, it will take you to that instance directly, and you can fix the issue there. I have found this feature very useful."
"Prisma Access by Palo Alto Networks is a seamless solution."
"The performance is good."
"The always-on feature is fantastic for the users. They don't have to think about it. When they go to a coffee shop to do work, there's no need to remember to toggle the VPN on. We'll protect them. URL filtering is the same at home as it is in the office."
"Panorama provides centralized management capabilities for all our firewalls and locations so that we can manage different data centers through a single device, a very valuable feature. We don't have to log into various devices to oversee them individually."
"The users can securely access any cloud data centers or cloud platforms. In terms of the features, it has all the features that Palo Alto Next-Generation Firewall has. It is also very stable and scalable."
"You have the ability to create your own expressions for your data. Palo Alto understands that DLP is not the same for all consumers. You might have a particular need to fulfill, and they give you the opportunity to create a custom expression to match the specific format that you have. For a confidential file property that you have in your files, you can add a metadata field. It gives you that opportunity to create that."
"Being able to use the user ID or Active Directory Group is one of the great features for control and providing more flexibility without worrying about IP addresses."
"When extra capacity is needed, we can get it very quickly."
"I would absolutely recommend VeloCloud because it's user-friendly and because the integration is easier than with other solutions."
"The most valuable feature is load balancing."
"They have a lot of built-ins. There are so many applications defined inside the solution. It makes it so that we don't have to create some policies. Each and every application is already defined in it."
"The most valuable feature of VMware SD-WAN is security. Additionally, the integration and configuration are easier to do than with other solutions, such as Cisco."
"I love the solution because of its many features like cluster and cloud VPN."
"I have found the dynamic multipoint protocol(DNPO) most useful because it can tell you which is the best circuit to use for different types of traffic."
"The cloud gateway is a very good feature for scaling purposes, etc."
 

Cons

"File integrity monitoring would be very advantageous as an additional feature."
"If they could implement an extra security layer preventing access to iboss from the open internet, it would be great."
"Sometimes when you call in support, you get someone who is just following a sheet. It feels like a runaround. You feel that you are running into that support wall."
"The solution could be stronger on the integration side and offer more cloud applications like G Suite or Oracle."
"The area I would like to see improvement in is the ability with in the reporter to navigate directly to the content the user is traversing. It is kind of there, but it's not perfect. Quite frequently, I receive links that lead me to pages with error messages."
"Iboss is growing so fast that it is often hard for them to keep up with the challenges."
"I'd like to see them accelerate development on the security side, particularly around data loss prevention."
"I am currently doing a PoC of the zero trust aspect of it. Compared to other similar solutions, it is hard to get around each feature. It takes a while to get used to it."
"We are using the SaaS offering. We use our applications for microservices. We use Twistlock to scan containers, and it displays these results in Prisma, which is a good feature because we can see vulnerabilities with respect to these containers. We can see everything in a very detailed manner. However, when you have different environments for a single application, such as DEV, QA, PROD, and TEST, all these environments run multiple containers, which can lead to a very high number of containers. In such a scenario, it shows you the alerts for all those containers that have vulnerabilities. If you show the results of all the containers that share the same image, it is not going to add any value. Therefore, they should narrow down the alerts based on a container. It should show information for a single container. Otherwise, the person who is looking at the results gets the impression that he has to fix all these issues. This is something that they can improve."
"Sometimes, we encountered a portal crash. When we told Palo Alto they said it might be the browser or cache, but I think they need to improve it on their side."
"The BGP filtering options on Prisma Access should be improved."
"The tools' scalability is subject to some limitations when done on-premise due to the need for additional licenses. However, in other scenarios, increasing scalability involves expanding infrastructure to accommodate more third-party VPN access. It is scalable as long as you pay the money. Also, it needs to improve security."
"Palo Alto Prisma 10 came out over a year ago. Palo Alto added this identity management feature. The legacy way Palo Alto selected which user is sitting on an IP address it passes through has been clunky."
"Though the monitoring is fine, the solution should improve its application graphs and interface monitoring."
"When it comes to integration mechanisms, Prisma SaaS does not support reverse proxy type of integrations."
"It's not really Prisma's fault, but when you try to create exceptions you don't really have those abilities. You cannot say, on the management platform, "Hey, for these users I want to create these exceptions." That is one thing that I have gotten some complaints about, and we have faced some challenges there."
"I would like to see improved security features, such as adding more SASE functions."
"The reporting feature needs improvement. Unlike the comprehensive reports we receive from Palo Alto for our firewalls, VMware VeloCloud SD-WAN doesn't offer detailed reports that effectively convey the solution's benefits to management."
"I would like to see more features added to increase visibility."
"VeloCloud needs improvement in terms of its security features."
"I would like to improve the tool’s cloud security features. I would like to see high-throughput hardware requests in the product’s next release. The solution should also support multiple gigs which could be around ten."
"The initial setup of VMware SD-WAN was simple. However, it took six days to complete."
"VeloCloud could improve its integration capabilities with other solutions."
"Implementing VMware is much more difficult, time-consuming, and expensive than implementing Fortinet or Check Point."
 

Pricing and Cost Advice

"We had the cost of purchasing a new appliance along with the implementation and licensing costs. However, the following year, the cost of just licensing was similar to what was paid the previous year for a new appliance along with the implementation and licensing costs."
"It is not expensive, and it is also not cheap. iboss is priced right in the sweet spot for the number of features it offers."
"It is expensive compared to one of its competitors."
"The overall pricing for iboss is very competitive and transparent."
"We have not priced the solution recently, but they were competitive with other vendors in the past."
"It is probably in line with other solutions, but I do not deal with the financial side."
"Prisma SaaS is more expensive than similar solutions but I think it's worth it."
"Prisma Access by Palo Alto Networks is an expensive solution, especially when compared to other solutions like Cisco. There are no additional charges apart from the standard licensing costs attached to the solution."
"The licensing model for this product is complicated and changes all the time, making it very hard for the user to comprehend the configuration."
"We have to pay additional costs for maintenance and support services."
"Compared to other products, the price is slightly high."
"The licensing fees are paid on a yearly basis and for what we get, the price is good."
"They price their products using credit modules."
"The pricing can be difficult because it came to us with another agreement, but it can be negotiated. I highly recommend people to compare this product's performance and pricing against BetterCloud, because I feel BetterCloud is better than Prisma SaaS if they're starting from scratch."
"The solution's price combines the license and the bandwidth you used."
"Overall pricing could be lower. It is much more expensive than traditional hardware vendor pricing."
"VMware SD-WAN provides competitive pricing."
"The licensing model of VMware SD-WAN could be improved, it is not always that competitive. The biggest concern is to be competitive against other solutions. However, the way that the licensing model is designed is not corresponding to the real use cases of my customers."
"I would rate the product’s pricing a six out of ten since the license is costly."
"The price of this solution is higher than that of other SD-WAN vendors."
"The price of the solution could be reduced."
"VeloCloud performs as well as the Cisco SD-WAN but it is cheaper in price."
report
Use our free recommendation engine to learn which Secure Access Service Edge (SASE) solutions are best for your needs.
850,671 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
13%
Financial Services Firm
11%
Manufacturing Company
9%
Government
6%
Computer Software Company
14%
Manufacturing Company
13%
Financial Services Firm
12%
Government
6%
Computer Software Company
16%
Financial Services Firm
10%
Manufacturing Company
7%
Construction Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about iboss?
Content filtering is the most useful feature of iboss.
What needs improvement with iboss?
I have a couple of thoughts for improvement, but usually when I address them with my rep, they put it into the featur...
What is your primary use case for iboss?
We use it primarily for simpler filtering because we're a K12 entity.
What is the better solution - Prisma Access or Zscaler Private Access?
We looked into Prisma Access before choosing Zscaler Private Access (ZPA). Palo Alto’s Prisma Access is a secure ac...
What do you like most about Prisma Access by Palo Alto Networks?
The most valuable features of the solution are in the areas of the secure remote access it provides while also being ...
What is your experience regarding pricing and costs for Prisma Access by Palo Alto Networks?
From my experience, Palo Alto is more expensive compared to solutions like Netskope and Triscale.
What are the biggest differences between Fortinet Fortigate and VMware SD-WAN?
One of our favorite things about Fortinet Fortigate is that you can deploy on the cloud or on premises. It is a very ...
What do you like most about VMware SD-WAN?
One of the key use cases for VMware SD-WAN was assisting a customer in the industrial zone. They required virtualized...
What is your experience regarding pricing and costs for VMware SD-WAN?
The pricing is high, making the margin thin, which limits mark-up opportunities from the wholesale price.
 

Also Known As

iBoss Cloud Platform
Palo Alto Networks Prisma Access, Prisma Access, GlobalProtect, Palo Alto GlobalProtect Mobile Security Manager, Prisma SaaS by Palo Alto Networks, Prisma Access
VMware SD-WAN, VeloCloud
 

Overview

 

Sample Customers

More than 4,000 global enterprises trust the iboss Cloud Platform to support their modern workforces, including a large number of Fortune 50 companies.
Concord Hospital, State of Colorado, Essilor International, RheinLand Versicherungsgruppe, University of Westminster, Universidade Nove de Julho, SPAR Austria, CAME Group, ZipRealty, Greenhill & Co., IKT Agder, Aviva Stadium, Animal Logic, Management & Training Corporation, Brigham Young University Hawaii, School District of Chilliwack
Redmond, Coca Cola, Roka Bioscience, MetTel, Deutsche Telekom, Rockford Construction,  The Bay Club, tru Independence, Triton Management Services, DevCon, AXPM
Find out what your peers are saying about Prisma Access by Palo Alto Networks vs. VMware VeloCloud SD-WAN and other solutions. Updated: April 2025.
850,671 professionals have used our research since 2012.