Prisma Access by Palo Alto Networks vs VMware SD-WAN comparison

Cancel
You must select at least 2 products to compare!
Lookout Logo
345 views|279 comparisons
71% willing to recommend
Palo Alto Networks Logo
17,379 views|11,836 comparisons
91% willing to recommend
VMware Logo
2,750 views|2,039 comparisons
95% willing to recommend
Comparison Buyer's Guide
Executive Summary

We performed a comparison between Prisma Access by Palo Alto Networks and VMware SD-WAN based on real PeerSpot user reviews.

Find out in this report how the two Secure Access Service Edge (SASE) solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI.
To learn more, read our detailed Prisma Access by Palo Alto Networks vs. VMware SD-WAN Report (Updated: March 2024).
767,319 professionals have used our research since 2012.
Featured Review
Quotes From Members
We asked business professionals to review the solutions they use.
Here are some excerpts of what they said:
Pros
"On the outside, the main differentiation is because Lookout ingest. They have ingested basically all of the apps for the last ten years and all the versions of all the apps, and we have that in a corporate database that allows us to do very large-scale machine learning and analysis on that data set. That's not something that any of the competitors really have the capability to do because they don't have access to the data set. A lot of the apps you can no longer get them because that version of the app is five or six years old, and it just doesn't exist anywhere anymore, except within our infrastructure. So, the ability to have that very rich dataset and learn from that dataset is a real differentiator.""The protection offered by the product is the most valuable feature. It detects vulnerabilities or traps on our users' phones and then prompts them to clean up their devices. Tools we used previously would only discover, which required us to gather information on the backend, so Lookout is a welcome upgrade.""The solution is stable.""The most valuable features are the antivirus as a whole, the anti-malware, and all of the protection features that scan our enterprise devices."

More Lookout Pros →

"The performance is good.""We're now able to go after contracts that require a Zero Trust solution and Prisma's other technology solutions.""The solution improved the consistency of our security controls and the BCP. There has been a 20 percent reduction in TCO. Prisma Access also enabled us to deliver better applications by centralizing security management.""Its hands-off security and the fact that we don't have to maintain it are the most valuable features.""The most valuable feature is the ability to change the gateway. For example, if there's a problem with a specific region or vendor, we can make modifications. The solution is scalable, and there are different gateways that can be created depending on the demand.""The solution also provides traffic analysis, threat prevention, URL filtering, and segmentation. That combination is important because it enhances the protection and makes the traffic more secure. It also keeps things more up-to-date, enabling us to deal with more of the current threats.""The stacked policies, event policies, and routing policies are easy to understand for someone with general knowledge.""Being able to use the user ID or Active Directory Group is one of the great features for control and providing more flexibility without worrying about IP addresses."

More Prisma Access by Palo Alto Networks Pros →

"The biggest feature is called D.M.P.O., or Dynamic Multipath Optimization, which is one of the technologies that they use to deliver or ensure data integrity.""VeloCloud developed DMPO to increase performance and connectivity.""I like VMware SD-WAN's automation and zero-touch provisioning. Its main advantage is simplicity. Anyone can use this gateway.""When extra capacity is needed, we can get it very quickly.""Initially, we had a scattered environment, but VMware SD-WAN helped us achieve centralization, which was beneficial.""SD-WAN is cloud-based and you can manage multiple sites within one single pane of glass.""Increases the performance of applications and is easy to deploy.""The setup is very straightforward."

More VMware SD-WAN Pros →

Cons
"We just submitted an enhancement request reflecting the main area we want to see improvement in; the APIs. Currently, we're able to build dashboards, but it's somewhat backward because we use our MDM API to create them. Lookout should provide API to customers so we can query our data and use it in our cloud, and this is the only outstanding area for improvement with the product right now.""From the analysis that we've done, they do seem to be maybe a step behind in trying to enter the market with a new solution. But when they do pick up, they do come out with some good products.""The stability depends on the service from where you access it. Because sometimes, the place you are in, you have Gateway. You don't have Gateway. The gateway is overutilized. At the end, you need to go through their gateways. And this is the key point here. You have a tracking point. If it's not well orchestrated, and it scales up as you add more to the existing team, you will suffer""Lookout was moving into the SSE space. And so their work on SecureWeb Gateway and SD-WAN is still sort of evolving."

More Lookout Cons →

"Prisma would be a stronger solution if it could aggregate resources by project or by application. So say we have an application we've developed in AWS and five applications we've developed in Azure. The platform will group it according to those applications, but it's based on the tags we use in Azure, which means I have to rely on development teams to tag resources properly.""When it comes to the VPN, it uses the global protect VPN functionality to connect remotely, but it has a feature limitation for assigning multiple IP sub-links to different user groups. It would be much better if we are able to assign the current IP blocks for the sub-links based on the user groups.""It applies commits to the firewalls slowly. There isn't an API you can use for anything. We've previously had trouble with the egress IP addresses though we expressed to engineering that those mustn't change. They changed several times without warning, causing a lot of headaches.""When we deploy firewall rules via Panorama, we find it's a little bit slow. We have a global environment and might have 100 gateways or VPNs in the cloud. When we deploy something, it tries to deploy it one-by-one, and that can be slow.""I would like to see support for custom applications.""Though the monitoring is fine, the solution should improve its application graphs and interface monitoring.""We've run into some challenges, having hit a lot of bugs over the past year in the deployment of GlobalProtect. We've had our fair share of issues that I haven't been happy with. We're working with the support organization to remediate them and waiting for updated releases. The response on getting the bugs fixed has not been what I would consider adequate for a product like this.""The user interface could be better. They need to work a little bit on the console. It is similar to their firewalls but not exactly. They need to clean it up a bit."

More Prisma Access by Palo Alto Networks Cons →

"There should be more automation and self-service features.""Its integration with the security systems would be a nice implementation. They can also consider using a management platform for both network and security operations. This would be a great improvement.""They need more gateways""Reports could be simplified.""There is one feature that would set VMware SD-WAN apart from others solutions, and that is what I call inter-cloud connectivity. All the solutions regarding VMware are good because for example, If I go from my workplace to a retail office and I want to use my applications in the Cloud, that is possible. Perhaps we have customers who have their IT partial environments hosted in different cloud locations, such as Amazon and Azure, and the interconnection between the clouds, this is not possible. If it was possible it would be a market game-changer. Having the SD-WAN solution that is good at optimizing and facilitating traffic between different cloud providers would be great.""The prep time and understanding what you want to do and how much bandwidth you'll need and how you're going to configure it on the network, that's more of an issue than anything else.""There is still room for improvement in support and security, especially in enhancing the SASE aspect of the platform.""VeloCloud could improve its integration capabilities with other solutions."

More VMware SD-WAN Cons →

Pricing and Cost Advice
  • "The pricing is fair; it's comparable to our previous solution, and we carried out multiple POCs and POVs (proof of value). The product is worth the money we pay for it."
  • "Lookout is definitely on the lower end when it comes to price point and that seems to be the only differentiator. The technology is in place in this space and it's really about who is coming in at the better price point now."
  • "In terms of feature performance versus cost, they're a good value."
  • "The licensing costs are good. Prisma has much more options and support for security, but it has a higher cost. For example, Lookout costs 2/3rd of Prisma's licensing price."
  • More Lookout Pricing and Cost Advice →

  • "The licensing cost is about 18,000 euros."
  • "Actually the solution is very expensive. I don't know the particulars since the purchasing team dealt with it."
  • "The pricing for this solution is on the higher end."
  • "Compared to other products, the price is slightly high."
  • "This is not an expensive product and everything is included with one license."
  • "Prisma Access is a little bit expensive."
  • "The licensing fees are paid on a yearly basis and for what we get, the price is good."
  • "The solution requires a license and the technical support has extra costs. The licensing model could improve."
  • More Prisma Access by Palo Alto Networks Pricing and Cost Advice →

  • "VeloCloud performs as well as the Cisco SD-WAN but it is cheaper in price."
  • "The price of this solution is higher than that of other SD-WAN vendors."
  • "The price of this solution should be lower."
  • "The pricing is very comparable to Fortinet."
  • "The price is reasonable for this solution, but the only challenge for us is that the Rand currency fluctuates to the dollar and provides some complexities. The price might go up just because the Rand has actually lost value."
  • "The cost of VMware SD-WAN is high, but I think you can still get better pricing if your volume is high."
  • "The price of the solution could be reduced."
  • "My understanding is that the pricing is in the same range as other solutions."
  • More VMware SD-WAN Pricing and Cost Advice →

    report
    Use our free recommendation engine to learn which Secure Access Service Edge (SASE) solutions are best for your needs.
    767,319 professionals have used our research since 2012.
    Questions from the Community
    Top Answer:The licensing costs are good. Prisma has much more options and support for security, but it has a higher cost. For… more »
    Top Answer:The solution could improve identity integration as well. Zero trust, it's a good start as a zero-trust solution… more »
    Top Answer: We looked into Prisma Access before choosing Zscaler Private Access (ZPA). Palo Alto’s Prisma Access is a secure… more »
    Top Answer:The solution's most valuable features were the model's reduced complexity on the client side and its capability to… more »
    Top Answer:One of our favorite things about Fortinet Fortigate is that you can deploy on the cloud or on premises. It is a very… more »
    Top Answer:One of the key use cases for VMware SD-WAN was assisting a customer in the industrial zone. They required virtualized… more »
    Top Answer:VMware SD-WAN provides competitive pricing. I rate the pricing a seven out of ten.
    Comparisons
    Also Known As
    CipherCloud
    Palo Alto Networks Prisma Access, Prisma Access, GlobalProtect, Palo Alto GlobalProtect Mobile Security Manager, Prisma SaaS by Palo Alto Networks, Prisma Access
    VeloCloud
    Learn More
    Overview

    Lookout is a well-established and powerful secure web gateway (SWG) solution that protects more than 200 million users from threats that can result from the penetration of unsecured web traffic into their networks. Lookout is designed to enable organizations to work remotely while maintaining a tight blanket of security over their confidential business data. It provides administrators with security that extends from their endpoints to the cloud service that they are using to run their organization’s network. 

    Users of Lookout are able to proactively detect threats and keep themselves secure from a field of threats that constantly evolves. IT teams can protect their organizations without having to rely on any other security solutions. This singular solution can run on multiple kinds of mobile devices. The privacy of individuals is preserved while keeping compliance rules intact. Additionally, users gain access to a number of tools that enable them to prevent security breaches from taking place.

    Lookout Benefits

    Some of the ways that organizations can benefit by deploying Lookout include:

    • Ease of deployment. Lookout is a solution whose design makes it easy for users to deploy it. It provides users with simple, step-by-step instructions that remove the need for organizations to devote extensive amounts of time to make sure that it is properly set up. Anyone can quickly set up the solution without undergoing technical training. 
    • Built-in support. Users of the Lookout application have access to built-in demos that can teach them how to use various solution features. Instead of spending time trying to figure out the application, users can watch the demo that is most relevant to them and see for themselves how that particular feature is used.
    • Easy-to-use user interface. Lookout’s user interface is laid out in an intuitive way that makes it easy for administrators to navigate. This interface is present in both the mobile and desktop versions of this solution. 
    • Settings customization. Lookout has a built-in settings customization menu. This makes it possible for administrators to easily customize their settings so that they best conform to their needs. 

    Lookout Features

    • Activity monitoring and activity tracking. Lookout’s activity monitoring and activity tracking capabilities enable users to keep a close eye on the activities that are taking place in their networks. IT teams and administrators have the ability to watch their networks for any unusual activity. These features ensure that organizations can keep ahead of any potential threats. They provide the kinds of insights and warnings that make the jobs of those IT teams and administrators much easier and more streamlined. 
    • Encryption. Organizations that employ Lookout can encrypt their networks and keep crucial business data from being read by unauthorized parties. This feature keeps the secrets organizations are trying to keep out of the wrong hands.
    • Anti-virus tools. Lookout provides users with tools to block threats from harming their networks. These tools can successfully block 99.6 percent of threats without raising false alarms. 

    Prisma Access by Palo Alto Networks provides consistent security for all users and applications across your remote networks. Prisma Access grants users safe access to the cloud and data center applications and the internet as well. In addition, the solution combines all of your security and networking capabilities into a single cloud-delivered platform, enabling flexible hybrid workforces.

    Prisma Access can be managed two ways:

    1. Cloud Managed
    2. Panorama Managed

    Prisma Access delivers both networking and security services, including:

    • SD-WAN
    • VPN
    • Zero Trust network access (ZTNA)
    • Quality of service (QoS)
    • Clean Pipe
    • Firewall as a service (FWaaS)
    • DNS Security
    • Threat Prevention
    • Cloud secure web gateway (SWG)
    • Data loss prevention (DLP)
    • Cloud access security broker (CASB)

    Prisma Access by Palo Alto Networks Features

    Prisma Access by Palo Alto Networks has many valuable key features including: App-ID, User-ID, Device-ID, SSL Decryption, Dynamic User Group (DUG) Monitoring, AI/ML-Based Detection, IoT Security, Reporting, URL Filtering, Enterprise Data Loss Prevention (DLP), Digital Experience Monitoring (DEM)*, Logging, Policy Automation, Intrusion Prevention System (IPS), and many more.

    Prisma Access by Palo Alto Networks Benefits

    Some of the benefits of using Prisma Access by Palo Alto Networks include:

    • Security: Prisma Access gives you consistent security to protect against cyberattacks, with enforcement of policy at every location. By implementing Prisma Access, you also gain protection that works to prevent known and unknown malware, exploits, credential theft, command and control, and many other attack vectors across all ports and protocols.

    • Global connectivity: Prisma Access provides global coverage through use of its connectivity layer.

    • Scalability: With Prisma Access, scaling is automatically managed and is scalable, flexible, and agile.

    • Instant deployment: Deployment is fast, eliminating wasted time that may otherwise be associated with setting up a solution, operating it, or shipping hardware in order to get started.

    Reviews from Real Users

    Below are some reviews and helpful feedback written by Microsoft Azure Synapse Analytics

    users who are currently using the solution.

    PeerSpot user Partha D., Global Network Tech Lead at a computer software company, speaks about his experience using the product, saying, "It protects all app traffic so that users can gain access to all apps. Unlike other solutions that only work from ports 80 and 443, which are predominantly for web traffic, Prisma Access covers all protocols and works on all traffic patterns... The most sophisticated attacks can arise from sources that are not behind 80/443."

    Tejas J., a Sr. Cloud Security Architect at a computer software company, mentions that "it is geographically dispersed, and it sits on top of Google and AWS platforms. Therefore, you don't face the standard issues, such as latency or bandwidth issues, that you usually face in the case of on-prem data centers.

    Another PeerSpot reviewer, Max I., Associate Director at Cognizant, comments that "Security is absolutely spot-on, really top-notch. It's the result of all the components that come together, such as the HIP [Host Information Profile] and components like Forcepoint, providing end-user content inspection, and antivirus. It incorporates DLP features and that's fantastic because Prisma Access makes sure that all of the essential prerequisites are in place before a user can log in or can be tunneled into."

    VMware Software-Defined Wide Area Network (SD-WAN) is a secure access service edge (SASE) platform that combines many types of software-based network technologies in an attempt to enable users to virtualize their wide area networks and reduce their reliance on hardware. In essence, this solution makes it possible for users to reliably access their applications from anywhere in the world by leveraging cloud technologies. Users can simply, efficiently, and completely control their network devices and traffic. It ensures that organizations are always able to use the best possible connection to their data centers. VMware SD-WAN steers traffic so that it is always using the most reliable connections and at the same time takes steps to remediate any problems that it detects in other network links. This guarantees that organizations can access high-priority applications at all times. 

    VMware SD-WAN Benefits

    Some of the ways that organizations can benefit by deploying VMware SD-WAN include:

    • Reduced cost of network management. Organizations that choose to employ VMware SD-WAN can manage their network at a cost that is 2.5 times less expensive than what it costs to use traditional WAN architectures. Its ability to both augment existing hardware and replace said hardware if the user chooses to do so is part of what enables users to reduce their overhead costs. 
    • Ease of deployment. VMware SD-WAN makes it possible for organizations to deploy it without having to rely on the assistance of technical experts. When the device - whether virtual or otherwise - is connected to the internet, it integrates with a central orchestrator that pushes the correct integrations to the device in question. This automates the installation process and makes it so that anybody can initiate and follow the deployment through to the end of the process. 
    • Easily segment networks to improve environmental performance. Users can divide their networks into multiple segments that share a single IP address. These networks can be incorporated into an organization’s IT infrastructure and enable it to run more reliably. One way it does this is by providing multiple potential channels for data to use to travel in the event that one of the data pathways is suffering from some kind of issue. 

    VMware SD-WAN Features

    • Centralized monitoring. VMware SD-WAN is monitored at all times by a centralized orchestrator. From one place, an organization can watch every part of its network. Instead of having to search for the data they need, it can all be found in one location.
    • Integration capabilities. VMware SD-WAN offers users the capability to integrate their network with the environment of their choosing. This enables them to connect their network to the IT environment that best meets their needs. It makes it easy for them to work with multi-cloud and hybrid environments.
    • Real-time data analytics. VMware SD-WAN can analyze network data in real time. This makes it easy for users to monitor their network’s performance. It also allows them to take steps to quickly remediate any issues that arise before they can become worse.

    Reviews from Real Users

    VMware SD-WAN is a solution that stands out when compared to many of its competitors. Two major advantages it offers are its ability to automate the process of creating and maintaining a virtual local area network and its intuitive user dashboard.

    Sami I., principal cloud architect at Loihe, writes, “One of the solution's most valuable features is the VMware core automation stack at an SDDC. It includes NSX, the VMware virtualization layer for the networks (the LAN virtualization), which works extremely well with the VMware SD-WAN solution and is the primary advantage over all the others. None of the other vendors could integrate with the virtual LAN, making it quite complicated and virtualized to be fully automated.”

    Chih S., senior technical consultant at a tech services company,  says, “The product has a very good user dashboard that is simple to navigate.” 

    Sample Customers
    Concord Hospital, State of Colorado, Essilor International, RheinLand Versicherungsgruppe, University of Westminster, Universidade Nove de Julho, SPAR Austria, CAME Group, ZipRealty, Greenhill & Co., IKT Agder, Aviva Stadium, Animal Logic, Management & Training Corporation, Brigham Young University Hawaii, School District of Chilliwack
    Redmond, Coca Cola, Roka Bioscience, MetTel, Deutsche Telekom, Rockford Construction,  The Bay Club, tru Independence, Triton Management Services, DevCon, AXPM
    Top Industries
    VISITORS READING REVIEWS
    Computer Software Company19%
    Financial Services Firm10%
    Manufacturing Company10%
    Government7%
    REVIEWERS
    Computer Software Company46%
    Manufacturing Company12%
    Pharma/Biotech Company4%
    University4%
    VISITORS READING REVIEWS
    Computer Software Company15%
    Manufacturing Company11%
    Financial Services Firm11%
    Government6%
    REVIEWERS
    Comms Service Provider44%
    Manufacturing Company20%
    Computer Software Company12%
    Financial Services Firm8%
    VISITORS READING REVIEWS
    Computer Software Company16%
    Financial Services Firm9%
    Manufacturing Company8%
    Comms Service Provider8%
    Company Size
    VISITORS READING REVIEWS
    Small Business22%
    Midsize Enterprise16%
    Large Enterprise62%
    REVIEWERS
    Small Business28%
    Midsize Enterprise30%
    Large Enterprise43%
    VISITORS READING REVIEWS
    Small Business18%
    Midsize Enterprise14%
    Large Enterprise68%
    REVIEWERS
    Small Business40%
    Midsize Enterprise28%
    Large Enterprise32%
    VISITORS READING REVIEWS
    Small Business25%
    Midsize Enterprise16%
    Large Enterprise59%
    Buyer's Guide
    Prisma Access by Palo Alto Networks vs. VMware SD-WAN
    March 2024
    Find out what your peers are saying about Prisma Access by Palo Alto Networks vs. VMware SD-WAN and other solutions. Updated: March 2024.
    767,319 professionals have used our research since 2012.

    Prisma Access by Palo Alto Networks is ranked 1st in Secure Access Service Edge (SASE) with 55 reviews while VMware SD-WAN is ranked 8th in Secure Access Service Edge (SASE) with 50 reviews. Prisma Access by Palo Alto Networks is rated 8.4, while VMware SD-WAN is rated 8.2. The top reviewer of Prisma Access by Palo Alto Networks writes "Integration with Palo Alto platforms such as Cortex Data Lake and Autofocus gives us visibility into our attack surface". On the other hand, the top reviewer of VMware SD-WAN writes "To fully utilize cloud vendors' hardware networking, Microsoft and VMware support everything". Prisma Access by Palo Alto Networks is most compared with Zscaler Zero Trust Exchange, Netskope , Cisco Umbrella, Zscaler Internet Access and Prisma SD-WAN, whereas VMware SD-WAN is most compared with Cisco SD-WAN, Fortinet FortiGate, Meraki SD-WAN, Cato SASE Cloud Platform and FatPipe SD-WAN. See our Prisma Access by Palo Alto Networks vs. VMware SD-WAN report.

    See our list of best Secure Access Service Edge (SASE) vendors.

    We monitor all Secure Access Service Edge (SASE) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.