No more typing reviews! Try our Samantha, our new voice AI agent.

VMware Carbon Black App Control vs WatchGuard Firebox comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Feb 15, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Fortinet FortiGate
Sponsored
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
589
Ranking in other categories
Secure Web Gateways (SWG) (2nd), Firewalls (1st), Intrusion Detection and Prevention Software (IDPS) (1st), Software Defined WAN (SD-WAN) Solutions (1st), WAN Edge (1st), ZTNA (1st), Unified Threat Management (UTM) (1st)
VMware Carbon Black App Con...
Average Rating
9.2
Reviews Sentiment
6.8
Number of Reviews
8
Ranking in other categories
Application Control (5th)
WatchGuard Firebox
Average Rating
8.4
Reviews Sentiment
6.8
Number of Reviews
131
Ranking in other categories
Data Loss Prevention (DLP) (12th), Firewalls (10th), Intrusion Detection and Prevention Software (IDPS) (5th), Anti-Malware Tools (6th), Endpoint Detection and Response (EDR) (18th), Application Control (4th), Unified Threat Management (UTM) (4th)
 

Featured Reviews

Vasu Gala - PeerSpot reviewer
Manager, Information Technology Operation/Presales at TechMonarch
A stable solution with an intuitive interface and quick customer service
I have been working with Fortinet FortiGate, WatchGuard, Sophos, and SonicWall. I'm not as comfortable with SonicWall because of their UI and limitations. I prefer Fortinet above all other options. When it comes to configuration, I am confident in my ability to handle various tasks, including creating policies such as firewall rules, web policies, and application policies. Additionally, I can configure VPNs and implement load balancing, among other tasks. Overall, I feel much more comfortable working with Fortinet. Fortinet has made significant improvements by integrating AI with firewalls for threat analysis and prevention. In the past 2-3 years, they have launched FortiSASE and SIEM, and they also provide SOC services. Both Palo Alto and Fortinet FortiGate are excellent. While Fortinet FortiGate comes at higher prices, the functionality and support justify the cost. They promptly resolve firmware issues and inform all support providers about configuration changes.
AM
Cybersecurity Consultant at KAFD DMC
We can isolate problem machines and limit their access
We use App Control to scan the network for virtual machines that have unauthorized applications. We can isolate the problem VMs and control application access.  More than two years. I rate Carbon Black App Control 10 out of 10 for stability. I rate App Control six out of 10 for scalability.…
PS
CEO at ajuntament del Prat
Network protection has improved with stronger VPN connectivity but administration remains complex
Deploying WatchGuard Firebox was quite easy, but we have had some problems regarding the VPN and the administration of the tool and the two firewalls that we have. When comparing WatchGuard Firebox with our previous solution, Palo Alto, we have had some problems in administration because of the tools. I think that they have some aspects in their system that are cloud-provided, but they also have an on-premise solution, which makes this combination good. Although I should say that when compared to Palo Alto, we have taken a step backwards. In general, I would rate WatchGuard Firebox around 6-7; it is a good firewall, but they lack good administration tools. We experience many problems with the performance and administration tools on the web, including several issues with VPNs.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"I like several features that this product has, such as antivirus and internet navigation inspection. It is also simple to use."
"The multi-tenancy feature is most valuable. It integrates very well with FortiManager and FortiAnalyzer."
"The Fortinet FortiGate local partners were good."
"The key features include SD-WAN, firewall use, intrusion prevention, intrusion detection, and application control."
"The most valuable features of Fortinet FortiGate are the ability to work in proxy mode, which other solutions, such as Palo Alto cannot. There are some features that are better that come at no extra license or subscriptions cost, such as basic SD-WAN. The DLT is useful, other solutions have the same feature too, such as Palo Alto."
"Load Sharing VDOM Security Profiles Vulnerability Assessment"
"The customers have seen an ROI from using Fortinet FortiGate and they are satisfied with the solution."
"With Fortinet, we're able to control how users utilize resources and pull back on certain things while allowing more access in others, which has led to fewer expenses, less time wasted addressing issues related to reporting, and more order and better analysis of exactly what is going on in the network."
"The effectiveness of application whitelisting is very good."
"I use the console to check for threats and I find it to be very user-friendly."
"All the functions within VMware Carbon Black App Control are valuable."
"The visibility is valuable."
"The visibility, reporting, and the ability to stop or prevent malicious or undesired applications from being installed are the most valuable features."
"It offers a sense of security where anything that comes in, regardless of what it is, unless you approve it manually, it's not going to run."
"The API integration is good."
"Carbon Black offers a total lockdown solution; it shows us the attacks that are being attempted against our infrastructure and how we are being protected."
"The throughput is great. It's perfect. We have no issues whatsoever. The management features are very powerful..."
"All of the features have been valuable. There's nothing on my M270 that I'm not using. If you have remote access, you can see how many users are coming from the outside world to be connected to the systems, through the virus systems that we have behind the firewall, in order to gain access to their files and do their work. We can also see how long they stay online and whether these connections are closed forcefully or for any other reasons, such as a glitch or some kind of misbehavior, to see if internet traffic is optimized and if that particular traffic is under company policies, concerning which websites were visited."
"I like the High Availability features of the newest ones I'm using because they allow a firewall to fail and still be up and running."
"The solution simplifies my business. Normally, for administration, we are using NetApp System Manager on Window since it's easy to create new policies. In a short amount of time, you can create new policies based on new requirements. For example, in the last few months, many requirements changed due to the coronavirus, adding the use of new services, like Office 365, and eLearning tools, like Zoom."
"Efficient to setup, run, and maintain, saving man hours and cost in the process."
"It is easy to deploy and use, the best of breed in the UTM firewall concept, creating the best UTM secure platform ever."
"The VPN is very secure and that's of huge importance because we have remote users who depend on it to do their jobs."
"Overall, we are quite happy with the Firebox solution and we have not seen any issues so far."
 

Cons

"Cisco Meraki products are rising very quickly in the cloud and the connected era. Meraki products offer much better ROI, upgradability, and manageability."
"Compared to some other products, the DLP is not at par for the moment."
"It would be better if they had a dashboard where we could see what attacks were happening. It would be good to see who's trying to get into our network."
"We would like to see a better training platform implemented."
"To some degree, it's almost a question as to why some of this stuff isn't simpler. For example, for an AP deployment, while it's integrated, the number of steps that you have to go through in order to get the AP up, seems like a lot."
"The performance could be a bit better. Right now, I find it to be lacking."
"An area for improvement for Fortinet FortiGate is that their support needs to be more customer friendly."
"The command line is complicated, and the interface could be better."
"The solution should have overhead in keeping lists of applications that you want don't want to run."
"The reporting is not good and needs to be improved."
"Another issue is that even sometimes if you approve, for example, Adobe as a publisher, you say any product or anything that's from Adobe has to run. It generally runs, but especially in a large environment and with a lot of users, sometimes, due to some certification validation issues or some other issue, it might stop the process from running. Genuine processes like Adobe and Chrome can get blocked. so that needs to be improved."
"Its initial setup is very complex. We got help from their implementation team because if it is not set up properly, you can really hinder the operation of your environment and things won't execute or run."
"I would like to see the addition of some more features that are in other, similar solutions."
"I would like to see the addition of some more features that are in other, similar solutions."
"Its setup is very complex, and it requires guidance from the support team, but it is well worth the effort."
"Another issue is that even sometimes if you approve, for example, Adobe as a publisher, you say any product or anything that's from Adobe has to run. It generally runs, but especially in a large environment and with a lot of users, sometimes, due to some certification validation issues or some other issue, it might stop the process from running."
"I would like to see more simplified management of the firewall... It's a complicated system to use."
"There is a slight learning curve."
"The documentation for the System Manager/Dimension configuration could be a little bit clearer. The use case where you have multiple sites with multiple firewalls, and one site that has the System Manager server and the Dimension server, wasn't really well defined."
"I would like to see the devices made more flexible by adding modules to increase the ports that we can use."
"It could have better Mac support. I am pretty sure it doesn't have much support for Mac. It can be installed on a Mac, but it is not that good."
"WatchGuard Gateway AntiVirus is just a firewall."
"I would like to see the devices made more flexible by adding modules to increase the ports that we can use."
"Cloud-based central administration of all devices from one point would be nice (although there is always an added risk regarding this)."
 

Pricing and Cost Advice

"On a scale of one being cheap and ten being expensive, I rate the tool's price as an eight."
"Its licenses cost the same for different subscription plans."
"At the time we bought them, I was satisfied with their pricing; I don't know how the new pricing will be."
"The price, in comparison to other products is very cheap."
"Fortinet bundles FortiGate with other products and because of this, the price is a little expensive to some SMB enterprises."
"The price is high compared to some of the other solutions."
"Fortinet FortiGate is reasonably priced."
"The tool's pricing is neither cheap nor expensive. Overall, I find it to be competitive in the market."
"We pay a fee for support, which is renewed annually."
"Its price is reasonable and what is expected for these types of products."
"The pricing for this product is competitive and our customers who told us that often, Carbon Back is the cheaper solution."
"The two larger devices are about $1,000 each and the smaller ones are about $500 or $600 each... It's cheaper and you have more control because it's self-managed."
"I think we might be subscribed to one or two of the premium features."
"The pricing is competitive."
"I haven't seen the pricing since 2017, but it was competitive. SonicWall, Barracuda, and WatchGuard were all about the same price when we did our last pricing."
"As per my knowledge, the product is more affordable than alternatives."
"We only license our corporate one and the one we have at our DR site, we don't worry about the branches. It doesn't pay for us to license the ones at the branches. What they charge for what they call basic maintenance is extremely high for those little fireboxes."
"It has a very good price. It is not the most expensive one, and it is also not the cheapest one. It is just spot-on in terms of price."
"WatchGuard offers competitive pricing with attractive margins, benefiting both the company and its partners."
report
Use our free recommendation engine to learn which Application Control solutions are best for your needs.
885,311 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
11%
Comms Service Provider
10%
Manufacturing Company
8%
Financial Services Firm
6%
Financial Services Firm
19%
Computer Software Company
10%
Government
9%
Healthcare Company
8%
Comms Service Provider
11%
Computer Software Company
10%
Manufacturing Company
7%
Retailer
5%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business363
Midsize Enterprise135
Large Enterprise190
By reviewers
Company SizeCount
Small Business4
Midsize Enterprise1
Large Enterprise3
By reviewers
Company SizeCount
Small Business95
Midsize Enterprise28
Large Enterprise15
 

Questions from the Community

Which is the better NGFW: Fortinet Fortigate or Cisco Firepower?
When you compare these firewalls you can identify them with different features, advantages, practices and usage a...
What is the biggest difference between Sophos XG and FortiGate?
From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know...
What are the biggest technical differences between Sophos UTM and Fortinet FortiGate?
As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite ...
Ask a question
Earn 20 points
What is your primary use case for WatchGuard Firebox?
We are providing our services to all WatchGuard customers in the region.
What is your primary use case for WatchGuard Firebox?
We just use it as a secondary WiFi device. We're a small office and we needed to set up a WiFi device for a few of ou...
What is your primary use case for WatchGuard Firebox?
We're a hospital and we use it for developing our incoming and outgoing policies, and we also use it for VPN.
 

Also Known As

Fortinet FortiGate Next-Generation Firewall
CB Protection, Carbon Black CB Protection
WatchGuard Threat Detection and Response, WatchGuard Application Control, WatchGuard Data Loss Prevention, WatchGuard Gateway AntiVirus, WatchGuard Intrusion Prevention Service
 

Overview

 

Sample Customers

Amazon Web Services, Microsoft, IBM, Cisco, Dell, HP, Oracle, Verizon, AT&T, T-Mobile, Sprint, Vodafone, Orange, BT Group, Telstra, Deutsche Telekom, Comcast, Time Warner Cable, CenturyLink, NTT Communications, Tata Communications, SoftBank, China Mobile, Singtel, Telus, Rogers Communications, Bell Canada, Telkom Indonesia, Telkom South Africa, Telmex, Telia Company, Telkom Kenya
Kaas Tailored, Core-Mark, Indeed, Hologic, Landmark Credit Union, Project Worldwide
Ellips, Diecutstickers.com, Clarke Energy, NCR, Wrest Park, Homeslice Pizza, Fortessa Tableware Solutions, The Phoenix Residence
Find out what your peers are saying about VMware Carbon Black App Control vs. WatchGuard Firebox and other solutions. Updated: March 2026.
885,311 professionals have used our research since 2012.