We are a solution provider and this is one of the firewalls that we implement for our clients.
Network Engineer at Vibs
Stable, good technical support, and there are helpful use case description on the website
Pros and Cons
- "The scalability is very good."
- "This is a difficult product to manage, so the administrator needs to have a good knowledge of it, otherwise, they will not be able to handle it properly."
What is our primary use case?
What needs improvement?
This is a difficult product to manage, so the administrator needs to have a good knowledge of it, otherwise, they will not be able to handle it properly.
What do I think about the scalability of the solution?
The scalability is very good.
We have a small number of clients with this solution in place.
How are customer service and support?
The support is good.
Buyer's Guide
Palo Alto Networks NG Firewalls
August 2025

Learn what your peers think about Palo Alto Networks NG Firewalls. Get advice and tips from experienced pros sharing their opinions. Updated: August 2025.
867,370 professionals have used our research since 2012.
Which solution did I use previously and why did I switch?
I have experience with multiple firewall vendors and I have seen that products from other vendors have bugs. My feeling is that Palo Alto does not have this problem.
Some of the vendors that I have worked with are Fortinet and Sophos. The setup and management of these products are easy compared to Palo Alto.
How was the initial setup?
Implementing this product can be a little bit difficult. The configuration is difficult compared to other products, so it would be nice if there were videos are other instructions available. It can be very time consuming for the network administrator.
What's my experience with pricing, setup cost, and licensing?
The pricing is very high.
What other advice do I have?
My advice for anybody who is implementing this firewall is to follow the guide or instructions that are available. There are multiple resources and examples of use cases available on the Palo Alto website, and you can directly follow them.
I would rate this solution a nine out of ten.
Disclosure: My company has a business relationship with this vendor other than being a customer. partner

Service Delivery Engineer - Network Security Lead at a tech services company with 51-200 employees
Very flexible, integrates well with apps and other security tools; robust
Pros and Cons
- "Flexible and integrates well with apps and other security tools."
- "Interface could be improved visually and simplified."
What is our primary use case?
I deploy this solution for our clients. Firewalls can be used when you want to achieve SD-WAN connectivity. In a client's VPN or site-to-site VPN, it can be used to secure networks locally. If you have an extender or server room, you can secure your IT infrastructure for your servers. The solution can be installed on edge to protect your internal network. If you have services running on AWS or Google Cloud, or Alibaba Cloud, it can be deployed there. Some clients have a hybrid kind of infrastructure. I'm a service delivery engineer and network security lead and we are customers of Palo Alto.
What is most valuable?
It's a flexible solution and integrates well with apps and other security tools like SIEM, web applications. They can share their data orchestration. It's robust and fast in terms of architecture and data processing, there aren't any bottlenecks.
What needs improvement?
The interface could be improved visually and simplified. It sometimes feels like some of the features are hidden and not easy to find.
What do I think about the stability of the solution?
This is a very stable solution.
How are customer service and technical support?
In terms of technical support, I've noticed that as long as you have an enterprise license the support is good.
How was the initial setup?
For a beginner, the initial setup might be somewhat complex because the interface is a bit different, so there's a learning curve. It's not that steep, and once you get it, it's okay. In terms of other solutions, the Palo Alto deployment takes longer than Fortinet, for example, because of the intricacy of the user interface. In a medium size organization, deployment can take three to four days.
What other advice do I have?
I would recommend this solution. The uptake is mostly with medium and large enterprise, it's strong there. For small to medium size businesses, the preference is usually Fortinet or Sophos. It's really about what suits the client.
I would rate this solution an eight out of 10.
Disclosure: My company has a business relationship with this vendor other than being a customer. Integrator
Buyer's Guide
Palo Alto Networks NG Firewalls
August 2025

Learn what your peers think about Palo Alto Networks NG Firewalls. Get advice and tips from experienced pros sharing their opinions. Updated: August 2025.
867,370 professionals have used our research since 2012.
CIO/CTO at a manufacturing company with 501-1,000 employees
User-friendly GUI, reliable, and the application firewall performs well
What is our primary use case?
We primarily use this product to protect our network.
What is most valuable?
The most valuable feature is the application firewall.
The GUI is user-friendly.
What needs improvement?
The way that the roles are made, specifically with how you specify the path, could be simpler.
For how long have I used the solution?
I have been working with Palo Alto Networks NG Firewalls for one year.
What do I think about the stability of the solution?
We used the product on a daily basis and have had no critical issues so far.
What do I think about the scalability of the solution?
We have hundreds of users in the company and have not tried scaling it.
How are customer service and technical support?
With regards to support, they have a lot of things to improve.
Which solution did I use previously and why did I switch?
We also use Check Point as a firewall. Both have their advantages but for my part, Palo Alto is better because of the way it handles applications. Check Point is better if you are only using ports and TCP/IP.
How was the initial setup?
The initial setup is of medium difficulty. It is not simple yet not complex.
What about the implementation team?
We implement in-house with some assistance from the vendor. It took a few hours to deploy.
What's my experience with pricing, setup cost, and licensing?
Palo Alto is more affordable than some competing products, such as Check Point.
What other advice do I have?
In summary, this is a good product and I recommend it.
I would rate this solution a nine out of ten.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Senior solution architect at a comms service provider with 51-200 employees
Good management options, and we have confidence in the security that it provides
Pros and Cons
- "The management options are good."
- "Technical support could be faster."
What is our primary use case?
We use this product as our perimeter firewall.
How has it helped my organization?
We have a lot of confidence in this solution.
What is most valuable?
The management options are good.
What needs improvement?
There are some options available in other firewall products that are not supported, so there is room for improvement in that regard.
Technical support could be faster.
The cost of this firewall could be cheaper.
For how long have I used the solution?
We have been using the Palo Alto Networks NG Firewall for the past five years.
What do I think about the stability of the solution?
This is a stable product.
What do I think about the scalability of the solution?
This next-generation firewall solution is scalable. We have more than 500 users and we plan to continue using it.
How are customer service and technical support?
We have had experience with technical support and it is good, although they could be faster.
Which solution did I use previously and why did I switch?
Our previous firewall did not have the next-generation capability.
How was the initial setup?
The initial setup is straightforward. A typical installation takes one or two days.
What about the implementation team?
We deployed this product on our own and one person is suitable for the deployment.
What's my experience with pricing, setup cost, and licensing?
This is an expensive product and there is a subscription cost.
What other advice do I have?
This is a good product and I recommend it.
I would rate this solution a nine out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer. Integrator
Director, Middle East, East India & SAARC at DMX Technologies
It is fine normally but has issues during peak business hours and needs better load handling, VPN connectors, and support
Pros and Cons
- "It worked fine normally."
- "The VPN connectors should be better. We had some challenges in terms of the VPN with Palo Alto Networks NG Firewall, and that's one of the main reasons why we moved to Sophos. Its load handling can also be improved. There were challenges when traffic was high. During peak business hours, it did not function very well. There was a lot of slowness, and the users used to complain, especially when they were connecting from outside. We even reported this to the support team. Their support should also be improved. Technical support was a bit of a concern while using this solution. We didn't get very good support from the Palo Alto team."
What is our primary use case?
We were mainly using it because we had two ISP links, so it was a kind of gateway device. Whenever a link went down, the firewall used to automatically switch over to the secondary link so that the internet connectivity is kind of highly available.
What is most valuable?
It worked fine normally.
What needs improvement?
The VPN connectors should be better. We had some challenges in terms of the VPN with Palo Alto Networks NG Firewall, and that's one of the main reasons why we moved to Sophos.
Its load handling can also be improved. There were challenges when traffic was high. During peak business hours, it did not function very well. There was a lot of slowness, and the users used to complain, especially when they were connecting from outside. We even reported this to the support team.
Their support should also be improved. Technical support was a bit of a concern while using this solution. We didn't get very good support from the Palo Alto team.
For how long have I used the solution?
I have been using this solution for almost two to three years.
What do I think about the stability of the solution?
It was fine normally, but during peak business hours, it used to have challenges. We faced this issue at least two to three times a month.
What do I think about the scalability of the solution?
It is not very scalable. We had around 100 users. We had around ten people in our IT team.
How are customer service and technical support?
Support was a bit of a concern while using this solution. The support that we received was not too great, which caused a lot of issues. They were not very customer friendly.
Which solution did I use previously and why did I switch?
This was the first firewall that we used.
How was the initial setup?
I didn't do the installation.
What other advice do I have?
I would not recommend this solution. I am sure they will come up with better models to overcome some of the challenges that we faced, but I would definitely not recommend this particular model.
I would rate Palo Alto Networks NG Firewalls a six out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Lead Consultant at a tech services company with 1-10 employees
Good security, integrates well with third-party services, includes DLP, and the support is good
Pros and Cons
- "They are regularly releasing new versions that include more integration with third-party services."
- "Having a better pricing model would make this product more competitive, and more affordable for our customers."
What is our primary use case?
We are a solution provider and one of the Palo Alto products that we implement for our clients is the Next-Generation Firewall. It is used to protect your workflows in cloud environments, be it Azure, AWS, or Google. It can also protect your applications' databases that are on-premises.
What is most valuable?
This firewall will scan the network for vulnerabilities and malware.
It can prevent unauthorized access to the network.
This solution has a DLP function.
They are regularly releasing new versions that include more integration with third-party services. Examples of services that have already been integrated are Splunk and two-factor authentication.
What needs improvement?
Having a better pricing model would make this product more competitive, and more affordable for our customers.
For how long have I used the solution?
We have been dealing with next-generation firewalls from Palo Alto for more than five years.
What do I think about the stability of the solution?
So far, this solution has been stable.
What do I think about the scalability of the solution?
The product is scalable and it can be integrated with third-party solutions.
We have many clients who are using this firewall.
How are customer service and technical support?
The technical support from Palo Alto is good.
Which solution did I use previously and why did I switch?
In terms of firewalls, we use Palo Alto, Cisco, and Fortinet FortiGate.
How was the initial setup?
The next-generation firewall can be installed either on-premises or in a cloud-based deployment.
What's my experience with pricing, setup cost, and licensing?
The NG firewall is an expensive solution.
What other advice do I have?
I would rate this solution a ten out of ten.
Which deployment model are you using for this solution?
Hybrid Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
Security Presales Solutions Architect at a tech services company with 201-500 employees
Good performance, ease of use, and reliability
Pros and Cons
- "In general, its performance and ease of use are the most valuable. Its performance is good, stable, and reliable. The user interface is friendly and easy to use. Customers find it easy to work with and easy to learn."
- "They can work on the price. They are a little bit expensive, and not all customers are able to afford this solution. Taking into consideration that there is huge competition in the market and there are multiple firewall companies that are much cheaper than them and offer almost the same features, it would be good to improve the price."
What is our primary use case?
We are a system and development company, and we sell this solution and many other solutions to our customers.
We work on all the models, not a specific one. The model depends on the sizing. We also consider future expansion of a customer's environment for deploying a model.
What is most valuable?
In general, its performance and ease of use are the most valuable. Its performance is good, stable, and reliable. The user interface is friendly and easy to use. Customers find it easy to work with and easy to learn.
What needs improvement?
They can work on the price. They are a little bit expensive, and not all customers are able to afford this solution. Taking into consideration that there is huge competition in the market and there are multiple firewall companies that are much cheaper than them and offer almost the same features, it would be good to improve the price.
For how long have I used the solution?
I have been using this solution for three to four years.
What do I think about the stability of the solution?
It is stable.
What do I think about the scalability of the solution?
It is scalable. They offer multiple platforms, such as hardware appliances as well as virtual appliances. You can deploy as many virtual appliances as you want. Palo Alto supports the latest technologies, such as micro-segmentation, and NSX integration with Nutanix Acropolis Hypervisor. They offer multiple options to cover almost every deployment scenario and architecture for most of the customers.
How are customer service and technical support?
I don't deal with the technical support team because I am a presales person. Our technical support team handles the tickets and open tickets for support.
How was the initial setup?
The initial setup is not that easy. Deployment duration depends on the complexity of the solution, that is, how many firewalls will be installed, and are there any sorts of integrations or any other solution. It also depends if it is just a single box deployment or there is an extra box or two boxes. It might take one week to two weeks depending on the environment, the complexity of the data center, and the complexity of the integration with other technologies. It may take one month or more if the implementation is huge, and there are multiple boxes to be implemented and to be integrated with other solutions.
What's my experience with pricing, setup cost, and licensing?
It is a little bit expensive.
What other advice do I have?
I would recommend this solution based on a customer's requirements. I sell solutions from a lot of firewall vendors. I have the flexibility to recommend based on the budget of a project. I would recommend Palo Alto or any other vendor if the environment and all the conditions are available and suitable for that deployment. A lot of times, we make POC or proof of concepts to show the customer the value of the products and how to deal with them to convince them to buy it.
I would rate Palo Alto Networks NG Firewalls an eight out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
Network Security Engineer at a tech services company with 11-50 employees
Ability to log each and every application provides valuable control
Pros and Cons
- "Ability to log each and every application."
- "With new features and applications you get bugs."
What is our primary use case?
I'm a network security engineer and we are platinum partners with Palo Alto.
What is most valuable?
Initially, there were no application controls offered in the legacy firewall. Now you can log each and every application. It provides valuable control and is the main feature in addition to the security features they're currently offering. All the firewalls - Fortinet, Cisco, Palo Alto - provide complete visibility and control over your network which you didn't previously have. Now you have user ID and you can implement URL filtering as well, there is control over your network. End user logging is far better with Palo Alto than Fortinet or Cisco, and it helps you to troubleshoot. I'd rate Palo Alto on top. It's comfortable and that's my experience. Cisco and Fortinet provide good services, but Palo Alto offers a very good product.
What needs improvement?
There will always be room for improvement. On a daily basis you get patches for everything. They build new features, apply new technologies and new applications which need to be integrated and with that you get bugs. There are always issues, whether it's hardware or software.
For how long have I used the solution?
I've been using this solution for five years.
What do I think about the stability of the solution?
The product is generally stable but with each new update you need to get the OS bug fix. Any security device has a vulnerability which a hacker can exploit and you have to keep on patching.
What do I think about the scalability of the solution?
I work on the system integrator side and work with multiple customers, and this is a scalable solution.
How are customer service and technical support?
The support level is good, but it depends on the region you're working from. In some countries, the support flexibility is very good. For others, you have different strategies. I'm in Pakistan and Palo Alto has a different strategy here in that they don't directly provide support. You have to add another vendor in between and open a case with them and if they can't resolve your query they activate to Palo Alto. In some countries, Palo Alto directly provides support and in others they can't be contacted directly. In a couple of scenarios, we got involved with an R&D team and told them there was a bug for our end users. Palo Alto escalated that case to an R&D team and they got it fixed in the following patches.
How was the initial setup?
The initial setup is a very smooth process integrated with initial configuration. It's very easy.
What's my experience with pricing, setup cost, and licensing?
You could say that the cost is higher for Palo Alto, but they are a better product compared to the other principals.
Which other solutions did I evaluate?
I work with Fortinet as well as Palo Alto. Palo Alto has very extensive logging that Fortinet doesn't offer. To get that with Fortinet you need to purchase FortiAnalyzer for reporting. The logging is so extensive in Palo Alto that you can generate a report and get an analysis on the same firewall. You don't need to procure anything else. The documentation of both Fortinet and Palo Alto is up to standard. They both have very extensive documentation for their products. Both of them offer the same level of knowledge base for their customers and are up to the mark. In terms of support, Fortinet and Cisco allow you to directly open a case and get an engineer on the line. Cisco follows the same model. I'm unable to do that with Palo Alto from Pakistan.
What other advice do I have?
I would rate this solution an eight out of 10.
Disclosure: My company has a business relationship with this vendor other than being a customer. partner

Buyer's Guide
Download our free Palo Alto Networks NG Firewalls Report and get advice and tips from experienced pros
sharing their opinions.
Updated: August 2025
Product Categories
FirewallsPopular Comparisons
Fortinet FortiGate
Netgate pfSense
Cisco Secure Firewall
Cisco Meraki MX
WatchGuard Firebox
Check Point Quantum Force (NGFW)
Azure Firewall
SonicWall TZ
Fortinet FortiGate-VM
Juniper SRX Series Firewall
SonicWall NSa
KerioControl
Buyer's Guide
Download our free Palo Alto Networks NG Firewalls Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- Is Palo Alto the best firewall for an on-premise/cloud hybrid IT network?
- What are the main differences between Palo Alto and Cisco firewalls ?
- Expert Opinion on Palo-Alto Required.
- Which is the best IPS - Cisco Firepower or Palo Alto?
- Features comparison between Palo Alto and Fortinet firewalls
- Is Palo Alto Networks NG Firewalls better than Check Point NGFW?
- Which is better - Palo Alto Networks NG Firewalls or Sophos XG?
- What are the main differences between Palo Alto firewalls and Cisco Secure Firepower?
- What is a better choice, Azure Firewall or Palo Alto Networks NG Firewalls?
- Which Palo Alto Networks NG Firewalls model is recommended for 1200 users?