The Check Point Quantum Security Gateway Next Generation Firewall is a tiered firewall product. The base model includes the core firewall services, and can be upgraded to include anti-bot/virus/spam and sandboxing capabilities.
$26,400
starting list price for Quantum Force 9100 Base Configuration
F5 BIG-IP
Score 9.1 out of 10
N/A
F5 BIG-IP software from Seattle-based F5 Networks is a load balancing and application protection solution suite available on cloud or via virtual editions, on a subscription or perpetual licensing basis.
N/A
Pricing
Check Point Quantum Firewalls and Security Gateways
F5 BIG-IP
Editions & Modules
No answers on this topic
No answers on this topic
Offerings
Pricing Offerings
Quantum Firewalls and Security Gateways
F5 BIG-IP
Free Trial
No
No
Free/Freemium Version
No
No
Premium Consulting/Integration Services
No
No
Entry-level Setup Fee
No setup fee
No setup fee
Additional Details
—
—
More Pricing Information
Community Pulse
Check Point Quantum Firewalls and Security Gateways
F5 BIG-IP
Features
Check Point Quantum Firewalls and Security Gateways
F5 BIG-IP
Firewall
Comparison of Firewall features of Product A and Product B
Check Point Quantum Firewalls and Security Gateways
9.1
4 Ratings
5% above category average
F5 BIG-IP
-
Ratings
Identification Technologies
9.03 Ratings
00 Ratings
Visualization Tools
8.02 Ratings
00 Ratings
Content Inspection
9.04 Ratings
00 Ratings
Policy-based Controls
9.04 Ratings
00 Ratings
Active Directory and LDAP
9.03 Ratings
00 Ratings
Firewall Management Console
9.04 Ratings
00 Ratings
Reporting and Logging
9.04 Ratings
00 Ratings
VPN
10.04 Ratings
00 Ratings
High Availability
10.04 Ratings
00 Ratings
Stateful Inspection
10.04 Ratings
00 Ratings
Proxy Server
8.03 Ratings
00 Ratings
Best Alternatives
Check Point Quantum Firewalls and Security Gateways
F5 BIG-IP
Small Businesses
pfSense
Score 9.4 out of 10
NGINX
Score 9.4 out of 10
Medium-sized Companies
pfSense
Score 9.4 out of 10
NGINX
Score 9.4 out of 10
Enterprises
Palo Alto Networks Virtualized Next-Generation Firewalls - VM Series
Check Point Quantum Firewalls and Security Gateways
F5 BIG-IP
Likelihood to Recommend
Check Point Software Technologies
1) For huge DC environments and complex networks 2) Where clients were consistent up-time like FSI and healthcare 3) Application-aware client req. and preventing day 0 cyber attacks. 4) Securing East-West traffic, hyper-scaling capabilities 5)Some advantages - Best Security meets Ultimate Hardware and SandBlast Zero Day Protection out of the box, Modular hardware 6) High Performance CPUs
Definitely in larger environments, more mature organizations that obviously have the budget to spend and want best in class. Where it struggles is those organizations that don't have the funding and money to spend on it and need more basic functionality. So I'd say that's smaller customers we've worked with and kind of mid-market. They tend to get scared when they get the quotes. Also we've had some struggles with account team consistency. So for the sales team, just a lot of turnover and a lot of missteps on customer calls.
I mean from a basic level, it actually satisfies all the use cases we have, which is basically to have multiple web servers for the front end and then you want that to be equally split across. The traffic comes in from all over the world. We use DRA protection and everything, but then we also internally want to make sure all the servers are being utilized and we provide much more availability across all servers. We just make sure BIG-IP sits in between and handles the traffic accordingly. And it's pretty basic and it comes to drawing traffic. It's pretty easy to configure and set it up and then forget.
HTTPS Inspection -- The firewall has troubles re-packaging the packet in a way that some websites are able to interpret correctly
Support -- Even getting support directly from Check Point isn't the easiest of experiences. They are more concerned about how fast they can close a ticket out, rather than fixing the problem.
Custom reports -- Custom reporting is extremely limited
Recently we have been deploying F5 web application firewall and we have started the deployment. We have already moved applications out there, but we are not yet to the point wherein I could comment any positive feedback or any negative feedback because we are still going through it, right. But as far as I'm concerned, I don't see any drawbacks or any shortcomings on the F5 product lineup.
It's not difficult to understand the parts of application configurations and features. Setting up new virtual servers with multiple profiles, certificates, and nodes is easy for new users through the web interface, which also translates to programability in scripts, DevOps, or other configuration management use-cases. Users from different backgrounds such as networking and infrastructure can use F5 BIG-IP, while users who are familiar with API calls can easily configure objects without needing to understand the platform at all.
Check Point has a variety of support options that can be used to optimize your investment in the product. Companies with a larger information security and certified checkpoint engineer employee base can benefit from a standard SLA, while companies with a smaller security engineering footprint or more critical implementations can opt for premium, elite or diamond packages that even include the ability to provide on-site engineers for major security incidents. Check Point PRO support also provides the ability to outsource maintenance concerns by automating case creation and follow up when application components fail.
On the occasions when we've had to engage f5 support, they have been great. They have always resolved our issues quickly and been easy to work with and professional. The reason I give them a 10 out of 10, however, is because when we've had issues that have crossed over between the f5 BIG-IP, our Cisco switches, and our Microsoft IIS server the f5 support representatives have been extremely knowledgeable about every product and device involved and have been able to troubleshoot end-to-end without having to engage other vendors.
In a heterogeneous environment, we wanted to keep multiple vendors for multiple purposes. CP was found very good in handling basic Next generation firewalls features along with handling of VPNs.
That's the one thing that really stood out. It was a lot easier to use from an administrator standpoint, so I think that's the one thing that really made our team decide to go with this product versus another competitor. Just ease of use.
Although there are better alternatives out there, Check Point delivers results for the price we paid for the system.
Since implementation, we have not have any major issues with the product, minor issues were resolved in a timely fashion.
Check Point currently fulfills our need for an outside facing firewall, when our organization grows larger, we will be looking at higher level enterprise solutions.