FortiNet FortiGate is a firewall option with high integrability. It offers a variety of deployment options and next-gen firewall capabilities, including integration with IaaS cloud platforms and public cloud environments.
N/A
Palo Alto Networks Next-Generation Firewalls - PA Series
Score 9.0 out of 10
N/A
Palo Alto Network’s Next-Generation Firewalls is a firewall option integrated with other Palo Alto security products. Released in late 2023, the PA-7500 ML-Powered NextGeneration Firewall (NGFW) enables enterprise-scale organizations and service providers to deploy security in high-performance environments.
$1.50
per hour per available zone
Pricing
Fortinet FortiGate
Palo Alto Networks Next-Generation Firewalls - PA Series
Editions & Modules
No answers on this topic
No answers on this topic
Offerings
Pricing Offerings
FortiGate
Palo Alto Networks Next-Generation Firewalls - PA Series
Free Trial
Yes
Yes
Free/Freemium Version
No
No
Premium Consulting/Integration Services
No
No
Entry-level Setup Fee
No setup fee
No setup fee
Additional Details
FortiGate pricing starts at $250 for home office use, up to $300,000 for large enterprise appliances.
Must contact sales team for pricing.
Users may also choose to pay per gigabyte of data used starting at .065/GB. Note that prices listed here reflect installations via Amazon Web Services. Pricing may differ if other service providers are used.
More Pricing Information
Community Pulse
Fortinet FortiGate
Palo Alto Networks Next-Generation Firewalls - PA Series
Integrated security features multiple security in one platform, cost effective, centralized management, saclability like its models are availble from small to large enterprise for provide proper throughput according to size we can select model.documentation of all features are …
An excellent ratio of functionality and cost of the solution, the UTM subscription and a wide partner network determined our choice of the Fortinet FortiGate. The solution met all the defined requirements, including personal data protection. Local vendors like UserGate were …
Before Fortinet, we used checkpoint and our log was closed to gain performance. However, all devices were accessing Checkpoint through a different gateway inside. FortiGate is definitely more successful in log detail. We preferred Fortinet FortiGate because it offers stable …
Fortigate is cheaper than other vendors and includes basically the same features. The performance is very good and the configuration is really very easy, you don´t need a lot of training to understand the configuration. The VPN connection works very well and the application …
FortiGates are cheaper than most alternatives (except solutions like pfSense, of course.). They are also very easy to configure and have affordable security subscription options.
Fortinet was well placed on the Gartner report which lead to my initial investigation into the company. I quickly narrowed my selections down to Palo Alto and Fortinet, due to feature set, reputation and ease of use. Fortinet won out simply because Palo Alto did not offer a …
FortiGate has a strong offering at a very competitive price point. I like that with your subscription you get access to all of the pieces, and that features aren't arbitrarily turned off unless you buy a specific license or bundle. For what you get for the price, it's really …
Fortigate is a lot easier to configure and manage than a Cisco ASA Firewall. Fortinet feels a lot more intuitive and easier to configure than Cisco. Fortinet is a lot more innovative and have easier to use products.
Compared to Palo Alto Networks' firewalls FortiGate has the better price while the worse security design. FortiGate is an all-in-one appliance with many many features that are not completely implemented. In contrast, Palo Alto firewalls have the better concept on how to …
Palo Alto Networks Next-Generation Firewalls - PA Series
Verified User
Professional
Chose Palo Alto Networks Next-Generation Firewalls - PA Series
The main competitor I can compare Palo Alto to is the FortiGate series of devices by Fortinet. FortiGates are capable UMTs and also less expensive than Palo Altos. That being said, category filtering on FortiGates is less effective, and they are not as feature-rich as Palo …
Chose Palo Alto Networks Next-Generation Firewalls - PA Series
Palo Alto Networks Next-Generation Firewalls - PA Series was selected because it offered the best combination of visibility, threat prevention, scalability, and centralized management. Palo Alto Networks Next-Generation Firewalls - PA Series has :Best-in-Class Application and …
Chose Palo Alto Networks Next-Generation Firewalls - PA Series
Fortinet's IAM connector did not work well resulting in difficulty creating identity based access rules. Check Point updates and management was very painful. In one instance, Check Point depricated a rule set entirely which caused the appliances to fail.
Chose Palo Alto Networks Next-Generation Firewalls - PA Series
Palo Alto NGFW is quite stable and able to perform most of the security features. It is also have real-time updates for the latest signatures which helps to identify and prevent threats efficiently. The overall deployment is straight forward and easy to implement. User …
Chose Palo Alto Networks Next-Generation Firewalls - PA Series
Cisco Firepower only has basic functionality, URL filtering always create problems also GUI is very bad that's why most organization [are] using Palo Alto rather than Cisco Firepower.
Chose Palo Alto Networks Next-Generation Firewalls - PA Series
Palo Alto has a user-friendly GUI and it comes with a single console from where you can manage all the policies and routing. It has advanced capabilities to prevent APT (Advanced Persistent Threat) attacks. Cisco Firepower lacks in capabilities with Palo Alto if we compare it.
Chose Palo Alto Networks Next-Generation Firewalls - PA Series
Palo Alto has the ability to secure public cloud which none of the vendors have currently. With Palo Alto VM series you can deploy firewall VM in minutes and secure your public cloud.
Chose Palo Alto Networks Next-Generation Firewalls - PA Series
Why did we choose PAN? The number of exploits written for PAN devices are much smaller than ASA. It's much simpler to manage than the checkpoint. It includes web filtering module with the product. Quite simply, it was just the best bang for the buck. Our management consistently …
Chose Palo Alto Networks Next-Generation Firewalls - PA Series
Palo Alto beats all other current UTM/NGFW at this point in time. Palo Alto has a complete vision and is less buggy/requires less management overhead than other NGFW/UTMs on the market. They are currently developing a lot of products and I can see in the next 5 years, other …
Chose Palo Alto Networks Next-Generation Firewalls - PA Series
PA is a no-contest winner to these. Have not got to mess with the Checkpoints too much, but also hear good things too. Will need to try them out to see who the winner is between them and PA.
Palo Alto Networks Next-Generation Firewalls - PA Series
Likelihood to Recommend
Fortinet
Fortinet FortiGate addressed an immediate security issue we had a few years ago. The device gave us a much clearer picture of the activities on our network and also more importantly, increased our awareness of threats from the internet as a whole. Fortinet FortiGate helps us to mitigate these threats with regular signature updates from Fortiguard labs, identifying certain characteristics which, once recognised by Fortinet FortiGate, can be harnessed to deploy powerful 'playbooks'.
It is well-suited for a company needing strong edge security with ease of administration. It comes standard with many features such as VPN, Application ID and "Day-1 Config" that make the networks it protects secure from the very start. Palo is definitely a premium product and is much more expensive than other firewalls, but the value is realized immediately. The robust options for firewall rules/policies allow the administrator to apply security in new and creative ways to hit the sweet spot between security and usability.
SD-WAN - Load balancing of Internet traffic is a USP of Fortigate and makes it stand tall in the competition. Be it 3 or more Internet Links, multiple Subnets/segments of users to distribute and bandwidth load balancing for links and users. SLA based monitoring of Internet Links / MPLS links, makes it even better to choose the links on the basis of performance (Latency, packet loss, Jitter etc).
SSL VPN configuration - As we all have WFH force (to some extend or all employee) during Covid-19, it is impossible to plan BCP without having a SSL VPN. In Fortigate, the SSL VPN configuration is very easy with the help of wizard. The deep CLI-level debugging is also very helpful in troubleshooting. Type of tunnel can be easily configured - Full Tunnel or Split Tunnel for SSL.
Explicit Proxy - This is also a great feature to shape and re-route the traffic, configuring the Proxy on the Firewall itself. We are using this feature in Pilot for now, and planned to rollout in few weeks looking at the success rate of the POC.
The PA handles VPN connectivity without missing a beat. We have multiple VPN tunnels in use for redundancy to cloud-based services.
The PA has great functionality in supporting failover internet connections, again with the ability to have multiple paths out to our cloud-based services.
The PA is updated on the regular with various security updates, we are not concerned with the firewall's ability to see what packets are really flowing across the network. Being able to see beyond just IP and port requests lets you know things are locked down better than traditional firewalls.
It is a great overall kit, with URL filtering and other services that fill in the gaps between other solutions without breaking the bank.
Fortinet's products have kept improving with new software releases and they continue to deliver great value. Their support is also very good. I believe that as a small enterprise, their products have given us competitive advantage delivering features and functionality that enable us to innovate and do things better. They also continue to be a leader in the markets they serve.
The PA5220s have far exceeded what we have expected out of them. It was a bit of a learning curve coming from another vendor, but everything falls into place now with ease. The capabilities of the solution still surprise us, allowing us to remove other costly hardware and providing a single point of management needed
The firewall runs very well, firmware updates are fairly quick but you must follow the upgrade path. Neglecting this step will cause a lot of pain. If you decide to go with Fortinet FortiGate switches and/or access points, they can be managed within the firewall which is great. We're also using the FortiAnalyzer which easily plugs into the firewall for any reporting you may require.
It can be a little tricky at first if you have never used the product or a firewall before. If you have experience with firewalls in general, it does not take long to learn the Palo Alto Networks Next-Generation Firewalls - PA Series interface. They offer great training resources and knowledge base articles to help get up to speed.
The Support team at Fortinet is excellent. They can not only help you configure the device for what you are trying to do, they offer suggestions on improving rules, and troubleshooting issues. Their response time is fast, ensuring you are up and running immediately with no questions asked. We had a hard drive failure in one of our Fortinet Fortigate appliances. The tech answered immediately, and started rebuilding the drive after some preliminary investigations. After rebuilding, there were still errors and issues, so they dispatched a brand new Fortinet Fortigate appliance. The tech then backed up the configurations for when the new device came in, which showed up in a few hours. A restore of the configuration took less than a minute, and there were no more errors or issues.
We've run into a couple undocumented bugs, but that seems to happen with every brand and technology. Any time we've had to engage Palo Alto support they've always been professional, knowledgeable and prompt. In almost all cases we've been able to resolve our issues without having to escalate our tickets.
[Fortinet] FortiGate is not only cost effective but it gives the comprehensive security against the APT attacks and gives the complete traffic visibility and granular control. You can easily create the VDOMs (Virtual firewall) within a Fortigate firewall and customize the dashboard as per your requirement if you have multiple VDOMs within a single firewall.
We are using Cisco ASA before in our environment but when it comes to deep scanning & layer 7 security it doesn't have that capability. After using Palo Alto Networks Next-Generation Firewall we are using sandboxing & advance malware protection that provides high-level end-user security. Also after implementing it we can easily monitor user-level traffic.
The pricing given to us for our firewall was well within what we were already spending for other vendors solutions and had the added value of eliminating a separate expense for a dedicated web filtering appliance.
We have also adopted Fortinet's security fabric approach and thus changed vendors for our switch and AP devices. These devices have come at reduced prices as compared to another previous vendor we were using, particularly in relation to ongoing annual maintenance costs.
We used to outsource our Firewall and it's management. Not only did we find their SLA's to be lacking, in general, but communication between us was horrible. Many times we could not understand them and that resulted in less than desirable rule creation or troubleshooting.
Since we no longer have to pay a company for 24/7 management (and SLOW SLA's) we are saving a ton of money each year. Also our fellow employee's are much happier that things can be resolved in a timely manner.