Palo Alto Networks Advanced Threat Prevention is an intrusion prevention system (IPS) used to stop zero-day attacks inline in real-time. In addition to the prevention of known threats, the solution helps to stop never-before-seen exploit attempts and command and control with its inline deep learning engines that aims to provide prevention of zero-day injection attacks and evasive command and control.
N/A
Palo Alto Networks Advanced URL Filtering
Score 9.1 out of 10
N/A
The
majority of attacks and exposure to malicious content occurs during the
normal course of web browsing activities, which requires the ability to allow
safe, secure web access for all users. URL Filtering with PAN-DB
automatically prevents attacks that leverage the web as an attack vector,
including phishing links in emails, phishing sites, HTTP-based command and
control, malicious sites and pages that carry exploit kits.
N/A
Pricing
Palo Alto Networks Advanced Threat Prevention
Palo Alto Networks Advanced URL Filtering
Editions & Modules
No answers on this topic
No answers on this topic
Offerings
Pricing Offerings
Palo Alto Networks Advanced Threat Prevention
Palo Alto Networks Advanced URL Filtering
Free Trial
No
No
Free/Freemium Version
No
No
Premium Consulting/Integration Services
No
No
Entry-level Setup Fee
No setup fee
No setup fee
Additional Details
—
—
More Pricing Information
Community Pulse
Palo Alto Networks Advanced Threat Prevention
Palo Alto Networks Advanced URL Filtering
Considered Both Products
Palo Alto Networks Advanced Threat Prevention
No answer on this topic
Palo Alto Networks Advanced URL Filtering
Verified User
Engineer
Chose Palo Alto Networks Advanced URL Filtering
Palo offers a superior product because it is much easier to integrate within existing networks and environments. It is not a DNS redirection which can be easily worked around.. but built into the data path itself. It is much more easily managed than any other product I have …
Palo Alto NTP is an appropriate suite of protection for any enterprise environment or anyone that truly needs some serious perimeter protection in a one-stop, all-in-one unit. There are no modules or add-ons or clunky interfaces to deal with it; everything works out of one management plane, licensing, implementation, monitoring. updating, etc. As a network admin, that is immensely valuable to me. Additionally, I get real-time reporting on all the stuff NTP is catching, and it is nothing to shirk at. The real value in NTP comes in only after you begin doing SSL-decryption, however, to truly inspect the traffic. Short of that, you are just seeing a bunch of encrypted data and the NTP suite of tools isn't going to avail you. NTP plus decryption, though, is invaluable!
Because of it's complexity, Palo may not be well suited for a small organization that may not have dedicated networking staff. But for a mid to large-sized enterprise, Palo shines.
The threat engine has constant updates for important threats.
Wildfire helps supplement the Threat engine to help protect against 0 day threats.
The way the threat engine can be added at different levels to different zones and policies helps to ensure business essential traffic can have policies that are tuned to ensure traffic will flow.
The reason to give ATP this rating is it specialises in detecting command control traffic whose primary role is to identify unusual outbound traffic patterns which blocks the command control communication and notifies to different security team to take necessary actions. ATP Global protect holds the responsibility of inspecting all the inbound and outbound traffic going to and from corporate system regardless of the network they are on. ATP plays a major role to identify the threats that blocks threats that could lead to data breach also it identifies any malicious file enter the system will be blocked proactively
It is very easy to use and setup. It integrates well within all of Palo's products such as NGFWs and Prisma Access. There is a dedicated log inside of Palo products for URL filtering to aid in troubleshooting. It integrates with AD/Azure so that different users can have different URL filtering rules. Filtering can be adjusted in real-time
Palo support is excellent, and I have never had to wait when contacting them for support. One of the best support teams in the business, in my opinion.
Having used Palo Alto Firewalls for years, implementing threat protection was the next step in perimeter security. Works much better than the few competitors I have personally used. Frequent content updates occur which may impact some policy rules, but that is normal across most vendors.
Palo Alto Networks Advanced URL Filtering is the best solution to work with Palo Alto Firewalls and Panorama as an orchestrator. We choose Palo Alto Networks Advanced URL Filtering as it could reach the success criteria during the PoC.