Juniper SRX vs. Palo Alto Networks Advanced Threat Prevention

Overview
ProductRatingMost Used ByProduct SummaryStarting Price
Juniper SRX
Score 8.2 out of 10
N/A
Juniper SRX is a firewall offering. It provides a variety of modular features, scaled for enterprise-level use, based on a 3-in-1 OS that enables routing, switching, and security in each product.N/A
Palo Alto Networks Advanced Threat Prevention
Score 8.6 out of 10
N/A
Palo Alto Networks Advanced Threat Prevention is an intrusion prevention system (IPS) used to stop zero-day attacks inline in real-time. In addition to the prevention of known threats, the solution helps to stop never-before-seen exploit attempts and command and control with its inline deep learning engines that aims to provide prevention of zero-day injection attacks and evasive command and control.N/A
Pricing
Juniper SRXPalo Alto Networks Advanced Threat Prevention
Editions & Modules
No answers on this topic
No answers on this topic
Offerings
Pricing Offerings
Juniper SRXPalo Alto Networks Advanced Threat Prevention
Free Trial
NoNo
Free/Freemium Version
NoNo
Premium Consulting/Integration Services
NoNo
Entry-level Setup FeeNo setup feeNo setup fee
Additional Details——
More Pricing Information
Community Pulse
Juniper SRXPalo Alto Networks Advanced Threat Prevention
Top Pros
Top Cons
Features
Juniper SRXPalo Alto Networks Advanced Threat Prevention
Firewall
Comparison of Firewall features of Product A and Product B
Juniper SRX
8.7
5 Ratings
2% above category average
Palo Alto Networks Advanced Threat Prevention
-
Ratings
Identification Technologies9.03 Ratings00 Ratings
Visualization Tools7.03 Ratings00 Ratings
Content Inspection8.04 Ratings00 Ratings
Policy-based Controls10.04 Ratings00 Ratings
Active Directory and LDAP8.03 Ratings00 Ratings
Firewall Management Console7.05 Ratings00 Ratings
Reporting and Logging8.05 Ratings00 Ratings
VPN10.04 Ratings00 Ratings
High Availability10.05 Ratings00 Ratings
Stateful Inspection10.04 Ratings00 Ratings
Proxy Server9.03 Ratings00 Ratings
Best Alternatives
Juniper SRXPalo Alto Networks Advanced Threat Prevention
Small Businesses
pfSense
pfSense
Score 9.2 out of 10
AlienVault USM
AlienVault USM
Score 8.0 out of 10
Medium-sized Companies
pfSense
pfSense
Score 9.2 out of 10
CrowdStrike Falcon
CrowdStrike Falcon
Score 9.1 out of 10
Enterprises
Next-Generation Firewalls - PA Series
Next-Generation Firewalls - PA Series
Score 9.3 out of 10
CrowdStrike Falcon
CrowdStrike Falcon
Score 9.1 out of 10
All AlternativesView all alternativesView all alternatives
User Ratings
Juniper SRXPalo Alto Networks Advanced Threat Prevention
Likelihood to Recommend
8.0
(8 ratings)
6.8
(4 ratings)
Likelihood to Renew
8.0
(2 ratings)
-
(0 ratings)
Support Rating
6.4
(3 ratings)
-
(0 ratings)
User Testimonials
Juniper SRXPalo Alto Networks Advanced Threat Prevention
Likelihood to Recommend
Juniper Networks
SRXs seem to be well suited at the enterprise level for plain routers, firewalls, and IDP/IDS. They work well on MPLS and Ethernet, including Internet. I have 3 SRXs also performing edge duty, with 2 in a high availability (HA) cluster. The Juniper line of SRXs provides a good range of scaling from small business to extremely large enterprise. Wire speed is a common comparison factor and Juniper shines in that area.
Read full review
Palo Alto Networks
Palo Alto NTP is an appropriate suite of protection for any enterprise environment or anyone that truly needs some serious perimeter protection in a one-stop, all-in-one unit. There are no modules or add-ons or clunky interfaces to deal with it; everything works out of one management plane, licensing, implementation, monitoring. updating, etc. As a network admin, that is immensely valuable to me. Additionally, I get real-time reporting on all the stuff NTP is catching, and it is nothing to shirk at. The real value in NTP comes in only after you begin doing SSL-decryption, however, to truly inspect the traffic. Short of that, you are just seeing a bunch of encrypted data and the NTP suite of tools isn't going to avail you. NTP plus decryption, though, is invaluable!
Read full review
Pros
Juniper Networks
  • Edge Device (Tunneling & Routing)
  • Routing Instances
  • Zone Based Firewall
  • L3 Gateway/Vlan termination
  • DHCP Server & DHCP Relay
  • Good support community & Good available documentation
  • Good support by the Vendor
Read full review
Palo Alto Networks
  • Anti virus
  • Vulnerability protection
  • Anti spyware
Read full review
Cons
Juniper Networks
  • My only real criticism of the product is that it's hard to figure out how to upgrade the firmware from the CLI via TFTP via the docs, but it works great once you get it sorted.
Read full review
Palo Alto Networks
  • Sometimes I struggle to find the deny or specific traffic log for file blocking profile under Unified logs.
  • Reporting around Threat Prevention suite could be much better.
  • Possibly a specific threat prevention search function that spans across of threat features.
Read full review
Support Rating
Juniper Networks
This is the one area where I have a beef with Juniper. When I called into Cisco TAC, 90% of the time, the first person I spoke with was able to resolve my issue. With Juniper TAC, 90% of the time, the first person I speak with is not able to resolve my issue, seems to almost be reading from a script, and must escalate my ticket. All of which takes time.
Read full review
Palo Alto Networks
No answers on this topic
Alternatives Considered
Juniper Networks
Juniper SRX stands tall compared to all these products for Large Service Provider Networks, where traffic volume is larger. Also, cost comparison with SRX's few other products can also be another contributing factor while selecting this. As well as Juniper Routers, Switches, and multiple products from the same vendor to maintain one single vendor environment. As well as Juniper Support is also really good.
Read full review
Palo Alto Networks
It is comparable but not as robust as other stand alone IPS/IDS.
Read full review
Return on Investment
Juniper Networks
  • It is a workhorse for our field operations. It provides the last touch for an ISP to the customer. The customer has no view of the device, but with the repeatability of the device, they do not need to.
  • The ability to roll out a dynamic routing protocol attached to a security zone allows elasticity to the environment that supports growth.
  • VLAN support on the inside interfaces allow this to be the only device in some smaller deployments we install these in.
Read full review
Palo Alto Networks
  • We have various compliance standards we have to meet and the Palo Alto with its Networks Threat Protection suite has checked off pretty much all the boxes we needed and at a price point that couldn't be easily beat for comparable features, throughput, etc.
  • IT/Network staff has saved a A LOT of time using this platform for protection (coming from an ASA)
Read full review
ScreenShots