Palo Alto Networks Next-Generation Firewalls - PA Series vs. Sophos UTM

Overview
ProductRatingMost Used ByProduct SummaryStarting Price
Palo Alto Networks Next-Generation Firewalls - PA Series
Score 9.1 out of 10
N/A
Palo Alto Network’s Next-Generation Firewalls is a firewall option integrated with other Palo Alto security products. Released in late 2023, the PA-7500 ML-Powered NextGeneration Firewall (NGFW) enables enterprise-scale organizations and service providers to deploy security in high-performance environments.
$1.50
per hour per available zone
Sophos UTM
Score 8.9 out of 10
N/A
Sophos UTM provides core firewall features, plus sandboxing and AI threat detection for advanced network security. It has customizable deployment options.N/A
Pricing
Palo Alto Networks Next-Generation Firewalls - PA SeriesSophos UTM
Editions & Modules
No answers on this topic
No answers on this topic
Offerings
Pricing Offerings
Palo Alto Networks Next-Generation Firewalls - PA SeriesSophos UTM
Free Trial
YesYes
Free/Freemium Version
NoNo
Premium Consulting/Integration Services
NoNo
Entry-level Setup FeeNo setup feeNo setup fee
Additional DetailsUsers may also choose to pay per gigabyte of data used starting at .065/GB. Note that prices listed here reflect installations via Amazon Web Services. Pricing may differ if other service providers are used.t2.small - $0.123 - Total / hr m3.medium - $0.417 - Total / hr m3.large - $0.883 - Total / hr m3.xlarge - $1.366 - Total / hr m3.2xlarge- $1.982 - Total / hr c3.large - $0.555 - Total / hr c3.xlarge - $1.11 - Total / hr c3.2xlarge - $1.72 - Total / hr c3.4xlarge - $2.59 - Total / hr c3.8xlarge - $3.68 - Total / hr c4.large - $0.55 - Total / hr c4.xlarge - $1.099 - Total / hr c4.2xlarge - $1.698 - Total / hr c4.4xlarge - $2.546 - Total / hr c4.8xlarge - $3.841 - Total / hr m4.large - $0.868 - Total / hr m4.xlarge - $1.365 - Total / hr m4.2xlarge- $1.931 - Total / hr
More Pricing Information
Community Pulse
Palo Alto Networks Next-Generation Firewalls - PA SeriesSophos UTM
Features
Palo Alto Networks Next-Generation Firewalls - PA SeriesSophos UTM
Firewall
Comparison of Firewall features of Product A and Product B
Palo Alto Networks Next-Generation Firewalls - PA Series
8.9
24 Ratings
3% above category average
Sophos UTM
-
Ratings
Identification Technologies9.724 Ratings00 Ratings
Visualization Tools8.024 Ratings00 Ratings
Content Inspection9.724 Ratings00 Ratings
Policy-based Controls10.024 Ratings00 Ratings
Active Directory and LDAP9.323 Ratings00 Ratings
Firewall Management Console9.024 Ratings00 Ratings
Reporting and Logging8.024 Ratings00 Ratings
VPN8.724 Ratings00 Ratings
High Availability9.323 Ratings00 Ratings
Stateful Inspection9.023 Ratings00 Ratings
Proxy Server7.012 Ratings00 Ratings
Best Alternatives
Palo Alto Networks Next-Generation Firewalls - PA SeriesSophos UTM
Small Businesses
pfSense
pfSense
Score 9.4 out of 10
pfSense
pfSense
Score 9.4 out of 10
Medium-sized Companies
pfSense
pfSense
Score 9.4 out of 10
pfSense
pfSense
Score 9.4 out of 10
Enterprises
Palo Alto Networks Virtualized Next-Generation Firewalls - VM Series
Palo Alto Networks Virtualized Next-Generation Firewalls - VM Series
Score 9.5 out of 10
Palo Alto Networks Virtualized Next-Generation Firewalls - VM Series
Palo Alto Networks Virtualized Next-Generation Firewalls - VM Series
Score 9.5 out of 10
All AlternativesView all alternativesView all alternatives
User Ratings
Palo Alto Networks Next-Generation Firewalls - PA SeriesSophos UTM
Likelihood to Recommend
9.5
(39 ratings)
9.0
(11 ratings)
Likelihood to Renew
10.0
(1 ratings)
-
(0 ratings)
Usability
9.0
(4 ratings)
10.0
(1 ratings)
Support Rating
8.4
(9 ratings)
7.9
(3 ratings)
User Testimonials
Palo Alto Networks Next-Generation Firewalls - PA SeriesSophos UTM
Likelihood to Recommend
Palo Alto Networks
Anywhere where high performance and application-specific rules are necessary would be a great fit. Palo Alto NG firewalls are exceptionally well suited to doing application-based rules, rather than service-based rules, although they can still easily do those. The cost might make it less well-suited for smaller installations or where the more complicated setup procedures are too much for a user with limited proficiency to handle.
Read full review
Sophos
UTM works great if you want a solid, obvious firewall. There's not a lot of second-guessing as to what you are about to do with every change you make. If you incorporate their wireless access points and RED (remote ethernet device) for remote users or small offices, it's considerably much easier to set up than other comparable solutions. If you are looking to manage your firewalls via the cloud, you are out of luck.
Read full review
Pros
Palo Alto Networks
  • The PA handles VPN connectivity without missing a beat. We have multiple VPN tunnels in use for redundancy to cloud-based services.
  • The PA has great functionality in supporting failover internet connections, again with the ability to have multiple paths out to our cloud-based services.
  • The PA is updated on the regular with various security updates, we are not concerned with the firewall's ability to see what packets are really flowing across the network. Being able to see beyond just IP and port requests lets you know things are locked down better than traditional firewalls.
  • It is a great overall kit, with URL filtering and other services that fill in the gaps between other solutions without breaking the bank.
Read full review
Sophos
  • Firewall Protection. The protection is unmatched, setup it a little daunting, but once set up it pretty much runs itself.
  • Site-to-site VPN. Super easy to deploy so we are able to network all our sites together.
  • The DHCP server function is actually really nice, I prefer using it over the traditional way of using a DC for DHCP.
Read full review
Cons
Palo Alto Networks
  • The interface is a little complicated at first. This is common for all firewall products I've used but Palo Alto could definitely update the UI.
  • Firewall rule audits are cumbersome. I have been using third-party tools to assist with the management. It would be great if Palo Alto could build out this functionality within Panorama.
  • Best-Practice Assessment (BPA) is not well advertised. These are very useful but require reaching out to your rep. Palo Alto should look at automating this and building it into QBR touchpoints with their customers.
Read full review
Sophos
  • Better standard support, it used to be great, now, not so much (for paying customers, that only aquired the Hardware)
  • Better wireless solution, there is always room for that, now that everybody needs robust wifi, even at home!
  • Faster and more robust wireless Access Points, or different vendor-like compatibility.
Read full review
Likelihood to Renew
Palo Alto Networks
The PA5220s have far exceeded what we have expected out of them. It was a bit of a learning curve coming from another vendor, but everything falls into place now with ease. The capabilities of the solution still surprise us, allowing us to remove other costly hardware and providing a single point of management needed
Read full review
Sophos
No answers on this topic
Usability
Palo Alto Networks
The few aspects of the Palo Alto Networks Next-Generation Firewalls - PA Series that could use improvement - such as slow commit times, which I hear they have improved on in the newest models - are vastly outshined by everything else these appliances provide. We have been using the Palo Alto Networks Next-Generation Firewalls - PA Series appliances for more than 10 years and plan to continue using them for the foreseeable future.
Read full review
Sophos
The interface is no non-sense and easy to understand. No need for any consultants to help implement this solution. The performance is consistent and solid. Paired with a good amount of firmware and definitions, it's hard to find any fault in this product. It's interoperability with other Sophos products make a compelling argument to invest in more Sophos products.
Read full review
Support Rating
Palo Alto Networks
We've run into a couple undocumented bugs, but that seems to happen with every brand and technology. Any time we've had to engage Palo Alto support they've always been professional, knowledgeable and prompt. In almost all cases we've been able to resolve our issues without having to escalate our tickets.
Read full review
Sophos
I find the support fair. The wait can be frustrating when dealing with fire. The pandemic has not helped with this. Although the wait can be long, the support reps are knowledgeable and was able to resolve the issues I was facing.
Read full review
Alternatives Considered
Palo Alto Networks
We are using Cisco ASA before in our environment but when it comes to deep scanning & layer 7 security it doesn't have that capability. After using Palo Alto Networks Next-Generation Firewall we are using sandboxing & advance malware protection that provides high-level end-user security. Also after implementing it we can easily monitor user-level traffic.
Read full review
Sophos
I would rate Sophos second on this list right below Webroot. Webroot has an easier user interface and policy builder. However, Sophos would be on top of its UI would be improved. I would rank CrowStrike third and McAfee last. Sophos is great for complex environments that have multiple needs.
Read full review
Return on Investment
Palo Alto Networks
  • We used to outsource our Firewall and it's management. Not only did we find their SLA's to be lacking, in general, but communication between us was horrible. Many times we could not understand them and that resulted in less than desirable rule creation or troubleshooting.
  • Since we no longer have to pay a company for 24/7 management (and SLOW SLA's) we are saving a ton of money each year. Also our fellow employee's are much happier that things can be resolved in a timely manner.
Read full review
Sophos
  • Sophos has provided a secure Firewall for us.
  • Integration with Sophos Central makes it easier to manage both.
  • Site to site VPN Failover groups has caused more trouble than it's worth.
  • High availability doesn't recognize when you are restarting for an update.
Read full review
ScreenShots