No more typing reviews! Try our Samantha, our new voice AI agent.

AWS Firewall Manager vs FortiGate Cloud-Native Firewall (FortiGate CNF) comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Nov 4, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

AWS Firewall Manager
Ranking in Firewall Security Management
6th
Average Rating
8.0
Reviews Sentiment
7.1
Number of Reviews
12
Ranking in other categories
No ranking in other categories
FortiGate Cloud-Native Fire...
Ranking in Firewall Security Management
7th
Average Rating
8.6
Reviews Sentiment
7.5
Number of Reviews
18
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of June 2026, in the Firewall Security Management category, the mindshare of AWS Firewall Manager is 3.5%, down from 4.0% compared to the previous year. The mindshare of FortiGate Cloud-Native Firewall (FortiGate CNF) is 3.2%, up from 1.6% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Firewall Security Management Mindshare Distribution
ProductMindshare (%)
AWS Firewall Manager3.5%
FortiGate Cloud-Native Firewall (FortiGate CNF)3.2%
Other93.3%
Firewall Security Management
 

Featured Reviews

Venda E - PeerSpot reviewer
Cloud Option Engineer at a tech vendor with 10,001+ employees
Centralized security policies have streamlined audits and ensure consistent protection by default
One area for improvement is the reporting and customization option. The compliance reports are helpful, but having more granular insights or export options would make it even easier to use during audits. Also, support for more third-party integration could improve flexibility. Another improvement I need to see is a smoother setup experience. Some of the initial configuration steps, especially around the organization and permissions, can feel complex. A more guided setup or clear UI explanation would make it easier for teams to adopt quickly. One more improvement would be better alerting options. Right now, we mostly rely on AWS Security Hub or CloudWatch for detailed alerts. Having more built-in, real-time notification directly from AWS Firewall Manager would make it easier to monitor policy violations without extra setup.
Andrew_Jackson - PeerSpot reviewer
Systems engineer at The IT Team (New Zealand)
Centralized management has streamlined access for staff and support has consistently addressed issues quickly
I see areas for improvement, particularly around the SSL VPN. It is a tool that we have used quite heavily, but it has a lot of vulnerabilities and they are starting to be dropping support for it. So we kind of see that they have left a vacuum by removing that feature. The VPN feature is indeed the main concern so far. Security around it is a concern, and then the fact that they have just dropped it and have not really provided a solution that fits for us. Their solution was either IPsec or ZTNA, which is not as flexible as the SSL VPN was for our customers.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The most valuable feature is the centrally managed rule. I also like the central orchestration."
"After implementing AWS Firewall Manager, we reduced our manual security configuration effort by around sixty to seventy percent as the policies are now centralized, managed, and automatically enforced."
"Once this solution is set up, we hardly have to touch it."
"We work with compliance monitoring in the product, which is helpful for identifying framework-based misconfigurations, as it can tell you where to deploy firewall policies based on the frameworks."
"The product is highly reliable."
"The interface is intuitive and it is easy for the users."
"It has centralized cloud firewall management rules. It provides compliance in tracking and reporting."
"AWS Firewall Manager isn't a separate solution when you create the virtual private cloud (VPC), so you can control the traffic through that security group."
"The focus is on the comprehensive coverage of threats and the reliability of the chosen solution. Ease of use and familiarity are crucial."
"FortiGate provides features such as Internet connections, monitoring, VPN, WiFi management, and centralized management system with FortiManager."
"Threat detection and prevention features are the most effective aspects of FortiGate CNF."
"The people I work with appreciate the stability of FortiGate Cloud-Native Firewall (FortiGate CNF), as they love its reliability."
"FortiGate's offering of many features in one license is cost-effective."
"The tool's documentation and online resources availability have been valuable."
"FortiGate Cloud-Native Firewall (FortiGate CNF) is highly valued for its pricing, which is considered very affordable."
"Centralized management definitely helps us manage security operations, a single pane of glass management is a bonus for us, and we can give our staff access to the portal and they can access all our customers."
 

Cons

"The areas of improvement are definitely platform resiliency, as we have seen outages on the AWS backbone, and whenever there is an outage on the AWS backbone, it impacts all the services hosted on that region, so we expect regional resiliency."
"The system should be more customizable."
"AWS Firewall Manager could be improved with more granular policy customization for better visibility through enhanced dashboards and reporting."
"For AWS WAF, we have seen cases where it allowed suspicious HTTPS headers even if they carried malicious payloads."
"One area for improvement is the reporting and customization option."
"AWS Firewall Manager should be open to manage other third-party appliances as well."
"In AWS, there are so many features that many users get confused about what to use and what not to use."
"It needs to be more employee-friendly, and the security management could be more efficient."
"The solution is not stable in terms of switching."
"I'd like them to add a DNS option for FortiGate."
"For scalability, if the hardware isn't fit or working, the box needs changing."
"The deployment process is complex."
"The VPN feature is indeed the main concern so far. Security around it is a concern, and then the fact that they have just dropped it and have not really provided a solution that fits for us."
"We sometimes encounter issues with the SSL certificate."
"The solution needs to improve on box clustering and IPS configuration."
"The customization of FortiGate Cloud-Native Firewall (FortiGate CNF) could be improved, particularly in terms of configurations to better adjust to specific needs."
 

Pricing and Cost Advice

"From what I've heard from my colleagues, it appears that the pricing is competitive, which influenced our decision to choose this option."
"The licensing is on a pay-as-you-go basis and we are billed monthly."
"It is a cost-efficient product."
"The AWS Firewall Manager is a little on the costly side."
"FortiGate's price is really good."
"The pricing is competitive."
"It is an expensive platform."
"The tool's licensing costs are cheap and yearly."
"FortiGate Cloud-Native Firewall is not an expensive solution."
report
Use our free recommendation engine to learn which Firewall Security Management solutions are best for your needs.
897,029 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Comms Service Provider
11%
University
7%
Construction Company
7%
Retailer
6%
Financial Services Firm
14%
Comms Service Provider
14%
Manufacturing Company
11%
Marketing Services Firm
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business5
Midsize Enterprise1
Large Enterprise8
By reviewers
Company SizeCount
Small Business13
Midsize Enterprise2
Large Enterprise3
 

Questions from the Community

What is your experience regarding pricing and costs for AWS Firewall Manager?
The pricing is reasonable and follows a pay-as-you-go model, which makes it cost-effective for scaling the environment. There is no significant setup cost since the native AWS services and licensin...
What needs improvement with AWS Firewall Manager?
AWS Firewall Manager could be improved with more granular policy customization for better visibility through enhanced dashboards and reporting. Simplifying the initial setup and providing clearer d...
What is your primary use case for AWS Firewall Manager?
My primary use case for AWS Firewall Manager is to centrally manage and enforce security policies across the multiple AWS accounts and resources within our organization. It helps to streamline the ...
What is your experience regarding pricing and costs for FortiGate Cloud-Native Firewall (FortiGate CNF)?
The pricing is a bit expensive, primarily due to licensing fees. Extra expenses include upgradations beyond licensing.
What needs improvement with FortiGate Cloud-Native Firewall (FortiGate CNF)?
I see areas for improvement, particularly around the SSL VPN. It is a tool that we have used quite heavily, but it has a lot of vulnerabilities and they are starting to be dropping support for it. ...
What is your primary use case for FortiGate Cloud-Native Firewall (FortiGate CNF)?
The major use case for this product is if customers have on-prem hardware to protect, along with the other use cases with SD-WAN and VPN connectivity.
 

Interactive Demo

 

Overview

 

Sample Customers

Expedia, Intuit, Royal Dutch Shell, Brooks Brothers
Information Not Available
Find out what your peers are saying about AWS Firewall Manager vs. FortiGate Cloud-Native Firewall (FortiGate CNF) and other solutions. Updated: April 2026.
897,029 professionals have used our research since 2012.