Try our new research platform with insights from 80,000+ expert users

Cato SASE Cloud Platform vs Cloudflare One comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Jan 4, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Fortinet FortiGate
Sponsored
Ranking in Software Defined WAN (SD-WAN) Solutions
1st
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
587
Ranking in other categories
Secure Web Gateways (SWG) (2nd), Firewalls (1st), Intrusion Detection and Prevention Software (IDPS) (1st), WAN Edge (1st), ZTNA (1st), Unified Threat Management (UTM) (1st)
Cato SASE Cloud Platform
Ranking in Software Defined WAN (SD-WAN) Solutions
6th
Average Rating
9.0
Reviews Sentiment
7.5
Number of Reviews
31
Ranking in other categories
WAN Optimization (2nd), Intrusion Detection and Prevention Software (IDPS) (11th), Cloud Access Security Brokers (CASB) (6th), WAN Edge (6th), ZTNA as a Service (6th), Secure Access Service Edge (SASE) (2nd), Remote Browser Isolation (RBI) (2nd)
Cloudflare One
Ranking in Software Defined WAN (SD-WAN) Solutions
13th
Average Rating
8.8
Reviews Sentiment
6.7
Number of Reviews
22
Ranking in other categories
Email Security (20th), Secure Web Gateways (SWG) (15th), Data Loss Prevention (DLP) (21st), Cloud Access Security Brokers (CASB) (11th), Distributed Denial-of-Service (DDoS) Protection (7th), Access Management (12th), Bot Management (3rd), ZTNA as a Service (8th), ZTNA (3rd), Secure Access Service Edge (SASE) (10th), Remote Browser Isolation (RBI) (3rd)
 

Featured Reviews

Vasu Gala - PeerSpot reviewer
Manager, Information Technology Operation/Presales at TechMonarch
A stable solution with an intuitive interface and quick customer service
I have been working with Fortinet FortiGate, WatchGuard, Sophos, and SonicWall. I'm not as comfortable with SonicWall because of their UI and limitations. I prefer Fortinet above all other options. When it comes to configuration, I am confident in my ability to handle various tasks, including creating policies such as firewall rules, web policies, and application policies. Additionally, I can configure VPNs and implement load balancing, among other tasks. Overall, I feel much more comfortable working with Fortinet. Fortinet has made significant improvements by integrating AI with firewalls for threat analysis and prevention. In the past 2-3 years, they have launched FortiSASE and SIEM, and they also provide SOC services. Both Palo Alto and Fortinet FortiGate are excellent. While Fortinet FortiGate comes at higher prices, the functionality and support justify the cost. They promptly resolve firmware issues and inform all support providers about configuration changes.
reviewer2697738 - PeerSpot reviewer
Product & Services Integrator at a comms service provider with 10,001+ employees
Cloud security has unified global network design and has simplified threat visibility
I think all of the functionalities, such as the secure web gateway feature, are quite good. I also believe Cato SASE Cloud Platform is one of the only solutions that has not only a software firewall solution but also a physical software solution where you can change the company's firewalls and put in sockets from Cato SASE Cloud Platform, which I see as an advantage for them. The single-pass architecture has improved user experience with Cato SASE Cloud Platform as it provides security teams in companies a platform where they can easily obtain information if there are breaches or security issues. I assess the benefit of integrating WAN optimization as good. There is ease in making rules between WAN optimization, especially when it comes to global connections because of all their points of presence that are spread over the world. I think the real-time threat protection of Cato SASE Cloud Platform is also good. Their points of presence are quite efficient, and I do not see any delays in that area.
CV
Network Architect at IP Dimension
Cloud security has improved remote access and has reduced costs for smaller client sites
I have used Cloudflare One's Identity-Aware Proxy, and it is quite straightforward from what I have seen so far. The app registration on the Azure side integrates fully into Cloudflare, and I am very satisfied with that part because it is easy to set up. The integration of Cloudflare One's Secure Web Gateway and Zero Trust Network Access works without any issues. That part is pretty automatic, and if you complete the rest of the setup, it comes together by itself with no issues from my side. What makes it nice is that we can actually start replacing on-site firewalls at this stage for the smaller clients because it does not matter if they go to a coffee shop or work from home; they are still secured by the same connection. The hops get shorter and you get better latency. We have done testing to see if it is better. One thing that we did notice with our proof of concept with our current client is that they have people connecting from the UK. When they used their previous VPN solution, uploading CAD drawings and other files to the server took a long time. They mentioned that it is much quicker on Cloudflare One's solution. I definitely believe that is part of the improved performance, and I am satisfied with that as well. What is nice about Cloudflare One is that it makes the setup easier and also easier to train technicians to maintain it. Compared to legacy systems, we do not need to get fancy firewalls in place that are costly. That is definitely also a cost-saver with Cloudflare One.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The most valuable feature of Fortinet FortiGate is the simple configuration."
"The most valuable features we found are the SD-WAN, FortiGate SD-WAN, and the standard UTM protection, among others."
"I have found Fortinet FortiGate to be scalable."
"The most valuable feature is the VDOM, which allows the customer to have multiple firewalls in a single campus."
"Fortigate represents a really scalable way of delivering perimeter network security, some level of layer 7 security, WAF, and also a way to create a meshed ADVPN solution."
"We were looking for the VPN feature and controlling the inflow and outflow of all the traffic within the site and across the sites. We are also using it for the VPN and VLANs."
"One of the best features of Fortinet FortiGate is that it's a very powerful equipment that gives many security features in a single box with good performance, and the user interface is friendly to use and configure."
"Advanced routing (RIP, OSPF, BGP, PBR). It gives you a seamless and simple integration into a large network."
"Cato SASE Cloud Platform's self-healing model is the most valuable feature."
"The product's most valuable features include advanced firewall capabilities for robust security, a secure gateway for safe data transmission, and next-generation anti-malware for threat prevention."
"What I found most helpful in Cato Networks is that it works out of the box. One of its main advantages is that it's a simple product to deploy. You subscribe, and you're ready to run."
"I would definitely recommend Cato Networks to other users."
"It is difficult to find types of companies I would not recommend Cato SASE Cloud Platform to, and I believe you can use Cato SASE Cloud Platform in most environments, although there could be some cases where organizations are really cost-sensitive."
"It is quite simple and easy to use."
"The WAN aggregation feature is the most valuable."
"The most valuable feature of Cato Networks is the CASB and the documentation is useful."
"Enables me to work from two locations."
"For Cloudflare Access, I am using the free plan...The most valuable feature is their protection."
"Cloudflare DDoS is better than its competitors for its security, deployment, and scalability."
"What makes it nice is that we can actually start replacing on-site firewalls at this stage for the smaller clients because it does not matter if they go to a coffee shop or work from home; they are still secured by the same connection."
"Using Cloudflare One makes my work quite easy because for DDoS protection, all I need to do is understand the OSI model and click; it makes it easier than trying to write a command line or use a Linux command."
"Cloudflare DDoS mitigates DDoS attacks."
"Cloudflare, in my opinion, was easy to implement."
"It's the endpoint exposition. We don't need to expose our VPN server to the internet and need a zero-test solution. I can apply some conditional access to the endpoint that's connecting to our network to check their security policies or the security condition of their workstation. Once the workstation is trying to connect to my internal network, then I would like to check the discrete condition of these endpoints that are trying to access my internal network. We created some conditional access. We have CrowdStrike, to check if the CrowdStrike is installed, to check if it's updated, and to check for Windows updates. We created some conditional policies to check it."
 

Cons

"Improvements could be made when companies expand and need better equipment and more licenses."
"The user interface of the Fortinet FortiGate management console could be more intuitive and user-friendly, and the log analysis and reporting features could be enhanced to provide more flexibility and customizable insights."
"The configuration part was challenging, especially converting configurations from another OEM to FortiGate."
"The solution can have more features in a single box that can be multi-applied to integrate everything."
"Fortinet currently has many products bundled with FortiGate including the basic firewall and load balancer, and I think that that they need to have separate product portfolios for each of these specialized services."
"Fortinet should improve its software, as we are seeing lots of firmware versions generated for each vulnerability issue. It becomes difficult for us to keep updating the firmware frequently due to bugs."
"We can't identify which users are causing challenges when we have issues."
"The scalability could be better."
"Its functionality is a bit limited in some areas as compared to a Cisco solution. It is not as granular. It doesn't have the manageability, feature set, and capabilities of a larger or an enterprise-level solution. It just needs a more robust feature set and granularity."
"However, Cato's solution is modular. You don't have to buy the whole package; instead, you can start with some of the functionality and then expand it as you see fit, based on its value and as your other contracts expire."
"I am located in South Korea, and I can say that most people here have no idea about Cato Networks. I think Cato Networks should promote its network services in various countries."
"They can't do one-to-one NAT (Network Address Translation) in AP (their access point), and that is something that Palo Alto can do."
"I'd rate Cato SASE Cloud Platform's pricing as about five or six out of ten. It's not the cheapest solution, but it is cheaper than Palo Alto and even VeloCloud."
"Modifying or incorporating Cato Network to work with a third-party platform, such as Microsoft, or other Software-as-a-Service (SaaS) offerings would be beneficial. Having more integration partners would help the users implement the solution."
"Cato Networks could improve their intrusion detection. There is not a lot in place."
"It could expand its reach into other sectors like professional services and finance, requiringmore specialized tools beyond Cato's current offerings. This includes better integration with third-party providers for more sophisticated tools such as intrusion prevention systems, anti-malware, and data loss prevention. Additionally, enhancing network speed and optimizing last-mile connectivity for managed service providers like us would be beneficial."
"Feedback could be enhanced. While I work efficiently with Clover as a partner in Mexico City, sometimes the information and requests are easier to manage with more concrete solutions."
"The software has automated alerts, but the automated alerts are not available in the mobile app."
"The pricing is an area that can be improved. Pricing, as far as I recall, was the source of our problems."
"The tool should provide on-premise versions. Currently, all versions are cloud-based."
"The free plan has limitations. For example, I can only set up three rules, and the application firewall is unavailable."
"They don't have a person to provide support for customers using the solution under their free plan."
"The initial onboarding was causing us some confusion."
"For the topic of improvement, providing some training material is one of my suggestions."
 

Pricing and Cost Advice

"The beauty is the price performance ratio is great with FortiGate. It provides all the features we needed and the price is comparable with others' firewalls. The price is quite competitive with the firewalls with similar features."
"The price is highly competitive when compared to other brands that offer similar functionality."
"We are currently evaluating a Palo Alto solution, and the pricing could be a reason for going for Palo Alto."
"Its pricing is good. The advantages of Fortinet FortiGate over its competitors include good pricing and meeting our requirements at a lower cost."
"Fortinet FortiGate is reasonably priced."
"It was worth the money overall. It's good value."
"Go for long term pricing negotiated at the time of purchase."
"The cost of Fortinet FortiGate is competitive and not expensive compared to other enterprise- grade solutions. On average, the license cost per year is around seventy percent of the firewall's purchase price."
"The solution has reasonable pricing. It has a yearly subscription. The pricing depends on the permit to code. Sometimes, we need to increase the permit, and the cost will automatically change. There's no fixed cost. Unless we request additional modules such as DNS security, ELP, and decent features, there will be no additional cost."
"You pay yearly based on the speed of your network. If you increase the speed of your network, you increase the cost for your throughput. It is by bandwidth for the most part and then licenses for VPN. There is some per-seat licensing for VPN access, but the majority of it is minimal. It is like $30 a year per client. The rest is based on how much bandwidth you'll use. You pay for that upfront for the year, and if you have to increase it, you increase it, and then they let you send more data through. There are no additional costs in addition to the standard licensing fees."
"The product is very competitively priced, and that's compelling. They don't charge the customer based on the operational cost like other brands such as Palo Alto. Cato has its own fully-fledged cloud, with their own data centers, equipment, and so on, which is an advantage. I rate the solution five out of five for affordability."
"The pricing of this solution depends on what you need. It is based on bandwidth."
"Cato Networks is an expensive product, but it works out of the box, so that's the usual trade-off, make versus buy. If you decide to buy a product that doesn't require much programming, then you'd want to go for Cato Networks, which will work naturally, and immediately without any complex setup. However, the product is a little bit more expensive than the competitors. On a scale of one to five, I'd rate the pricing for Cato Networks as four."
"The solution is reasonably priced since Cato Networks provides features like SASE and monitoring, which I am very happy with currently."
"I'd rate Cato SASE Cloud Platform's pricing as about five or six out of ten. It's not the cheapest solution, but it is cheaper than Palo Alto and even VeloCloud. We've been working with them for a while and have significant discounts. Our licensing costs vary because we keep adding sites, but it's about 280 per month per site. This includes additional features beyond the base product, starting at around 200."
"Cato Networks seems more expensive than Cisco Meraki."
"The prices are slightly expensive."
"The solution is not that expensive."
"The solution's pricing lacks transparency."
"The pricing is somewhere in the middle. I would rate the pricing a seven out of ten."
"The price tag is no longer $200,000, but rather $300,000 to $400,000. It's twice."
"Cloudflare Zero Trust Platform's pricing is good."
"The pricing of the solution is cheap. The licensing cost is also very low. I rate the cost and pricing a three out of ten."
"My company has to make yearly payments towards the licensing costs attached to the solution. There are no hidden charges apart from the licensing costs of the solution."
report
Use our free recommendation engine to learn which Secure Access Service Edge (SASE) solutions are best for your needs.
884,797 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
11%
Comms Service Provider
10%
Manufacturing Company
8%
Financial Services Firm
6%
Manufacturing Company
14%
Computer Software Company
12%
Financial Services Firm
9%
Comms Service Provider
7%
Comms Service Provider
11%
Computer Software Company
10%
Financial Services Firm
8%
Manufacturing Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business360
Midsize Enterprise135
Large Enterprise190
By reviewers
Company SizeCount
Small Business14
Midsize Enterprise7
Large Enterprise11
By reviewers
Company SizeCount
Small Business10
Midsize Enterprise2
Large Enterprise10
 

Questions from the Community

Which is the better NGFW: Fortinet Fortigate or Cisco Firepower?
When you compare these firewalls you can identify them with different features, advantages, practices and usage a...
What is the biggest difference between Sophos XG and FortiGate?
From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know...
What are the biggest technical differences between Sophos UTM and Fortinet FortiGate?
As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite ...
What is your primary use case for Cato Networks?
I can see that I am a consultant at a reseller and I am the architect of Cato SASE Cloud Platform designs. In the bas...
What advice do you have for others considering Cato Networks?
It is difficult to find types of companies I would not recommend Cato SASE Cloud Platform to, and I believe you can u...
What is your experience regarding pricing and costs for Cato Networks?
I do not find it particularly expensive, but for some companies, they may not have the budget to be at that level of ...
What needs improvement with Cloudflare Access?
Cloudflare Access has strong integration with Microsoft, among other platforms. However, when it comes to Kaspersky, ...
What is your primary use case for Cloudflare Access?
Cloudflare Access provides secure access to internal applications for employees, external members of the organization...
What advice do you have for others considering Cloudflare Access?
Cloudflare Access is one of the best integrations available. While about two hundred vendors offer similar services, ...
 

Also Known As

Fortinet FortiGate Next-Generation Firewall
Cato Networks
Cloudflare Area 1 Email Security, Cloudflare Bot Management, Cloudflare Gateway, Cloudflare Zero Trust Platform, Cloudflare DDoS, Cloudflare SASE & SSE Platform
 

Overview

 

Sample Customers

Amazon Web Services, Microsoft, IBM, Cisco, Dell, HP, Oracle, Verizon, AT&T, T-Mobile, Sprint, Vodafone, Orange, BT Group, Telstra, Deutsche Telekom, Comcast, Time Warner Cable, CenturyLink, NTT Communications, Tata Communications, SoftBank, China Mobile, Singtel, Telus, Rogers Communications, Bell Canada, Telkom Indonesia, Telkom South Africa, Telmex, Telia Company, Telkom Kenya
Paysafe, AdRoll, Pet Lovers Centre, Arlington Orthopedics, Humphreys & Partners Architects
23andMe
Find out what your peers are saying about Cato SASE Cloud Platform vs. Cloudflare One and other solutions. Updated: March 2026.
884,797 professionals have used our research since 2012.