No more typing reviews! Try our Samantha, our new voice AI agent.

Check Point Cloud Firewall (formerly CloudGuard Network Security) vs Juniper Session Smart Router comparison

Why PeerSpot?
 

Comparison Buyer's Guide

Executive SummaryUpdated on Aug 13, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Check Point Cloud Firewall ...
Ranking in Software Defined WAN (SD-WAN) Solutions
3rd
Average Rating
8.4
Reviews Sentiment
7.3
Number of Reviews
243
Ranking in other categories
Firewalls (8th), Managed Security Services Providers (MSSP) (1st), Vulnerability Management (5th), Cloud and Data Center Security (3rd), Container Security (6th), Cloud Workload Protection Platforms (CWPP) (5th), WAN Edge (3rd), Unified Threat Management (UTM) (4th), Cloud Security Posture Management (CSPM) (5th), Cloud-Native Application Protection Platforms (CNAPP) (5th), Data Security Posture Management (DSPM) (4th), Compliance Management (5th)
Juniper Session Smart Router
Ranking in Software Defined WAN (SD-WAN) Solutions
6th
Average Rating
8.2
Reviews Sentiment
5.1
Number of Reviews
14
Ranking in other categories
Routers (3rd)
 

Mindshare comparison

As of September 2026, in the Software Defined WAN (SD-WAN) Solutions category, the mindshare of Check Point Cloud Firewall (formerly CloudGuard Network Security) is 3.3%, up from 1.6% compared to the previous year. The mindshare of Juniper Session Smart Router is 2.1%, down from 2.6% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Software Defined WAN (SD-WAN) Solutions Mindshare Distribution
ProductMindshare (%)
Check Point Cloud Firewall (formerly CloudGuard Network Security)3.3%
Juniper Session Smart Router2.1%
Other94.6%
Software Defined WAN (SD-WAN) Solutions
 

Featured Reviews

Oscar Nunez - PeerSpot reviewer
Ingeniero en redes y Telecomunicaciones at K-IT
Centralized management has reduced policy time and provides reliable multitenant protection
What I would like, what I think they should improve a little is the management of objects at large scale. When you work with multiple domains, there are thousands of network objects. Detecting duplicates and consistency across domains is a very manual process that should be more automated. Another thing: the SmartConsole interface is very powerful and very good, but the learning curve, compared to other solutions in the market from other manufacturers, could be modernized. I think it does not necessarily have to be done from a client application; it could be done via web, because via web I know that not all the options you have in SmartConsole are available. So it would be good if it could also be done from the web and all the options were available. Another thing that I would really like is more automation with Ansible or Terraform. I know it has improved in recent versions, but I think it is still not mature enough. Compared to other manufacturers that do have a bit more in terms of automation capabilities in integration flows with Ansible or Terraform, Check Point Cloud Firewall (formerly CloudGuard Network Security) could improve. Another thing that could be improved a little would be the TAC response time, because when there are very complex cases, I think there should be more speed initially, more ownership of those urgent cases, and not leave the customer waiting. This has happened to me: when I have cases open with Check Point Cloud Firewall (formerly CloudGuard Network Security) TAC, sometimes they do not respond and I have to keep insisting, and I think that part should improve. I do not know if it depends on who takes the ticket or on the severity of the ticket, but sometimes I have had to insist a lot, and that would be the only problem. Once they attend to me and become involved in the case, the responses they give are very professional and really help directly resolve the problems when there is a bug or troubleshooting to do. As I said, I would like to see a specific improvement in SmartConsole. I think if they improved it—how to say it—gave it a facelift so you could access all the options directly from a browser, that would be great, because sometimes, for one reason or another, you cannot download SmartConsole or, for some reason, the SmartConsole client does not start correctly, and you could do it directly from the browser. I think that would be a good option to improve. Another thing would be that in multidomain environments, I would like a global search function for objects and rules. That is, you could enter and search across all domains at once, because right now you have to go domain by domain, and in environments with many customers, you spend quite a bit of time; you have to exit one domain and enter another. So those would be the improvements I would like to see.
Esther Sultaana - PeerSpot reviewer
Storage Consultant Storage at Hewlett Packard Enterprise
Secure healthcare connectivity has protected patient data and supports reliable telemedicine
Everything can be improved. It could improve its security stack with malware detection, particularly in healthcare because of ransomware. Now you have IoT vulnerabilities, so something like advanced malware detection or threat analysis would help. This is something I worked with around 2016 to 2017. Perhaps they have added those features, but I know they didn't have it then. Some security profiles for specific medical devices would be helpful. Sandboxing would be good. Dedicated telemedicine routing profiles would be beneficial because we have a lot of telemedicine going on. Real-time sessions for clinicians may need pre-built templates for EHR and EMR. I think those would be good if they're not already there. I don't know what the latest router has, but I know they didn't have those features then. There can always be improvements because technology is constantly advancing. It is a very solid router, and that is one of many industries that could utilize it. Healthcare is one such industry, and if it works for healthcare, then that is a major plus for that router.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"CloudGuard Network security has increased our confidence in secure cloud deployments and migrations by 50%."
"The most valuable features are the VPN Blade, IPS Blade, the URL filtering, and the Applications Control Blade."
"Customer service is very good."
"We find Check Point valuable because they are 100% focused on security. It totally closes the potential vulnerability channel. We can check our mail and our attachments and we can scan everything easily. We get an immediate report about the situation of the attachments. We can discover if the target's security attack was started from phishing, etc. We also enjoy using the additional features that protect our internal customer from targeted attacks."
"This product provides a really nice visualization of the infrastructure, including network topology, firewalls, etc."
"Auto-scaling and zero touch are valuable features."
"The complexity managed by Check Point developers is amazing."
"The tool's most valuable features are inspecting internet traffic and IPS. We can manage the firewall using shared policies from a single management server."
"Overall, it is very solid."
"The most valuable feature of Juniper Session Smart Router is its unique SDR channel."
"Juniper Session Smart Router has positively impacted my organization because we have multi-cloud solutions that are extremely useful for our M365, Teams communication, Zoom communication, SAP applications, and Oracle-based applications."
"The solution is especially Session's smart, application-aware, AI-based."
"As compared to the other major vendors in the SD-WAN market, such as VeloCloud, Cisco, and others, the tunnel-free and secure vector routing technology is its major USP, which gives plenty of room to discuss with the customer why IPSec from 1998 is a bit outdated."
"They provided us with a customized product according to our requirements."
"For telecom companies, I think zero-trust segmentation is the way to go because if you allow anything that you do not understand, then it becomes a problem."
"The biggest advantage of Juniper Session Smart Router that really stands out is its reliability and performance."
 

Cons

"The initial setup is complex and could be made simpler."
"When upgrading the firewall, the old VPC containing the firewalls needs to be destroyed. After that, a new firewall is redeployed in the setup. Additionally, there's a need to separate the routing, and the routing from the old VPC has to be recreated in the new one."
"The HA failover time is not as fast as expected and due to this, the convergence time between cluster members is still not perfect."
"The initial deployment using the ARM template in Azure was straightforward, but migrating to Terraform added complexity, although we managed to make it work."
"At CPX, we heard that we can see all the things on the same platform. That is what we have been asking for, and hopefully, we are going to start seeing it this year."
"We did not use the AWS Transit Gateway, and that's one of the things that we're currently using. I believe we will be working with Check Point again, in the near future, to implement it, once they start having proper support for a single customer with multiple accounts. When we were using them, we had to install Check Point on each and every single account."
"More integration into one solution with increased automation would be beneficial."
"Timely updates and upgrades to meet modern technological changes could help improve performance and limit the chances of downtime."
"Juniper Session Smart Router can be improved by simplifying onboarding for traditional network teams and providing better documentation for complex deployments, as well as improving the GUI for operational workflows and better migration tooling."
"Juniper Session Smart Router could be better in several areas such as the steep learning curve because the session-based model is different from traditional networking."
"Everything can be improved. It could improve its security stack with malware detection, particularly in healthcare because of ransomware."
"A key area for improvement in Juniper Session Smart Router is its security stack, which is not as robust as Fortinet."
"Juniper Session Smart Router could improve its documentation to become more competitive. It has very little documentation, and you have to rely mainly so much on support to do something, which I feel should not be that way."
"Juniper Session Smart Router could be better in terms of software performance."
"The UI of the SSR conductor is the main part where improvements can be done. Today, for every configuration step, you have to do a series of clicks. What we are missing there are wizards. For example, I have two applications, and I want one application to be prioritized against the other. In such a case, a wizard for assigning policies to a service without configuring each step by hand would be very helpful. There should be an overhaul of the GUI of the conductor. The functionality they have got in the Mist portal should be baked into the conductor itself. It would be really great, but as we all know, that won't happen."
"I found some weaknesses on their hardware. They are sometimes breaking very often."
 

Pricing and Cost Advice

"The price of Check Point CloudGuard Network Security is very high compared to other solutions, such as Fortinet FortiMail. For the over 2,000 mailboxes we use with the solution it is very expensive."
"Generally, it has been fine for me. I can find my way around the price list, and it is pretty simple."
"It's not very expensive. It isn't very cheap either. Its price is okay. It depends on how much money you have. It might be expensive for some companies. Its licensing is on a yearly basis."
"The cost is on the higher side, as it is based on workload, hence we need to decide which VPC or workload needs to be part of CloudGuard."
"CloudGuard Network Security is not too cheap."
"It is fair. Its license covers all the features. There is a cost-benefit. The licensing for the cloud is better than on-premises because, with on-premises, you have to pay separately for different things."
"The price is on the higher end."
"The licensing part still needs some work. The issue that I have is that we do not use all the services in the cloud, but sometimes, CloudGuard identifies them as an asset."
"We are currently renegotiating the offer for the licenses and the license bundle model. The license for an ISP has to be different from the license for an end customer. This is something we are currently renegotiating with Juniper, but, of course, the pricing for the licensing is always an issue when you want to get more customers."
"It is a simple bandwidth-based license and the orchestration comes bundled with the solution by default."
report
Use our free recommendation engine to learn which Software Defined WAN (SD-WAN) Solutions solutions are best for your needs.
913,076 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Outsourcing Company
15%
Construction Company
13%
Financial Services Firm
9%
Manufacturing Company
8%
Manufacturing Company
20%
Outsourcing Company
12%
Comms Service Provider
9%
Financial Services Firm
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business132
Midsize Enterprise53
Large Enterprise142
By reviewers
Company SizeCount
Small Business7
Midsize Enterprise2
Large Enterprise8
 

Questions from the Community

What is your experience regarding pricing and costs for Check Point CloudGuard Network Security?
Since we use a unified standard for using policies and modules in Check Point Cloud Firewall (formerly CloudGuard Network Security), we can clearly plan which modules we need to activate on a parti...
What needs improvement with Check Point CloudGuard Network Security?
The main limitations of Check Point Cloud Firewall (formerly CloudGuard Network Security) are not in Check Point itself but in the cloud platforms on which it is deployed. Because not all clouds ha...
What is your primary use case for Check Point CloudGuard Network Security?
Check Point Cloud Firewall (formerly CloudGuard Network Security) is the main manager that provides network security in different forms in my organization. The primary task that Check Point solves ...
What is your experience regarding pricing and costs for Juniper Session Smart Router?
I personally did not do the pricing. I imagine it was okay because the company did purchase it. In a lot of instances, particularly as it pertains to healthcare, they don't want to spend too much. ...
What needs improvement with Juniper Session Smart Router?
I think the current Juniper focuses more on switching rather than routing, which is a weak point in the product. Currently, I and my customers have not utilized the Session Awareness feature of Jun...
What is your primary use case for Juniper Session Smart Router?
I have been running my own company and working with Juniper Session Smart Router for almost 10 to 12 years because Larsen & Toubro is my client who will use Juniper devices for switching and fi...
 

Also Known As

CloudGuard IaaS, Check Point vSEC, CloudGuard IaaS, Check Point Virtual Systems, Check Point CloudGuard Network Security, Check Point CloudGuard CNAPP
128T Networking Platform, 128 Technology SD-WAN, Juniper SSR Series
 

Overview

 

Sample Customers

Physicians Choice Laboratory Services, Helvetica Insurance
Revation Systems
Find out what your peers are saying about Check Point Cloud Firewall (formerly CloudGuard Network Security) vs. Juniper Session Smart Router and other solutions. Updated: September 2026.
913,076 professionals have used our research since 2012.