No more typing reviews! Try our Samantha, our new voice AI agent.

Check Point Cloud Firewall (formerly CloudGuard Network Security) vs Netgate pfSense Plus Firewall/VPN/Router comparison

Why PeerSpot?
 

Comparison Buyer's Guide

Executive SummaryUpdated on Aug 13, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Check Point Cloud Firewall ...
Ranking in Firewalls
8th
Average Rating
8.4
Reviews Sentiment
7.3
Number of Reviews
244
Ranking in other categories
Managed Security Services Providers (MSSP) (1st), Vulnerability Management (5th), Software Defined WAN (SD-WAN) Solutions (3rd), Cloud and Data Center Security (3rd), Container Security (6th), Cloud Workload Protection Platforms (CWPP) (5th), WAN Edge (3rd), Unified Threat Management (UTM) (4th), Cloud Security Posture Management (CSPM) (5th), Cloud-Native Application Protection Platforms (CNAPP) (5th), Data Security Posture Management (DSPM) (4th), Compliance Management (5th)
Netgate pfSense Plus Firewa...
Ranking in Firewalls
23rd
Average Rating
9.0
Reviews Sentiment
4.3
Number of Reviews
5
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of September 2026, in the Firewalls category, the mindshare of Check Point Cloud Firewall (formerly CloudGuard Network Security) is 2.7%, up from 0.6% compared to the previous year. The mindshare of Netgate pfSense Plus Firewall/VPN/Router is 0.3%. It is calculated based on PeerSpot user engagement data.
Firewalls Mindshare Distribution
ProductMindshare (%)
Check Point Cloud Firewall (formerly CloudGuard Network Security)2.7%
Netgate pfSense Plus Firewall/VPN/Router0.3%
Other97.0%
Firewalls
 

Featured Reviews

Oscar Nunez - PeerSpot reviewer
Ingeniero en redes y Telecomunicaciones at K-IT
Centralized management has reduced policy time and provides reliable multitenant protection
What I would like, what I think they should improve a little is the management of objects at large scale. When you work with multiple domains, there are thousands of network objects. Detecting duplicates and consistency across domains is a very manual process that should be more automated. Another thing: the SmartConsole interface is very powerful and very good, but the learning curve, compared to other solutions in the market from other manufacturers, could be modernized. I think it does not necessarily have to be done from a client application; it could be done via web, because via web I know that not all the options you have in SmartConsole are available. So it would be good if it could also be done from the web and all the options were available. Another thing that I would really like is more automation with Ansible or Terraform. I know it has improved in recent versions, but I think it is still not mature enough. Compared to other manufacturers that do have a bit more in terms of automation capabilities in integration flows with Ansible or Terraform, Check Point Cloud Firewall (formerly CloudGuard Network Security) could improve. Another thing that could be improved a little would be the TAC response time, because when there are very complex cases, I think there should be more speed initially, more ownership of those urgent cases, and not leave the customer waiting. This has happened to me: when I have cases open with Check Point Cloud Firewall (formerly CloudGuard Network Security) TAC, sometimes they do not respond and I have to keep insisting, and I think that part should improve. I do not know if it depends on who takes the ticket or on the severity of the ticket, but sometimes I have had to insist a lot, and that would be the only problem. Once they attend to me and become involved in the case, the responses they give are very professional and really help directly resolve the problems when there is a bug or troubleshooting to do. As I said, I would like to see a specific improvement in SmartConsole. I think if they improved it—how to say it—gave it a facelift so you could access all the options directly from a browser, that would be great, because sometimes, for one reason or another, you cannot download SmartConsole or, for some reason, the SmartConsole client does not start correctly, and you could do it directly from the browser. I think that would be a good option to improve. Another thing would be that in multidomain environments, I would like a global search function for objects and rules. That is, you could enter and search across all domains at once, because right now you have to go domain by domain, and in environments with many customers, you spend quite a bit of time; you have to exit one domain and enter another. So those would be the improvements I would like to see.
Jim Voige - PeerSpot reviewer
Site Manager at a consultancy with 11-50 employees
High availability routing has secured our network and delivers reliable support every day
One downside of Netgate pfSense Plus Firewall_VPN_Router is the need for a better understanding of what hardware it would run on. Right now, we're using Netgate's hardware, but I'm interested in knowing if there are other hardware options available, particularly heavier duty hardware, because the Supermicro 1537 version we have only has a single power supply, which is a shortcoming in an IT environment where dual power supplies are ideal. The pricing for the hardware of Netgate pfSense Plus Firewall_VPN_Router is steep, which is one reason I'd explore other options. I'm familiar with the costs of Supermicro servers, and I believe Netgate charges a premium for their server hardware without enough upside to justify it. The pricing is not justified.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The solution provides a centralized management console for easy administration and monitoring of security policies and events, making it easy for the security team."
"Network Security provides us with unified security management across hybrid and cloud as well as on-prem."
"Check Point Cloud Firewall (formerly CloudGuard Network Security) has significantly reduced our organizational risk."
"Our primary use case of this solution is for compliance on the cloud and Check Point is very good for tracking that."
"CloudGuard Network Security provides us with unified security management across hybrid clouds as well as on-premise."
"This solution effectively protects us against any next-generation attack."
"The most valuable feature for us is the scale set, which allows us to scale horizontally, vertically and dynamically depending on the traffic load."
"Scale Set is highly beneficial. It is easy to upgrade and maintain."
"We use pfSense and Netgate pfSense Plus Firewall/VPN/Router to establish a VPN tunnel between our client and our headquarters to transfer data between client and our equipment; it's very simple to use, efficient, up to date, and the hardware is very available; it's very safe."
"Overall, the entire Netgate pfSense Plus Firewall_VPN_Router product has been reliable, though some of their smaller gear aimed at remote offices hasn't been cost-effective."
"My experience with the product is that it is a stable and good product that is easy to use."
"They are more satisfied with Netgate pfSense Plus Firewall_VPN_Router in terms of its flexibility and customer support."
"It's very simple to use, efficient, up to date, and the hardware is very available; it's very safe."
"I do not have complaints about Netgate pfSense Plus Firewall_VPN_Router with Firewall, VPN, and Router; it is really comfortable for use, and it does a pretty good job."
 

Cons

"CloudGuard could be more customizable. It has built-in standards for things like GDPR compliance. But depending on your business lane, you might want to build your own controls based on your own standards."
"Our environment basically expanded to such a large scale that it wasn't feasible for us to use CloudGuard in our multiple-account production environment."
"Check Point Cloud Firewall (formerly CloudGuard Network Security) is not very user-friendly."
"The product needs to offer multi-tenancy."
"This application can be more integrated with web application firewalls. Better integrations would provide more granularity, which would be helpful for focusing on the application itself and preventing attacks. It would be good to include the cross-domain search. If you have multiple firewalls that are managed on the same platform and you want to check who is using some particular objects or where a specific ID is being used, it should provide an option for this kind of search instead of having to check one by one on each firewall."
"It's not a scale set. It's a single node. We'd need to look at the scale set to see if there was a way to get better performance."
"It should be more unified across all platforms."
"Some more built-in marketplace templates would be nice. It would be nice to see more vendor assistance in deployments and backup of recoveries versus having customers rely upon that themselves. That would make it a lot more seamless and aligned with the standard on-premise model that is there. Check Point can extend the same posture that they have to CloudGuard and make that transition very seamless."
"The pricing for the hardware of Netgate pfSense Plus Firewall_VPN_Router is steep, which is one reason I'd explore other options."
"I would assess the effectiveness of Netgate pfSense Plus Firewall_VPN_Router's traffic shaping as good, but I would give a six marks only for that compared to others because in the past few years, there has been a stop of improvement or lack of improvement showing in Netgate pfSense Plus Firewall_VPN_Router."
"The most significant drawback in recent years has been the cessation of firmware release downloads."
"They have to learn something more from FortiGate."
"The effectiveness of Netgate pfSense Plus Firewall_VPN_Router traffic shaping is quite good, but I am not very satisfied with the interface for control."
 

Pricing and Cost Advice

"There is flexibility in the different licensing models that are offered."
"It is difficult to contextualize the pricing because we are used to Indian pricing and licensing."
"The pricing is tremendous and super cheap. It is shockingly cheap for what you get out of it. I am happy with that. I hope that doesn't get reported back and they increase the prices. I love the pricing and the licensing makes sense. It is just assets: The more stuff that you have, the more you pay."
"The tool's pricing is reasonable."
"We pay approximately ‎€150,000 ($166,000 USD) per year."
"It is fairly priced, but it can be a little expensive from time to time."
"It is the most expensive part of the product. There is a lot of room for improvement. Security comes with a price, but it is still a big chunk just for the service."
"You get charged only for what resources you choose and how much traffic actually passes through the firewall, which in turn saves a lot of money."
Information not available
report
Use our free recommendation engine to learn which Firewalls solutions are best for your needs.
913,683 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Outsourcing Company
16%
Construction Company
13%
Financial Services Firm
9%
Manufacturing Company
7%
Construction Company
34%
Comms Service Provider
11%
Healthcare Company
8%
Manufacturing Company
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business132
Midsize Enterprise53
Large Enterprise144
No data available
 

Questions from the Community

What is your experience regarding pricing and costs for Check Point CloudGuard Network Security?
Since we use a unified standard for using policies and modules in Check Point Cloud Firewall (formerly CloudGuard Network Security), we can clearly plan which modules we need to activate on a parti...
What needs improvement with Check Point CloudGuard Network Security?
The main limitations of Check Point Cloud Firewall (formerly CloudGuard Network Security) are not in Check Point itself but in the cloud platforms on which it is deployed. Because not all clouds ha...
What is your primary use case for Check Point CloudGuard Network Security?
Check Point Cloud Firewall (formerly CloudGuard Network Security) is the main manager that provides network security in different forms in my organization. The primary task that Check Point solves ...
What needs improvement with Netgate pfSense Plus Firewall/VPN/Router?
Netgate pfSense Plus Firewall/VPN/Router regularly provides updates. One aspect they can improve is that most people ask whether an antivirus scanning system is available in pfSense. Other companie...
What is your primary use case for Netgate pfSense Plus Firewall/VPN/Router?
We work with Netgate products. We are a reseller and consultant. We have been working with Netgate and Fortinet for around two years.
What advice do you have for others considering Netgate pfSense Plus Firewall/VPN/Router?
For metrics to measure its impact, we do not measure in a formal way. We use bandwidth monitoring to check how effective the solution is. I have not encountered customers asking for additional feat...
 

Also Known As

CloudGuard IaaS, Check Point vSEC, CloudGuard IaaS, Check Point Virtual Systems, Check Point CloudGuard Network Security, Check Point CloudGuard CNAPP
No data available
 

Overview

 

Sample Customers

Physicians Choice Laboratory Services, Helvetica Insurance
Information Not Available
Find out what your peers are saying about Check Point Cloud Firewall (formerly CloudGuard Network Security) vs. Netgate pfSense Plus Firewall/VPN/Router and other solutions. Updated: September 2026.
913,683 professionals have used our research since 2012.