Try our new research platform with insights from 80,000+ expert users

Check Point Harmony SASE (formerly Perimeter 81) vs Palo Alto Networks NG Firewalls comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Jan 25, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
5.8
Fortinet FortiGate offers cost-effective, robust security, reducing expenses, enhancing efficiency, easy implementation, quick ROI, and improved network management.
Sentiment score
6.1
Check Point Harmony SASE users see cost savings, productivity boosts, and security improvements, though some find returns complex to quantify.
Sentiment score
6.6
Palo Alto Networks NG Firewalls enhance security and reduce costs, improving efficiency and delivering substantial ROI in regulated industries.
Clients are now comfortable and not wasting productive hours on IT support.
Managing Director at a manufacturing company with 10,001+ employees
The automation part is giving us a cost benefit and speed; we can react faster.
BDM Fortinet & BDM Teamlead at Exclusive Networks
It's a very useful tool to mitigate and protect your enterprise.
Staff Infrastructure & Security Engineer at Mozn Systems
Check Point Harmony SASE (formerly Perimeter 81) blocked access to those URLs at the network level before users could click through.
Pre Sales Consultant at Redington Group
We are saving 40% of our time, which is good.
Cloud Security Engineer at Punch Powertrain nv
Their user-friendly interface and Panorama central management, which provides a comprehensive overview, make them an ideal investment.
Technical Lead at Accenture
The solution helped reduce downtime, which is crucial in time-sensitive industries like manufacturing.
Director IT Infrastructure and Operations at a analyst firm with 51-200 employees
I have seen a return on investment since using Palo Alto Networks NG Firewalls in terms of time saved.
Security Professional at BT - British Telecom
 

Customer Service

Sentiment score
6.6
Fortinet FortiGate's customer service is generally praised for responsiveness, though some users experience delays in critical situations.
Sentiment score
7.0
Check Point Harmony SASE provides responsive, knowledgeable, and professional support, with most users expressing high satisfaction despite occasional delays.
Sentiment score
6.9
Customer service for Palo Alto Networks NG Firewalls varies, with users noting fast responses but inconsistent service and language issues.
The quick resolution of issues with Fortinet FortiGate is due to the support of the company and the fact that the equipment is easy to work with.
IT Manager at a consultancy with 10,001+ employees
I would rate the technical support for Fortinet FortiGate a ten out of ten.
NAC Support at Rah Infotech Pvt Ltd
As a solution provider, when I encounter problems, I connect directly with Fortinet support, and they provide solutions within a very short time.
Manager, Information Technology Operation/Presales at TechMonarch
I would rate support 10 out of 10.
Pre Sales Consultant at Redington Group
People working really hard, listening to every issue and request, and replying within hours.
Security Support Engineer at a tech vendor with 51-200 employees
Palo Alto's network support is excellent, and I would rate it a ten out of ten.
Founder at a tech services company with 11-50 employees
Their response time is within one hour.
Head of data centers at a non-profit with 10,001+ employees
They offer fast and competent assistance.
IP / Operations Support System Engineer; Pre-Sales Engineer at Avantguard.it
 

Scalability Issues

Sentiment score
7.1
Fortinet FortiGate is scalable and popular for SMEs but requires careful design and may incur scaling costs and licensing constraints.
Sentiment score
7.8
Check Point Harmony SASE offers impressive scalability and flexibility, smoothly adapting to growing user bases and organizational needs.
Sentiment score
6.8
Palo Alto Networks NG Firewalls offer scalability and reliability but may face hardware limitations and cost concerns for smaller setups.
They scale up really well from smaller models like the FortiGate 40 and 50 to bigger sites with the FortiGate 100 for more throughput - up to enterprise datacenters.
IT Manager at Daltons Limited
The variation comes in terms of the interfaces and throughputs, but from a security perspective, you get the same benefit, irrespective of whether you have an entry-level unit or an enterprise.
Cewa Solutions Architect at a tech services company with 11-50 employees
We determine sizing based on multiple factors: number of users, available links, traffic types, server count, services in use, and whether services will be published.
General Surgery Specialist at Helwan University Cairo
The cloud-native model ensures we are not tied to any specific location or hardware, which has been a great game changer in terms of agility.
Pre Sales Consultant at Redington Group
I would rate it nine out of ten for scalability.
Cloud Security Engineer at Punch Powertrain nv
Check Point Harmony SASE's scalability is good; it can handle growth easily, allowing me to easily add another region and gateway to have more people join in.
Security Support Engineer at a tech vendor with 51-200 employees
Cloud deployments benefit from auto-scaling, allowing for automatic adjustments to firewall capacity based on demand.
Technical Lead at Accenture
It is important to assess the infrastructure size before choosing a model.
IP / Operations Support System Engineer; Pre-Sales Engineer at Avantguard.it
Palo Alto Networks NG Firewalls are scalable and reliable.
Senior Network Engineer L4 at a tech services company with 10,001+ employees
 

Stability Issues

Sentiment score
7.7
Fortinet FortiGate is praised for its stability, with effective long-term performance and improvements in newer firmware versions.
Sentiment score
7.7
Check Point Harmony SASE is praised for stability, reliability, and minimal issues, with high uptime and efficient performance.
Sentiment score
8.5
Palo Alto Networks NG Firewalls are praised for high stability and reliability, outperforming competitors despite occasional hardware and update issues.
We're experiencing 99.999% availability consistently.
Manager, Information Technology at a consumer goods company with 11-50 employees
I would rate the stability of Fortinet FortiGate a ten out of ten.
NAC Support at Rah Infotech Pvt Ltd
Currently, we are experiencing a general outage of one of the main internet service providers of the Dominican Republic, and we have not been impacted in our operations because with SD-WAN, we have another internet service provider and we are working with the second WAN connection without any disruption.
CISO at a financial services firm with 1,001-5,000 employees
There are some lags and glitches with connectivity, so I would rate the stability as between seven or eight out of ten.
Cloud Security Engineer at Punch Powertrain nv
After the last improvement, I can say it is much more stable now.
Technical Lead at Netsmart
Check Point Harmony SASE is stable most of the time, but there are still some issues that are hard to troubleshoot.
Security Support Engineer at a tech vendor with 51-200 employees
With appropriately configured policies, these firewalls can provide robust network security.
Solution Architect at a retailer with 201-500 employees
After the upgrade, we are experiencing performance issues.
Technical Engineer - Technical Security at a tech services company with 1,001-5,000 employees
I have not experienced any outages or issues.
IP / Operations Support System Engineer; Pre-Sales Engineer at Avantguard.it
 

Room For Improvement

Fortinet FortiGate needs enhanced UI, simplified licensing, improved performance, reporting, third-party integration, and expanded automation features.
Check Point Harmony SASE needs improvements in performance, user interface, integration, documentation, scalability, and features like SD-WAN and firewalls.
Palo Alto Networks NG Firewalls need better configuration, user-friendliness, integration, and cost-effective, scalable hardware with enhanced support and management.
These sessions should be around five to ten minutes long, allowing users and partners to quickly grasp the information without disrupting their daily tasks.
Managing Director at a manufacturing company with 10,001+ employees
The solution should be able to implement machine learning and analytics of all the logs for threat detection and protection.
Senior Systems Engineer at Caribbean Development Company
It would be better for customers to get immediate replacements even with a standard subscription.
Director at a tech services company with 11-50 employees
A local data center in Turkey would enhance the product, as currently, our Internet traffic goes to another country, which is problematic for us.
Technical Lead at Netsmart
One area for improvement is integration with third-party identity providers.
Pre Sales Consultant at Redington Group
The product is lacking features that other competitors have, making it quite challenging to migrate customers to this solution because it feels very much unfinished.
Security Support Engineer at a tech vendor with 51-200 employees
When performance degrades due to full packet inspection, the solution should be to increase the computing power within the same firewall, not to recommend upgrading to a larger, more expensive model.
Technical Engineer - Technical Security at a tech services company with 1,001-5,000 employees
Further integration into a unified system could improve usability.
Director IT Infrastructure and Operations at a analyst firm with 51-200 employees
Palo Alto Networks NG Firewalls lack built-in multi-factor authentication, requiring the purchase of a third-party tool to implement this essential security feature.
Head of data centers at a non-profit with 10,001+ employees
 

Setup Cost

Enterprise buyers find Fortinet FortiGate costly initially, but cheaper overall, despite some high renewal and setup costs.
Check Point Harmony SASE offers competitive value for large enterprises, though its pricing isn't the cheapest for smaller firms.
Palo Alto Networks NG Firewalls are costly, but advanced security features justify the expense for many users.
Last year, I renewed the support for three years, which can sometimes be expensive but depends on the security benefits and how it helps us.
Network & System Admin at Invoke Studios
It offers cost savings as it is generally cheaper than the competition.
IT Infrastructure Architect at Apotek 1
It is about 20% cheaper.
Network Security Engineer at TD SYNNEX
Cost efficiency is a consideration, as SASE products are not the cheapest security products.
Technical Lead at Netsmart
The cost is a bit expensive for most users.
Security Engineer at a tech vendor with 51-200 employees
It is a bit expensive.
Cloud Security Engineer at Punch Powertrain nv
Palo Alto Networks NG Firewalls are expensive.
Technical Engineer - Technical Security at a tech services company with 1,001-5,000 employees
Palo Alto Networks NG Firewalls come at a premium, exceeding the cost of most competitors by 45 percent.
Head of data centers at a non-profit with 10,001+ employees
Colleagues looking for the cheapest and fastest firewall can still use Palo Alto Networks NG Firewalls because they are affordable.
Director at Zuci Systems
 

Valuable Features

Fortinet FortiGate provides robust, flexible security solutions with key features like web filtering, SSL VPN, SD-WAN, and centralized management.
Check Point Harmony SASE offers secure, efficient, and centralized network management with real-time threat intelligence and zero trust access.
Palo Alto Networks NG Firewalls provide advanced security, ease of use, and integration, excelling in application ID and URL filtering.
These features help reduce our downtime, manage the ISPs, and deploy SLAs for all the website traffic.
Head IT at Burraq Cyber Security Solutions
The most valuable feature of FortiGate is FortiView which provides proactive monitoring.
General Manager Group IT at DART GLOBAL LOGISTICS PTE. LTD.
We got a firewall and gave an SSL VPN to my client to connect to their servers, after which, such kind of activities involving ransomware attacks stopped.
Owner at Mindware Computer Solutions
The firewall management is the most valuable feature for me.
Cloud Security Engineer at Punch Powertrain nv
The Zero Trust Network Access (ZTNA) feature is a major highlight as it gives users seamless and secure access to internal resources without requiring a full-blown VPN, which improves both security and user experience.
Pre Sales Consultant at Redington Group
The Zero Trust and segmentation have helped my team and our customers significantly because we are able to protect every scope and allow the work-from-home users to access internal resources while passing through a threat prevention gateway, ensuring that everything is safe.
Security Support Engineer at a tech vendor with 51-200 employees
The most valuable features of Palo Alto Networks NG Firewalls are DNS sync calls, enabled security features, and Wildfire.
Technical Engineer - Technical Security at a tech services company with 1,001-5,000 employees
Threat Vault allows us access to a comprehensive threat database, enabling us to get detailed information on threats and how to mitigate them.
Senior Network Engineer L4 at a tech services company with 10,001+ employees
The most valuable feature of Palo Alto Networks NG Firewalls is Cortex Data Lake.
Solution Architect at a retailer with 201-500 employees
 

Categories and Ranking

Fortinet FortiGate
Sponsored
Ranking in Firewalls
1st
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
580
Ranking in other categories
Secure Web Gateways (SWG) (2nd), Intrusion Detection and Prevention Software (IDPS) (1st), Software Defined WAN (SD-WAN) Solutions (1st), WAN Edge (1st), ZTNA (1st), Unified Threat Management (UTM) (1st)
Check Point Harmony SASE (f...
Ranking in Firewalls
13th
Average Rating
8.8
Reviews Sentiment
7.1
Number of Reviews
62
Ranking in other categories
Secure Web Gateways (SWG) (6th), Anti-Malware Tools (6th), Enterprise Infrastructure VPN (7th), ZTNA as a Service (4th), ZTNA (3rd), Secure Access Service Edge (SASE) (5th)
Palo Alto Networks NG Firew...
Ranking in Firewalls
6th
Average Rating
8.6
Reviews Sentiment
7.2
Number of Reviews
197
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of January 2026, in the Firewalls category, the mindshare of Fortinet FortiGate is 18.8%, down from 20.7% compared to the previous year. The mindshare of Check Point Harmony SASE (formerly Perimeter 81) is 0.3%, up from 0.1% compared to the previous year. The mindshare of Palo Alto Networks NG Firewalls is 4.6%, up from 3.2% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Firewalls Market Share Distribution
ProductMarket Share (%)
Fortinet FortiGate18.8%
Palo Alto Networks NG Firewalls4.6%
Check Point Harmony SASE (formerly Perimeter 81)0.3%
Other76.3%
Firewalls
 

Featured Reviews

Vasu Gala - PeerSpot reviewer
Manager, Information Technology Operation/Presales at TechMonarch
A stable solution with an intuitive interface and quick customer service
I have been working with Fortinet FortiGate, WatchGuard, Sophos, and SonicWall. I'm not as comfortable with SonicWall because of their UI and limitations. I prefer Fortinet above all other options. When it comes to configuration, I am confident in my ability to handle various tasks, including creating policies such as firewall rules, web policies, and application policies. Additionally, I can configure VPNs and implement load balancing, among other tasks. Overall, I feel much more comfortable working with Fortinet. Fortinet has made significant improvements by integrating AI with firewalls for threat analysis and prevention. In the past 2-3 years, they have launched FortiSASE and SIEM, and they also provide SOC services. Both Palo Alto and Fortinet FortiGate are excellent. While Fortinet FortiGate comes at higher prices, the functionality and support justify the cost. They promptly resolve firmware issues and inform all support providers about configuration changes.
Nasseer Qureshi - PeerSpot reviewer
Pre Sales Consultant at Redington Group
Delivers seamless and secure remote access while enhancing security posture
Check Point Harmony SASE (formerly Perimeter 81) offers strong features, but there are areas that could be improved. One area for improvement is integration with third-party identity providers. It works with standard SAML and SSO, but we would prefer deeper integrations with solutions such as Ping for more advanced identity-based policies. Additionally, a mobile-specific client or lightweight agent would be helpful for securing access from smartphones, especially in BYOD environments. We would appreciate more granular reporting and analytics, including better drill-down capabilities to investigate specific users or app activity. The logs are comprehensive, but filtering them can sometimes feel messy. The user interface on the management portal could be more intuitive, especially when managing multiple sites or remote offices. Some of the policy configuration steps are nested and could be streamlined.
SV
Solution Architect // Network Consultant at Group S
Network security has improved and allows detailed user-based control over encrypted traffic
Bandwidth usage is not something we use much, but it depends on the SD-WAN plugin because the application load balancing is based on the SD-WAN product. That functionality does not work as it should, although the App-ID is working very well. SD-WAN functionality is working, but when you compare it with other products on the market, it is very limited. Palo Alto also has ION devices, and ION devices together with Prisma Access or Strata Cloud Manager now are more the way to go than using Palo Alto Networks NG Firewalls on-premises. At the moment I have some issues, but the issues are more related to the general way of working of many vendors. They implement new things very fast and it is not always bug-free. With new releases, sometimes you still have some issues. This is the main concern. If you look back five or maybe ten years ago, the products were more stable and you had more decent releases, but that is something in general for many vendors. Palo Alto is also a factor with that. They want to bring new features to the market too fast. Features are a concern because all vendors try to compete against each other. If one vendor comes out with a new feature, then other vendors do the same. Sometimes they want to be the first on the market with it, and that sometimes introduces bugs or issues with the product.
report
Use our free recommendation engine to learn which Firewalls solutions are best for your needs.
881,114 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
12%
Comms Service Provider
9%
Manufacturing Company
8%
Financial Services Firm
6%
Computer Software Company
13%
Financial Services Firm
6%
Manufacturing Company
6%
Comms Service Provider
5%
Computer Software Company
10%
Financial Services Firm
9%
Manufacturing Company
8%
Educational Organization
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business357
Midsize Enterprise133
Large Enterprise188
By reviewers
Company SizeCount
Small Business53
Midsize Enterprise19
Large Enterprise14
By reviewers
Company SizeCount
Small Business74
Midsize Enterprise56
Large Enterprise85
 

Questions from the Community

Which is the better NGFW: Fortinet Fortigate or Cisco Firepower?
When you compare these firewalls you can identify them with different features, advantages, practices and usage a...
What is the biggest difference between Sophos XG and FortiGate?
From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know...
What are the biggest technical differences between Sophos UTM and Fortinet FortiGate?
As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite ...
What do you like most about Harmony Connect?
The product's initial setup phase is very simple.
What is your experience regarding pricing and costs for Harmony Connect?
I am not aware of the pricing, setup cost, and licensing, but I would say the setup cost is our resource, and we have...
What needs improvement with Harmony Connect?
Check Point Harmony SASE needs improvement as it is a very new product that lacks very basic features, and it can sta...
What is a better choice, Azure Firewall or Palo Alto Networks NG Firewalls?
Azure Firewall Vs. Palo Alto Network NG Firewalls Both solutions provide stellar stability and security. Azure Firew...
Features comparison between Palo Alto and Fortinet firewalls
In the best tradition of these questions, Feature-wise both are quite similar, but each has things it's better at, it...
Which is better - Palo Alto Networks NG Firewalls or Sophos XG?
Palo Alto Networks NG Firewalls have both great features and performance. I like that Palo Alto has regular threat si...
 

Also Known As

Fortinet FortiGate Next-Generation Firewall
Check Point Quantum SASE
Palo Alto NGFW, Palo Alto Networks Next-Generation Firewall
 

Overview

 

Sample Customers

Amazon Web Services, Microsoft, IBM, Cisco, Dell, HP, Oracle, Verizon, AT&T, T-Mobile, Sprint, Vodafone, Orange, BT Group, Telstra, Deutsche Telekom, Comcast, Time Warner Cable, CenturyLink, NTT Communications, Tata Communications, SoftBank, China Mobile, Singtel, Telus, Rogers Communications, Bell Canada, Telkom Indonesia, Telkom South Africa, Telmex, Telia Company, Telkom Kenya
Aqua Security, Cognito, Multipoint, Kustomer, Postman, Meredith
SkiStar AB, Ada County, Global IT Services PSF, Southern Cross Hospitals, Verge Health, University of Portsmouth, Austrian Airlines, The Heinz Endowments
Find out what your peers are saying about Check Point Harmony SASE (formerly Perimeter 81) vs. Palo Alto Networks NG Firewalls and other solutions. Updated: December 2025.
881,114 professionals have used our research since 2012.