No more typing reviews! Try our Samantha, our new voice AI agent.

Check Point Quantum Force (NGFW) vs WatchGuard XTM [EOL] comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Nov 23, 2025

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Check Point Quantum Force (...
Average Rating
8.8
Reviews Sentiment
7.2
Number of Reviews
346
Ranking in other categories
Firewalls (6th), Unified Threat Management (UTM) (2nd)
WatchGuard XTM [EOL]
Average Rating
8.0
Number of Reviews
34
Ranking in other categories
No ranking in other categories
 

Featured Reviews

DS
Network Security Engineer at Connecting Cyber Networks
Advanced threat prevention has protected our perimeter and simplifies daily security operations
Check Point Quantum Force (NGFW) can be improved in several areas. First, the interface could be a little more intuitive for new users. The Smart Console is powerful, but it has a steep learning curve when you start using it. Some simple functions for common tasks would help. Second, the initial setup and configuration take quite a bit of time and expertise. It would be helpful if there were more guides, wizards, or templates to speed that up. Third, the price model could be more transparent and flexible. The license cost can add up quickly, specifically when you want to add more advanced features. Finally, I would appreciate seeing better integration with some third-party security tools we use. Right now, we have to do a lot of manual work to make everything talk to each other. Overall, these are minor things. The core product is really solid and does what it is supposed to do very well. The documentation could be more comprehensive in some areas. When we run into issues, the documentation does not have clear answers, so we end up contacting support. Speaking of support, the response time could be faster sometimes. We have had cases where we need help with a certain security issue, and it takes longer than we would prefer to get a response. As for features, it would be nice to have more general reporting options so we can customize reports for different teams and stakeholders without having to do manual work afterward. One more thing, better mobile access to the dashboard would be helpful. Sometimes we need to check on security alerts when we are away from the office, and the mobile experience is not as smooth as it could be. Again, these are improvements that would make it even better, not issues with the core product itself.
Generalm4545 - PeerSpot reviewer
General Manager- IT & Automation - Serum at a pharma/biotech company with 1,001-5,000 employees
Protects from attack software and hacking but it doesn't provide the reports in a readable format
In my opinion, image clarity is very important, because I don't get the proper image product on reports. This means that functionality is not there. My engineer does not know how he can replace an order. We attach a log after any kind of keys using a utility instead. For the internet policies that we are implementing, the policy should be based on proper protocols. We use the default policies and there are a number of third-party protocols that appear here. Management with WatchGuard XTM means that out of policy is the problem from our side. In this way, we can not do effective services for people with this one. The policy definition with WatchGuard XTM is not proper for all use case requirements. I've got weekly business reports that I am expecting attachments with from WatchGuard XTM that display data for all kinds of consideration which should be required. Main User Functionality Level Order must adhere to using the admin functionality on the registry, or else our users publish their own name. Maybe these recommendations are irrelevant, but I say that the issue to improve most with WatchGuard XTM is the Main User Function.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Check Point NGFW helps us significantly by preventing sophisticated cyber attacks, controlling user access to application websites based on policy and user identity, segmenting the internal network, and providing centralized firewall management."
"The Anti-Spoofing has the ability to monitor the interfaces. Suppose any spoofed IP addresses are coming from an external interface, it won't allow them. It will drop that traffic. You have two options with the Anti-Spoofing: prevent or detect. If any kind of spoof traffic is coming through the external interface, we can prevent that."
"In the four years I have worked on the five firewalls we have not had any downtime caused by stability issues."
"It has provided us with great protection from threats."
"All policies can be deployed and managed in a very simple way."
"It is easy to deploy or upgrade. There is no need to do this manually with commands. This solution can be set up online."
"Configuration and deploying are easy."
"It creates granular security policies based on users or groups to identify, block or limit the usage of web applications."
"Today, however, with the 11.9.4 version, our environment is very stable."
"WatchGuard XTM is fairly basic. We use it as the perimeter firewall. The main point is to protect from attack software and hacking."
"For the current network demand, I think the product is worth buying as it is not too expensive and it has almost all the features that I need."
"Setup and configuration is straightforward with excellent management interface."
"Simply, give this tool a try; it will generate great benefits in terms of the scalability and environment."
"We now have the capability to manage traffic better by putting non-business critical traffic into the small bucket, while business critical traffic gets higher priority."
"XTM is more effective and friendly to use than our previous solution, and it also provides me with very good VPN tunnel stability."
"This product helped facilitate and protect our environment from the inside out, with features like DLP (data loss prevention) to content filtering all the way to port filtering and traffic shaping."
 

Cons

"Technical support and scalability both require improvement."
"You have an administration tool that is not on the appliance, and it should be in line with the appliance."
"The area where Check Point can improve is the antivirus, as it only provides a small number of updates for it. Updates should be more frequent."
"It might not be able to handle future growth, but right now, it is managing it well."
"The only thing that we've seen is instances where console and administrative interfaces get locked up or freeze, and we have to get the machine rebooted."
"Check Point could offer a cloud-managed approach similar to that of Cisco Meraki."
"Check Point NGFW needs to run marketing events. They have also to set up a support center in India."
"Customer support is not always as responsive with solutions as you might need."
"Unfortunately, I could not disable the default Outgoing policy and if I do all clients could not access the internet even if I created another Outgoing Policy to replace the default one."
"I would like them to improve the product's overall protections. This would be good for all product users."
"Early models of the XTM2 (e.g. 21, 22, 23) line lacked sufficient memory, and caused a number of issues that required frequent reboots."
"We still haven't got the Terminal Service agent to work in our Citrix environment Application Signature also doesn't work well especially in SSL traffic"
"One huge issue with WatchGuard XTM is that I'm not getting reports in a readable format."
"The web interface is easy to use but it looks complicated and could be simplified."
"Using the SSL VPN remote feature is great, but we additionally needed two-factor authentication, and employed a third-party product."
"Initially WatchGuard assured us regarding endpoint security, but we are not sure that the product provides endpoint security features to its full extent."
 

Pricing and Cost Advice

"The pricing falls in the middle, meaning it's neither cheap nor expensive."
"The pricing and licensing are the worst part of Check Point. I usually don't know what I really am buying. When I have to do an inventory of the license, I don't know what it is being used for. Sometimes I feel I am being cheated, and the others times, I feel it is a bargain. Nobody knows! Even the Check Point representatives, they aren't clear on somethings, such as, what is the right license for what I need."
"The pricing and licensing are pretty steep. They know that they are good, so they are pricey."
"Its price is reasonable. If we compare its TCO for three years, it is more reasonable than some of the other vendors such as Fortinet, Palo Alto, etc."
"The price is too high."
"I rate the solution's pricing an eight out of ten. It costs around 100,000-200,000 dollars per month. Besides standard licensing fees, we paid extra for enterprise-level premium support. There were also onboarding costs factored in. These additional costs made it more expensive overall. The total cost was around 100,000 dollars, which was challenging for our budget. Check Point was also pricey, not much different from Palo Alto Networks. However, we decided switching to Check Point was better because it offered more capabilities for a similar price."
"While it may be slightly more expensive, when compared with competition it is reasonable."
"Check Point needs to lower its price drastically, and the licensing model is very complex."
"Like all other manufacturers, there are a lot of features and different pricing. The best is to talk to a representative.​"
"Get at least a maintenance contract for the updates and take a larger WatchGuard than you need. A WatchGuard creates new ways to secure your network."
"The licensing and renewal is very expensive."
"It costs less than the SO works and others (like SonicWall, Cisco, and Barracuda) without increasing so much CPU use."
report
Use our free recommendation engine to learn which Firewalls solutions are best for your needs.
908,834 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Outsourcing Company
19%
Construction Company
11%
Financial Services Firm
10%
Computer Software Company
8%
Construction Company
15%
Marketing Services Firm
10%
Financial Services Firm
10%
Comms Service Provider
9%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business164
Midsize Enterprise94
Large Enterprise198
By reviewers
Company SizeCount
Small Business24
Midsize Enterprise7
Large Enterprise3
 

Questions from the Community

How does Check Point NGFW compare with Fortinet Fortigate?
I have experience on both from Disti and channel experience. Please find below my comments (nothing new as such). -Check Point GUI is a bit complicated, -Application and Web filtering are better t...
Which would you recommend - Azure Firewall or Check Point NGFW?
Azure Firewall is easy to use and provides excellent support. Valuable features include integration into the overall cloud platform, autoscaling, and the ability for users to create virtual IP addr...
What is your experience regarding pricing and costs for Check Point NGFW?
Our experience with pricing for Check Point Quantum Force (NGFW) has been mixed. The initial setup costs were fairly significant because we needed to buy the hardware appliances and then pay for th...
Ask a question
Earn 20 points
 

Also Known As

Check Point NG Firewall, Check Point Next Generation Firewall
No data available
 

Overview

 

Sample Customers

Control Southern, Optimal Media
AVG, Cyren, Kaspersky Lab, Lastline, NCP engineering, Trend Micro, Websense
Find out what your peers are saying about Fortinet, Netgate, Cisco and others in Firewalls. Updated: August 2026.
908,834 professionals have used our research since 2012.