Try our new research platform with insights from 80,000+ expert users

Check Point Quantum Force vs Palo Alto Networks NG Firewalls comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Nov 16, 2025

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Fortinet FortiGate
Sponsored
Ranking in Firewalls
1st
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
581
Ranking in other categories
Secure Web Gateways (SWG) (2nd), Intrusion Detection and Prevention Software (IDPS) (1st), Software Defined WAN (SD-WAN) Solutions (1st), WAN Edge (1st), ZTNA (1st), Unified Threat Management (UTM) (1st)
Check Point Quantum Force
Ranking in Firewalls
34th
Average Rating
8.6
Reviews Sentiment
5.2
Number of Reviews
4
Ranking in other categories
No ranking in other categories
Palo Alto Networks NG Firew...
Ranking in Firewalls
6th
Average Rating
8.6
Reviews Sentiment
7.2
Number of Reviews
197
Ranking in other categories
No ranking in other categories
 

Featured Reviews

Vasu Gala - PeerSpot reviewer
Manager, Information Technology Operation/Presales at TechMonarch
A stable solution with an intuitive interface and quick customer service
I have been working with Fortinet FortiGate, WatchGuard, Sophos, and SonicWall. I'm not as comfortable with SonicWall because of their UI and limitations. I prefer Fortinet above all other options. When it comes to configuration, I am confident in my ability to handle various tasks, including creating policies such as firewall rules, web policies, and application policies. Additionally, I can configure VPNs and implement load balancing, among other tasks. Overall, I feel much more comfortable working with Fortinet. Fortinet has made significant improvements by integrating AI with firewalls for threat analysis and prevention. In the past 2-3 years, they have launched FortiSASE and SIEM, and they also provide SOC services. Both Palo Alto and Fortinet FortiGate are excellent. While Fortinet FortiGate comes at higher prices, the functionality and support justify the cost. They promptly resolve firmware issues and inform all support providers about configuration changes.
Abnet Tsegaye Belay - PeerSpot reviewer
Cybersecurity Engineer at a tech services company with 11-50 employees
Has strengthened perimeter security through AI-driven protection and unified management
I have noticed some limitations with Check Point Quantum Force. There is a limitation in integrating with existing infrastructure, such as orchestration and logging, specifically with VPNs. VPNs are hard and sophisticated to deploy on this firewall. However, it is improving currently. Some performance aspects need higher resources. If you do not give it higher resources, it will slow down your network. It is a trade-off - if you have higher resources, you will have good performance. The complexity of configuring a VPN needs to be improved because we need to go back and forth to configure VPNs. It has to be simpler to understand.
SV
Solution Architect // Network Consultant at Group S
Network security has improved and allows detailed user-based control over encrypted traffic
Bandwidth usage is not something we use much, but it depends on the SD-WAN plugin because the application load balancing is based on the SD-WAN product. That functionality does not work as it should, although the App-ID is working very well. SD-WAN functionality is working, but when you compare it with other products on the market, it is very limited. Palo Alto also has ION devices, and ION devices together with Prisma Access or Strata Cloud Manager now are more the way to go than using Palo Alto Networks NG Firewalls on-premises. At the moment I have some issues, but the issues are more related to the general way of working of many vendors. They implement new things very fast and it is not always bug-free. With new releases, sometimes you still have some issues. This is the main concern. If you look back five or maybe ten years ago, the products were more stable and you had more decent releases, but that is something in general for many vendors. Palo Alto is also a factor with that. They want to bring new features to the market too fast. Features are a concern because all vendors try to compete against each other. If one vendor comes out with a new feature, then other vendors do the same. Sometimes they want to be the first on the market with it, and that sometimes introduces bugs or issues with the product.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The most valuable features of Fortinet FortiGate are remote access, web filtering, and IPS."
"We've found the solution to be pretty stable."
"In terms of cost, features, and security, everything is top-notch."
"The main reason customers prefer Fortinet FortiGate is that it's security-centric, allowing them to implement security features such as a next-generation firewall and translate this to the WAN or SD-WAN architectures, or as a base if they want to grow in more security features or other verticals such as ZTNA and SASE."
"There are many features packed and significant flexibility from Fortinet FortiGate in being able to do numerous things."
"Fortigate is very scalable to serve our customers' needs. We have scaled already from fifty to more than a hundred instances of Fortinet FortiGate. Around 20 staff are required for deployment and maintenance, mostly engineers."
"The impact of SD-WAN on the network performance has been significant."
"Fortinet FortiGate protects against internet-based threats, both internal and external. It is scalable, stable, easy to use, and easy to install."
"The security features and layered security features are better compared to others."
"In performance and threat prevention, it has benefited my cybersecurity strategy."
"The outcomes from Check Point Quantum Force firewall gave us the ability to be fit and secure from the cyber world."
"The most valuable features I find in Check Point Quantum Force are the security policy features, including all security features that are provided by firewall, IPS/IDS."
"You can easily integrate it with Active Directory, and you can use the GlobalProtect VPN for internal and external purposes. The URL Filtering is also clear and the application filtering is a plus. The application filtering is much better when you compare it to FortiGate or other firewall vendors."
"Palo Alto Networks NG Firewalls are the best in the field in terms of usability and coverage."
"Everything is easy in Palo Alto Networks NG Firewall. It is very stable, easy to configure, and easy to upgrade. It is also very easy to create custom policies and applications. Everything can be done with the click of a button. It is also good for the protection of web services. Nowadays, they have a rather new DNS security feature, which is pretty good and functional. We did a one-month trial, and it is the best product for the firewall network."
"Prisma Access is the most valuable feature of Palo Alto Networks NG Firewalls."
"Palo Alto Networks NG Firewalls have a Single Pass Parallel Processing (SP3) Architecture, which has a different kind of code doing the work. It increases the packet processing rate. Whereas, without the SP3 Architecture, you are waiting for each job to complete, even if you have 100 jobs assigned."
"Palo Alto Networks NG Firewalls provide a unified platform that natively integrates all security capabilities."
"Some of Palo Alto Networks NG Firewalls' valuable features are their powerful capabilities and user-friendliness."
"The most valuable features are web filtering and application filtering."
 

Cons

"We'd like to have multi-factor authentication via fiber."
"The documentation available for Fortinet FortiGate should be improved"
"There's a limitation wherein you can only have about 30 virtual or secondary IPs on a particular interface."
"At first glance, the interface for the device is very confusing."
"FortiLink is the interface on the firewall that allows you to extend switch management across all of your switches in the network. The problem with it is that you can't use multiple interfaces unless you set them up in a lag. Only then you can run them. So, it forces you to use a core type of switch to propagate that management out to the rest of the switches, and then it is running the case at 200. It leaves you with 18 ports on the firewall because it is also a layer-three router that could also be used as a switch, but as soon as you do that, you can't really use them. They could do a little bit more clean up in the way the stacking interface works. Some use cases and the documentation on the FortiLink checking interface are a little outdated. I can find stuff on version 5 or more, but it is hard to find information on some of the newer firmware. The biggest thing I would like to see is some improvement in the switch management feature. I would like to be able to relegate some of the ports, which are on the firewall itself, to act as a switch to take advantage of those ports. Some of these firewalls have clarity ports on them. If I can use those, it would mean that I need to buy two less switches, which saves time. I get why they don't, but I would still like to see it because it would save a little bit of space in the server rack."
"The cloud management and automation capability could be improved."
"They should do a better job in testing when they put out a new release because when a new software version is released, it is not always stable or does not always have all the previous features working correctly."
"Fortinet FortiGate could be improved in terms of user friendliness at the policy level and assigning URL based and keyword based features."
"I see good competition which is less expensive."
"The complexity of configuring a VPN needs to be improved because we need to go back and forth to configure VPNs."
"Check Point Quantum Force does not have strong local support. We are based in India, and Check Point Quantum Force does not have extensive local support in our region."
"I have observed weaknesses in Check Point Quantum Force, particularly when configuring tunnels from any point product to a peer, which has very complex configuration requirements."
"This solution cannot be implemented on-premises; it's only a cloud solution. The price is high as well."
"These are not the cheapest firewalls; they are quite expensive."
"Palo Alto has introduced new features in their next-generation firewall, such as SD-WAN. However, the technique of SD-WAN implementation is not easy to understand. It is not easy to deploy at this moment. Maybe, in the future, they can improve the process and how the administrators, partners, or support team can easily deploy this SD-WAN solution on their next-generation firewall. The SD-WAN solution from Fortinet is easy to do. It does not take more than five or 10 minutes. When we talk about Palo Alto, it takes extra effort to implement SD-WAN."
"Palo Alto should improve their support. It's sometimes difficult to get the right technician or engineer to fix the problem as soon as possible."
"We haven't had any issues so far."
"Configurations related to different operating systems can be complex, and we have encountered issues with Linux systems."
"The price of the solution is very high."
"I would like to see more in terms of reporting tools and the threat analysis capabilities."
 

Pricing and Cost Advice

"The licensing costs are very competitive."
"Fortinet FortiGate SWG is an affordable solution."
"The price of Fortinet FortiGate is better than Cisco, Check Point, and Palo Alto. In terms of pricing, it's probably a better-priced firewall solution overall."
"The licensing costs are very low."
"The pricing is flexible."
"FortiGate SWG is a cost-effective solution well-suited for organisations of all sizes."
"I give the pricing of the solution a six out of ten."
"It scales well if you know what to buy from a physical box standpoint. They seem to offer something for every level."
Information not available
"The cost is quite high."
"I rate the product’s pricing an eight out of ten."
"This solution is quite expensive."
"Definitely look into a multi-year license, as opposed to a single-year. That will definitely be more beneficial in terms of cost... Palo Alto is definitely not the cheapest, but if you scale it the right way it will be very comparable to what's out there."
"It's an expensive product."
"We are on an annual license for this solution. I am happy with the price and when comparing it to other solutions it is priced competitively."
"We haven't had a problem with pricing or licensing because we consolidated other software to make Palo Alto more affordable."
"The licensing leaves a lot to be desired. We buy the license and then we can't transfer the license without paying an exorbitant fee to our client if they leave us, and that just seems to be a bit of a pain point for us, and there's really no way to partner effectively to make that more reasonable."
report
Use our free recommendation engine to learn which Firewalls solutions are best for your needs.
881,821 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
12%
Comms Service Provider
9%
Manufacturing Company
8%
Financial Services Firm
6%
No data available
Computer Software Company
10%
Financial Services Firm
9%
Manufacturing Company
8%
Educational Organization
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business357
Midsize Enterprise133
Large Enterprise189
No data available
By reviewers
Company SizeCount
Small Business74
Midsize Enterprise56
Large Enterprise85
 

Questions from the Community

Which is the better NGFW: Fortinet Fortigate or Cisco Firepower?
When you compare these firewalls you can identify them with different features, advantages, practices and usage a...
What is the biggest difference between Sophos XG and FortiGate?
From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know...
What are the biggest technical differences between Sophos UTM and Fortinet FortiGate?
As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite ...
What is your experience regarding pricing and costs for Check Point Quantum Force?
In terms of pricing, setup cost, and licensing, many users and clients say that the pricing is high. The license stru...
What needs improvement with Check Point Quantum Force?
I have observed weaknesses in Check Point Quantum Force, particularly when configuring tunnels from any point product...
What is your primary use case for Check Point Quantum Force?
I am currently working with Fortinet Firewall, Fortinet Switch, Fortinet Authenticator, FortiNet Net, Fortinet Authen...
What is a better choice, Azure Firewall or Palo Alto Networks NG Firewalls?
Azure Firewall Vs. Palo Alto Network NG Firewalls Both solutions provide stellar stability and security. Azure Firew...
Features comparison between Palo Alto and Fortinet firewalls
In the best tradition of these questions, Feature-wise both are quite similar, but each has things it's better at, it...
Which is better - Palo Alto Networks NG Firewalls or Sophos XG?
Palo Alto Networks NG Firewalls have both great features and performance. I like that Palo Alto has regular threat si...
 

Also Known As

Fortinet FortiGate Next-Generation Firewall
No data available
Palo Alto NGFW, Palo Alto Networks Next-Generation Firewall
 

Overview

 

Sample Customers

Amazon Web Services, Microsoft, IBM, Cisco, Dell, HP, Oracle, Verizon, AT&T, T-Mobile, Sprint, Vodafone, Orange, BT Group, Telstra, Deutsche Telekom, Comcast, Time Warner Cable, CenturyLink, NTT Communications, Tata Communications, SoftBank, China Mobile, Singtel, Telus, Rogers Communications, Bell Canada, Telkom Indonesia, Telkom South Africa, Telmex, Telia Company, Telkom Kenya
Information Not Available
SkiStar AB, Ada County, Global IT Services PSF, Southern Cross Hospitals, Verge Health, University of Portsmouth, Austrian Airlines, The Heinz Endowments
Find out what your peers are saying about Check Point Quantum Force vs. Palo Alto Networks NG Firewalls and other solutions. Updated: February 2026.
881,821 professionals have used our research since 2012.