No more typing reviews! Try our Samantha, our new voice AI agent.

Cloudflare One vs Prisma Access by Palo Alto Networks comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Apr 5, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

iboss
Sponsored
Ranking in Secure Web Gateways (SWG)
6th
Ranking in Cloud Access Security Brokers (CASB)
6th
Ranking in ZTNA as a Service
6th
Ranking in Secure Access Service Edge (SASE)
7th
Average Rating
8.4
Reviews Sentiment
7.1
Number of Reviews
24
Ranking in other categories
Internet Security (3rd), Web Content Filtering (1st)
Cloudflare One
Ranking in Secure Web Gateways (SWG)
12th
Ranking in Cloud Access Security Brokers (CASB)
12th
Ranking in ZTNA as a Service
8th
Ranking in Secure Access Service Edge (SASE)
9th
Average Rating
8.6
Reviews Sentiment
6.5
Number of Reviews
23
Ranking in other categories
Email Security (20th), Data Loss Prevention (DLP) (22nd), Distributed Denial-of-Service (DDoS) Protection (8th), Software Defined WAN (SD-WAN) Solutions (13th), Access Management (12th), Bot Management (3rd), ZTNA (4th), Remote Browser Isolation (RBI) (2nd)
Prisma Access by Palo Alto ...
Ranking in Secure Web Gateways (SWG)
5th
Ranking in Cloud Access Security Brokers (CASB)
1st
Ranking in ZTNA as a Service
4th
Ranking in Secure Access Service Edge (SASE)
1st
Average Rating
8.2
Reviews Sentiment
6.9
Number of Reviews
65
Ranking in other categories
Enterprise Infrastructure VPN (5th)
 

Mindshare comparison

As of August 2026, in the Secure Access Service Edge (SASE) category, the mindshare of iboss is 3.3%, up from 1.8% compared to the previous year. The mindshare of Cloudflare One is 5.6%, down from 8.2% compared to the previous year. The mindshare of Prisma Access by Palo Alto Networks is 10.1%, down from 15.5% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Secure Access Service Edge (SASE) Mindshare Distribution
ProductMindshare (%)
Prisma Access by Palo Alto Networks10.1%
iboss3.3%
Cloudflare One5.6%
Other81.0%
Secure Access Service Edge (SASE)
 

Featured Reviews

Ashok Ananthula - PeerSpot reviewer
Senior Consultant Proxy Engineering at a financial services firm with 10,001+ employees
Cloud gateway has strengthened remote web security and now needs better Mac and ISP support
The problem our organization had is that iboss failed for the Mac devices. It is not able to give a successful agent for the Mac agents. That is where in 2025, we had to migrate to the Palo Alto-based platform. If your use case is for just Windows laptops,you can consider this platform as an option One issue is the data center resiliency part. In India especially, they are not tied up with the Tier 1 ISPs like Tata or Airtel; they were having Tier 2 ISPs and encountered many issues reaching few major sites that my organization depends on, and they were having problems that they could not fix quickly. They also lack a mechanism to route that traffic within their data center; rather, they ask customers to make a pac file change to route it to Singapore explicitly. It would be better if they route from their backend , i mean even if I send it to India DC, they should be able to route it internally to make that work; however, they fail to do that and ask the customer to route it in the pac file. Another suggestion is that in China, they do not have the proper setup; they used to have numerous problems with slowness and lack of premium circuits in China as well. That leads to multiple sites working slowly with latency-related issues. So the main issue is the ISP-related problems that need to be solved.
CV
Network Architect at IP Dimension
Cloud security has improved remote access and has reduced costs for smaller client sites
I have used Cloudflare One's Identity-Aware Proxy, and it is quite straightforward from what I have seen so far. The app registration on the Azure side integrates fully into Cloudflare, and I am very satisfied with that part because it is easy to set up. The integration of Cloudflare One's Secure Web Gateway and Zero Trust Network Access works without any issues. That part is pretty automatic, and if you complete the rest of the setup, it comes together by itself with no issues from my side. What makes it nice is that we can actually start replacing on-site firewalls at this stage for the smaller clients because it does not matter if they go to a coffee shop or work from home; they are still secured by the same connection. The hops get shorter and you get better latency. We have done testing to see if it is better. One thing that we did notice with our proof of concept with our current client is that they have people connecting from the UK. When they used their previous VPN solution, uploading CAD drawings and other files to the server took a long time. They mentioned that it is much quicker on Cloudflare One's solution. I definitely believe that is part of the improved performance, and I am satisfied with that as well. What is nice about Cloudflare One is that it makes the setup easier and also easier to train technicians to maintain it. Compared to legacy systems, we do not need to get fancy firewalls in place that are costly. That is definitely also a cost-saver with Cloudflare One.
IgorPinter - PeerSpot reviewer
Director at PULSEC
Zero-trust access has improved remote security and now simplifies cloud-based firewall management
Regarding the integration part for Prisma Access by Palo Alto Networks, the integration with identity providers is pretty much good. It is basically firewall as a service, so it performs well. I completed the integration without any issues. What Palo Alto Networks can do better for Prisma Access by Palo Alto Networks is probably to have the point of presence available in more locations. The point of presence from the Serbia region has the nearest POP in Frankfurt, which is an issue since it is your gateway—when you start browsing the internet, you go through a commercial connection in Germany. They definitely need to spread the service in other countries.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"It was a very easy product to install. It can be deployed very fast."
"Deploying iboss leads to good return on investment, estimated around 70% to 80%."
"The security aspect of the solution, particularly the malware behind it, is excellent."
"iboss is among the few products providing inline filtering where no application is needed on the device. It operates on the network side and is not device-based. This feature was one of the main reasons why we stayed with them for so long."
"The solution has massively improved our security posture, giving us full visibility into what our staff does online."
"Content filtering is the most useful feature of iboss."
"Its initial setup was straightforward."
"From a use-case scenario, what I like the most is the plug-in. I like the fact that we can do the filtering of these devices offsite independent of the network they are connected to, and we do not have to have traffic coming back inside our network."
"Cloudflare One has assisted in securing my remote workforce through a SASE solution with Cloudflare One and the Workers part, although I am not currently using the Workers component."
"Cloudflare Access is part of the Zero Trust philosophy."
"For Cloudflare Access, I am using the free plan...The most valuable feature is their protection."
"Clover is the best product globally."
"It's the endpoint exposition. We don't need to expose our VPN server to the internet and need a zero-test solution. I can apply some conditional access to the endpoint that's connecting to our network to check their security policies or the security condition of their workstation. Once the workstation is trying to connect to my internal network, then I would like to check the discrete condition of these endpoints that are trying to access my internal network. We created some conditional access. We have CrowdStrike, to check if the CrowdStrike is installed, to check if it's updated, and to check for Windows updates. We created some conditional policies to check it."
"The solution has different options that can be used to differentiate DDoS attacks."
"We mostly use Cloudflare WAF, and gets basic Cloudflaire DDoS, caching as extra bonus . We like the factor these features are all integrated into 1 console, simple to manage."
"The blocking feature is very good."
"My advice for those who are looking for a SaaS solution is to use Prisma; it's one of the best solutions in the industry at the moment, simpler and really easy to deploy, with a very trustworthy support team from Palo Alto."
"The most valuable features of the solution stem from the fact that it offers stability and scalability while being a very secure product."
"But if you have a budget for enterprise or best of firewalls I think you should take this solution into consideration."
"Prisma Access does everything beautifully."
"The tool's consolidation is pretty quick."
"Prisma Access by Palo Alto Networks makes our life easier because the firewall solution we had before was totally outdated and performing poorly. This solution has completely transformed our operations."
"The most valuable feature of Prisma Cloud-native, in my opinion, is that it assists in identifying, analyzing, and remediating vulnerabilities."
"I've evaluated multiple solutions on the market but to quarantine and clean a malware file is something I haven't seen anywhere else."
 

Cons

"Sometimes when you call in support, you get someone who is just following a sheet. It feels like a runaround. You feel that you are running into that support wall."
"The endpoint-type solution is an area that needs some improvement."
"Fold that in with the risk intelligence they're getting from all of the different subscriptions they are a part of. Now, these security companies subscribe to things like emerging threats, databases, etc. You can fold all this intelligence to decide what's happening on an endpoint. I would love to see them start moving into that space. That would compete directly with Microsoft. Maybe that's why they haven't. Having that ability native within the solution would be great. The other area in which I would love to see improvement is more detailed descriptions of why they block websites."
"I am currently doing a PoC of the zero trust aspect of it. Compared to other similar solutions, it is hard to get around each feature. It takes a while to get used to it."
"I think iboss could be improved by making reporting and dashboard customization more flexible, and simplifying troubleshooting policy issues."
"It is stable, but due to growth, it can sometimes be less stable than wanted."
"Our iboss subscription access should be more secure with an OTP or VPN etc. It is easy to gain access if, for example, hackers obtain my username and password."
"The reporting feature needs improvement."
"Automation could be improved where you can easily add a TLS and SSL certificate to an application or web app if the developer did not include it."
"Cloudflare Zero Trust Platform needs to improve its documentation. It took time to do the implementation."
"The tool should provide on-premise versions. Currently, all versions are cloud-based."
"The response time for support must be reduced."
"Our customers no longer use Cloudflare because its service is subpar."
"The onboarding process can be improved a little bit."
"The initial onboarding was causing us some confusion."
"Operating and tuning the product is difficult."
"The initial support team is not very good. Most of the time, I have found that they are one to three years experienced only. They don't have network expertise. They know about Palo Alto products but don't know how to troubleshoot the issues. We have to guide them most of the time to troubleshoot correctly since their approach is not developed."
"The Prisma Access by Palo Alto Networks interface is more difficult than FortiGate."
"It is a managed firewall. When you run into issues and have to troubleshoot, there is a fair amount of restriction. You run into a couple of restrictions where you don't have any visibility on what is happening on the Palo Alto managed infrastructure, and you need to get on a call to get technical assistance from Palo Alto's technical support. You have to get them to work with you to fix the problem. I would definitely like them to work on the visibility into what happens inside Palo Alto's infrastructure. It is not about getting our hands onto their infrastructure to do troubleshooting or fixing problems; it is just about getting more visibility. This will help us in guiding technical support folks to the area where they need to work."
"The one point I have deducted is because it is very hard to get support sometimes."
"Sometimes, we encountered a portal crash. When we told Palo Alto they said it might be the browser or cache, but I think they need to improve it on their side."
"The frequency of updates could be reduced."
"It is a managed firewall. When you run into issues and have to troubleshoot, there is a fair amount of restriction."
"When it comes to the VPN, it uses the global protect VPN functionality to connect remotely, but it has a feature limitation for assigning multiple IP sub-links to different user groups. It would be much better if we are able to assign the current IP blocks for the sub-links based on the user groups."
 

Pricing and Cost Advice

"It is expensive compared to one of its competitors."
"We had the cost of purchasing a new appliance along with the implementation and licensing costs. However, the following year, the cost of just licensing was similar to what was paid the previous year for a new appliance along with the implementation and licensing costs."
"It is probably in line with other solutions, but I do not deal with the financial side."
"We have not priced the solution recently, but they were competitive with other vendors in the past."
"It is not expensive, and it is also not cheap. iboss is priced right in the sweet spot for the number of features it offers."
"The overall pricing for iboss is very competitive and transparent."
"My company has to make yearly payments towards the licensing costs attached to the solution. There are no hidden charges apart from the licensing costs of the solution."
"The prices are slightly expensive."
"The solution is not that expensive."
"Cloudflare Zero Trust Platform's pricing is good."
"The pricing is somewhere in the middle. I would rate the pricing a seven out of ten."
"The price tag is no longer $200,000, but rather $300,000 to $400,000. It's twice."
"The pricing of the solution is cheap. The licensing cost is also very low. I rate the cost and pricing a three out of ten."
"The solution's pricing lacks transparency."
"Prisma Access by Palo Alto Networks is an expensive solution, especially when compared to other solutions like Cisco. There are no additional charges apart from the standard licensing costs attached to the solution."
"The initial prices of Prisma Access were okay. But as soon as you start deploying Palo Alto gear, the support prices and the recurring prices, which are the major operational costs, tend to increase over time."
"It is pretty expensive. We have to balance the cost of some features. They need to work on some of the services and products, price-wise."
"The licensing model for this product is complicated and changes all the time, making it very hard for the user to comprehend the configuration."
"The licensing cost is about 18,000 euros."
"There's no reason not to buy the enterprise version that gives you unlimited PoPs, but you must understand the limitations you impose on yourself if you do that. If you go crazy, that allowlist will be too big for Kubernetes clusters."
"It's pricey, it's not cheap. But you get what you pay for."
"It is not cheap. It is expensive. The good thing is that you are able to pay for what you need, but overall, it is not cheap. The pricing is not based on packages. You pay based on the features. If you want DLP, you only pay for DLP. They are very flexible. It is not cheap, but the licensing is flexible. There are no additional costs in addition to the standard licensing fees."
report
Use our free recommendation engine to learn which Secure Access Service Edge (SASE) solutions are best for your needs.
908,858 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
11%
Manufacturing Company
9%
Computer Software Company
8%
Construction Company
7%
Construction Company
19%
Comms Service Provider
11%
Outsourcing Company
9%
Financial Services Firm
8%
Financial Services Firm
12%
Manufacturing Company
10%
Computer Software Company
8%
Outsourcing Company
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business11
Midsize Enterprise8
Large Enterprise10
By reviewers
Company SizeCount
Small Business10
Midsize Enterprise1
Large Enterprise12
By reviewers
Company SizeCount
Small Business26
Midsize Enterprise20
Large Enterprise27
 

Questions from the Community

What needs improvement with iboss?
I think iboss could be improved by making reporting and dashboard customization more flexible, and simplifying troubl...
What is your primary use case for iboss?
I use iboss as a cloud-based secure web gateway to provide secure internet access, web filtering, and protect remote ...
What is your experience regarding pricing and costs for iboss?
My experience with iboss's pricing structure, setup cost, and licensing model has been positive, straightforward, and...
What needs improvement with Cloudflare Zero Trust Platform?
In my opinion, Cloudflare One can be improved mainly through compatibility, as the integration should be much simpler...
What is your primary use case for Cloudflare Zero Trust Platform?
Cloudflare One's primary use case for my organization is to protect servers and to provide remote access with the VPN...
What is the better solution - Prisma Access or Zscaler Private Access?
We looked into Prisma Access before choosing Zscaler Private Access (ZPA). Palo Alto’s Prisma Access is a secure ac...
What is your experience regarding pricing and costs for Prisma Access by Palo Alto Networks?
From my experience, Palo Alto is more expensive compared to solutions like Netskope and Triscale.
What needs improvement with Prisma Access by Palo Alto Networks?
Regarding the integration part for Prisma Access by Palo Alto Networks, the integration with identity providers is pr...
 

Also Known As

iBoss Cloud Platform
Cloudflare Area 1 Email Security, Cloudflare Bot Management, Cloudflare Gateway, Cloudflare Zero Trust Platform, Cloudflare DDoS, Cloudflare SASE & SSE Platform
Palo Alto Networks Prisma Access, Prisma Access, GlobalProtect, Palo Alto GlobalProtect Mobile Security Manager, Prisma SaaS by Palo Alto Networks, Prisma Access
 

Overview

 

Sample Customers

More than 4,000 global enterprises trust the iboss Cloud Platform to support their modern workforces, including a large number of Fortune 50 companies.
23andMe
Concord Hospital, State of Colorado, Essilor International, RheinLand Versicherungsgruppe, University of Westminster, Universidade Nove de Julho, SPAR Austria, CAME Group, ZipRealty, Greenhill & Co., IKT Agder, Aviva Stadium, Animal Logic, Management & Training Corporation, Brigham Young University Hawaii, School District of Chilliwack
Find out what your peers are saying about Cloudflare One vs. Prisma Access by Palo Alto Networks and other solutions. Updated: July 2026.
908,858 professionals have used our research since 2012.