


Forcepoint Next Generation Firewall and KerioControl compete in the firewall security category. Forcepoint appears to have the upper hand due to its advanced security measures and scalability compared to KerioControl’s simplicity and ease of use.
Features: Forcepoint Next Generation Firewall users value its advanced security measures, deep packet inspection, and scalable architecture. KerioControl users highlight the product's straightforward setup, content filtering, and seamless VPN integration.
Room for Improvement: User reviews suggest that Forcepoint Next Generation Firewall could improve its initial configuration process, better support for advanced features, and simplify setup. For KerioControl, users indicate a need for improved threat detection capabilities, more comprehensive reporting tools, and enhanced security features.
Ease of Deployment and Customer Service: Forcepoint's deployment is noted for its complexity, requiring skilled personnel, but users appreciate the strong customer service support available. KerioControl stands out for its easy and fast deployment, though users suggest that customer support could be more responsive.
Pricing and ROI: Forcepoint Next Generation Firewall users report higher setup costs but justify it with excellent ROI due to its high-level security capabilities. KerioControl is favored for its affordable pricing and rapid ROI, but its higher-end capabilities are limited.
Clients are now comfortable and not wasting productive hours on IT support.
The automation part is giving us a cost benefit and speed; we can react faster.
It's a very useful tool to mitigate and protect your enterprise.
Cybersecurity ROI could be $1 or $100 million, depending on the risk of data behind it.
It is easy and offers different solutions for each solution type with small, mid, and large scale options available.
I did see a return on investment with Forcepoint Next Generation Firewall, as mentioned by the efficiency improvements and the metrics related to how much I cut investigation time, the number of incidents, and the ease of making changes or pushing new configurations.
The quick resolution of issues with Fortinet FortiGate is due to the support of the company and the fact that the equipment is easy to work with.
I would rate the technical support for Fortinet FortiGate a ten out of ten.
As a solution provider, when I encounter problems, I connect directly with Fortinet support, and they provide solutions within a very short time.
Unlike Fortinet where you can escalate an issue and quickly get responses from the development team, Forcepoint's process seems slow and challenging.
TAC engineers are very experienced and troubleshoot issues within the expected timeframe with no problems.
Technical support is sometimes slow to respond, and it takes longer to resolve issues.
I have never needed to contact customer support as the product is easy to use.
They scale up really well from smaller models like the FortiGate 40 and 50 to bigger sites with the FortiGate 100 for more throughput - up to enterprise datacenters.
The variation comes in terms of the interfaces and throughputs, but from a security perspective, you get the same benefit, irrespective of whether you have an entry-level unit or an enterprise.
We determine sizing based on multiple factors: number of users, available links, traffic types, server count, services in use, and whether services will be published.
I can have one management node similar to Palo Alto Panorama, with multiple nodes covering different sites, data centers, or zones.
There are restrictions in the firewall manager and limitations when deploying for cloud environments.
Forcepoint Next Generation Firewall is scalable and can grow with my organization's needs.
KerioControl has met some of the network infrastructure needs yet could improve in terms of scalability.
We're experiencing 99.999% availability consistently.
I would rate the stability of Fortinet FortiGate a ten out of ten.
Currently, we are experiencing a general outage of one of the main internet service providers of the Dominican Republic, and we have not been impacted in our operations because with SD-WAN, we have another internet service provider and we are working with the second WAN connection without any disruption.
It has many freezes for no reason.
These sessions should be around five to ten minutes long, allowing users and partners to quickly grasp the information without disrupting their daily tasks.
The solution should be able to implement machine learning and analytics of all the logs for threat detection and protection.
It would be better for customers to get immediate replacements even with a standard subscription.
Fast response and efficient handling of issues, similar to how Fortinet responds, would be great.
AI improvements could be beneficial, as having AI capabilities has become an important checkmark feature.
I recommend that additional features be included in a single license to avoid the need for extra licensing costs.
Last year, I renewed the support for three years, which can sometimes be expensive but depends on the security benefits and how it helps us.
It offers cost savings as it is generally cheaper than the competition.
It is about 20% cheaper.
The costs can be high since additional features require separate licenses.
In terms of pricing, I would place Forcepoint in the middle when compared to other firewalls like Fortinet and Palo Alto.
The price for the product is rated as ten out of ten.
The most valuable feature of FortiGate is FortiView which provides proactive monitoring.
We got a firewall and gave an SSL VPN to my client to connect to their servers, after which, such kind of activities involving ransomware attacks stopped.
They put in a thing called the FortiCookbook, which is very easy to read with real-life scenarios that make networking tasks like joining networks very straightforward.
Forcepoint Next Generation Firewall has impacted my organization positively by making it very easy to work and offering a more competitive price compared to other vendors.
Forcepoint Next Generation Firewall has positively impacted my organization by providing always-on perimeter security.
Strong network segmentation is my favorite feature that Forcepoint Next Generation Firewall offers.
The most valuable features include geo-tagging, which blocks all other IPs except for the specified accounts, and web filtering.
| Product | Market Share (%) |
|---|---|
| Fortinet FortiGate | 18.7% |
| Forcepoint Next Generation Firewall | 0.6% |
| KerioControl | 1.1% |
| Other | 79.6% |

| Company Size | Count |
|---|---|
| Small Business | 357 |
| Midsize Enterprise | 133 |
| Large Enterprise | 189 |
| Company Size | Count |
|---|---|
| Small Business | 28 |
| Midsize Enterprise | 10 |
| Large Enterprise | 11 |
| Company Size | Count |
|---|---|
| Small Business | 44 |
| Midsize Enterprise | 9 |
| Large Enterprise | 3 |
Fortinet FortiGate is a versatile network security tool offering features like VPN, firewall, web filtering, intrusion prevention, and scalability. It is known for its performance and integration with other Fortinet products, making it a preferred choice for robust cybersecurity.
Fortinet FortiGate stands out as a comprehensive cybersecurity solution with strong performance and ease of configuration. It delivers unified threat management, integrating features such as dynamic routing, SD-WAN support, and centralized management. Despite its strengths, improvements in the web interface's stability, pricing structures, and reporting capabilities are needed. Users seek better integration with third-party tools and automation advancements to enhance the experience further. These enhancements, alongside improvements in bandwidth management and the reduction of licensing costs, are points of interest for users looking to capitalize on FortiGate's extensive capabilities.
What are Fortinet FortiGate's key features?Fortinet FortiGate is widely implemented across industries as a primary firewall system for securing internet gateways and safeguarding data centers. It supports businesses in achieving SD-WAN integration and enhances cybersecurity by providing essential features like antivirus, web filtering, and application control. Enterprises utilize FortiGate for securing remote connections and ensuring compliance with security standards, making it adaptable for different network sizes and industries.
Forcepoint Next Generation Firewall is a versatile and comprehensive solution for perimeter security, offering features such as SD-WAN, IPS, VPN, and cloud or on-premises subscription keys. It is preferred by many clients over Cisco and is used for obligation redundancy, VPN access, and as the main point of security in infrastructure.
The product is praised for its simplicity, flexibility, complete feature set, scalability, and central management capabilities. Other valuable features include IPS, firewall, sandbox, application control, filtering, security management center, connectivity, and integration capabilities.
Kerio Control is a popular security product for small and medium-sized businesses. It is a next-generation firewall that provides unified threat management without complexity. Kerio Control provides advanced anti-virus protection and industry-leading web and content application filtering, and has a secure VPN.
With Kerio Control you can:
Kerio Control Features
Some of Kerio Control’s most valuable features include:
High availability, deployment flexibility, deep packet inspection, advanced routing, usage reporting, quick administering, intrusion detection and prevention (IPS), gateway anti-virus, VPN, web and content application filtering, and centralized administration with MyKerio.
Kerio Control Benefits
Reviews from Real Users
Here is some feedback from some of our users who are currently using the solution:
PeerSpot user Brian C., Senior Technology Specialist, VP at Unified Technology Solutions, writes "It is very comprehensive and simple. It has all the active protections. It's updated. We love that you can set how often it is updated so you can work on what is right for you. A large company with a lot of bandwidth can update the virus definitions and security definitions hourly, if they want. A smaller site that's remote, where maybe updating the definitions will eat into the bandwidth, we can schedule those more to go later at night. It's very flexible and works for us in all types of situations. This is great because then we don't have to learn seven different products to be able to work with seven different scenarios."
Andy D., IT Manager at Flare Technologies, praises how easy it is to use and says, "One thing we use quite a lot, as well, is the DHCP Server, because we do a lot of work where all our devices need to have static IP addresses. Rather than going around and configuring every box, we do it all through DHCP reservations. It's easier. We've got a record of it. We can manipulate it if we need to change something or change some hardware. It's all easy. Even guys who are not used to using it can pick it up quite quickly."
We monitor all Firewalls reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.