No more typing reviews! Try our Samantha, our new voice AI agent.

Juniper SRX Series Firewall vs Palo Alto Networks CN-Series comparison

Sponsored
 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Fortinet FortiGate
Sponsored
Ranking in Firewalls
1st
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
592
Ranking in other categories
Secure Web Gateways (SWG) (2nd), Intrusion Detection and Prevention Software (IDPS) (1st), Software Defined WAN (SD-WAN) Solutions (1st), WAN Edge (1st), ZTNA (1st), Unified Threat Management (UTM) (1st)
Juniper SRX Series Firewall
Ranking in Firewalls
23rd
Average Rating
7.8
Reviews Sentiment
7.0
Number of Reviews
94
Ranking in other categories
Unified Threat Management (UTM) (7th)
Palo Alto Networks CN-Series
Ranking in Firewalls
33rd
Average Rating
9.6
Reviews Sentiment
7.4
Number of Reviews
2
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of June 2026, in the Firewalls category, the mindshare of Fortinet FortiGate is 15.1%, down from 21.7% compared to the previous year. The mindshare of Juniper SRX Series Firewall is 2.0%, up from 1.6% compared to the previous year. The mindshare of Palo Alto Networks CN-Series is 0.4%, up from 0.0% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Firewalls Mindshare Distribution
ProductMindshare (%)
Fortinet FortiGate15.1%
Juniper SRX Series Firewall2.0%
Palo Alto Networks CN-Series0.4%
Other82.5%
Firewalls
 

Featured Reviews

JK
IP Network Security Specialist at MTN Ghana
Process-Level CPU Visibility: Introduce detailed CPU-usage metrics per subsystem (e.g., IPS engine, logging) so administrators can quickly identify and address performance spikes.
Analytics with FortiAnalyzer. Being able to pull in logs not just from our FortiGates but from all our other firewalls and then get them in one view has been a game changer. Whether I’m building an executive dashboard or doing a deep dive forensics session, I get everything I need without navigating consoles.Straightforward Application Control. FortiGate spots and blocks unwanted apps (eq. like BitTorrent or streaming services) with accuracy. Segmentation with VDOMs. We’ve carved our data center into four logical ‘mini-firewalls’ enterprise, core, billing, and WAF—all on one box. Each has its own rules and logs, and any traffic between them still gets inspected. It’s like having multiple appliances without the extra hardware. Always-Up-to-Date Threat Feeds. Daily signature updates and AI-driven threat sensing mean we’re blocking the latest vulnerabilities almost as soon as they’re announced.
Chinedu Onwurah - PeerSpot reviewer
Global Juniper Presales Engineer at Westcon-Comstor
Robust security measures and cost-effectiveness meet diverse industry needs
The biggest benefit of Juniper SRX Series Firewall overall is that it is rugged and cost-effective, offering basic firewall features and additional licensed features as needed. The main challenge I see as a distributor is Juniper's rating in the Gartner report, where Juniper is not a leader in enterprise security, which often influences customer conversations. Most customers want to check the Gartner report before they engage, making it challenging to sell Juniper security. With my extensive experience with the Juniper SRX Series Firewall, the robustness of the SD-Cloud or Security Director interface and overall functionality needs to be improved to compete with leading firewall solutions.
Ahmed_Shalaby - PeerSpot reviewer
Senior Cyber Security Engineer at Beta Information Technology
Application control excels and integration with monitoring system boosts efficiency
I am an integrator working with Palo Alto Networks CN-Series and Panorama. I have been involved with the implementation of Palo Alto Networks CN-Series The stability of Palo Alto Networks CN-Series is excellent. Application control is one of the most valuable features. Its monitoring capability…

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Overall, we've been pretty happy with the solution."
"FortiGate improved our security. It's one of the best hardware firewalls."
"The usage in general is pretty good."
"The product has lived up to its expectation with no issues whatsoever."
"We’ve gone from only selling Fortinet FortiGate as an accessory to creating an entire department in our business dedicated to selling Fortinet products in the span of three years."
"My company never had any complaints about the tool in terms of performance or stability."
"The features that I have found most valuable are the SD-WAN and their IP4 policy."
"I have found the IPS, antivirus, and the feature that allows you to have a firewall in the same appliance most valuable."
"It is very fast and very easy to maintain. Another nice part of it is that you can easily extract the logs and move them over to a security operations center."
"Commit: You can update the whole configuration without affecting the production. The new configuration will be loaded once the command "Commit" is submitted. You can also do a Commit confirmed to automatically roll back to the previous config after X minutes."
"We did not have problems with scaling, as we have less than 500 users in our organization."
"The IPSec configuration is going well."
"Even now, when I compare the initial setup to Cisco, the implementation of Juniper SRX is very simple."
"One valuable feature is the reliability of the Junos OS."
"The Juniper SRX series is easy to use."
"The high availability of the application is good."
"The stability of Palo Alto Networks CN-Series is excellent."
"The app inspection is very helpful for network security."
 

Cons

"The level of customer service is bad because support is very pathetic."
"The AI part needs improvement to enhance its functionality."
"The tech support is not excellent; this is where Fortinet saves money compared to others... But plenty of free, clear and public documentation is available and this compensates for the most part the tech support shortcomings."
"They can do more tests before they release new versions because I would like to be more assured. We had some experiences where they release something new and great, but some of the old features are disabled or they don't work well, which impacts the product satisfaction. The manufacturer should be able to prove that everything works or not only that it might work. This is applicable to most of the other services, software, and hardware companies. They all should work on this. We cannot trust every new release, such as a beta release, on the first day. We wait for some comments on the forums and from other companies that we know. We always wait a few weeks before we use the updated version. They should also extend the VPN client application, especially for Linux versions. Currently, it has an application for Linux devices, but it doesn't work the way we want to connect to the VPN. They use only the old connection, not the new one. They have VPN client applications for Windows and Mac, but they can add more useful features to better manage the devices and monitor the current health of each device. Such features would be helpful for our company."
"FortiGate's logging and reporting could be improved. I would also like to see Fortinet add a guest management portal."
"Regarding challenges, customers initially faced issues like internet dropping, but after firmware upgrades, everything worked well."
"In most cases, the IPS engine uses too many resources, which makes Fortinet FortiGate devices unstable."
"The inability to change passwords when using FortiGate firewall and relying on a local FortiGate database for account creation can be problematic, particularly in non-Active Directory setups."
"Juniper needs to focus more on their perimeter firewalls."
"Third-party support for Juniper is a lot less than Cisco. This is no surprise, but a definite consideration if you are expecting to use a lot of third party support. In my guesstimate, for every 100 Cisco shops, you will find one Juniper shop."
"The product only has basic features."
"JTAC (Juniper Networks Technical Assistance Center) is just okay for technical assistance. However, if you are used to Cisco TAC responsiveness, you will need to adjust your expectations with Juniper Networks TAC."
"The CLI is verbose. You have to say a lot to do a little. I don't like that part of it. Cisco's command syntax seems to be a good bit more concise. When you're trying to get something done, you don't want to have to type a bunch."
"It must be 5G ready. The 5G network is rolling out soon in India, and Juniper must upgrade their firewall slot to the 5G network, or they must manufacture a 5G dongle card for the Juniper firewall. I want Juniper to upgrade their dongle from 4G to 5G. Presently, they have an expansion slot in the SRX 322 series and higher firewalls. In that expansion slot, they can put a 4G mobility SIM card so that whenever our primary link is down, it will automatically connect through this GSM network and form a tunnel."
"IPS is one that I would definitely want to be improved. I would also like SSL VPN to be integrated."
"It could improve areas which need high performance."
"I'd like to see more IOPs features."
"Palo Alto Networks CN-Series could improve on its pricing as it is quite expensive."
 

Pricing and Cost Advice

"The price of FortiGate is reasonable as I plan to buy new switches. The initial gadgets are already booted, and the pricing seems normal on the market. As for additional costs, I haven't subscribed to many extra features, so I'm only using what I need. Last year, I renewed the support for three years, which can sometimes be expensive but depends on the security benefits and how it helps us."
"The price is fair compared to the other competitors."
"It was pretty affordable. We did go a little bit above MSRP, but the service pack that was included was quite worth the additional costs. It is competitively priced compared to other major players in the market. It is significantly cheaper than Check Point, which is a primary competitor. Additionally, its pricing is comparable to that of Cisco's ASA and a few other vendors."
"It has been two years. I don't remember the actual price, but it was affordable. We buy the boxes and then use the license for three years."
"Its pricing is competitive with other solutions."
"I would rate pricing to be about four or five out of ten, it is reasonable."
"Here in Brazil, we're going through difficult economic times and the tax on the dollar is high. All the solutions from minor competitors are growing in the market. The prices have come more competitive."
"It is more affordable than Check Point and Palo Alto. Another thing is that all the features and the OS remain the same irrespective of the size of the device. Pricing-wise, Fortinet typically provides one-year support with the firewall appliance. There is also an option for three years which is how their licensing works."
"Its price is reasonable. In India, most of the products have a similar price. There is only a 5% to 10% variation in the price of different brands."
"The pricing is perhaps half, probably forty percent, of Cisco."
"Small enterprises or telco have variant licenses, and this licensing should be improved."
"For a medium-sized organization, the cost for the licensing and implementation of Juniper SRX for 10 users would be about $300-400."
"In my opinion, the Juniper SRX Series Firewall is cheaper than other products."
"The direct support with Juniper is expensive. When you stop using the solution and miss one year of payments, if you want the support back on a specific node, they ask you to pay for the year that you haven't used the node."
"The pricing appears to be cost-effective, and the cost is quite reasonable within Bangladesh and other countries, though it may vary based on global currency fluctuations."
"While the price of support is expensive, the price of the solution, itself, is not."
Information not available
report
Use our free recommendation engine to learn which Firewalls solutions are best for your needs.
902,495 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Comms Service Provider
10%
Computer Software Company
9%
Manufacturing Company
9%
Financial Services Firm
7%
Construction Company
9%
Comms Service Provider
9%
Manufacturing Company
8%
Financial Services Firm
7%
No data available
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business369
Midsize Enterprise139
Large Enterprise195
By reviewers
Company SizeCount
Small Business47
Midsize Enterprise20
Large Enterprise32
No data available
 

Questions from the Community

Which is the better NGFW: Fortinet Fortigate or Cisco Firepower?
When you compare these firewalls you can identify them with different features, advantages, practices and usage a...
What is the biggest difference between Sophos XG and FortiGate?
From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know...
What are the biggest technical differences between Sophos UTM and Fortinet FortiGate?
As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite ...
What is your experience regarding pricing and costs for Juniper SRX?
The Juniper SRX Series Firewall is affordable and cost-effective. The cost depends on the use case; for firewalls, it...
What advice do you have for others considering Juniper SRX?
I work with Aruba, Juniper, and FortiGate Fortinet solutions. I do not work with Juniper Mist. I only work with Junip...
What needs improvement with Juniper SRX Series Firewall?
I do not work with threat prevention, so customers do not purchase this license for Juniper SRX Series Firewall. It i...
What is your experience regarding pricing and costs for Palo Alto Networks CN-Series?
The pricing of Palo Alto Networks CN-Series is quite expensive, rating around eight on a scale of one to ten for cost.
What needs improvement with Palo Alto Networks CN-Series?
Palo Alto Networks CN-Series could improve on its pricing as it is quite expensive. The SD-WAN implementation using P...
What is your primary use case for Palo Alto Networks CN-Series?
I am an integrator working with Palo Alto Networks CN-Series ( /products/palo-alto-networks-cn-series-reviews ) and P...
 

Also Known As

Fortinet FortiGate Next-Generation Firewall
Juniper SRX
No data available
 

Overview

 

Sample Customers

Amazon Web Services, Microsoft, IBM, Cisco, Dell, HP, Oracle, Verizon, AT&T, T-Mobile, Sprint, Vodafone, Orange, BT Group, Telstra, Deutsche Telekom, Comcast, Time Warner Cable, CenturyLink, NTT Communications, Tata Communications, SoftBank, China Mobile, Singtel, Telus, Rogers Communications, Bell Canada, Telkom Indonesia, Telkom South Africa, Telmex, Telia Company, Telkom Kenya
7-Eleven, AARNet Pty Ltd, Allegro Networks, alltours GmbH, Apollo Hotel Papendrecht, Armstrong Atlantic State University, Atlantech Online, Availity, Bajaj Capital, Baloise Insurance, BancABC, BAS Group, Black Lotus, Blue Box, Borealis, Carilion Clinic, Catholic Health System, CATV, Champlain College, Chinas Ministry of Railways, China University of Mining and Technology (CUMT), Cloud Dynamics, CloudSeeds, Cloudwatt, CODONiS, Colt Technology Services, Cork Internet Exchange, CSS Versicherung AG, CyrusOne, Danish Crown, Deloitte Belgium, Department of Energy, Divona Telecom, DQE Communications, DreamHost, European Government Agency, Expedient, Financial Market Information Services Provider, Fluidata, Fonality, Fox Sports, Global Financial Institution, Global Investment Bank, Global Investment Company, Energy Sciences Network (ESnet), Goethe University, HEAnet, High Performance Networks Inc., Hillenbrand
Information Not Available
Find out what your peers are saying about Juniper SRX Series Firewall vs. Palo Alto Networks CN-Series and other solutions. Updated: June 2026.
902,495 professionals have used our research since 2012.