Try our new research platform with insights from 80,000+ expert users

Prisma Access by Palo Alto Networks vs VMware VeloCloud SD-WAN comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Oct 6, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

iboss
Sponsored
Ranking in Secure Access Service Edge (SASE)
9th
Average Rating
8.4
Reviews Sentiment
7.1
Number of Reviews
19
Ranking in other categories
Secure Web Gateways (SWG) (6th), Internet Security (3rd), Web Content Filtering (1st), Cloud Access Security Brokers (CASB) (7th), ZTNA as a Service (10th)
Prisma Access by Palo Alto ...
Ranking in Secure Access Service Edge (SASE)
3rd
Average Rating
8.4
Reviews Sentiment
7.1
Number of Reviews
63
Ranking in other categories
Secure Web Gateways (SWG) (4th), Cloud Access Security Brokers (CASB) (1st), Enterprise Infrastructure VPN (5th), ZTNA as a Service (2nd)
VMware VeloCloud SD-WAN
Ranking in Secure Access Service Edge (SASE)
13th
Average Rating
8.2
Reviews Sentiment
6.8
Number of Reviews
54
Ranking in other categories
Software Defined WAN (SD-WAN) Solutions (5th), WAN Edge (6th)
 

Mindshare comparison

As of July 2025, in the Secure Access Service Edge (SASE) category, the mindshare of iboss is 1.7%, up from 1.2% compared to the previous year. The mindshare of Prisma Access by Palo Alto Networks is 15.8%, down from 18.8% compared to the previous year. The mindshare of VMware VeloCloud SD-WAN is 2.4%, down from 2.6% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Secure Access Service Edge (SASE)
 

Featured Reviews

Matt Crockford - PeerSpot reviewer
It's easy to roll out, and their understanding of our business made it seamless
One aspect we value about iboss is its simplicity. Their customer service is brilliant, and they are super responsive and knowledgeable. It's easy to roll out, and their understanding of our business made it seamless. We were impressed by the solution's mental health function, which can detect if someone needs help. It scans what users are browsing and flags warning signs so we can check to see if they are okay. We've had to use it a couple of times. The user interface is highly intuitive. Our IT team picked it up with minimal training. It's arranged so that it's easy to find where things are. Another advantage is the single pane of glass console, which gives you visibility into what's happening. We're not fully there yet because we haven't implemented zero trust, but we're excited about the possibilities from the demos we've seen. We launched a POC of iboss' ChatGPT Risk Protection feature two weeks ago. AI is a great tool, but you need to be careful what you put into it. My biggest fear is employees inputting sensitive corporate information or customer PII data into one of these chatbots. I was impressed by our trial of the feature. It's exactly what we wanted. Now, when a user goes to ChatGPT, there's a banner warning them not to share information, and we can block conversations containing customer data like bank details and email addresses. I don't want to stop people from using it, but we need visibility. We've only tried it on a test group of 15 people. You can configure it to look for specific keywords or integrate it with your DLP policy if you have that configured
Amar-Patil - PeerSpot reviewer
Enables seamless policy management and supports secure remote work
Our primary use case for Prisma Access by Palo Alto Networks is to control the internet and serve as an internet proxy. Additionally, we use it for secure remote work One of the most valuable features of Prisma Access by Palo Alto Networks is the ability to manage on-premise firewalls. We can…
Aneesh K - PeerSpot reviewer
Even a small group of people can manage a large environment and easy to manage
I would rate my experience with the initial setup a ten out of ten with ten being easy. Our hardware is ready, ISP is ready. I can bring up the site in just five to ten minutes. We use it for both on-prem and cloud, but they may have to make some improvements for the cloud. Currently, the cloud gateway has some bandwidth limitations. It cannot support more than 1.5 gigabytes. That's a challenge because, with the cloud, we expect more traffic. So, the capacity of each gateway could be a challenge. We use it for the cloud, but on-prem, it's perfect. Maybe for the cloud, they need to make some improvements.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"iboss has significantly lowered the number of security incidents. It is crazy how much it blocks and how much it is aware of the outside danger."
"The console is cloud-based, which is something I really appreciate."
"Granular setup, which was able to set different levels of filters using the OUs in the AD."
"iboss is pretty scalable. They provide good support. The case managers you work with to coordinate what you need are pretty good."
"First of all, the security policies are essential. I do not have to rely solely on Active Directory for our users."
"iboss is easy to use despite its complexity. Multiple engineers manage it, but it's significantly more straightforward to administer than traditional VPNs and web proxies."
"Iboss is a solution that prevents advanced persistent threats, and has a zero tolerance for attacks."
"From a use-case scenario, what I like the most is the plug-in. I like the fact that we can do the filtering of these devices offsite independent of the network they are connected to, and we do not have to have traffic coming back inside our network."
"The initial setup is very straightforward."
"It protects all app traffic so that users can gain access to all apps. Unlike other solutions that only work from ports 80 and 443, which are predominantly for web traffic, Prisma Access covers all protocols and works on all traffic patterns... The most sophisticated attacks can arise from sources that are not behind 80/443."
"The solution improved the consistency of our security controls and the BCP. There has been a 20 percent reduction in TCO. Prisma Access also enabled us to deliver better applications by centralizing security management."
"The solution also provides traffic analysis, threat prevention, URL filtering, and segmentation. That combination is important because it enhances the protection and makes the traffic more secure. It also keeps things more up-to-date, enabling us to deal with more of the current threats."
"The product's initial setup phase is simple."
"Prisma Access gives us security from a single point. It controls mobile users and determines how secure their networks will be, including from where they will get internet access. We can optimize things and add security profiles centrally."
"It has predefined or preconfigured rules, which are getting periodically updated. They are providing continuous improvements and periodically updating all search queries that they are looking for. That is one thing that helps us to stay vigilant and focused. If we query our AWS account for any breaches or vulnerabilities with any of the cloud tests, and it alerts us based on these predefined rules. It also provides an option to configure our own rules, and based on these rules, it can query the cloud trail logs, pull the information, and trigger alerts in real-time. I haven't explored this feature much because there are multiple accounts, and we don't have enough time to explore this feature. It also provides multiple integrations. When vulnerabilities or breaches are happening, you should be aware of them immediately. It provides integration with tools such as Slack, PagerDuty so that you can get alerted as soon as the high severity stuff comes up. For example, you have a security group that has allowed public traffic on port 22. As TechOps, you should be aware of this immediately. You cannot scan each machine or look into all security groups to identify it. So, Prisma helps us and alerts us when this kind of high-priority stuff comes up. It has different statistics, analytics, and graphs for data. The description of alerts is also pretty good. They describe what are the possible causes for this and what are the solutions. From Prisma Cloud, you can directly go to the AWS account. When you click on an alert, a resource, or a resource ID, it takes you to the AWS console where you need to log in. If you are already logged in, it will take you to that instance directly, and you can fix the issue there. I have found this feature very useful."
"The most valuable feature of Prisma Access is its ability to provide enterprise-class security for both Internet and internal application access."
"I have found the dynamic multipoint protocol(DNPO) most useful because it can tell you which is the best circuit to use for different types of traffic."
"The service they provide is very stable and is the main influencer of why customers purchase this solution."
"The most valuable feature of this solution is manageability."
"One of the key use cases for VMware SD-WAN was assisting a customer in the industrial zone. They required virtualized servers and wanted to enable VMware SD-WAN to connect their sites in Japan or China. We assisted in building the system by integrating VMware servers and utilizing the Cisco suite."
"The most valuable feature is the Dynamic Multipath Optimization (DMPO), which allows the customer to maintain and monitor their link quality in real-time."
"It is fairly similar to other solutions. It has the capability for testing link connectivity, which is its unique feature from a control perspective."
"I love the solution because of its many features like cluster and cloud VPN."
"The most valuable features are the orchestration layer, plug and play capabilities, and also the fact that you can either configure it as a full mesh or hard install."
 

Cons

"Their on-premise hardware's network interface is capped at one gigabit, which is sort of a problem. If you stand a filter up where all traffic flows through that, according to them, in order to go above a gigabit, you have to have multiple devices, which in today's IT seems a little bit silly. They could easily put in an SFP port into their device that could accommodate 10 gigs or at least offer a box."
"Sometimes when you call in support, you get someone who is just following a sheet. It feels like a runaround. You feel that you are running into that support wall."
"Sometimes the agent stops working in iboss, and we have to reinstall the agent."
"Regarding pricing, setup costs, and licensing, iboss is not cheap, and that's my only concern."
"I'd like to see them accelerate development on the security side, particularly around data loss prevention."
"File integrity monitoring would be very advantageous as an additional feature."
"The solution could be stronger on the integration side and offer more cloud applications like G Suite or Oracle."
"Fold that in with the risk intelligence they're getting from all of the different subscriptions they are a part of. Now, these security companies subscribe to things like emerging threats, databases, etc. You can fold all this intelligence to decide what's happening on an endpoint. I would love to see them start moving into that space. That would compete directly with Microsoft. Maybe that's why they haven't. Having that ability native within the solution would be great. The other area in which I would love to see improvement is more detailed descriptions of why they block websites."
"We've run into some challenges, having hit a lot of bugs over the past year in the deployment of GlobalProtect. We've had our fair share of issues that I haven't been happy with. We're working with the support organization to remediate them and waiting for updated releases. The response on getting the bugs fixed has not been what I would consider adequate for a product like this."
"It's not really Prisma's fault, but when you try to create exceptions you don't really have those abilities. You cannot say, on the management platform, "Hey, for these users I want to create these exceptions." That is one thing that I have gotten some complaints about, and we have faced some challenges there."
"When it comes to the VPN, it uses the global protect VPN functionality to connect remotely, but it has a feature limitation for assigning multiple IP sub-links to different user groups. It would be much better if we are able to assign the current IP blocks for the sub-links based on the user groups."
"The solution needs to be more compatible with other solutions. This is specifically a problem for us when it comes to healthcare applications. They have proprietary connection types and things of that nature that make compatibility a challenge sometimes."
"The solution’s stability could be improved."
"Lacks a hybrid model which has API plus in-line security."
"There should be a dedicated portal or SASE-based solution. They're trying to add a plugin but it needs a dedicated portal because it is now an enterprise solution for multiple organizations. People should be able to directly log in to a dedicated page for Prisma Access, rather than going into a Panorama plugin, and always having to update the plugin."
"It's not very easy to use. Sometimes it's buggy and there are problems when doing updates. The user interface is okay, but some configuration items are difficult. I would like it to be less buggy and easier to configure, to better streamline the user experience."
"I would like to see more features added to increase visibility."
"Can't execute commands quickly when troubleshooting. The graphic user interface is slow."
"The product should have on-demand tunnels instead of fixed tunnels."
"I would like for them to upgrade to 5G integration. Our customers have 4G now and the connectivity isn't good. It should be much faster."
"If you don't have an Internet connection, you can’t control it."
"VMware SD-WAN doesn't have the best built-in firewall."
"VMware SD-WAN is complicated to configure."
"In an upcoming release, they should allow customers the flexibility to use mobile applications where they can go and check on the information about their networks. A lot of vendors, such as Meraki, have a lot more integration with the use of portals to a mobile application. Having this feature as an alternative to logging into a laptop would be beneficial. If you are a SaaS-based company why not make a mobile application as well. You might not be able to do configurations but at least monitor while away or on vacation."
 

Pricing and Cost Advice

"It is expensive compared to one of its competitors."
"We have not priced the solution recently, but they were competitive with other vendors in the past."
"The overall pricing for iboss is very competitive and transparent."
"We had the cost of purchasing a new appliance along with the implementation and licensing costs. However, the following year, the cost of just licensing was similar to what was paid the previous year for a new appliance along with the implementation and licensing costs."
"It is probably in line with other solutions, but I do not deal with the financial side."
"It is not expensive, and it is also not cheap. iboss is priced right in the sweet spot for the number of features it offers."
"There's no reason not to buy the enterprise version that gives you unlimited PoPs, but you must understand the limitations you impose on yourself if you do that. If you go crazy, that allowlist will be too big for Kubernetes clusters."
"Prisma SaaS is more expensive than similar solutions but I think it's worth it."
"We have to pay additional costs for maintenance and support services."
"Palo Alto is the Cadillac solution, so their products are pretty expensive. That's just the way it is. Their solution surpasses anything else. Cisco AnyConnect, Zscaler, and all of the other products don't compare. Palo Alto is the market leader with the most features. It saves you work, and you don't have to worry about it."
"I'm still comparing, but the solution is quite expensive."
"As compared to other solutions, Prisma Access is much cheaper. It is probably 30% to 40% cheaper than other solutions, but I do not know the exact cost."
"The licensing fees are paid on a yearly basis and for what we get, the price is good."
"I would advise choosing your options according to your company's needs. Just go for what you want and do not pay for anything extra in terms of licensing. You need to determine how much bandwidth is required in your company network, and according to that, you should pay for the license. The mobile user license is based on the number of users who are going to use the VPN solution. You need to determine how many mobile users you are going to have in your network, and you should pay according to that. There are no other costs in addition to licensing, but if you go for the consultant services of Palo Alto networks to deliver the solution for you, then you need to pay something extra. That is not a part of licensing."
"I would rate the product’s pricing a six out of ten since the license is costly."
"There is only a standard fee for the solution."
"We make monthly payments toward the licensing costs of the solution."
"We pay about $500 USD, or 700,000 Korean won."
"My understanding is that the pricing is in the same range as other solutions."
"The price of VMware SD-WAN is less expensive than some solutions, such as Cisco."
"The minimum cost is $10,000 a month to have a monitoring station set up."
"You need to pay for a license to use this product."
report
Use our free recommendation engine to learn which Secure Access Service Edge (SASE) solutions are best for your needs.
860,592 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
12%
Financial Services Firm
11%
Manufacturing Company
9%
Government
6%
Computer Software Company
14%
Manufacturing Company
13%
Financial Services Firm
12%
Government
6%
Computer Software Company
16%
Financial Services Firm
9%
Construction Company
7%
Healthcare Company
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about iboss?
Content filtering is the most useful feature of iboss.
What needs improvement with iboss?
For zero trust implementation, we encountered complexity issues, especially with a large infrastructure company Exxon...
What is your primary use case for iboss?
Previously when I used iboss, we did the POC for iboss for ExxonMobil. Four or five people wanted to move from our ol...
What is the better solution - Prisma Access or Zscaler Private Access?
We looked into Prisma Access before choosing Zscaler Private Access (ZPA). Palo Alto’s Prisma Access is a secure ac...
What do you like most about Prisma Access by Palo Alto Networks?
The most valuable features of the solution are in the areas of the secure remote access it provides while also being ...
What is your experience regarding pricing and costs for Prisma Access by Palo Alto Networks?
From my experience, Palo Alto is more expensive compared to solutions like Netskope and Triscale.
What are the biggest differences between Fortinet Fortigate and VMware SD-WAN?
One of our favorite things about Fortinet Fortigate is that you can deploy on the cloud or on premises. It is a very ...
What do you like most about VMware SD-WAN?
One of the key use cases for VMware SD-WAN was assisting a customer in the industrial zone. They required virtualized...
What is your experience regarding pricing and costs for VMware SD-WAN?
The pricing involves licensing for the VeloCloud gateway based on the bandwidth used. The license is required to use ...
 

Also Known As

iBoss Cloud Platform
Palo Alto Networks Prisma Access, Prisma Access, GlobalProtect, Palo Alto GlobalProtect Mobile Security Manager, Prisma SaaS by Palo Alto Networks, Prisma Access
VMware SD-WAN, VeloCloud
 

Overview

 

Sample Customers

More than 4,000 global enterprises trust the iboss Cloud Platform to support their modern workforces, including a large number of Fortune 50 companies.
Concord Hospital, State of Colorado, Essilor International, RheinLand Versicherungsgruppe, University of Westminster, Universidade Nove de Julho, SPAR Austria, CAME Group, ZipRealty, Greenhill & Co., IKT Agder, Aviva Stadium, Animal Logic, Management & Training Corporation, Brigham Young University Hawaii, School District of Chilliwack
Redmond, Coca Cola, Roka Bioscience, MetTel, Deutsche Telekom, Rockford Construction,  The Bay Club, tru Independence, Triton Management Services, DevCon, AXPM
Find out what your peers are saying about Prisma Access by Palo Alto Networks vs. VMware VeloCloud SD-WAN and other solutions. Updated: June 2025.
860,592 professionals have used our research since 2012.