Try our new research platform with insights from 80,000+ expert users
it_user1056699 - PeerSpot reviewer
Chief Executive Officer at a tech services company with 11-50 employees
Real User
Jul 3, 2019
Provides a high level of security and the app ID is very good
Pros and Cons
  • "The solution is very stable."
  • "Generating reports is not so easy."

What is our primary use case?

I primarily use this solution for the core banking network. It's for core security. So it's to protect against intrusion, to protect against any kind of cyber attack that can happen to it. It protects our core infrastructure.

How has it helped my organization?

Mostly it's improved the security side. There was no security before, and we were looking for a solution that could give us the exact capacity to do all the configurations that we need, while also providing a high level of security. 

What is most valuable?

The app ID is very good.

What needs improvement?

The support needs improvement. Also, better reporting of errors would be good.

Buyer's Guide
Palo Alto Networks NG Firewalls
January 2026
Learn what your peers think about Palo Alto Networks NG Firewalls. Get advice and tips from experienced pros sharing their opinions. Updated: January 2026.
881,114 professionals have used our research since 2012.

For how long have I used the solution?

I've been using the solutions for over 10 years.

What do I think about the stability of the solution?

The solution is very stable.

What do I think about the scalability of the solution?

The scalability is not so good. Because if you want to upgrade, you have to change the service completely. We have about 2000 users.

How are customer service and support?

It's a long wait time, although sometimes it's been quicker to get them. Occasionally, the type of answers provided are not so great.

Which solution did I use previously and why did I switch?

We used to use Check Point, but we switched. It's because we found Palo Alto is better. Check Point is much slower, more expensive.

How was the initial setup?

The initial setup was straightforward for us. We are technology oriented, so for us, it was straightforward. No complexities. For deployment, we needed about 5 people. Maintenance is only three people. Three engineers are looking after the books.

What about the implementation team?

We did the implementation ourselves.

What's my experience with pricing, setup cost, and licensing?

I would advise anyone to go ahead and understand exactly what they need. It's not because Palo Alto's cost is a little less. Depending on use, it's expensive. So they should understand the requirements first, before going with Palo Alto.

Which other solutions did I evaluate?

We previously had Check Point and eventually compared it with the Palo Alto screening, which proved that Palo Alto was the best. It was not a difficult choice.

What other advice do I have?

I would rate this solution 8 out of 10. Generating reports is not so easy. I think with support, for everyone, and for all the bank company workers, they can do that a bit better. Then maybe I would rate them higher.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Senior Technical Consultant at a tech services company with 501-1,000 employees
Real User
Jul 3, 2019
Valuable accessibility, antivirus, and stability features with a simple implementation
Pros and Cons
  • "The basic configuration will only take 15 minutes to set up"
  • "Customers don't want to buy extra things for extra capabilities"

What is our primary use case?

We're customer facing; each customer uses it for a different purpose. Some use NG Firewalls for IPS capability, some for application capabilities, these kinds of things.

What is most valuable?

The accessibility, antivirus, and stability features are the most valuable. It's so stable, the customer can use the decryption features without impacting performance.

What needs improvement?

Most customers ask about the choice of features. It's limited. It's not arranged well for users. Also, customers don't want to buy extra things for extra capabilities. I would like to implement individual profiles for each user. Capability, in general, is limited.

For how long have I used the solution?

I've been using the solutions for 2 years.

What do I think about the stability of the solution?

It's a very stable solution.

How are customer service and technical support?

I am the customer's technical support. If a customer has issues, they would call me.

How was the initial setup?

The initial setup was basic. It was very simple. The basic configuration will only take 15 minutes. Anyone can set it up. If a person has worked with a firewall before, they can do it themselves. You only need one person for deployment.

What's my experience with pricing, setup cost, and licensing?

Licensing is on a three year basis. Customers prefer one to three years. Licencing is pretty expensive. Check Point is cheaper than Palo Alto. There's also an international license. If a customer wants to control different things, they will need an extra license. 

What other advice do I have?

I've helped customers using Fortinet and Check Point. They are compromised. Their firewall is not stable. But for some features, for example, encryption, they want to use this feature, but the firewall feature isn't great. With Palo Alto, there isn't any problem, you can open any feature - IPS feature, data encryption feature - there isn't an issue.

Implementation is simple, the product is stable, but I advise if people get the firewall I strongly recommend the use of the API features. They may not be accustomed to using a next-generation firewall. If they want to use NG Firewalls, they need to use and implement the API features. They need to create uses based on the application.

My understanding is Version 9 will introduce some logic features.

I would rate this solution 9 out of 10.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Buyer's Guide
Palo Alto Networks NG Firewalls
January 2026
Learn what your peers think about Palo Alto Networks NG Firewalls. Get advice and tips from experienced pros sharing their opinions. Updated: January 2026.
881,114 professionals have used our research since 2012.
NGfrwall677 - PeerSpot reviewer
Sales Engineer at a wholesaler/distributor with 51-200 employees
Real User
Jul 2, 2019
Good configuration capabilities, easy scaling abilities, and good functionality
Pros and Cons
  • "Good functionality and features."
  • "Could also use better customer support."

What is our primary use case?

I use the solution for firewalls.

What is most valuable?

I find the configuration the most valuable.

What needs improvement?

The support in our country can be slow sometimes. It's a slow website. It could also use better customer support.

For how long have I used the solution?

I have been using this solution for 1.5 years.

What do I think about the stability of the solution?

The solution's stability is normal.

What do I think about the scalability of the solution?

My impression of the scalability is that it is easy.

How are customer service and technical support?

I contacted technical support a lot of times. Most of the time, they were pretty good, but sometimes technical support couldn't resolve the issue, and they don't know what to do.

How was the initial setup?

The setup of the firewalls has medium difficulty. On one configuration it was easy, and on another one it was hard. Sometimes it's normal to configure sometimes it's more complex. You only need one person, maybe two, for deployment at a company.

What about the implementation team?

I did the implementation myself.

What's my experience with pricing, setup cost, and licensing?

At our company, we sell the solution for another vendor, and they sell to another vendor. So our pricing is more expensive than other vendors. 

Which other solutions did I evaluate?

I didn't look at any other vendors.

What other advice do I have?

The functionality is good and so are the features. In terms of implementing the solution, I wish it was better. I would rate the solution 8 out of 10, mostly due to the technical issues I've experienced.

Disclosure: My company has a business relationship with this vendor other than being a customer. Partner.
PeerSpot user
Sales Solutions Engineer at a tech services company with 201-500 employees
Reseller
Jul 1, 2019
Enables us to evaluate traffic in the customer environment by providing detailed reporting on the traffic and applications
Pros and Cons
  • "One of the best firewalls on the market."
  • "The user interface is a bit clumsy and not very user-friendly."

What is our primary use case?

The primary use for this product is for security as a firewall by a sales engineer for the guest environment.

How has it helped my organization?

It allowed us to evaluate traffic in the customer environment by providing detailed reporting on the traffic and applications.

What is most valuable?

The WildFire feature is one of the best features in this firewall. WildFire extends the capabilities of Palo Alto firewalls to block malware. The best feature for the reseller is Service Lifecycle Reviewer, SLR. You deploy Palo Alto Network Firewall to the customer environment and it collects data about customer environment, customer traffic. After a week, Palo Alto generates a report to review the traffic. The report tells what applications were touched and how users used these applications in the environment, as well as additional details. So for resellers, you just go to the customer, deploy the Palo Alto in the basic mode so the customer doesn't need to customize anything in their environment because Palo Alto works to meter traffic out of the box.

Of course, the reports register app ID, user ID, the space of the app IDs, the database of these app IDs and other common data. It is a great feature in the Palo Alto product.

What needs improvement?

The manufacturer can improve the product by improving the configuration. Some of the menus are difficult to navigate when trying to find particular features. It is not entirely intuitive or convenient. You might need to configure a feature in one menu and next you need to go to another tab and configure another part of the feature in another tab. It's not very user-friendly in that way. On the other hand, it's still more user-friendly than using the console. But this is certainly one feature they can improve.

What do I think about the stability of the solution?

It's a great firewall, really one of the best in the market. It is one of few firewalls that can claim to be better than Cisco. It functions well, is very stable, and its reputation is known in the market.

What do I think about the scalability of the solution?

I think that the product is very customizable. If you don't need to protect a lot of assets, you can buy a small firewall at a low price for small needs, but if you need you can buy a bigger solution with more features. Scalability is very easy with Palo Alto Networks.

Which solution did I use previously and why did I switch?

Actually, I have moved away from using this product because of changes in duties.

How was the initial setup?

Installation is really very straightforward. You just need to plug it in and connect to the environment and that's all. Deployment time depends on the size of the environment and customer needs. Some customers just need two or three policies and that's all. But some customers need more policies designed to cover the needs of specific departments. So deployment depends on the size of your environment. If it's a small company, it's not very hard to deploy the main features of Palo Alto, it may take an hour but not more than a day. It depends on the customer needs and size of the environment.

What about the implementation team?

I work as the system integrator, so I install instances of Palo Alto myself. It was the first security product that I learned to work with.

Disclosure: My company has a business relationship with this vendor other than being a customer. Reseller.
PeerSpot user
reviewer1132443 - PeerSpot reviewer
Works at a computer software company with 201-500 employees
Real User
Jul 1, 2019
Country blocking, URL filtering, reporting, and visibility help to enforce our acceptable use policies
Pros and Cons
  • "One of the things I really like about it is that we have the same features and functions available on the entry-level device (PA-220), as do large corporations with much more costly appliances."
  • "The initial configuration is complicated to set up."

What is our primary use case?

I use the PA-220 to protect the LAN at my small-ish (about twenty people) office. We have several remote users who use the GlobalProtect VPN. As we move into a data center for hosting, I'll buy a second PA-220 to set up a site-to-site VPN. We also have a VM-50 for internal testing and lab use. 

How has it helped my organization?

I'm writing this review because it's a great product and I think it's ranked much too low on the review ratings. One of the things I really like about it is that we have the same features and functions available on the entry-level device (PA-220), as do large corporations with much more costly appliances.

With all the bells and whistles turned on, I can block access to websites based on their location (country), content, or other criteria. The reporting is really useful and shows me the most frequently used applications, and provides me with great visibility as to what my network users are doing on the internet. With this firewall in place, I can finally enforce the variety of acceptable use policies which have existed only on paper. 

What is most valuable?

The most valuable features are blocking traffic by country, and URL filtering to improve policy compliance and our overall cybersecurity posture. The ad blocker is also pretty handy. Moreover, the VPN client has turned out to be more useful than I initially thought, and the users love the 'one-click' connect. 

What needs improvement?

The initial configuration is complicated to set up. You really have to know what you're doing. I attribute that to all of the features and functions that are built into the product. Luckily, Palo Alto has a great support site and you can find contractors who are knowledgeable in the technology.

For how long have I used the solution?

One year.

How are customer service and technical support?

Technical support for this solution is great.

Which solution did I use previously and why did I switch?

Previously we used a pfSense firewall. I was very unhappy with it, as it had a limited feature set and was not intuitive to configure. 

How was the initial setup?

The initial setup is complex, due to all the features offered. You really have to know what you're doing.

What about the implementation team?

Implemented through a vendor who was knowledgeable with the product. It took at least a few months of tweaking before we got the firewall to the point it's currently at. 

What's my experience with pricing, setup cost, and licensing?

It will be worth your time to hire a contractor to set it up and configure it for you, especially if you are not very knowledgeable with PA firewalls. 

Which other solutions did I evaluate?

We looked at Cisco Meraki, but I wasn't really all that happy with it. 

What other advice do I have?

I've used it and I'm very happy. Frankly, I think this site under-rates the technology, as it should be in at least the top three.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
PeerSpot user
Network Engineer at a tech services company with 51-200 employees
Real User
May 16, 2019
Secures and deeply analyzes connections
Pros and Cons
  • "The most valuable feature is the ability to deeply analyze the connection or connection type."
  • "Overall it is good. It is reliable and easy to understand. However, the monitoring feature could be improved."

What is our primary use case?

We use this solution to block malicious or suspicious activity by creating policies that define which action should be blocked or allowed.

How has it helped my organization?

The firewall is a security device. We use this solution to create policies like ISPs for a specific purpose. We only allow the policies for a particular application, so this is a way for the firewall to secure an unwanted connection.

What is most valuable?

The most valuable feature is the ability to deeply analyze the connection or connection type.

What needs improvement?

Overall it is good. It is reliable and easy to understand. However, the monitoring feature could be improved.

They have many solutions already. I don't think I have seen any missing features. Every device has different functions, but as a firewall, this solution has a lot.

For how long have I used the solution?

I have been using this for three years.

What do I think about the stability of the solution?

Stability is good.

What do I think about the scalability of the solution?

There are no scalability issues to date.

We have about 2,500 users behind the firewall using this solution. I think we don't have any requirement to increase usage. Currently, we have around 2,500 users, but if this increases, we may need a new requirement.

We hired one or two people to maintain the solution.

How are customer service and technical support?

Technical support is good. Once you call up with your issue, it takes around one or two hours for them to contact and give you a solution accordingly.

Which solution did I use previously and why did I switch?

We were using Cisco ASA. We switched because of legal reasons and difficulty to understand. That's why they had decided to change to Firewall.

How was the initial setup?

It is very easy to use. It's straightforward, easy to understand, and easy to configure.

What about the implementation team?

Deployment time depends on your requirements. If you talk about the system requirements, it hardly takes up to 15 or 20 minutes for the configuration.

That said, it totally depends on your requirements: What kind of policy you require that supports what kind of block, etc.

The deployment time would change based on these requirements, but the system configuration: accessing the internet and creating policies hardly takes 20 minutes.

Deployment is configured by administrators, so if we have any kind of issue in policies or any confusion, we get tech support.

What's my experience with pricing, setup cost, and licensing?

Pricing is yearly, but it depends. You could pay on a yearly basis or every three years.

If you want to add a device or two, there would be an additional cost. Also, if you want to do an assessment or another similar add-on you have to pay accordingly for the additional service.

Which other solutions did I evaluate?

We also evaluated Check Point and Fortinet solutions.

What other advice do I have?

This solution is easy to understand, reliable, and user-friendly.

I would rate this solution as eight out of ten.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Partnerf4b9 - PeerSpot reviewer
Partner & vCISO at a tech services company with 51-200 employees
Real User
Mar 27, 2019
It has better manageability and overall features than its competitors
Pros and Cons
  • "We standardized on the product and got rid of several other types of firewalls from different vendors."
  • "It is very scalable."
  • "I would like integration with Evident.io and RedLock."
  • "The data loss prevention (DLP) capabilities need to be beefed up."

What is our primary use case?

Firewall.

How has it helped my organization?

We standardized on the product and got rid of several other types of firewalls from different vendors.

What is most valuable?

The firewall has a lot of sub-capabilities underneath it.

What needs improvement?

I would like integration with Evident.io and RedLock.

The data loss prevention (DLP) capabilities need to be beefed up.

What do I think about the stability of the solution?

The stability is good.

What do I think about the scalability of the solution?

It is very scalable.

How are customer service and technical support?

We have had that many problems, so we haven't had to engage with their tech support.

Which solution did I use previously and why did I switch?

I was not pleased with my previous solutions.

We switched to Palo Alto for better manageability and overall features.

How was the initial setup?

The initial setup was pretty straightforward.

What about the implementation team?

We deployed in-house.

What's my experience with pricing, setup cost, and licensing?

Annually, the licensing costs are too much.

What other advice do I have?

I would certainly encourage someone to look into this solution.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
it_user961413 - PeerSpot reviewer
IT Technician / Support
User
Nov 21, 2018
I like GlobalProtect, the URL filtering and the threat prevention, but the boot time should be improved on

What is our primary use case?

Finding a solution for easy management, where the company is protected in a matter where an unwanted software is blocked.

How has it helped my organization?

Functional and very futureproof but a bit hard to manage, and the worst thing is that it takes almost 20 mins to boot up, and to commit a config takes half that time.

What is most valuable?

  • GlobalProtect
  • URL filtering
  • Threat prevention. 

These features are great, but they have drawbacks and could be a bit better, flexible, and easy to manage since it takes the admin time to get them right. 

What needs improvement?

  • Boot time
  • Easy UI for the non-network specialists
  • Commit time
  • Virtualization
  • Credit to Palo Alto knowledgebase. 

For how long have I used the solution?

One to three years.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Buyer's Guide
Download our free Palo Alto Networks NG Firewalls Report and get advice and tips from experienced pros sharing their opinions.
Updated: January 2026
Product Categories
Firewalls
Buyer's Guide
Download our free Palo Alto Networks NG Firewalls Report and get advice and tips from experienced pros sharing their opinions.