Check Point NGFW vs Fortinet FortiGate-VM comparison

Cancel
You must select at least 2 products to compare!
Fortinet Logo
120,425 views|88,209 comparisons
90% willing to recommend
Check Point Software Technologies Logo
27,173 views|16,714 comparisons
96% willing to recommend
Fortinet Logo
14,279 views|8,060 comparisons
98% willing to recommend
Comparison Buyer's Guide
Executive Summary
Updated on Jul 11, 2023

We performed a comparison between Check Point NGFW and Fortinet FortiGate-VM based on our users’ reviews in five categories. After reading all of the collected data, you can find our conclusion below.

Features: Check Point NGFW is praised for its extensive security features, centralized management, and virtualization capabilities. Fortinet FortiGate-VM receives appreciation for its stability, reliability, and user-friendly interface.

Check Point NGFW needs enhancements in integration, hardware upgrades, cost and pricing, stability and security, setup process, load balancing capabilities, technical support, and reporting. Fortinet FortiGate-VM requires improvements in key activation, log management, cloud management, IPsec failover, monitoring tool, setup and configuration, performance, firmware updates, log settings, GUI capabilities, costs, technical support, and integration.

Service and Support: The customer service for Check Point NGFW has garnered varying opinions, with some customers appreciating its helpfulness and responsiveness, while others believe there is room for improvement. Fortinet FortiGate-VM's support has received a mix of feedback. Certain customers commend its prompt response times and expertise, while others highlight concerns regarding delayed responses.

Ease of Deployment: Check Point NGFW's initial setup can be complex and may require expertise and experience for certain configurations and migrations. Fortinet FortiGate-VM offers a generally straightforward and easy setup process, aided by Fortinet's support and assistance.

Pricing: Check Point NGFW has a high setup cost, yet offers flexible licensing options. Fortinet FortiGate-VM has competitive pricing and includes support without extra charges.

ROI: Check Point NGFW provides cost savings, simplicity, and strong security enforcement, resulting in a favorable ROI. Fortinet FortiGate-VM offers stability and enhanced security, guaranteeing a positive ROI when purchased initially.

Comparison Results: Check Point NGFW is the preferred choice when comparing it to Fortinet FortiGate-VM. Check Point NGFW stands out for its extensive security features, such as URL filtering, intrusion prevention systems, identity and access management, and application control capabilities. Additionally, it offers centralized management and virtualization options, as well as stability, user-friendliness, and scalability.

To learn more, read our detailed Check Point NGFW vs. Fortinet FortiGate-VM Report (Updated: May 2024).
771,170 professionals have used our research since 2012.
Featured Review
Quotes From Members
We asked business professionals to review the solutions they use.
Here are some excerpts of what they said:
Pros
"The most valuable features are the policies, filtering, and configuration.""Fortinet FortiGate's ease of management is the most valuable feature.""FortiGate improved our security. It's one of the best hardware firewalls.""The initial setup is straightforward.""The web tutor and automatic rules by schedule are good features.""It's very easy to set up, it's very easy to make policies and, for an organization, that means you don't need IT expert in firewalls. You just need to have somebody who knows a little bit of IT, and that's it. With other products, you need someone with a "Masters" degree in firewalls.""The features that I have found most valuable are that it is good to use, and most importantly, the pricing. The customer especially likes the discount when they trade up or something like that.""Fortinet FortiGate's reliability is valuable."

More Fortinet FortiGate Pros →

"It's offering great security while also being rather easy to manage.""The features that are important include: IPS, sandbox, SandBlast, Anti-Bot, and URL filtering.""It is easy to control from the central management system. For example, if we have 10 firewalls, and we want to push that same configuration among them, we can use this solution's central management system to do that simultaneously. So, there is time saving in that way. The time savings does depend on the situation. For example, if I am running half an hour of work on each firewall, that will take around 300 minutes. However, if I do this work from the central management system, then it will only take 30 minutes to push the same configuration to those same 10 devices.""There is modern protection against current threats.""The Smart Dashboard and other user interfaces are very easy to use and can be handled without any significant IT skills.""Sandboxing is the most valuable feature.""In the four years I have worked on the five firewalls we have not had any downtime caused by stability issues.""The user interface is very cool and easy to use."

More Check Point NGFW Pros →

"The most valuables features are the ease of use and deployment.""It gives all the features of a full-fledged firewall with great performance.""This product is affordable and it's a good, high-performance appliance.""The functionality provided is very good.""The most valuable features are locking applications from in and out of my test network and testing malware on different devices. I use malware detection, antivirus, and basic firewall policies to check for different types of security breaches. The UI is really nice and easy to use.""It's almost perfect. It's very stable. We don't have many hardware issues.""Use of this product does not require daily interactions.""An enhanced security solution for any kind of alert that we have configured."

More Fortinet FortiGate-VM Pros →

Cons
"The web-cache feature which was previously on the FortiGate device, but was deleted with the recent upgrade should be returned. It was a very valuable feature for us.""The non-error conserve mode has room for improvement.""It could use better throughput on some of the smaller boxes for the branch offices.""I'm not sure if it's something that they already have or are developing something, however, we need some dedicated features for container security.""They've become quite expensive.""I don't like that anything more than very basic reporting is not included.""Fortinet needs more memory to save the log files. We need it to save the logs on the hardware and not in the cloud. I know this feature is available in FortiCloud, but if we need this log locally, it is not available.""They should improve high CPU and memory usage that occurs."

More Fortinet FortiGate Cons →

"Some features, like the VPN, antispam, data loss prevention, etc., are managed in an external console. In the future, I'd like all features in the same console, in one place, where we can see and configure all features.""There are issues with stability while upgrading devices with hotfixes.""It could be easier to access the installation of the Hostfix for VSX solutions. The CLI commands help us understand how virtual firewalls behave in terms of processor, memory, and other aspects. More graphic visualizations of CPUSE commands would be a welcome improvement, and Check Point could expand scripts to run within the solution for multiple tasks.""It is a bit expensive according to the required blades but it is a platform that is worth having as security in a corporate.""The main thing for a normal operations guy who is creating tools and firewalls, it is quite difficult to manage. It requires an expert level of knowledge in Check Point products to manage these scalable platform appliances and the virtual firewall that comes with it. We have to educate our guys and give them training on a regular basis to work on these products.""There is room for enhancement in the support system in India.""Initially, we faced a few challenges with firmware. Later this was addressed with jumbo hotfixes.""To enhance the user experience, Check Point should consider adopting an incremental upgrade approach, similar to competitors like Palo Alto or Fortinet, as it would help minimize downtime and streamline the upgrade process, making it more efficient and user-friendly."

More Check Point NGFW Cons →

"Now they do have the ability to pop up a command line, which is nice, however, the fact that you can't do everything within the GUI is probably a problem.""The costs could be lowered.""In the first two releases of FortiOS 5.6, we had some trouble with the SSL VPN service. Sometimes it stopped working, and the IPS daemon too.""The product does not have a good graphical interface.""Some issues with connecting to the VPN from home after firmware updates.""Fortinet support needs improvement. The response times are lackluster. Fortunately, the product is stable and we seldom have issues. Also, it takes months for them to deliver hardware when we order it.""Fortinet devices are acknowledged as highly potent and come with a notable cost. These devices offer extensive visibility, an array of configurations, and a range of security features. However, there's room for enhancement in their routing and switching security aspects, akin to Cisco's offerings. A noteworthy aspect here is Meraki, which offers cloud controllers. If FortiGate were to introduce a similar cloud management solution, it could strongly compete with both Meraki and Cisco products. Cisco operates in two sectors: enterprise and SMB. Particularly in the SMB market, they hold sway due to their convenient cloud management features. For instance, Meraki's cameras and wireless access points can be easily controlled through their cloud management portal. If FortiGate were to provide cloud-based management solutions for SMB customers, it could cater to a significant portion of the market, considering that a substantial number of customers fall within the SMB and mid-level enterprise categories.""The price and licensing of the solution can be better."

More Fortinet FortiGate-VM Cons →

Pricing and Cost Advice
  • "Fortinet has one or two license types, and the VPN numbers are only limited by the hardware chassis make."
  • "These boxes are not that expensive compared to what they can do, their functionality, and the reporting you receive. Fortinet licensing is straightforward and less confusing compared to Cisco."
  • "Go for long term pricing negotiated at the time of purchase."
  • "Work through partners for the best pricing."
  • "The value is the capability of having multiple services with one unique license, not having the limitation per user licensing schema, like other vendors."
  • "Easy to understand licensing requirements."
  • "​We saved a bundle by not needing all the past appliances from an NGFW.​"
  • "The cost is too high... They have to focus on more features with less cost for the customer. If you see the market, where it's going, there are a lot of players offering more features for less cost."
  • More Fortinet FortiGate Pricing and Cost Advice →

  • "I don't think the product's pricing is a good value. I feel it's very overpriced. I feel a lot of the features for a next gen firewall are there. But I feel it's overpriced, because of the stability issues. As far as support goes, I really can't speak to direct Check Point support, but the third-party was pretty terrible... As far as the licensing goes, it's pretty complex. If anybody was to purchase the Check Point product, definitely make sure they have an account rep come on site, and explain it line by line, what each thing is. It's not straightforward. It's very convoluted. There's no way you could just figure it out by looking at it."
  • "Check Point solutions are very expensive here. They're good, but they're expensive... Check Point is only useful for customers that have a big IT budget."
  • "The price is high in comparison to other solutions."
  • "We pay $5,000-$6,000 a year."
  • "Maybe the pricing is a bit high but you get the durability and the duration."
  • "Licensing issues may be confusing at times."
  • "It is quite an expensive product, although security is a top priority."
  • "This product is not cheap and there are additional costs that depend on what model or package that you buy."
  • More Check Point NGFW Pricing and Cost Advice →

  • "The pricing and licensing are not as expensive as its competitors."
  • "It is an expensive solution if you are migrating from an open source solution."
  • "If you are in a licensed solution, like Cisco or Palo Alto, it is cheaper. I do recommend using it with a license, because it is a security solution and it needs updates.​"
  • "​The basic pricing in Austria is OK, but asking for special offers, e.g., NPOs, NGOs, trade up, and/or trade in, is always useful.​"
  • "​It is on par with what you receive. It can be expensive upfront."
  • "It would be nice to have the ability to extend FortiGuard subscriptions at a reasonable yearly cost versus a bulk three year pricing.​"
  • "The price is expensive compared with other vendors, like Cisco and Huawei."
  • "The best part of Fortinet is the license is bundled together, so it is easy to use and apply."
  • More Fortinet FortiGate-VM Pricing and Cost Advice →

    report
    Use our free recommendation engine to learn which Firewalls solutions are best for your needs.
    771,170 professionals have used our research since 2012.
    Questions from the Community
    Top Answer: When you compare these firewalls you can identify them with different features, advantages, practices and usage at… more »
    Top Answer:From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know… more »
    Top Answer:As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite… more »
    Top Answer:I have experience on both from Disti and channel experience. Please find below my comments (nothing new as such)… more »
    Top Answer:Azure Firewall is easy to use and provides excellent support. Valuable features include integration into the overall… more »
    Top Answer:Check Point NGFW provides essential security, featuring no-obligation access for secure connections, strong intrusion… more »
    Top Answer:In the best tradition of these questions, Feature-wise both are quite similar, but each has things it's better at, it… more »
    Top Answer:Both of these solutions are excellent options that provide flexible scalability and solid security Fortinet Fortigate… more »
    Top Answer:An enhanced security solution for any kind of alert that we have configured.
    Comparisons
    Also Known As
    FortiGate 60b, FortiGate 60c, FortiGate 80c, FortiGate 50b, FortiGate 200b, FortiGate 110c, FortiGate
    Check Point NG Firewall, Check Point Next Generation Firewall
    FortiGate Virtual Appliance, FortiGate-VM
    Learn More
    Overview

    Fortinet FortiGate enhances network security, prevents unauthorized access, and offers robust firewall protection. Valued features include advanced threat protection, reliable performance, and a user-friendly interface. It improves efficiency, streamlines processes, and boosts collaboration, providing valuable insights for informed decision-making and growth.

    Check Point NGFW is a next generation firewall that enables safe usage of internet applications by blocking malicious applications and unblocking safe applications. Check Point NGFW, which uses deep packet inspection to identify and control applications, has features such as application and user control and integrated intrusion prevention (IPS), as well as more advanced malware prevention capabilities like sandboxing.

    Check Point NGFW includes 23 firewall models optimized for running all threat prevention technologies simultaneously, including full SSL traffic inspection, without compromising on security or performance.

    Benefits of Check Point's Next Generation Firewall

    • Robust security: Check Point NGFW delivers the best possible threat prevention with SandBlast Zero Day protection. The SandBlast protection agent constantly inspects passing network traffic for exploits and vulnerabilities. Suspicious files are then emulated in a virtual sandbox in order to detect and report malicious behavior.

    • Security at hyperscale: On-demand hyperscale threat prevention performance provides cloud level expansion and resiliency on premises.

    • Unified management: Check Point's SmartConsole makes it easy to manage and configure network security environments and policies. With the SmartConsole, users can manage all the firewall gateways and access logs and install databases from one location. Unified management control across the network increases the efficiency of security operations and reduces IT costs.
    • Continuous logging: Check Point NGFW’s Threat Management feature detects vulnerabilities and logs them. Using the logged data, users can easily create and implement efficient security policies.

    • Remote access: The remote access VPN provides a seamless connection for remote users.

    Check Point NGFW is suitable for organizations of all sizes, from small businesses to larger enterprises.

    Reviews from Real Users

    Check Point NGFW stands out among its competitors for a number of reasons. Two major ones are its intrusion prevention feature as well as its centralized management, which makes it very easy to deploy firewall policies to many firewalls with one click.

    Shivani J., a network security administrator, writes, "Check Point has a lot of features. The ones I love are the antivirus, intrusion prevention, and data loss prevention."

    G., a network administrator at Secretaría de Finanzas de Aguascalientes, writes, “Within the organization, the inspection of packages has given us great help in detecting traffic that may be a threat to the institution. The configuration of policies has allowed us to maintain control of access and users for each institution that is incorporated into our headquarters.”

    Arun J., a senior network engineer, notes, “The nicest feature is the centralized management of multiple firewalls. With the centralized management, we can easily use and operate multiple firewalls as well as create a diagram of them.”

    FortiGate Virtual Appliances allow you to mitigate blind spots by implementing critical security controls within your virtual infrastructure. They also allow you to rapidly provision security infrastructure whenever and wherever it is needed. FortiGate virtual appliances feature all of the security and networking services common to traditional hardware-based FortiGate appliances. With the addition of virtual appliances from Fortinet, you can deploy a mix of hardware and virtual appliances, operating together and managed from a common centralized management platform.

    Sample Customers
    1. Amazon Web Services 2. Microsoft 3. IBM 4. Cisco 5. Dell 6. HP 7. Oracle 8. Verizon 9. AT&T 10. T-Mobile 11. Sprint 12. Vodafone 13. Orange 14. BT Group 15. Telstra 16. Deutsche Telekom 17. Comcast 18. Time Warner Cable 19. CenturyLink 20. NTT Communications 21. Tata Communications 22. SoftBank 23. China Mobile 24. Singtel 25. Telus 26. Rogers Communications 27. Bell Canada 28. Telkom Indonesia 29. Telkom South Africa 30. Telmex 31. Telia Company 32. Telkom Kenya
    Control Southern, Optimal Media
    Security7 Networks, COOPENAE
    Top Industries
    REVIEWERS
    Comms Service Provider16%
    Computer Software Company9%
    Financial Services Firm8%
    Manufacturing Company7%
    VISITORS READING REVIEWS
    Educational Organization20%
    Computer Software Company15%
    Comms Service Provider8%
    Manufacturing Company6%
    REVIEWERS
    Financial Services Firm22%
    Computer Software Company15%
    Comms Service Provider7%
    Manufacturing Company6%
    VISITORS READING REVIEWS
    Educational Organization50%
    Computer Software Company8%
    Financial Services Firm5%
    Comms Service Provider4%
    REVIEWERS
    Computer Software Company16%
    Comms Service Provider14%
    Manufacturing Company11%
    Financial Services Firm9%
    VISITORS READING REVIEWS
    Computer Software Company22%
    Comms Service Provider9%
    Financial Services Firm7%
    Manufacturing Company6%
    Company Size
    REVIEWERS
    Small Business48%
    Midsize Enterprise23%
    Large Enterprise30%
    VISITORS READING REVIEWS
    Small Business27%
    Midsize Enterprise32%
    Large Enterprise40%
    REVIEWERS
    Small Business32%
    Midsize Enterprise19%
    Large Enterprise49%
    VISITORS READING REVIEWS
    Small Business14%
    Midsize Enterprise58%
    Large Enterprise27%
    REVIEWERS
    Small Business54%
    Midsize Enterprise19%
    Large Enterprise27%
    VISITORS READING REVIEWS
    Small Business31%
    Midsize Enterprise19%
    Large Enterprise50%
    Buyer's Guide
    Check Point NGFW vs. Fortinet FortiGate-VM
    May 2024
    Find out what your peers are saying about Check Point NGFW vs. Fortinet FortiGate-VM and other solutions. Updated: May 2024.
    771,170 professionals have used our research since 2012.

    Check Point NGFW is ranked 5th in Firewalls with 277 reviews while Fortinet FortiGate-VM is ranked 9th in Firewalls with 113 reviews. Check Point NGFW is rated 8.8, while Fortinet FortiGate-VM is rated 8.4. The top reviewer of Check Point NGFW writes "Good antivirus protection and URL filtering with very good user identification capabilities". On the other hand, the top reviewer of Fortinet FortiGate-VM writes "An easy-to-manage and configure tool that provides ample documentation to help with the setup phase". Check Point NGFW is most compared with Palo Alto Networks NG Firewalls, Sophos XG, Cisco Secure Firewall, Netgate pfSense and Azure Firewall, whereas Fortinet FortiGate-VM is most compared with Azure Firewall, Palo Alto Networks VM-Series, Fortinet FortiOS, OPNsense and Cisco Secure Firewall. See our Check Point NGFW vs. Fortinet FortiGate-VM report.

    See our list of best Firewalls vendors.

    We monitor all Firewalls reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.