We performed a comparison between Barracuda CloudGen Firewall and Fortinet FortiGate based on real PeerSpot user reviews.
Find out in this report how the two Firewalls solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI."I wanted to go to a software-defined WAN and in Barracuda they have a specific protocol called TINA (Transport Independent Network Architecture). You can create a master policy over the internet and it allows you to do Quality of Services on top of it. That is really helpful for me."
"The ability to be deployed and supported remotely is valuable."
"What I like best about this product are the support and the features."
"Its stability and SD-WAN features are the most valuable."
"One of the most important parts is, there is auto-upgrade of the hardware every fourth year."
"It's great for handling complex items."
"The solution is stable."
"TINA (Transport Independent Network Architecture) VPN features - Allows automatic VPN configuration with little or no input from the tech. Drag and drop lines between Barracuda units and the VPN is built automatically."
"Centralized monitoring, policy management, and virtualized appliances allow us to take control over our public and private infrastructure."
"We use a southern institution that's audited for IT security and the reporting that automatically comes off the unit makes it much easier to meet compliance standards and makes it easier as far as the amount of time that has to be spent to compile that information. If you get your reporting set up correctly when you initially set it up, you just select the one you want and hit print. The auditing trail on it is the best feature."
"We can detect any attack of viruses or malware at the first point of contact."
"The license management is very valuable. You can get a new license each year, or you can enroll every two to four years. You can get the logs, and you will get the information on the risk in your network and the entire organization. With this information, you can take action on your actives, computers, or devices. You can bring your own device as an SSE."
"The integration with Active Directory is one of the good features. Most of the customers are now looking for the Single Sign-on feature. So, being able to integrate Active Directory with the firewall is useful. It is also easy."
"The most valuable features of Fortinet FortiGate are the ease of use and there are several operating systems that can include the hardware capacities. In the newer releases, the resources were more useful because they were included in the operating system."
"The most valuable feature of Fortinet FortiGate is the simple configuration."
"I only deal with it from a security analyst's point of view. I don't really get into the features of the actual FortiGate. From the security point of view, it works, and it does its job."
"While using Barracuda CloudGen Firewall, we encounter issues with VPN profiles for Windows."
"If you have another brand of VPN where you have to put an SSL VPN between two devices, Barracuda doesn't support that at a certain point. You can't actually build the VPN between Barracuda and a different device of a different brand."
"The price could be better."
"The price is a bit higher than other vendors."
"The biggest downside is that it is quite an expensive product."
"When you do any commit, it locks your next access. If you are making a change to the device, from the security standpoint it's fine, but from the admin side it's not good. When you make changes, after each and every one it becomes locked."
"The interface should be more user-friendly and it should be easier to configure."
"Its interface could be better."
"There can be more security in hybrid implementations. When a customer has a hybrid environment where some parts are in the cloud, we need a consistent security solution for such scenarios."
"They should improve high CPU and memory usage that occurs."
"The pricing could be reduced or include the first year warranty."
"Cisco Meraki products are rising very quickly in the cloud and the connected era. Meraki products offer much better ROI, upgradability, and manageability."
"My only complaint about FortiGate is a lack of QinQ VLAN tunneling. I haven't found this feature in any Fortinet product. You can do this on all Cisco routers, including the smaller models. However, QinQ isn't available on the biggest, most expensive Fortinet units. They still don't have that. I think now we're on software version 6.0, and they still haven't found a solution for QinQ. It isn't a dealbreaker, but that's my main complaint."
"I have to say that the initial setup was complex. The deployment took a few days to get set up. Initially, we were using an IPVanish. We switched to this tool since we thought it would be easier. But it turns out it wasn't easier to set up and run."
"The support is the main thing that needs to be improved."
"I need user-behavior analytics, to find threat scenarios from inside the organization, insider attacks. That would be very helpful for us. In addition, I would like next-generation features for small and medium businesses. These businesses require UTM, all in one product. Fortinet must include it."
Barracuda CloudGen Firewall is ranked 26th in Firewalls with 35 reviews while Fortinet FortiGate is ranked 2nd in Firewalls with 306 reviews. Barracuda CloudGen Firewall is rated 8.2, while Fortinet FortiGate is rated 8.4. The top reviewer of Barracuda CloudGen Firewall writes "Feature-rich, robust, and easy to set up". On the other hand, the top reviewer of Fortinet FortiGate writes "It's a reliable solution that's easy to install and cheaper than competitors ". Barracuda CloudGen Firewall is most compared with Netgate pfSense, Sophos XG, OPNsense, Azure Firewall and Cisco Secure Firewall, whereas Fortinet FortiGate is most compared with Sophos XG, Cisco Secure Firewall, Netgate pfSense, Meraki MX and WatchGuard Firebox. See our Barracuda CloudGen Firewall vs. Fortinet FortiGate report.
See our list of best Firewalls vendors, best Software Defined WAN (SD-WAN) Solutions vendors, and best WAN Edge vendors.
We monitor all Firewalls reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.
I strongly recommend you SonicWall 5600. Its having lots of feature for network security and Comparison of price and Support it would be great choice.
Fortigate firewalls are quite rugged and offer great flexibility in configuring the policies and managing them. For individuals as well as group level user privileges. The antivirus offered is also very effective and not at all resource hungry. The only drawback is, the admin should be very well trained and aware of configuring the firewall. It’s quite complicated that way. Or the support provider (reseller) should have expert level admins to configure and set these firewalls in the infrastructure.
I would alternatively suggest looking into Sophos firewalls. They are equally rugged and effective. And also have a much user-friendly configuration and management console.
Barracuda: No Presence in the market at all, quite different way to install manage the product. Impossible to find the technical resource. If it is managed by Multinet then it’s a different story.
UTM control was not good back in the days, not sure about recent improvements.
Support Generally good feedback of Barracuda support.
Sonicwall: Very little presence in the local market, will have compatibility issues when establishing VPN with other vendors or any other integration.
UTM should be good, not experienced it first-hand.
Support, Have horrible feedback about support. they don’t respond for months.
Fortinet: Firewall full of features, good market presence with official REPs in the country. It is basically the same Juniper SSG ScreenOS platform with good UTM.
UTM is good
Support, Support in the region from India is poor, fright. A good local partner can make your day. If case is escalated to US/Canada teams, the experience is much better. You need in-country REPs support to escalate the cases.
China effect, the downside of Fortinet is, its QA of new FortiOS release is not good at all. Things running fine on one release fail badly when upgraded to new release. you need to be ready for an alternate solution when faced with such situation.
But it is better than Barracuda and SonicWall anyways.
RMA time is not next day.
Palo Alto: I would recommend Palo Alto, it can do everything typically required from a NGFW/UTM. Price can be expensive. Typically models with high throughput are quoted from most vendors. In reality, the actual required throughput is not that much. PA820 and PA220 can cater 90% of requirement we have in our environments. This way solution will be comparatively competitive cost wise. Compatibility with third-party devices is good.
Per-user bandwidth limit is missing.
UTM is best.
Support is good. The first level is through support partners, but the experience is good.
No rapid RMA, as no in-country depot exists. But On site spare is best, as the customer owns the spare unit on his premises.
Fortinet is a good option, the interesting thing with them is all the other bits you can add. Many of these such as email protection, Sandbox, edge device protection (anti-virus, VPN Connector for PCs), tokens (electronic or hardware), switches, Wireless Access Points all talk to each other so the Fortinet security umbrella covers them as well. Fortinet has a SIEM as well.
Whatever you buy, get training on it. Also, evaluate the reseller's ability to do an install. Some folks just sell the product, other also know how to install - buy from the latter, and get some Pro Services for the installation.
I have always thought Barracuda's marketing was better than the products (it is very good marketing) and SonicWALL R&D suffered under Dell, and I don't know that it is any better now they are owned by an Investment house.
Out of these three firewalls I would, and have chosen Fortinet. Checkout NSS Labs for real world comparisons. I have been using Fortigates for 2 years now in HA configurations and have only once had to use the cli. Also updates and firmware upgrades never bring the network or internet down. These firewalls get new features added at no extra cost and the throughput is amazing. Buying the UTM bundles gets you all of the features you need and more. I heard about support issues but evertime i call i get routed to someone who knows how the features work and actually helps. We added a fortianalyzer and now we can see logs from all of the firewalls in one console and hold them for a year. Fortinet doesn't just manage their antivirus products they are the developers. These firewalls decrypt data on the fly and scan for viruses before it gets to your email, desktops or servers. Within the first week it caught ransomware within a yahoo email before it could infect our systems. We replaced our websense URL filtering with the URL filtering within the fortigates and never looked back.
I could go on and on but the real tilt in Fortinets favor was it was near half the cost of similar features and functions PA had quoted. Write down what you want and then ask if the vendors have these included in their firewalls or if they have separate appliances that can do them. Every appliance has a latency cost associated with it. You might find that all three can do what you want then it will come down to the management of the firewalls and cost.
Good luck.
I've utilized both SonicWALL and Fortinet in many implementations over the years. Fortinet does a better job in large, multi-tenant deployments and has excellent stateful packet inspection throughput. If you're planning to do SSL decryption and inspection, SonicWALL is the way to go (and currently, the product we lead with). I've found SonicWALL to be easier to manage and have also found that if you're a GUI-oriented user, all of the features are there in the UI. On the Fortigate you'll often have to dig into the CLI to enable some features.
The Barracuda products are very good and quite pricey, especially since you mentioned you were looking at the Sonicwall TZ series. The Sonicwall TZ series is meant for a smaller environment. The Fortinet firewalls are great but require a little more training. My experience with Sophos is that they have been a little buggy and support is not great. Since Sonicwall was sold by Dell the support has been better. I work with several small companies and I would say go with whatever product you have the most experience with. The learning curve can be a little much when you don't know what you're looking at. Both Sonicwall and Fortinet have pretty good support and a pretty extensive KB. Good Luck!
fortinet or baracuda and CISCO ASA 5500 series also good