We performed a comparison between Huawei NGFW and Palo Alto Networks NG Firewalls based on real PeerSpot user reviews.
Find out in this report how the two Firewalls solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI."The most valuable feature of FortiGate is FortiView which provides proactive monitoring."
"There are lots of features and most of them are deployed for internet security. Users are protected if they accidentally go to some malicious sites."
"The features that prevent internet connections, the filtering are the most valuable because we did not have any internet protection before."
"We use a lot of function on the IPS and it works well for us."
"The signature database and zero-day detection are Fortinet FortiGate's most valuable features."
"FortiGate firewalls are user-friendly, and I like the security profiling features."
"It enables our organization to become more productive. Also, it protects our NEtWare from viruses and malware."
"Layer-3 firewall and routing are the most valuable features."
"The most useful feature is the performance of the firewalls and networking operations."
"The UI is quite good."
"The mapping features and traffic logging are good."
"I like that the initial setup is straighforward. It's also a scalable solution."
"I had no difficulty using the Huawei NGFW."
"The solution's performance is good with IPSec."
"Huawei was able to assist us in the installation of their product. The installation was very fast."
"Huawei support is excellent. I rate it 10 out of 10."
"The configuration is very simple."
"The most significant benefit is threat protection. Anti-malware uses signatures, so dynamic analyzers like WildFire are the best way to protect the company. It is a firewall based on application control, user ID, and security policy. We can use it based on user and application ID without a stateless firewall or TCPIP ports."
"The most important feature is the firewall. We can make rules to filter the application layer of traffic. It's a very helpful feature."
"The first time I came across these firewalls, what surprised me the most was their web user interface. It is complete and gives you a lot of information. You can do 80% of the things related to your network and firewall through the web UI. In some of the other devices, the UI is not as complete. App-ID is also very valuable in customer networks. When you're seeing a lot of traffic in your network, you can see in your web UI which users have the applications that are consuming the most bandwidth. You have a broad context, which is very good."
"The most valuable features are application inspection and sandboxing. Application inspection decides where traffic is transmitted. If I have a perimeter report for a particular service, then other services or malicious services cannot use an open port. In this way, application inspection is doing a fantastic job. We also have a very good sandbox with almost no rate limit. It will inspect any file that comes in and goes out in a dedicated patch to identify malware. Therefore, these two things help me to protect our organization from any bad actors."
"DNS Security is a good feature because, in the real world with web threats, you can block all web threats and bad sites. DNS Security helps to prevent those threats. It's also very helpful with Zero-day attacks because DNS Security blocks all DNS requests before any antivirus would know that such requests contain a virus or a threat to your PC or your network."
"Palo Alto Networks NG Firewalls enabled us to have better visibility overall."
"The most valuable feature is WildFire, which blocks sophisticated attacks and distinguishes it from other traditional firewall functions."
"Fortigate's hardware capacities could be improved."
"If they had better integration with security products, such as Cisco ISE or Rapid Threat Containment, then it would be an improvement."
"They sometimes hide some features and if you want to enable them, you have to go in the CLI, enable the feature and configure it through the CLI. Customers, typically, like everything to be done by the GUI."
"The non-error conserve mode has room for improvement."
"Quality control on their firmware versions needs improvement. When they introduce new firmware, there tend to be bugs."
"The captive portal could be improved."
"The performance and speed are aspects of the solution that could always be improved upon."
"Fortinet FortiGate needs to improve to be on par with its competitors, such as Palo Alto and Sophos. They are the market leaders. Fortinet FortiGate needs to improve its capabilities. However, we are happy with Fortinet FortiGate."
"The IPS feature must be improved."
"The solution does not have sandboxing features."
"With the Huawei firewall, none of the features comes at the top. We found out later that customer support is really not good. For this firewall, because of our customers' routine, for example, every six months they'll do a penetration test to find weaknesses. So whenever they came up with VAPT reports, they are looking to Huawei for help. I think that's basically because it's a different culture. Chinese culture and our culture is different. They have always tried to help find some excuses or say some other things that cannot help you solve the problem immediately."
"The WAF capability in the Huawei Firewall is missing."
"The solution could be cheaper."
"There needs to be more security equipment for the solution."
"The solution could be more secure and have better integration."
"The solution doesn't seem to be very mature. Our networking team says they are experiencing a lot of issues in the firewalls and some routers."
"Over the past one or two years, Palo Alto Networks has added a lot of features into the NG Firewall products. I think this is becoming more complicated for our customers. Therefore, we could use some best practices, best practice tools, and implementation guides for some of the complicated features."
"The VPN has room for improvement."
"Palo Alto's various products need better integration to ensure they work harmoniously."
"The tech support was once great, but now it is poor. The tech support has gone south. It is really difficult. I had a Priority 1 case last a week in their queue, and after multiple complaints, I finally got somebody to take the case. These are things that are unacceptable in the business world. They could train their employees better."
"Its price can be improved. It is expensive. Other vendors have pre-configured policies for the protection of web servers. Palo Alto has an official procedure for protecting the web servers. Many people prefer pre-configured policies, but for me, it is not an issue."
"In terms of what could be improved, comparatively the price is very high. That would be the one thing."
"Customers don't want to buy extra things for extra capabilities"
"Palo Alto can do a little bit better when it comes to the User-ID part. I've been facing problems related to double authentication. You have a computer user, but you also have a VPN user, and when you do a single sign-on to another page, these logs can sometimes generate a problem notification. It doesn't happen a lot, but in some networks, it could be a problem. It would be very helpful to have the ability to restrict the connections that you can have in your VPN. For example, if you have the credentials, you can connect with the same user account from different computers or devices. If you have the domain information, you can connect from different devices. That's a problem that they need to address and resolve. They should ensure that at any moment, only one person is connected through a specific user account."
More Palo Alto Networks NG Firewalls Pricing and Cost Advice →
Huawei NGFW is ranked 31st in Firewalls with 20 reviews while Palo Alto Networks NG Firewalls is ranked 6th in Firewalls with 164 reviews. Huawei NGFW is rated 7.2, while Palo Alto Networks NG Firewalls is rated 8.6. The top reviewer of Huawei NGFW writes "A scalable and easy-to-setup product that can be used to configure different policies for specific users". On the other hand, the top reviewer of Palo Alto Networks NG Firewalls writes "We get reports back from WildFire on a minute-by-minute basis". Huawei NGFW is most compared with Cisco Secure Firewall, Netgate pfSense, Meraki MX, Fortinet FortiOS and Palo Alto Networks VM-Series, whereas Palo Alto Networks NG Firewalls is most compared with Check Point NGFW, Azure Firewall, Meraki MX, Sophos XG and Netgate pfSense. See our Huawei NGFW vs. Palo Alto Networks NG Firewalls report.
See our list of best Firewalls vendors.
We monitor all Firewalls reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.