We performed a comparison between Check Point NGFW and Juniper SRX Series Firewall based on our users’ reviews in five categories. After reading all of the collected data, you can find our conclusion below.
Features: Check Point NGFW is highly recommended for its extensive security features, convenient centralized management, and impressive virtualization capabilities. Juniper SRX Series Firewall is well-known for its user-friendly interface, effortless usage, and excellent support.
Check Point should focus on improving integration, upgrading hardware, reducing costs, and enhancing stability. Juniper needs to work on capacity scalability, pricing strategy, reporting capabilities, user interface, device reliability, and feature enhancements.
Service and Support: The customer service for Check Point NGFW has garnered varying opinions, with some customers finding it helpful and responsive, while others believe there is room for improvement. Juniper SRX Series Firewall's customer service is generally deemed satisfactory, with customers appreciating its helpfulness and knowledge. However, there have been occasions where response times were slower and the need for escalation arose.
Ease of Deployment: Check Point NGFW's initial setup can be complex and may need expertise and experience for specific configurations and migrations. Juniper SRX Series Firewall generally has a simple setup process, although it may require CLI experience and coordination with the vendor.
Pricing: Check Point NGFW is known for its expensive setup cost, particularly when compared to other options. Users have found the process of adding new licensing to existing devices to be complex, especially for larger enterprise-level devices. Juniper SRX Series Firewall offers a more reasonable and affordable setup cost. Its setup process is straightforward, and the pricing is considered reasonable.
ROI: Check Point NGFW offers cost savings, simplicity, and effective security enforcement, providing peace of mind once the protection level is understood. Juniper SRX Series Firewall is a valuable investment, delivering positive returns and enhanced security features.
Comparison Results: Based on the review answers, the Check Point NGFW is preferred over the Jun SRX Series Firewall. Check Point NGFW offers comprehensive security features such as URL filtering, intrusion prevention systems, identity and access management, and application control capabilities. It also provides centralized management and virtualization features, stability, ease of use, and scalability. Despite its higher pricing, Check Point NGFW is considered more reliable and secure. Additionally, its customer service and support are generally satisfactory.
"It does a lot for you for intrusion protection and as an antivirus. The threat management bundle is worth the money. You don't need another company to monitor your web traffic for you. You can do everything yourself on the firewall. You restrict your own black list for people on the firewall. You don't need to pay some other company for another product to do that for you. The firewall can do that for you. So, it's an easy-to-use product for people to be independent. They don't need to rely on other vendors to do what the firewall can do. They can do everything."
"Fortinet offers the latest versions to cater to the needs of enterprises."
"The reporting and monitoring are very good."
"We are a visual effects company, and there have been a number of high profile security issues in our industry. This has brought us to a higher standard of security, which our clients are very keen on these days."
"Our security improved from being able to put in rules and close off unwanted traffic."
"The performance is good."
"Fortigate represents a really scalable way of delivering perimeter network security, some level of layer 7 security, WAF, and also a way to create a meshed ADVPN solution."
"It's very fast and easy to configure."
"The performance has been very good."
"Check Point is more expensive but easier to manage, and their presales and after-sale support are way better than Fortinet's."
"Objects search and tracker logs are useful."
"We can decipher the activity of each connection and see what is inside it."
"It's quite a stable solution."
"In R80.10 and above, you can view logs in SmartConsole. You don't have to open another smart tracker to view logs. That is the improvement Check Point has done which makes it better because it is much easier to find logs. This saves time, approximately 40 to 50 a day in one shift."
"The central management console has helped with segregation, where planned interventions with management consoles do not have any impact on production or critical business traffic."
"The small business hardware device was powerful and easy to set up."
"It protects from distributed denial-of-service attacks with Screen Options."
"The rollback option and Commit Confirmed are great features. They give us the security to change configurations without downtime."
"The most powerful feature in Juniper SRX is definitely NCLS."
"It is a complete security bundle. The cloud-based Sky Advanced Threat Prevention feature is very valuable. I am 100% satisfied with the performance of the Juniper firewall. It has a very good throughput. It works very fine. We use our firewall as a site-to-site VPN or Software-Defined Wide Area Network (SD-WAN). In both cases, it has a very good and optimum performance. Their service support is very good in India. I get really good support from the Juniper team."
"It'sa very secure device, it has good attack prevention capabilities using UTM."
"It's a reliable firewall and very stable, for both the hardware and applications it is stable."
"Great as an inter-segmentation firewall or border or arch-firewall."
"The deployment is quite easy and fast."
"The support from Fortinet FortiGate could improve. They are not easily accessible when we need them. They could improve their response time."
"The inability to scale the FortiAnalyzer to match our growth necessitates the purchase of new hardware."
"The captive portal could be improved."
"Fortinet FortiGate could improve by adding enhancements to FortiMail, FortiSOAR, and FortiDeceptor."
"Fortinet FortiGate could improve the user interface. There should be more functionality and options through the GUI."
"To some degree, it's almost a question as to why some of this stuff isn't simpler. For example, for an AP deployment, while it's integrated, the number of steps that you have to go through in order to get the AP up, seems like a lot."
"For the migration, everyone has a firewall in use and I am selling Fortinet. Typically, I am replacing another firewall. Previously, there was a tool available to convert configurations from one firewall, such as Palo Alto, to Fortinet, but this tool is no longer free. If it could be made free again, it would be very beneficial."
"Fortinet FortiGate needs to improve the logging and reporting. Additionally, the next-generation application's policies should be improved. When they were released they had bugs."
"Management: Check Point should move away from its current architecture wherein it mandatorily requires a management server to manage the gateways. They should develop A feature in the gateway itself so that no management server is needed for policy and gateway management."
"It would be nice to have comprehensive documentation and training resources that can help users and administrators to better understand and utilize the full range of Check Point's capabilities."
"Sometimes when they bring on new upgrades, they affect something else."
"When we hit a bug, the support team recommends some hotfix, and if we upgrade to that, we have to uninstall it before we apply some newer jumbo hotfix."
"Pricing for the gateways is too high as compared to the other vendors."
"The anti-spam needs improvement."
"In terms of what could be improved, I would say the application control and the visibility. I'd like granularity where you can have all the levels of policies that are defined, including the intel threat. It depends on what kind of intel threat the company has."
"The pricing could always be more competitive."
"The CPU switch could be improved for a better overall performance of traffic flow."
"JTAC (Juniper Networks Technical Assistance Center) is just okay for technical assistance. However, if you are used to Cisco TAC responsiveness, you will need to adjust your expectations with Juniper Networks TAC."
"Its logging is very good, but we would like to have an easier way of creating more reports. We would like to be able to manipulate the reports or manage the way the reports are coming out."
"We'd like to improve the stability and the kill rate."
"The web interface on Juniper SRX is just a short conversion from Junos OS CLI; this is not very suitable for users with little expertise/"
"This solution needs to update for "Next Generation" needs."
"In comparison to other enterprise-level firewalls, such as Cisco FTD, Cisco has improved significantly. In the past, I believed that Juniper SRX was superior, but after seeing the advancements in the FTD platform, Cisco has better functionality. I have not recently explored Juniper SRX's next-generation firewall capabilities as we only use basic firewall filtering in our enterprise network."
"Juniper SRX Series Firewall has to improve its web content site, like web filtration."
Check Point NGFW is ranked 5th in Firewalls with 277 reviews while Juniper SRX Series Firewall is ranked 18th in Firewalls with 86 reviews. Check Point NGFW is rated 8.8, while Juniper SRX Series Firewall is rated 7.8. The top reviewer of Check Point NGFW writes "Good antivirus protection and URL filtering with very good user identification capabilities". On the other hand, the top reviewer of Juniper SRX Series Firewall writes "Highly scalable, user-friendly UI, and easy to maintain". Check Point NGFW is most compared with Palo Alto Networks NG Firewalls, Sophos XG, Cisco Secure Firewall, Netgate pfSense and Meraki MX, whereas Juniper SRX Series Firewall is most compared with Cisco Secure Firewall, Palo Alto Networks WildFire, Netgate pfSense, Palo Alto Networks NG Firewalls and Meraki MX. See our Check Point NGFW vs. Juniper SRX Series Firewall report.
See our list of best Firewalls vendors, best Unified Threat Management (UTM) vendors, and best Firewalls vendors.
We monitor all Firewalls reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.