Try our new research platform with insights from 80,000+ expert users

Cloudflare One vs Prisma SD-WAN comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Jan 4, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Fortinet FortiGate
Sponsored
Ranking in Software Defined WAN (SD-WAN) Solutions
1st
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
581
Ranking in other categories
Secure Web Gateways (SWG) (2nd), Firewalls (1st), Intrusion Detection and Prevention Software (IDPS) (1st), WAN Edge (1st), ZTNA (1st), Unified Threat Management (UTM) (1st)
Cloudflare One
Ranking in Software Defined WAN (SD-WAN) Solutions
13th
Average Rating
8.8
Reviews Sentiment
6.7
Number of Reviews
22
Ranking in other categories
Email Security (20th), Secure Web Gateways (SWG) (16th), Data Loss Prevention (DLP) (21st), Cloud Access Security Brokers (CASB) (11th), Distributed Denial-of-Service (DDoS) Protection (7th), Access Management (11th), Bot Management (3rd), ZTNA as a Service (8th), ZTNA (2nd), Secure Access Service Edge (SASE) (10th), Remote Browser Isolation (RBI) (3rd)
Prisma SD-WAN
Ranking in Software Defined WAN (SD-WAN) Solutions
5th
Average Rating
8.6
Reviews Sentiment
7.2
Number of Reviews
25
Ranking in other categories
WAN Edge (5th), Secure Access Service Edge (SASE) (9th)
 

Mindshare comparison

As of February 2026, in the Software Defined WAN (SD-WAN) Solutions category, the mindshare of Fortinet FortiGate is 13.2%, down from 19.9% compared to the previous year. The mindshare of Cloudflare One is 3.3%, up from 1.8% compared to the previous year. The mindshare of Prisma SD-WAN is 5.4%, down from 5.7% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Software Defined WAN (SD-WAN) Solutions Market Share Distribution
ProductMarket Share (%)
Fortinet FortiGate13.2%
Prisma SD-WAN5.4%
Cloudflare One3.3%
Other78.1%
Software Defined WAN (SD-WAN) Solutions
 

Featured Reviews

Vasu Gala - PeerSpot reviewer
Manager, Information Technology Operation/Presales at TechMonarch
A stable solution with an intuitive interface and quick customer service
I have been working with Fortinet FortiGate, WatchGuard, Sophos, and SonicWall. I'm not as comfortable with SonicWall because of their UI and limitations. I prefer Fortinet above all other options. When it comes to configuration, I am confident in my ability to handle various tasks, including creating policies such as firewall rules, web policies, and application policies. Additionally, I can configure VPNs and implement load balancing, among other tasks. Overall, I feel much more comfortable working with Fortinet. Fortinet has made significant improvements by integrating AI with firewalls for threat analysis and prevention. In the past 2-3 years, they have launched FortiSASE and SIEM, and they also provide SOC services. Both Palo Alto and Fortinet FortiGate are excellent. While Fortinet FortiGate comes at higher prices, the functionality and support justify the cost. They promptly resolve firmware issues and inform all support providers about configuration changes.
CV
Network Architect at IP Dimension
Cloud security has improved remote access and has reduced costs for smaller client sites
I have used Cloudflare One's Identity-Aware Proxy, and it is quite straightforward from what I have seen so far. The app registration on the Azure side integrates fully into Cloudflare, and I am very satisfied with that part because it is easy to set up. The integration of Cloudflare One's Secure Web Gateway and Zero Trust Network Access works without any issues. That part is pretty automatic, and if you complete the rest of the setup, it comes together by itself with no issues from my side. What makes it nice is that we can actually start replacing on-site firewalls at this stage for the smaller clients because it does not matter if they go to a coffee shop or work from home; they are still secured by the same connection. The hops get shorter and you get better latency. We have done testing to see if it is better. One thing that we did notice with our proof of concept with our current client is that they have people connecting from the UK. When they used their previous VPN solution, uploading CAD drawings and other files to the server took a long time. They mentioned that it is much quicker on Cloudflare One's solution. I definitely believe that is part of the improved performance, and I am satisfied with that as well. What is nice about Cloudflare One is that it makes the setup easier and also easier to train technicians to maintain it. Compared to legacy systems, we do not need to get fancy firewalls in place that are costly. That is definitely also a cost-saver with Cloudflare One.
reviewer2706744 - PeerSpot reviewer
Cybersecurity Analyst at a government with 201-500 employees
Navigating documentation challenges leads to reduced incidents with strong setup
The areas that need improvement include documentation/customer support and cross-communication between the support teams. The documentation tends to be outdated, often directing us to resources that are no longer accurate or available, and this is one of the reasons we are potentially looking at alternatives. In terms of the Prisma SD-WAN security integrations, we have seen some benefits, but part of our difficulty is trying to get all of that information on what it does and set up properly. Because we've had issues in the past with getting devices set up properly, scalability is a significant concern for us due to the poor documentation that limits our ability to understand and utilize their system effectively.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The setup is easy."
"FortiGate's web and URL filtering are unlike any other firewall I've used. The functionality of URL filtering in those solutions is problematic because everything is encrypted, and firewalls can't break that encryption protocol. Fortinet has an SSL proxy, so the encryption is done before the packet ever leaves the FortiGate. The URL filter is definitely one of the most helpful features."
"The stability of the solution is excellent, as it is with other Fortinet products."
"The GUI is good."
"We use the filtering feature the most. It has filtering and inbuilt securities. We can create customized rules to define which users can access a particular type of site. We can create policies inside the firewall."
"The ease of use, concise reports, and threat identification are very user-friendly and valuable."
"It is a stable solution compared to other vendors."
"One of the nice things about FortiGate is that it can be deployed on the cloud or on-premises. You can actually do both. That's the biggest reason why I stick with this solution as opposed to something like Cisco Meraki. Another nice thing is that I can log directly into a FortiGate or get to it through their FortiCloud access products. They're pretty reliable and consistent. One of the reasons why I started using the product was their single pane of management. I can deploy their line of firewalls in conjunction with their switching and access points, and I can manage the entire network from one interface. I don't have to log into one interface for the firewall, another one for the access points, and another one for the switches. These firewalls have access point controller functionality built right into the system, so I don't even have to purchase additional devices to manage them."
"It's the endpoint exposition. We don't need to expose our VPN server to the internet and need a zero-test solution. I can apply some conditional access to the endpoint that's connecting to our network to check their security policies or the security condition of their workstation. Once the workstation is trying to connect to my internal network, then I would like to check the discrete condition of these endpoints that are trying to access my internal network. We created some conditional access. We have CrowdStrike, to check if the CrowdStrike is installed, to check if it's updated, and to check for Windows updates. We created some conditional policies to check it."
"Cloudflare Zero Trust Platform removes the risk of exposing the applications to the public."
"Enables me to work from two locations."
"The blocking feature is very good."
"What makes it nice is that we can actually start replacing on-site firewalls at this stage for the smaller clients because it does not matter if they go to a coffee shop or work from home; they are still secured by the same connection."
"Clover is the best product globally."
"It will take the blow rather than our applications should an attack occur."
"Cloudflare is by far the most effective solution that I have come across."
"The dynamic routing in Prisma SD-WAN is high-speed and valuable because it quickly adjusts, so users do not realize the link is down."
"The solution's most valuable feature is the visibility of the logs."
"From the main controller, we can administer the customer's devices, QoS, network, and traffic. We can monitor it and we can change and create policies as well as upgrade the software. We can totally control a customer's network from one site, the Prisma SD-WAN portal."
"The product provides efficient stability, security, and reliability features."
"I like that the integration with Palo Alto is easy."
"The product's initial setup phase is straightforward."
"When it comes to supporting large, complex, network architectures, it's a very simple architecture. The main component is the fabric. It's very easy to troubleshoot if there is an issue happening in the underlying network."
"Prisma SD-WAN offers capabilities such as path selection based on Layer 7 attributes and application quality of service at the application level."
 

Cons

"It would be a benefit if Fortinet would release a one-stop solution that is better integrated with other products and an automated emergency response system."
"There is a need for enhancement with the signature management, improving the datasheet numbers, and scalability issues."
"It should have a better pricing plan. It is too expensive. It should also have a more granular view of the attack. I don't have FortiAnalyzer, and it is difficult for me to have a complete view when there is an attack on my server."
"Fortinet FortiGate is a stable solution. However, my issue is the performance only. When I use all the profiles, this affects the performance. From the beginning, I should have had a better sizing of the box."
"There have been several vulnerabilities in the firewall. It is hackable, some of the images are hackable."
"The firmware needs improvement because there are bugs when a new release comes through. Sometimes, the configuration changes, and it's a bit harder to see where the fail is. The first time that you have the firmware, it tends to have some issues, and it's better to wait a bit to update the equipment."
"This product could be improved with Active directory integration and better handling in IPsec and GRE Tunnels."
"It should be more stable. There should be full integration within Fortinet products themselves as well as with other third-party products. Especially when you're not dealing with SIEM and the correlation of the security box, we want Fortinet to be able to share that information with as many other products as it can."
"The initial onboarding was causing us some confusion."
"The software has automated alerts, but the automated alerts are not available in the mobile app."
"The tool should provide on-premise versions. Currently, all versions are cloud-based."
"They don't have a person to provide support for customers using the solution under their free plan."
"The free plan has limitations. For example, I can only set up three rules, and the application firewall is unavailable."
"For the topic of improvement, providing some training material is one of my suggestions."
"The pricing is an area that can be improved. Pricing, as far as I recall, was the source of our problems."
"Cloudflare DDoS has poor technical support."
"I'd like to see them move more towards CASB."
"There are two parallel things that we want Palo Alto to work on. First, customers want a unified appliance that does the work of all firewalls in addition to SD-WAN. Second, the cloud presence should be completely automated. If I purchase the SASE architecture, I shouldn't worry about deployments in Prisma Access or on Prisma SD-WAN. It should be deployed in one go."
"The documentation tends to be outdated, often directing us to resources that are no longer accurate or available, and this is one of the reasons we are potentially looking at alternatives."
"If Palo Alto could open the platform to manage other SD-WANs, it would be beneficial."
"We initially had challenges with AIOps, which was overwhelming, and could benefit from simplification or improved training."
"The tool needs to work on price and complexity."
"They could add more advanced security features to the product."
"Prisma SD-WAN can be built on top of a couple of hardware platforms, including the Palo Alto Next-Generation Firewall or the CloudGenix infrastructure."
 

Pricing and Cost Advice

"The main reason we chose Fortinet FortiGate was that the price was better than the competition."
"I rate the price of Fortinet FortiGate SWG a seven and a half out of ten since it is not a cheap solution, though I feel it is a good product for the money one pays."
"While slightly more affordable than competitors, it remains relatively expensive due to its inclusive subscription."
"The price of FortiGate support is too expensive."
"I rate FortiGate Next Generation Firewall a five out of ten for pricing."
"Its price could be better."
"In terms of the market, it's not a cheap product, but it's cost-effective."
"It is not a very costly product if you compare it with other products. The return on investment is also good. If you compare the return of investment and money that you are spending on this product with Palo Alto, Cisco, Check Point, and other solutions, the investment is very less. We are happy with this solution. The optional licenses are there, and you can choose which one you want and which one to avoid."
"My company has to make yearly payments towards the licensing costs attached to the solution. There are no hidden charges apart from the licensing costs of the solution."
"The solution's pricing lacks transparency."
"The pricing of the solution is cheap. The licensing cost is also very low. I rate the cost and pricing a three out of ten."
"Cloudflare Zero Trust Platform's pricing is good."
"The prices are slightly expensive."
"The pricing is somewhere in the middle. I would rate the pricing a seven out of ten."
"The price tag is no longer $200,000, but rather $300,000 to $400,000. It's twice."
"The solution is not that expensive."
"This solution stood out because it cost considerably less than the other SD-WAN solutions out there from Cisco."
"On a scale from one to ten, where one is cheap and ten is expensive, I rate the solution's pricing an eight out of ten."
"Prisma SD-WAN is a pretty expensive solution."
"It is more expensive than Fortinet."
"If you're already invested in a Palo Alto product, it would be logical to use this solution. If not, there might be some other solutions that are more viable in terms of pricing."
report
Use our free recommendation engine to learn which Software Defined WAN (SD-WAN) Solutions solutions are best for your needs.
881,665 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
12%
Comms Service Provider
9%
Manufacturing Company
8%
Financial Services Firm
6%
Computer Software Company
12%
Comms Service Provider
11%
Financial Services Firm
9%
Manufacturing Company
7%
Financial Services Firm
14%
Manufacturing Company
9%
Computer Software Company
8%
Legal Firm
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business357
Midsize Enterprise133
Large Enterprise189
By reviewers
Company SizeCount
Small Business10
Midsize Enterprise2
Large Enterprise10
By reviewers
Company SizeCount
Small Business4
Midsize Enterprise6
Large Enterprise13
 

Questions from the Community

Which is the better NGFW: Fortinet Fortigate or Cisco Firepower?
When you compare these firewalls you can identify them with different features, advantages, practices and usage a...
What is the biggest difference between Sophos XG and FortiGate?
From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know...
What are the biggest technical differences between Sophos UTM and Fortinet FortiGate?
As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite ...
What needs improvement with Cloudflare Access?
Cloudflare Access has strong integration with Microsoft, among other platforms. However, when it comes to Kaspersky, ...
What is your primary use case for Cloudflare Access?
Cloudflare Access provides secure access to internal applications for employees, external members of the organization...
What advice do you have for others considering Cloudflare Access?
Cloudflare Access is one of the best integrations available. While about two hundred vendors offer similar services, ...
What is your experience regarding pricing and costs for Prisma SD-WAN?
Regarding whether Prisma SD-WAN is an expensive solution, I would say the price is competitively high. Everything dep...
What needs improvement with Prisma SD-WAN?
I am still working on what should be improved in Prisma SD-WAN to make this product better, and I cannot give any upd...
What is your primary use case for Prisma SD-WAN?
Our customers' main use cases for Prisma SD-WAN are to connect multiple branches since they have numerous locations t...
 

Also Known As

Fortinet FortiGate Next-Generation Firewall
Cloudflare Area 1 Email Security, Cloudflare Bot Management, Cloudflare Gateway, Cloudflare Zero Trust Platform, Cloudflare DDoS, Cloudflare SASE & SSE Platform
CloudGenix
 

Overview

 

Sample Customers

Amazon Web Services, Microsoft, IBM, Cisco, Dell, HP, Oracle, Verizon, AT&T, T-Mobile, Sprint, Vodafone, Orange, BT Group, Telstra, Deutsche Telekom, Comcast, Time Warner Cable, CenturyLink, NTT Communications, Tata Communications, SoftBank, China Mobile, Singtel, Telus, Rogers Communications, Bell Canada, Telkom Indonesia, Telkom South Africa, Telmex, Telia Company, Telkom Kenya
23andMe
Open Networking User Group, Columbia Sportswear Company, Coca Cola
Find out what your peers are saying about Cloudflare One vs. Prisma SD-WAN and other solutions. Updated: January 2026.
881,665 professionals have used our research since 2012.