No more typing reviews! Try our Samantha, our new voice AI agent.

GajShield Next Generation Firewall vs Palo Alto Networks NG Firewalls comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Jan 25, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Fortinet FortiGate
Sponsored
Ranking in Firewalls
1st
Average Rating
8.4
Reviews Sentiment
6.8
Number of Reviews
592
Ranking in other categories
Secure Web Gateways (SWG) (2nd), Intrusion Detection and Prevention Software (IDPS) (1st), Software Defined WAN (SD-WAN) Solutions (1st), WAN Edge (1st), ZTNA (1st), Unified Threat Management (UTM) (1st)
GajShield Next Generation F...
Ranking in Firewalls
43rd
Average Rating
7.8
Reviews Sentiment
5.7
Number of Reviews
7
Ranking in other categories
No ranking in other categories
Palo Alto Networks NG Firew...
Ranking in Firewalls
6th
Average Rating
8.6
Reviews Sentiment
7.2
Number of Reviews
199
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of April 2026, in the Firewalls category, the mindshare of Fortinet FortiGate is 17.2%, down from 21.3% compared to the previous year. The mindshare of GajShield Next Generation Firewall is 0.3%, up from 0.1% compared to the previous year. The mindshare of Palo Alto Networks NG Firewalls is 5.2%, up from 3.5% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Firewalls Mindshare Distribution
ProductMindshare (%)
Fortinet FortiGate17.2%
Palo Alto Networks NG Firewalls5.2%
GajShield Next Generation Firewall0.3%
Other77.3%
Firewalls
 

Featured Reviews

Abhinandan Yadav - PeerSpot reviewer
Network Security Engineer at Arrow PC Network Pvt Ltd
Unified security and sd-wan have improved uptime and cut wan costs for multi-site branches
Users report stability issues in certain versions, which requires regular updates. Real-world attacks have also highlighted the need for urgent patching of vulnerabilities.Fortinet FortiGate, while a powerful and feature-rich web firewall, could improve in areas like firmware stability, documentation, and ease of use. The learning curve can be steep for some users. For beginners, support quality can vary, and frequent updates with occasional vulnerabilities call for careful patch management. However, once Fortinet FortiGate is configured, it remains highly reliable and efficient. Customer support needs improvement, as I find it very slow, with reports from other users reflecting that customer support is inadequate.
Nazish Sameer Shaikh - PeerSpot reviewer
Senior Network Security Engineer at UNITE HERE HEALTH
Simplifies the management of complex data networks, but its technical support could be improved
Sometimes, we have to use SD-WAN support for the solution, which can be improved by adapting some features that will help our approach to network services. The solution can adapt some of the tools where we, as network engineers, can adjust to the changing application needs. Also, the solution can provide us with multiple support, allowing us to create a network segment. The solution’s technical support could be improved.
Abhinandan Yadav - PeerSpot reviewer
Network Security Engineer at Arrow PC Network Pvt Ltd
Advanced visibility has transformed security policies and provides proactive threat prevention
Palo Alto Networks NG Firewalls are powerful, but there are areas for improvement that could enhance their effectiveness, such as cost and licensing models. One of the main challenges we face is the high cost, especially for small to mid-sized businesses (SMBs), with licensing for features such as threat prevention, URL filtering, and WildFire being quite expensive. Additionally, centralized management with Panorama is a dependency for managing multiple firewalls, leading to added costs and complexity, and the built-in centralized management features could be made more user-friendly. Moreover, the learning curve associated with the initial setup and advanced configuration including NAT, decryption, and routing can be complex for new users, and enhancements in logging and reporting could also improve the user experience. There are a few more areas where improvements could streamline operations, such as optimizing commit times. Sometimes committing changes takes a noticeable amount of time, particularly for larger configurations, so a faster commit option would significantly help during urgent troubleshooting. Easier policy troubleshooting is necessary as well. Even though logs are detailed, finding the exact rule match and issue can still be time-consuming in complex environments, so having automated policy simulation and a recommendation tool would expedite troubleshooting. Additionally, better default templates and best practices for SMB data centers and branch offices would speed up deployment and reduce errors. Enhancing integration visibility through a unified dashboard would simplify monitoring, and improving the firmware upgrade process to allow for a more seamless zero downtime upgrade would also enhance operations, as upgrades are stable but typically require careful planning and downtime.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"We are happy to use this product."
"Fortinet FortiGate's most valuable features are ease of use, flexibility, and most of the configuration we can be done using the GUI. When we compare Fortinet FortiGate with other solutions the firewall policy are very easy to understand."
"This product is definitely scalable."
"It is easy to use. We chose this product for the possibility to have virtual domains (VDOMs). We are building another company in the group, and we would like to split the firewalling rules and policies between these two companies. Each company would be able to manage its own policies and security rules, which is an advantage of Fortinet FortiGate. We can define VDOMs, and every company can manage its own VDOM as if it has its own physical firewall, but in fact, we would be using the same physical appliance because we are also using the same internet lines. So, it allows us to reuse the existing resources without the disadvantage of having to compromise on policies and security. Each company can choose its own way of working."
"I would rate FortiGate Next Generation Firewall (NGFW) as a solution a 10 out of 10."
"The most valuable features of Fortinet FortiGate are it is one of the most mature firewalls in the UTM bundle."
"We are very satisfied with this product."
"FortiGate NGF is simple compared to other firewalls. It is easy to use and you don't need any training. Any person with basic firewall knowledge can use it."
"GajShield has improved our mobile device-based connectivity."
"It is a stable solution."
"The solution's outcome is very high, and we often use it in a very high-traffic environment."
"It is an easily scalable solution...The initial setup was very easy."
"Gajshiled's enterprise cloud and DLP-level features give it an advantage over other products."
"Once it is configured, it is very stable, and we don't get any calls from our clients unless they have some specific requirement, like port forwarding or something."
"If people are looking for a good solution that is priced well this solution is best."
"GajShield has improved our mobile device-based connectivity."
"The most valuable feature is the ability to deeply analyze the connection or connection type."
"It has a very good user interface. The documentation is also very good. It is very useful for monitoring things."
"The application control portion of the solution is its most valuable aspect."
"With Palo Alto, it's straightforward, you'll have adequate security, it works well, and you'll be able to work with other solutions too, create tunnels, and GlobalProtect."
"The technical support is great."
"I found Palo Alto NG firewalls more intuitive compared to other products. I value the capability to identify a cloud solution."
"The most valuable aspect of this solution is pre-sales and post-sales because of the support and relationship building."
"Though it's pricey, customers ultimately realize Palo Alto is the best security solution because it's stable and the network security functions are practical."
 

Cons

"It could use more templates for third-party site-to-site VPN setups other than FortiGate and Cisco."
"In the future, I would like to see improvements made to cloud-based management."
"In the past I encountered serious bug regarding SCTP and GTP supports."
"There should be more testing before releasing software since it can be a little buggy sometimes when new features come out after updates."
"The system can slow down when inspections are carried out."
"The captive portal could be improved."
"The product has to be upgraded every few weeks."
"A sandbox would be good in order to be able to inspect the emails containing spam and be able to validate the emails that contain malware, prior to delivering to the customer."
"The UI for the administration of the firewall needs a lot of work."
"We face issues with some configuration parts that we don't understand in the solution, and sometimes we face issues with the VPN connection."
"The firewall configuration and administration screens could use some improvement."
"GajShield Next Generation Firewall could improve the flow of the settings. If somebody's using a Cisco firewall or any other brand and they want to use GajShield Next Generation Firewall the platform's UI is a bit different. If it was more similar to the others it would be better."
"GajShield Next Generation Firewall would be improved with the addition of a load-balancing feature."
"GajShield Next Generation Firewall could improve the flow of the settings. If somebody's using a Cisco firewall or any other brand and they want to use GajShield Next Generation Firewall the platform's UI is a bit different."
"Gajshield can improve SD-WAN compatibility at an enterprise cloud level."
"We raised a support ticket, and the project didn't get a proper response. There was a skill issue in TAC support."
"Palo Alto Networks NG Firewalls offer best-in-breed security but could improve by reducing their pricing."
"In the last three years at least, they have been lagging behind their competitors. The main issue is the support that we can get... You have to wait for them to get back to you and sometimes it's random. And the biggest problem I have is that you have to wait hours on the line when you're calling them to get a hold of the next available engineer."
"The cost of the device is very high."
"The stability, scalability for enterprise-level organizations, and technical documentation have room for improvement."
"Palo Alto Networks NG Firewalls do not provide a unified platform that natively integrates all security capabilities."
"It would be better to have more tools to control Palo Alto Networks NG Firewalls. We don't have too many tools to access Palo Alto."
"As part of our internet filtering, we integrate heavily with Active Directory, and we use security groups to separate staff into two groups: those who should have full access to the internet and those who should have limited access. It may be just the way the topology is for our domain controllers and that infrastructure, but at peak usage, there seems to be a delay in reading back against the security group to find out what group the user is in."
"The VPN connectors should be better. We had some challenges in terms of the VPN with Palo Alto Networks NG Firewall, and that's one of the main reasons why we moved to Sophos. Its load handling can also be improved. There were challenges when traffic was high. During peak business hours, it did not function very well. There was a lot of slowness, and the users used to complain, especially when they were connecting from outside. We even reported this to the support team. Their support should also be improved. Technical support was a bit of a concern while using this solution. We didn't get very good support from the Palo Alto team."
 

Pricing and Cost Advice

"The price is fair compared to the other competitors."
"It's a year based license."
"There is a license required to use Fortinet FortiGate with all the features. It has to be updated with the threats on an ongoing basis for the signatures to prevent threats and a license is needed to receive those security updates."
"The pricing is better compared to other solutions like Check Point, Arista, or Cisco."
"There is no challenge in Fortinet FortiGate pricing."
"Fortinet is the least expensive solution."
"They are more expensive than others."
"Some of our customers are using Sophos and SonicWall due to price concerns, as they can't manage the pricing of Fortinet FortiGate."
"It was about 15% cheaper compared to Sophos."
"GajShield is a cheaper solution as of now. The subscription is yearly."
"The price of the GajShield Next Generation Firewall is very attractive when compared to other solutions."
"GajShield Next Generation Firewall is cheaper than the other products in the market. The licensing costs for the solution are on a yearly basis."
"GajShield Next Generation Firewall is reasonably priced."
"GajShield Next Generation Firewall is not that expensive, and its pricing is better than Palo Alto."
"It is not that expensive. I would rate it an eight out of ten in terms of pricing. Other than the licensing, there are no additional costs."
"Annually, the licensing costs are too much."
"Unfortunately, Palo Alto Networks products aren't cheap, but you have to pay the price for good security technology. I don't know the exact price, but it's about $10,000 to $15,000 without a subscription. Cisco is priced similarly. FortiGate is inexpensive in Poland, so a lot of customers prefer that. Though it's pricey, customers ultimately realize Palo Alto is the best security solution because it's stable and the network security functions are practical. Cisco has some problems from time to time, but I feel comfortable with Palo Alto Networks."
"There is an advantage to going with the high availability pair licensing model versus the standalone. It gives you a high availability pair, but the pricing is only a slight increase over a single system. It makes sense to take a look at your add-on functionality, like the Applications and Threats subscription and URL protection subscription. On the user side, I might want everything. However, on the server side, I might not need very much. I might want the Applications and Threats subscription and not much else. So, you don't have to buy all the bells and whistles for every firewall. Depending on what the function is, there are ways around it."
"I am not sure about the specific licensing costs of Palo Alto Networks NG Firewalls, but FortiGate and Palo Alto are generally cheaper than some high-end Cisco devices."
"The licensing is annual, and there aren't any additional fees on top of that."
"With Palo Alto, the licensing is very straightforward. For example, if you only have a requirement for a firewall, you can go with that. If you want to go with a subscription, you get all the features with it."
"We haven't had a problem with pricing or licensing because we consolidated other software to make Palo Alto more affordable."
report
Use our free recommendation engine to learn which Firewalls solutions are best for your needs.
892,383 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
11%
Comms Service Provider
10%
Manufacturing Company
8%
Financial Services Firm
7%
Construction Company
15%
Manufacturing Company
15%
Comms Service Provider
12%
Energy/Utilities Company
8%
Computer Software Company
10%
Manufacturing Company
9%
Financial Services Firm
8%
Educational Organization
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business366
Midsize Enterprise136
Large Enterprise193
By reviewers
Company SizeCount
Small Business3
Midsize Enterprise1
Large Enterprise3
By reviewers
Company SizeCount
Small Business76
Midsize Enterprise56
Large Enterprise85
 

Questions from the Community

Which is the better NGFW: Fortinet Fortigate or Cisco Firepower?
When you compare these firewalls you can identify them with different features, advantages, practices and usage a...
What is the biggest difference between Sophos XG and FortiGate?
From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know...
What are the biggest technical differences between Sophos UTM and Fortinet FortiGate?
As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite ...
Ask a question
Earn 20 points
What is a better choice, Azure Firewall or Palo Alto Networks NG Firewalls?
Azure Firewall Vs. Palo Alto Network NG Firewalls Both solutions provide stellar stability and security. Azure Firew...
Features comparison between Palo Alto and Fortinet firewalls
In the best tradition of these questions, Feature-wise both are quite similar, but each has things it's better at, it...
Which is better - Palo Alto Networks NG Firewalls or Sophos XG?
Palo Alto Networks NG Firewalls have both great features and performance. I like that Palo Alto has regular threat si...
 

Also Known As

Fortinet FortiGate Next-Generation Firewall
GajShield NGFW
Palo Alto NGFW, Palo Alto Networks Next-Generation Firewall
 

Overview

 

Sample Customers

Amazon Web Services, Microsoft, IBM, Cisco, Dell, HP, Oracle, Verizon, AT&T, T-Mobile, Sprint, Vodafone, Orange, BT Group, Telstra, Deutsche Telekom, Comcast, Time Warner Cable, CenturyLink, NTT Communications, Tata Communications, SoftBank, China Mobile, Singtel, Telus, Rogers Communications, Bell Canada, Telkom Indonesia, Telkom South Africa, Telmex, Telia Company, Telkom Kenya
Zodiac Clothing
SkiStar AB, Ada County, Global IT Services PSF, Southern Cross Hospitals, Verge Health, University of Portsmouth, Austrian Airlines, The Heinz Endowments
Find out what your peers are saying about GajShield Next Generation Firewall vs. Palo Alto Networks NG Firewalls and other solutions. Updated: April 2026.
892,383 professionals have used our research since 2012.