No more typing reviews! Try our Samantha, our new voice AI agent.

GajShield Next Generation Firewall vs Palo Alto Networks NG Firewalls comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Jan 25, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Fortinet FortiGate
Sponsored
Ranking in Firewalls
1st
Average Rating
8.4
Reviews Sentiment
6.8
Number of Reviews
591
Ranking in other categories
Secure Web Gateways (SWG) (2nd), Intrusion Detection and Prevention Software (IDPS) (1st), Software Defined WAN (SD-WAN) Solutions (1st), WAN Edge (1st), ZTNA (1st), Unified Threat Management (UTM) (1st)
GajShield Next Generation F...
Ranking in Firewalls
43rd
Average Rating
7.8
Reviews Sentiment
5.7
Number of Reviews
7
Ranking in other categories
No ranking in other categories
Palo Alto Networks NG Firew...
Ranking in Firewalls
6th
Average Rating
8.6
Reviews Sentiment
7.2
Number of Reviews
199
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of May 2026, in the Firewalls category, the mindshare of Fortinet FortiGate is 16.0%, down from 21.6% compared to the previous year. The mindshare of GajShield Next Generation Firewall is 0.3%, up from 0.1% compared to the previous year. The mindshare of Palo Alto Networks NG Firewalls is 5.1%, up from 3.6% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Firewalls Mindshare Distribution
ProductMindshare (%)
Fortinet FortiGate16.0%
Palo Alto Networks NG Firewalls5.1%
GajShield Next Generation Firewall0.3%
Other78.6%
Firewalls
 

Featured Reviews

Abhinandan Yadav - PeerSpot reviewer
Network Security Engineer at Arrow PC Network Pvt Ltd
Unified security and sd-wan have improved uptime and cut wan costs for multi-site branches
Users report stability issues in certain versions, which requires regular updates. Real-world attacks have also highlighted the need for urgent patching of vulnerabilities.Fortinet FortiGate, while a powerful and feature-rich web firewall, could improve in areas like firmware stability, documentation, and ease of use. The learning curve can be steep for some users. For beginners, support quality can vary, and frequent updates with occasional vulnerabilities call for careful patch management. However, once Fortinet FortiGate is configured, it remains highly reliable and efficient. Customer support needs improvement, as I find it very slow, with reports from other users reflecting that customer support is inadequate.
Nazish Sameer Shaikh - PeerSpot reviewer
Senior Network Security Engineer at UNITE HERE HEALTH
Simplifies the management of complex data networks, but its technical support could be improved
Sometimes, we have to use SD-WAN support for the solution, which can be improved by adapting some features that will help our approach to network services. The solution can adapt some of the tools where we, as network engineers, can adjust to the changing application needs. Also, the solution can provide us with multiple support, allowing us to create a network segment. The solution’s technical support could be improved.
Abhinandan Yadav - PeerSpot reviewer
Network Security Engineer at Arrow PC Network Pvt Ltd
Advanced visibility has transformed security policies and provides proactive threat prevention
Palo Alto Networks NG Firewalls are powerful, but there are areas for improvement that could enhance their effectiveness, such as cost and licensing models. One of the main challenges we face is the high cost, especially for small to mid-sized businesses (SMBs), with licensing for features such as threat prevention, URL filtering, and WildFire being quite expensive. Additionally, centralized management with Panorama is a dependency for managing multiple firewalls, leading to added costs and complexity, and the built-in centralized management features could be made more user-friendly. Moreover, the learning curve associated with the initial setup and advanced configuration including NAT, decryption, and routing can be complex for new users, and enhancements in logging and reporting could also improve the user experience. There are a few more areas where improvements could streamline operations, such as optimizing commit times. Sometimes committing changes takes a noticeable amount of time, particularly for larger configurations, so a faster commit option would significantly help during urgent troubleshooting. Easier policy troubleshooting is necessary as well. Even though logs are detailed, finding the exact rule match and issue can still be time-consuming in complex environments, so having automated policy simulation and a recommendation tool would expedite troubleshooting. Additionally, better default templates and best practices for SMB data centers and branch offices would speed up deployment and reduce errors. Enhancing integration visibility through a unified dashboard would simplify monitoring, and improving the firmware upgrade process to allow for a more seamless zero downtime upgrade would also enhance operations, as upgrades are stable but typically require careful planning and downtime.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"I never encountered any stability issues; it is a very stable product."
"Valuable features include the performance, stability, and virtual domain ability as well as the management that it provides."
"We already have the firewalls, and when I compare Fortinet FortiGate IPS to all the other firewalls, Fortinet is really useful and works very well."
"The base firewall features are quite valuable to us."
"We have been able to offer several services to customers in a single box."
"One good thing about FortiGate is that you have got free training."
"Customers want to load balance more than eight lines or six internet lines. FortiGate is the only solution that can accomplish this."
"The SD-WAN function is very developed. It has SD-WAN functionality with security features in one device. We can manage from one single console SD-WAN and the security policy."
"Gajshiled's enterprise cloud and DLP-level features give it an advantage over other products."
"It is a stable solution."
"Once it is configured, it is very stable, and we don't get any calls from our clients unless they have some specific requirement, like port forwarding or something."
"GajShield Next Generation Firewall's best feature is the network DLP."
"GajShield has improved our mobile device-based connectivity."
"GajShield has improved our mobile device-based connectivity."
"It is an easily scalable solution...The initial setup was very easy."
"The most valuable feature of the GajShield Next Generation Firewall is the user-friendly settings, dashboards, and anti-threat protection. Additionally, the solution upgrades frequently which is good because we receive new features."
"The value of this solution for me is the protection from a single packet and ease of making security rules."
"The centralization capability is the most valuable feature of this solution as it enables us to monitor our systems efficiently."
"The application IDs, application controls, URL filtering, visibility, monitoring, and reporting are the most valuable features."
"The structure is much faster and more sophisticated than Cisco."
"I find all the features valuable, including the segmentation and cloud-distributed security profiles."
"One of the things I really like about it is that we have the same features and functions available on the entry-level device (PA-220), as do large corporations with much more costly appliances."
"Palo Alto NGFW provides a unified platform that natively integrates all security capabilities, which is very useful. This prevents us from having to go to a lot of different systems, and in some cases, many different systems in many different regions, because we are a global company with 60 remote offices around the world in 30 different countries. Its centralized platform is really what we look for in all services, whether it be security or otherwise."
"This solution has really helped the technical engineers to deliver the implementation faster than before."
 

Cons

"One area of improvement I've noticed is the lack of built-in monitoring capabilities in the firewall. Currently, we rely on third-party solutions for monitoring purposes. However, I believe the firewall itself has the potential to do a better job in this aspect. Another aspect of Fortinet that concerns me is related to redundancy. We have a setup with two firewalls working in parallel, which requires a highly adaptable configuration. However, it feels unfair that clients need to purchase two licenses, especially when one of the firewalls serves as a backup. We have noticed that other manufacturers have different policies on this matter."
"Fortinet FortiGate can improve by integrating the web application firewall and the DDoS protection part of the solution. Having a WAF feature, web application firewall, and proxy together would be a good benefit."
"There are too many updates coming for VPN, and the VPN keeps disconnecting frequently, which I find problematic. It does what it's supposed to do, but I practically face reconnection issues with the VPN."
"To the best of my knowledge, Fortinet does not have a CASB solution and Fortinet does not have a Zero trust solution."
"The pricing could be reduced or include the first year warranty."
"I would like reporting to be improved and should offer a lot more tools to monitor the products."
"The pricing of Fortinet FortiGate IPS could always be improved."
"The security features could have been more similar to those in the Palo Alto firewall with major data protections and WildFire, and deeper inspection capabilities, which Fortinet FortiGate lacks."
"Sometimes, we have to use SD-WAN support for the solution, which can be improved by adapting some features that will help our approach to network services."
"We face issues with some configuration parts that we don't understand in the solution, and sometimes we face issues with the VPN connection."
"We face issues with some configuration parts that we don't understand in the solution, and sometimes we face issues with the VPN connection."
"We raised a support ticket, and the project didn't get a proper response. There was a skill issue in TAC support."
"The UI for the administration of the firewall needs a lot of work."
"Gajshield can improve SD-WAN compatibility at an enterprise cloud level."
"GajShield Next Generation Firewall could improve the flow of the settings. If somebody's using a Cisco firewall or any other brand and they want to use GajShield Next Generation Firewall the platform's UI is a bit different."
"The firewall configuration and administration screens could use some improvement."
"Its price can be better. They should also provide some more examples of configurations online."
"As things are evolving, we want to make sure that Palo Alto is able to keep up with what is going on outside."
"They can work on the price. They are a little bit expensive, and not all customers are able to afford this solution. Taking into consideration that there is huge competition in the market and there are multiple firewall companies that are much cheaper than them and offer almost the same features, it would be good to improve the price."
"For an upcoming release, they could improve on the way to build security rules per user."
"The biggest thing that needs to be improved with them is their training. I took a training class for the 8.0 build, then I took it again for the 9.0 and 10 builds. They add new features every time that they do a new major release, but the training doesn't keep up. It is the same basic training that probably was with the 3.0 build, and they just change the screenshots. I would love to see them do some more work since they have all these bells and whistles, but we don't know how to use those features on a large scale."
"Overall it is good. It is reliable and easy to understand. However, the monitoring feature could be improved."
"I think they need to have a proper hardware version for a smaller enterprise. We had to go to a very high-end version which is very expensive. If we chose the lower-end version, it would not meet our goals. A middle-end is missing in its portfolio."
"The tool's central management system is complicated, making it challenging to manage multiple devices centrally. Individually, the firewalls are easy to use and manage. I'd like to see better central management features in the next release. They've introduced some, but I haven't tried them yet, so I can't say how effective they are. However, having a single management interface would be a big improvement."
 

Pricing and Cost Advice

"Fortinet FortiGate IPS is cheaper than other solutions like Cisco or Check Point."
"The solution requires a license annually, it is not a user license, you can have as many users as your want. I must renew the license regularly per device."
"Pricing is lower than Cisco."
"The product is a little bit expensive."
"The support subscription for the solution is annual. You are paying for support and there are two levels of support, professional and advanced."
"Fortinet FortiGate's price can be reduced."
"The price is relatively expensive compared to other solutions which are providing similar features."
"Easy to understand licensing requirements."
"The price of the GajShield Next Generation Firewall is very attractive when compared to other solutions."
"GajShield Next Generation Firewall is not that expensive, and its pricing is better than Palo Alto."
"It was about 15% cheaper compared to Sophos."
"GajShield Next Generation Firewall is cheaper than the other products in the market. The licensing costs for the solution are on a yearly basis."
"GajShield is a cheaper solution as of now. The subscription is yearly."
"GajShield Next Generation Firewall is reasonably priced."
"You get what you pay for."
"I don't know about the price of the platform or the license fees, as the finance department deals with that. I only bill for the materials involved in the design."
"Palo Alto Networks offers more cost efficiency compared to Cisco, with better operational and maintenance ease."
"It's too expensive."
"Palo Alto Networks NG Firewalls have a higher price tag, costing roughly twice as much as competing products."
"Active/Passive mode is very redundant, but they require you to buy all the associated licensing for both firewalls, which is kind of a waste of money because you are really only using the services on one firewall at a time."
"The price of the solution is on the higher side compared to competitors."
"It's an expensive product."
report
Use our free recommendation engine to learn which Firewalls solutions are best for your needs.
894,830 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
10%
Comms Service Provider
10%
Manufacturing Company
9%
Financial Services Firm
7%
Construction Company
16%
Manufacturing Company
16%
Comms Service Provider
12%
Healthcare Company
8%
Computer Software Company
9%
Manufacturing Company
9%
Financial Services Firm
7%
Comms Service Provider
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business367
Midsize Enterprise135
Large Enterprise193
By reviewers
Company SizeCount
Small Business3
Midsize Enterprise1
Large Enterprise3
By reviewers
Company SizeCount
Small Business77
Midsize Enterprise56
Large Enterprise85
 

Questions from the Community

Which is the better NGFW: Fortinet Fortigate or Cisco Firepower?
When you compare these firewalls you can identify them with different features, advantages, practices and usage a...
What is the biggest difference between Sophos XG and FortiGate?
From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know...
What are the biggest technical differences between Sophos UTM and Fortinet FortiGate?
As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite ...
Ask a question
Earn 20 points
What is a better choice, Azure Firewall or Palo Alto Networks NG Firewalls?
Azure Firewall Vs. Palo Alto Network NG Firewalls Both solutions provide stellar stability and security. Azure Firew...
Features comparison between Palo Alto and Fortinet firewalls
In the best tradition of these questions, Feature-wise both are quite similar, but each has things it's better at, it...
Which is better - Palo Alto Networks NG Firewalls or Sophos XG?
Palo Alto Networks NG Firewalls have both great features and performance. I like that Palo Alto has regular threat si...
 

Also Known As

Fortinet FortiGate Next-Generation Firewall
GajShield NGFW
Palo Alto NGFW, Palo Alto Networks Next-Generation Firewall
 

Overview

 

Sample Customers

Amazon Web Services, Microsoft, IBM, Cisco, Dell, HP, Oracle, Verizon, AT&T, T-Mobile, Sprint, Vodafone, Orange, BT Group, Telstra, Deutsche Telekom, Comcast, Time Warner Cable, CenturyLink, NTT Communications, Tata Communications, SoftBank, China Mobile, Singtel, Telus, Rogers Communications, Bell Canada, Telkom Indonesia, Telkom South Africa, Telmex, Telia Company, Telkom Kenya
Zodiac Clothing
SkiStar AB, Ada County, Global IT Services PSF, Southern Cross Hospitals, Verge Health, University of Portsmouth, Austrian Airlines, The Heinz Endowments
Find out what your peers are saying about GajShield Next Generation Firewall vs. Palo Alto Networks NG Firewalls and other solutions. Updated: April 2026.
894,830 professionals have used our research since 2012.