No more typing reviews! Try our Samantha, our new voice AI agent.

GajShield Next Generation Firewall vs Palo Alto Networks NG Firewalls comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Jan 25, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Fortinet FortiGate
Sponsored
Ranking in Firewalls
1st
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
589
Ranking in other categories
Secure Web Gateways (SWG) (2nd), Intrusion Detection and Prevention Software (IDPS) (1st), Software Defined WAN (SD-WAN) Solutions (1st), WAN Edge (1st), ZTNA (1st), Unified Threat Management (UTM) (1st)
GajShield Next Generation F...
Ranking in Firewalls
43rd
Average Rating
7.8
Reviews Sentiment
5.7
Number of Reviews
7
Ranking in other categories
No ranking in other categories
Palo Alto Networks NG Firew...
Ranking in Firewalls
6th
Average Rating
8.6
Reviews Sentiment
7.2
Number of Reviews
198
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of April 2026, in the Firewalls category, the mindshare of Fortinet FortiGate is 17.2%, down from 21.3% compared to the previous year. The mindshare of GajShield Next Generation Firewall is 0.3%, up from 0.1% compared to the previous year. The mindshare of Palo Alto Networks NG Firewalls is 5.2%, up from 3.5% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Firewalls Mindshare Distribution
ProductMindshare (%)
Fortinet FortiGate17.2%
Palo Alto Networks NG Firewalls5.2%
GajShield Next Generation Firewall0.3%
Other77.3%
Firewalls
 

Featured Reviews

Abhinandan Yadav - PeerSpot reviewer
Network Security Engineer at Arrow PC Network Pvt Ltd
Unified security and sd-wan have improved uptime and cut wan costs for multi-site branches
Users report stability issues in certain versions, which requires regular updates. Real-world attacks have also highlighted the need for urgent patching of vulnerabilities.Fortinet FortiGate, while a powerful and feature-rich web firewall, could improve in areas like firmware stability, documentation, and ease of use. The learning curve can be steep for some users. For beginners, support quality can vary, and frequent updates with occasional vulnerabilities call for careful patch management. However, once Fortinet FortiGate is configured, it remains highly reliable and efficient. Customer support needs improvement, as I find it very slow, with reports from other users reflecting that customer support is inadequate.
Nazish Sameer Shaikh - PeerSpot reviewer
Senior Network Security Engineer at UNITE HERE HEALTH
Simplifies the management of complex data networks, but its technical support could be improved
Sometimes, we have to use SD-WAN support for the solution, which can be improved by adapting some features that will help our approach to network services. The solution can adapt some of the tools where we, as network engineers, can adjust to the changing application needs. Also, the solution can provide us with multiple support, allowing us to create a network segment. The solution’s technical support could be improved.
Abhinandan Yadav - PeerSpot reviewer
Network Security Engineer at Arrow PC Network Pvt Ltd
Advanced visibility has transformed security policies and provides proactive threat prevention
Palo Alto Networks NG Firewalls are powerful, but there are areas for improvement that could enhance their effectiveness, such as cost and licensing models. One of the main challenges we face is the high cost, especially for small to mid-sized businesses (SMBs), with licensing for features such as threat prevention, URL filtering, and WildFire being quite expensive. Additionally, centralized management with Panorama is a dependency for managing multiple firewalls, leading to added costs and complexity, and the built-in centralized management features could be made more user-friendly. Moreover, the learning curve associated with the initial setup and advanced configuration including NAT, decryption, and routing can be complex for new users, and enhancements in logging and reporting could also improve the user experience. There are a few more areas where improvements could streamline operations, such as optimizing commit times. Sometimes committing changes takes a noticeable amount of time, particularly for larger configurations, so a faster commit option would significantly help during urgent troubleshooting. Easier policy troubleshooting is necessary as well. Even though logs are detailed, finding the exact rule match and issue can still be time-consuming in complex environments, so having automated policy simulation and a recommendation tool would expedite troubleshooting. Additionally, better default templates and best practices for SMB data centers and branch offices would speed up deployment and reduce errors. Enhancing integration visibility through a unified dashboard would simplify monitoring, and improving the firmware upgrade process to allow for a more seamless zero downtime upgrade would also enhance operations, as upgrades are stable but typically require careful planning and downtime.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"We receive substantial help from Fortinet, which is very valuable as they assist us in choosing the right solutions. If we need configuration assistance, they can send specialists who help design the solution."
"Fortinet FortiGate is among the best options in the market."
"Fortinet FortiGate has a very simple configuration, is easy to set up, and includes SD-WAN features at no additional cost."
"Advanced routing (RIP, OSPF, BGP, PBR). It gives you a seamless and simple integration into a large network."
"The solution offers very easy usability, the product can scale well, the solution is extremely reliable, the pricing and licensing models are pretty good, and the user interface, both the web and CLI versions, are very good."
"The key features include SD-WAN, firewall use, intrusion prevention, intrusion detection, and application control."
"FortiGate is on the cheaper end, and it offers good value."
"Onboarded three times more customers without adding firewall hardware, cut network expansion capital expenses by roughly 40 percent through VDOM consolidation, reduced vulnerability remediation costs by about 60 percent thanks to automated FortiGuard updates, shortened policy-deployment time by over 50 percent, freeing up 10 plus hours of engineering effort weekly, and achieved payback on the initial FortiGate investment within 9 months via increased tenancy revenue and lower OPEX."
"GajShield has improved our mobile device-based connectivity."
"If people are looking for a good solution that is priced well this solution is best."
"It is an easily scalable solution...The initial setup was very easy."
"Once it is configured, it is very stable, and we don't get any calls from our clients unless they have some specific requirement, like port forwarding or something."
"GajShield has improved our mobile device-based connectivity."
"It is a stable solution."
"The solution's outcome is very high, and we often use it in a very high-traffic environment."
"GajShield Next Generation Firewall's best feature is the network DLP."
"The most valuable features of Palo Alto Networks NG Firewalls are Threat Vault and AutoFocus."
"With App-ID, we can identify exact traffic. Even if someone tries to fool the firewall with a different port number, or with the correct port number, Palo Alto is able to identify what kind of traffic it is."
"The initial setup was very easy."
"The most valuable feature is WildFire, which blocks sophisticated attacks and distinguishes it from other traditional firewall functions."
"One of the most valuable features of Palo Alto Networks NG Firewalls is application symmetries."
"The user experience is good and the configuration is very easy."
"The best feature is the packet inspection; compared to solutions like Cisco and FortiGate, Palo Alto's packet inspection is much less CPU intensive, allowing it to detect threats embedded within packages more quickly and efficiently."
"I have found it to be reliable and very easy to use. I haven't really encountered many problems with it because its documentation is clear and readily available on their website."
 

Cons

"The captive portal could be improved."
"I wish that they could integrate zero-trust technology into Fortinet FortiGate. I am not sure whether it has been done already, but if they could implement that, it would help significantly."
"I would say 8 out of 10 regarding the stability of Fortinet FortiGate. It requires a lot of bug fixing and what I understand, Fortinet is fast enough to provide bug fixes and patches, but usually I suggest Fortinet should do thorough testing of their releases and software releases and once probably they can reduce the frequency of new releases but make it stable."
"Customer support is poor. Sometimes I open a critical ticket only to have customer support respond in four to five hours, reflecting that customer support is very weak."
"Bandwidth usage in reporting could be improved for Fortinet FortiGate."
"As far as wanting more scalability or things in the network diagram, it's going to cost you."
"It would be good if they had fewer updates."
"Fortinet FortiGate SWG should be localised to specific regions to comply with local data privacy regulations because of the data privacy rules in the countries. In the Middle East, data organisation and KFA requirements are stringent."
"Sometimes, we have to use SD-WAN support for the solution, which can be improved by adapting some features that will help our approach to network services."
"We face issues with some configuration parts that we don't understand in the solution, and sometimes we face issues with the VPN connection."
"We face issues with some configuration parts that we don't understand in the solution, and sometimes we face issues with the VPN connection."
"GajShield Next Generation Firewall could improve the flow of the settings. If somebody's using a Cisco firewall or any other brand and they want to use GajShield Next Generation Firewall the platform's UI is a bit different. If it was more similar to the others it would be better."
"GajShield Next Generation Firewall would be improved with the addition of a load-balancing feature."
"Gajshield can improve SD-WAN compatibility at an enterprise cloud level."
"The firewall configuration and administration screens could use some improvement."
"We raised a support ticket, and the project didn't get a proper response. There was a skill issue in TAC support."
"Palo Alto could improve its machine-learning capabilities. That's all new. They integrate the telemetry data and analytics up to the cloud, where they can analyze for security policies and best practices like DNS Security. It uses AI tools to sort through all the massive logs and highlight where you can take action or be aware of what's happening. If you don't have many tools in your organization, it's nice to have one tool that does an excellent job across the board."
"Palo Alto could do better with integrating the Palo Alto Next-Gen Firewall with SD-WAN. The biggest issue with Palo Alto is that they are expensive. They are very expensive for what they offer. They should improve their pricing."
"There is a web-based GUI to do management, but you need to know how the machine or firewall operates. There are hundreds of different menus and options."
"Enhancements could potentially be made to the firmware to improve its inspectability."
"It is working well. In my opinion, nothing can be added at this time. However, when it comes to the cost, Palo Alto firewalls are the most expensive."
"The solution has normal authentication, but does not have two-factor or multi-factor authentication. There is room for development there."
"I would like them to bring in some features that would encourage traffic shaping or bandwidth routing, like other UTM firewalls, because the solution should be capable of limiting the bandwidth for rules."
"Palo Alto's various products need better integration to ensure they work harmoniously."
 

Pricing and Cost Advice

"The tool is a bit pricey for small businesses, but it is still bearable in terms of cost."
"The pricing is fair."
"The price is okay."
"It's a very full-featured and it's priced well solution."
"Fortigate's pricing is competitive."
"The cost of Fortinet FortiGate is competitive and not expensive compared to other enterprise- grade solutions. On average, the license cost per year is around seventy percent of the firewall's purchase price."
"Its price could be better."
"In terms of the market, it's not a cheap product, but it's cost-effective."
"GajShield Next Generation Firewall is reasonably priced."
"It was about 15% cheaper compared to Sophos."
"GajShield is a cheaper solution as of now. The subscription is yearly."
"The price of the GajShield Next Generation Firewall is very attractive when compared to other solutions."
"GajShield Next Generation Firewall is cheaper than the other products in the market. The licensing costs for the solution are on a yearly basis."
"GajShield Next Generation Firewall is not that expensive, and its pricing is better than Palo Alto."
"This is an expensive product and there is a subscription cost."
"These firewalls are not cheap, but they have a reasonable licensing model."
"Annually, the licensing costs are too much."
"It's pretty good."
"You pay based on the kind of license you require, but comparatively, it is not very expensive."
"The licensing leaves a lot to be desired. We buy the license and then we can't transfer the license without paying an exorbitant fee to our client if they leave us, and that just seems to be a bit of a pain point for us, and there's really no way to partner effectively to make that more reasonable."
"The tool's pricing is similar to that of Cisco. It's a security appliance; the cost depends on your network topology and specific requirements. The suitability of NG firewalls should be chosen based on your network and what you need. If a colleague from a different company asked for the cheapest and fastest firewall, I suggest they consider options like Sophos. Sophos took over Cyberoam, which was previously a leader in NG firewalls"
"The price is based on that selected package, with the lowest starting at $3,000 annually."
report
Use our free recommendation engine to learn which Firewalls solutions are best for your needs.
886,468 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
11%
Comms Service Provider
10%
Manufacturing Company
8%
Financial Services Firm
7%
No data available
Computer Software Company
10%
Manufacturing Company
9%
Financial Services Firm
8%
Educational Organization
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business365
Midsize Enterprise135
Large Enterprise191
By reviewers
Company SizeCount
Small Business3
Midsize Enterprise1
Large Enterprise3
By reviewers
Company SizeCount
Small Business75
Midsize Enterprise56
Large Enterprise85
 

Questions from the Community

Which is the better NGFW: Fortinet Fortigate or Cisco Firepower?
When you compare these firewalls you can identify them with different features, advantages, practices and usage a...
What is the biggest difference between Sophos XG and FortiGate?
From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know...
What are the biggest technical differences between Sophos UTM and Fortinet FortiGate?
As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite ...
Ask a question
Earn 20 points
What is a better choice, Azure Firewall or Palo Alto Networks NG Firewalls?
Azure Firewall Vs. Palo Alto Network NG Firewalls Both solutions provide stellar stability and security. Azure Firew...
Features comparison between Palo Alto and Fortinet firewalls
In the best tradition of these questions, Feature-wise both are quite similar, but each has things it's better at, it...
Which is better - Palo Alto Networks NG Firewalls or Sophos XG?
Palo Alto Networks NG Firewalls have both great features and performance. I like that Palo Alto has regular threat si...
 

Also Known As

Fortinet FortiGate Next-Generation Firewall
GajShield NGFW
Palo Alto NGFW, Palo Alto Networks Next-Generation Firewall
 

Overview

 

Sample Customers

Amazon Web Services, Microsoft, IBM, Cisco, Dell, HP, Oracle, Verizon, AT&T, T-Mobile, Sprint, Vodafone, Orange, BT Group, Telstra, Deutsche Telekom, Comcast, Time Warner Cable, CenturyLink, NTT Communications, Tata Communications, SoftBank, China Mobile, Singtel, Telus, Rogers Communications, Bell Canada, Telkom Indonesia, Telkom South Africa, Telmex, Telia Company, Telkom Kenya
Zodiac Clothing
SkiStar AB, Ada County, Global IT Services PSF, Southern Cross Hospitals, Verge Health, University of Portsmouth, Austrian Airlines, The Heinz Endowments
Find out what your peers are saying about GajShield Next Generation Firewall vs. Palo Alto Networks NG Firewalls and other solutions. Updated: April 2026.
886,468 professionals have used our research since 2012.