No more typing reviews! Try our Samantha, our new voice AI agent.

GajShield Next Generation Firewall vs Palo Alto Networks NG Firewalls comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Jan 25, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Fortinet FortiGate
Sponsored
Ranking in Firewalls
1st
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
591
Ranking in other categories
Secure Web Gateways (SWG) (2nd), Intrusion Detection and Prevention Software (IDPS) (1st), Software Defined WAN (SD-WAN) Solutions (1st), WAN Edge (1st), ZTNA (1st), Unified Threat Management (UTM) (1st)
GajShield Next Generation F...
Ranking in Firewalls
43rd
Average Rating
7.8
Reviews Sentiment
5.7
Number of Reviews
7
Ranking in other categories
No ranking in other categories
Palo Alto Networks NG Firew...
Ranking in Firewalls
6th
Average Rating
8.6
Reviews Sentiment
7.2
Number of Reviews
199
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of April 2026, in the Firewalls category, the mindshare of Fortinet FortiGate is 17.2%, down from 21.3% compared to the previous year. The mindshare of GajShield Next Generation Firewall is 0.3%, up from 0.1% compared to the previous year. The mindshare of Palo Alto Networks NG Firewalls is 5.2%, up from 3.5% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Firewalls Mindshare Distribution
ProductMindshare (%)
Fortinet FortiGate17.2%
Palo Alto Networks NG Firewalls5.2%
GajShield Next Generation Firewall0.3%
Other77.3%
Firewalls
 

Featured Reviews

Abhinandan Yadav - PeerSpot reviewer
Network Security Engineer at Arrow PC Network Pvt Ltd
Unified security and sd-wan have improved uptime and cut wan costs for multi-site branches
Users report stability issues in certain versions, which requires regular updates. Real-world attacks have also highlighted the need for urgent patching of vulnerabilities.Fortinet FortiGate, while a powerful and feature-rich web firewall, could improve in areas like firmware stability, documentation, and ease of use. The learning curve can be steep for some users. For beginners, support quality can vary, and frequent updates with occasional vulnerabilities call for careful patch management. However, once Fortinet FortiGate is configured, it remains highly reliable and efficient. Customer support needs improvement, as I find it very slow, with reports from other users reflecting that customer support is inadequate.
Nazish Sameer Shaikh - PeerSpot reviewer
Senior Network Security Engineer at UNITE HERE HEALTH
Simplifies the management of complex data networks, but its technical support could be improved
Sometimes, we have to use SD-WAN support for the solution, which can be improved by adapting some features that will help our approach to network services. The solution can adapt some of the tools where we, as network engineers, can adjust to the changing application needs. Also, the solution can provide us with multiple support, allowing us to create a network segment. The solution’s technical support could be improved.
Abhinandan Yadav - PeerSpot reviewer
Network Security Engineer at Arrow PC Network Pvt Ltd
Advanced visibility has transformed security policies and provides proactive threat prevention
Palo Alto Networks NG Firewalls are powerful, but there are areas for improvement that could enhance their effectiveness, such as cost and licensing models. One of the main challenges we face is the high cost, especially for small to mid-sized businesses (SMBs), with licensing for features such as threat prevention, URL filtering, and WildFire being quite expensive. Additionally, centralized management with Panorama is a dependency for managing multiple firewalls, leading to added costs and complexity, and the built-in centralized management features could be made more user-friendly. Moreover, the learning curve associated with the initial setup and advanced configuration including NAT, decryption, and routing can be complex for new users, and enhancements in logging and reporting could also improve the user experience. There are a few more areas where improvements could streamline operations, such as optimizing commit times. Sometimes committing changes takes a noticeable amount of time, particularly for larger configurations, so a faster commit option would significantly help during urgent troubleshooting. Easier policy troubleshooting is necessary as well. Even though logs are detailed, finding the exact rule match and issue can still be time-consuming in complex environments, so having automated policy simulation and a recommendation tool would expedite troubleshooting. Additionally, better default templates and best practices for SMB data centers and branch offices would speed up deployment and reduce errors. Enhancing integration visibility through a unified dashboard would simplify monitoring, and improving the firmware upgrade process to allow for a more seamless zero downtime upgrade would also enhance operations, as upgrades are stable but typically require careful planning and downtime.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"I never encountered any stability issues; it is a very stable product."
"Fortinet FortiGate brings numerous benefits to my company."
"Fortinet FortiGate serves as the first line of defense, it is robust and easy to configure, and I haven't seen any breaches happening when configured properly based on best practices."
"FortiGate has a strong security topic which allows all of the Fortinet devices to communicate and share information which makes their security more powerful."
"Fortinet FortiGate has positively impacted our organization by providing stronger network security as it's a next-generation firewall, blocking known threats and vulnerabilities in real-time, detecting and controlling thousands of applications, scanning encrypted traffic, and improving VPN and remote access through automated failover and intelligent routing protocols like BGP over IPsec VPN."
"Fortigate's most valuable feature is that it doesn't need a push policy when writing rules."
"It is easy to set up."
"The pricing is excellent. It's much less expensive than Cisco."
"GajShield has improved our mobile device-based connectivity."
"GajShield Next Generation Firewall's best feature is the network DLP."
"It is a stable solution."
"The solution's outcome is very high, and we often use it in a very high-traffic environment."
"Gajshiled's enterprise cloud and DLP-level features give it an advantage over other products."
"Once it is configured, it is very stable, and we don't get any calls from our clients unless they have some specific requirement, like port forwarding or something."
"GajShield has improved our mobile device-based connectivity."
"If people are looking for a good solution that is priced well this solution is best."
"The feature that I like the most is its IPS model, the WildFire model. I really like how the whole threat protection model functions, including the vulnerability and anti-spyware aspects. That is really awesome."
"Comments have some delay, but overall, it's a good product."
"The most valuable features are Wildfire, URL filtering, and IPS."
"The application control portion of the solution is its most valuable aspect."
"For colleagues seeking a cost-effective firewall, I recommend Palo Alto Networks NG Firewalls."
"The configuration is very simple."
"The Palo Alto Networks NG Firewalls excel in their integration capabilities."
"Ability to log each and every application."
 

Cons

"I encountered several strange issues in v5.0 (and earlier) OS versions. Strange anomalies like random reloads, VPN instability and unexplained policy changes."
"One area for improvement is the IPS engine."
"Fortinet FortiGate needs to improve to be on par with its competitors, such as Palo Alto and Sophos. They are the market leaders. Fortinet FortiGate needs to improve its capabilities. However, we are happy with Fortinet FortiGate."
"There aren't really any negative aspects to discuss."
"I cannot say definitively about the return on investment with Fortinet FortiGate because I have always been in the technical field, but most of our clients are very happy since threats were stopped, generating confidence in the Fortinet brand among our clients."
"The solution can have more features in a single box that can be multi-applied to integrate everything."
"I would like to have SD-WAN as a part of the Next Generation Firewall. It would enhance high availability."
"Stability and technical support are the two major issues I have found with Fortinet."
"Gajshield can improve SD-WAN compatibility at an enterprise cloud level."
"We raised a support ticket, and the project didn't get a proper response. There was a skill issue in TAC support."
"Sometimes, we have to use SD-WAN support for the solution, which can be improved by adapting some features that will help our approach to network services."
"GajShield Next Generation Firewall could improve the flow of the settings. If somebody's using a Cisco firewall or any other brand and they want to use GajShield Next Generation Firewall the platform's UI is a bit different."
"GajShield Next Generation Firewall could improve the flow of the settings. If somebody's using a Cisco firewall or any other brand and they want to use GajShield Next Generation Firewall the platform's UI is a bit different. If it was more similar to the others it would be better."
"We face issues with some configuration parts that we don't understand in the solution, and sometimes we face issues with the VPN connection."
"The firewall configuration and administration screens could use some improvement."
"The UI for the administration of the firewall needs a lot of work."
"Everything has been great. More machine learning would be something great to see, but I don't know if it's a priority for Palo Alto."
"This solution is definitely not scalable."
"Functional and very futureproof but a bit hard to manage, and the worst thing is that it takes almost 20 mins to boot up, and to commit a config takes half that time."
"Palo Alto could do better with integrating the Palo Alto Next-Gen Firewall with SD-WAN. The biggest issue with Palo Alto is that they are expensive. They are very expensive for what they offer. They should improve their pricing."
"They can improve the handling and management of User-ID. They should also improve its price. Their technical support can also be improved."
"We need better affiliations for profiling the user."
"It is a complete product, but the SSL inspection feature requires some improvements. We need to deploy certificates at each end point to completely work out the UTM solutions. If you enable SSL encryption, it is a tedious process. It takes a lot of time to deploy the certificates to all endpoints. Without SSL inspection, UTM features will not work properly. So, we are forced to enable this SSL inspection feature."
"As part of our internet filtering, we integrate heavily with Active Directory, and we use security groups to separate staff into two groups: those who should have full access to the internet and those who should have limited access. It may be just the way the topology is for our domain controllers and that infrastructure, but at peak usage, there seems to be a delay in reading back against the security group to find out what group the user is in."
 

Pricing and Cost Advice

"It is expensive. You need to pay for the subscription every year, which is very expensive. The subscription includes technical support and hardware exchange in case of failure."
"The product is expensive. I rate its pricing a six out of ten."
"Work through partners for the best pricing."
"It cost us around $73,000 for three years."
"The price of Fortinet FortiGate is better than Cisco, Check Point, and Palo Alto. In terms of pricing, it's probably a better-priced firewall solution overall."
"Compared to other firewall products, it's a little cheaper in terms of pricing."
"Its pricing is fine. It is on a yearly basis. Other than the licensing fee, there is no extra fee."
"The pricing of Fortinet FortiGate is average, not cheap or overly expensive compared to other firewall solutions in the market. It's effective and affordable for customers."
"GajShield Next Generation Firewall is reasonably priced."
"It was about 15% cheaper compared to Sophos."
"The price of the GajShield Next Generation Firewall is very attractive when compared to other solutions."
"GajShield is a cheaper solution as of now. The subscription is yearly."
"GajShield Next Generation Firewall is cheaper than the other products in the market. The licensing costs for the solution are on a yearly basis."
"GajShield Next Generation Firewall is not that expensive, and its pricing is better than Palo Alto."
"There are security licenses."
"Compared to other firewall solutions, this is an expensive solution."
"If you compare Palo Alto with other firewalls, it's a bit expensive."
"The tool is expensive, especially considering all the necessary licenses for centrally managing firewalls. For medium-sized companies like ours, it's often not feasible within our budget constraints. We pay around €200k yearly for all our firewalls. Additionally, we received a quote of over €1 million per year for Prisma Access. There is a significant cost difference compared to other options, where it's around €200k per year."
"This solution is quite expensive because along with the license there is premium partner support that has to be purchased as a default addition. There is also a specific Threat Prevention License that has to be requested and purchased separately. However, licenses can be purchased for specific periods as opposed to just an annual offering."
"Active/Passive mode is very redundant, but they require you to buy all the associated licensing for both firewalls, which is kind of a waste of money because you are really only using the services on one firewall at a time."
"It will be worth your time to hire a contractor to set it up and configure it for you, especially if you are not very knowledgeable with PA firewalls."
"I would assume that it's still within mid-range given its company structure and everything else. My guess is it's still okay."
report
Use our free recommendation engine to learn which Firewalls solutions are best for your needs.
889,855 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
11%
Comms Service Provider
10%
Manufacturing Company
8%
Financial Services Firm
7%
Construction Company
16%
Manufacturing Company
14%
Comms Service Provider
12%
Energy/Utilities Company
8%
Computer Software Company
10%
Manufacturing Company
9%
Financial Services Firm
8%
Educational Organization
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business365
Midsize Enterprise136
Large Enterprise193
By reviewers
Company SizeCount
Small Business3
Midsize Enterprise1
Large Enterprise3
By reviewers
Company SizeCount
Small Business76
Midsize Enterprise56
Large Enterprise85
 

Questions from the Community

Which is the better NGFW: Fortinet Fortigate or Cisco Firepower?
When you compare these firewalls you can identify them with different features, advantages, practices and usage a...
What is the biggest difference between Sophos XG and FortiGate?
From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know...
What are the biggest technical differences between Sophos UTM and Fortinet FortiGate?
As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite ...
Ask a question
Earn 20 points
What is a better choice, Azure Firewall or Palo Alto Networks NG Firewalls?
Azure Firewall Vs. Palo Alto Network NG Firewalls Both solutions provide stellar stability and security. Azure Firew...
Features comparison between Palo Alto and Fortinet firewalls
In the best tradition of these questions, Feature-wise both are quite similar, but each has things it's better at, it...
Which is better - Palo Alto Networks NG Firewalls or Sophos XG?
Palo Alto Networks NG Firewalls have both great features and performance. I like that Palo Alto has regular threat si...
 

Also Known As

Fortinet FortiGate Next-Generation Firewall
GajShield NGFW
Palo Alto NGFW, Palo Alto Networks Next-Generation Firewall
 

Overview

 

Sample Customers

Amazon Web Services, Microsoft, IBM, Cisco, Dell, HP, Oracle, Verizon, AT&T, T-Mobile, Sprint, Vodafone, Orange, BT Group, Telstra, Deutsche Telekom, Comcast, Time Warner Cable, CenturyLink, NTT Communications, Tata Communications, SoftBank, China Mobile, Singtel, Telus, Rogers Communications, Bell Canada, Telkom Indonesia, Telkom South Africa, Telmex, Telia Company, Telkom Kenya
Zodiac Clothing
SkiStar AB, Ada County, Global IT Services PSF, Southern Cross Hospitals, Verge Health, University of Portsmouth, Austrian Airlines, The Heinz Endowments
Find out what your peers are saying about GajShield Next Generation Firewall vs. Palo Alto Networks NG Firewalls and other solutions. Updated: April 2026.
889,855 professionals have used our research since 2012.