No more typing reviews! Try our Samantha, our new voice AI agent.

Hillstone E-Series vs Palo Alto Networks NG Firewalls comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Jan 25, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Fortinet FortiGate
Sponsored
Ranking in Firewalls
1st
Average Rating
8.4
Reviews Sentiment
6.8
Number of Reviews
591
Ranking in other categories
Secure Web Gateways (SWG) (2nd), Intrusion Detection and Prevention Software (IDPS) (1st), Software Defined WAN (SD-WAN) Solutions (1st), WAN Edge (1st), ZTNA (1st), Unified Threat Management (UTM) (1st)
Hillstone E-Series
Ranking in Firewalls
38th
Average Rating
9.0
Reviews Sentiment
7.7
Number of Reviews
10
Ranking in other categories
SSL VPN (10th), Enterprise Infrastructure VPN (22nd)
Palo Alto Networks NG Firew...
Ranking in Firewalls
6th
Average Rating
8.6
Reviews Sentiment
7.2
Number of Reviews
199
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of May 2026, in the Firewalls category, the mindshare of Fortinet FortiGate is 16.0%, down from 21.6% compared to the previous year. The mindshare of Hillstone E-Series is 0.6%, up from 0.3% compared to the previous year. The mindshare of Palo Alto Networks NG Firewalls is 5.1%, up from 3.6% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Firewalls Mindshare Distribution
ProductMindshare (%)
Fortinet FortiGate16.0%
Palo Alto Networks NG Firewalls5.1%
Hillstone E-Series0.6%
Other78.3%
Firewalls
 

Featured Reviews

Abhinandan Yadav - PeerSpot reviewer
Network Security Engineer at Arrow PC Network Pvt Ltd
Unified security and sd-wan have improved uptime and cut wan costs for multi-site branches
Users report stability issues in certain versions, which requires regular updates. Real-world attacks have also highlighted the need for urgent patching of vulnerabilities.Fortinet FortiGate, while a powerful and feature-rich web firewall, could improve in areas like firmware stability, documentation, and ease of use. The learning curve can be steep for some users. For beginners, support quality can vary, and frequent updates with occasional vulnerabilities call for careful patch management. However, once Fortinet FortiGate is configured, it remains highly reliable and efficient. Customer support needs improvement, as I find it very slow, with reports from other users reflecting that customer support is inadequate.
TahirMahmood - PeerSpot reviewer
IT Manager at Zubair Feeds
Offers good features like URL filtering, IPS, and IDS to users
We received an update for the tool in July. The update was provided for the tool as there was a problem with the firewall, where too much memory was consumed, and the firewall was hanging a lot. When we updated the tool's features, everything became okay. The tool only had some memory-related problems. It took the tool a month to fix the issues.
Abhinandan Yadav - PeerSpot reviewer
Network Security Engineer at Arrow PC Network Pvt Ltd
Advanced visibility has transformed security policies and provides proactive threat prevention
Palo Alto Networks NG Firewalls are powerful, but there are areas for improvement that could enhance their effectiveness, such as cost and licensing models. One of the main challenges we face is the high cost, especially for small to mid-sized businesses (SMBs), with licensing for features such as threat prevention, URL filtering, and WildFire being quite expensive. Additionally, centralized management with Panorama is a dependency for managing multiple firewalls, leading to added costs and complexity, and the built-in centralized management features could be made more user-friendly. Moreover, the learning curve associated with the initial setup and advanced configuration including NAT, decryption, and routing can be complex for new users, and enhancements in logging and reporting could also improve the user experience. There are a few more areas where improvements could streamline operations, such as optimizing commit times. Sometimes committing changes takes a noticeable amount of time, particularly for larger configurations, so a faster commit option would significantly help during urgent troubleshooting. Easier policy troubleshooting is necessary as well. Even though logs are detailed, finding the exact rule match and issue can still be time-consuming in complex environments, so having automated policy simulation and a recommendation tool would expedite troubleshooting. Additionally, better default templates and best practices for SMB data centers and branch offices would speed up deployment and reduce errors. Enhancing integration visibility through a unified dashboard would simplify monitoring, and improving the firmware upgrade process to allow for a more seamless zero downtime upgrade would also enhance operations, as upgrades are stable but typically require careful planning and downtime.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The most valuable feature of Fortinet FortiGate SWG is inspection."
"The most valuable feature is the deep inspection for traffic, which is capable of identifying zero-day attacks."
"The user interface is intuitive. Anyone can configure the firewall with little knowledge of the product. The back-end is robust with good security."
"The most valuable feature is the policy routing and application control."
"We recommend FortiGate Next Generation Firewall to people from the SMB segment looking for a cost-effective and single-box solution."
"The fact that Fortinet FortiGate IPS can prevent and log malicious intrusions, tries, and attempts is great."
"FortiGate is very simple to manage and easy to use."
"Anti-Spam web content filterinG."
"The most valuable feature of the Hillstone E-Series is its user-friendliness."
"Very reliable solution with good scalability and straightforward implementation."
"With Hillstone, TCO and ROI are very good, it's an easy sale."
"This solution has two main features that we find very valuable; a threat-intelligence option, and a web/application filtering option."
"I am impressed with the application filtering feature."
"The most valuable features of the Hillstone E-Series are its hardware capacity, innovation, and the throughput that the hardware can take."
"Stability-wise, I rate the solution a ten out of ten."
"Working with the Hillstone E-Series has, from a remote perspective, allowed me to give my clients secure connectivity from a remote location to their offices or their servers."
"We previously had Check Point and eventually compared it with the Palo Alto screening, which proved that Palo Alto was the best."
"The machine learning in the core of the firewalls, for inline, real-time attack prevention, is very important to us. With the malware and ransomware threats that are out there, to keep abreast of and ahead of those types of attacks, it's important for our devices to be able to use AI to distinguish when there is malicious traffic or abnormal traffic within our environment, and then notify us."
"The effectiveness of this technology improves with each release, bolstering confidence in the product's ability to provide robust security."
"Some of the valuable features in this solution are traffic monitoring, GUI functionality, and it is very easy to troubleshoot if there is any problem that happens."
"Flexible and integrates well with apps and other security tools."
"I found Palo Alto NG firewalls more intuitive compared to other products."
"The Unified Threat Management (UTM) module, which consists of the basic firewall and IPS services, is what the majority of our customers use in Palo Alto Firewall."
"We found, based on the submissions, that Palo Alto seemed to be the one that had the most complete solution."
 

Cons

"The solution's stability should be improved because it is extremely unstable."
"I think they could improve the monitoring."
"The solution’s stability could be improved because we sometimes faced some drops."
"WAN load-balancing could be a lot better at detecting when a link is poor or inconsistent, and not just flat out dead."
"They should provide us with a CSV number for patch updates. It will help us block specific signatures as well."
"I have contacted the support from Fortinet FortiGate IPS. The service was good but the speed could be better."
"Performance on the box and technical support are areas where Fortinet FortiGate can be improved."
"I find the management console not very straightforward, so that's an area where Fortinet FortiGate can improve. They should simplify it and make it more user-friendly."
"I am not sure if this solution offers active directory integration. Adding that feature will definitely be an advantage."
"The tool provides just a general report. It does not provide a granular report. Hence, the tool should work on its reporting feature."
"SSL VPN license cost is not cheap."
"The tool needs to improve its price."
"Having frequent live webinars on a monthly basis would really help."
"The solution doesn't have a web proxy built into the system like Sophos. This is something they should work to change."
"The current usage reporting is very basic. I would like to be able to access more granular data."
"I am not sure if this solution offers active directory integration. Adding that feature will definitely be an advantage."
"With regards to support, they have a lot of things to improve."
"The configuration part could be improved. It's very difficult to configure. It doesn't have a user-friendly interface. You have to know Palo Alto deeply to use it."
"The solution could be simplified."
"The VPN connectors should be better. We had some challenges in terms of the VPN with Palo Alto Networks NG Firewall, and that's one of the main reasons why we moved to Sophos. Its load handling can also be improved. There were challenges when traffic was high. During peak business hours, it did not function very well. There was a lot of slowness, and the users used to complain, especially when they were connecting from outside. We even reported this to the support team. Their support should also be improved. Technical support was a bit of a concern while using this solution. We didn't get very good support from the Palo Alto team."
"Palo Alto Networks NG Firewalls work slowly for vulnerability management. Its performance could be faster."
"I am in GCC in the Middle East. The support that we are getting from Palo Alto is disastrous. The problem is that the support ticket is opened through the distributor channel. Before opening a ticket, we already do a lot of troubleshooting, and when we open a ticket, it goes to a distributor channel. They end up wasting our time again doing what we have already done. They execute the same things and waste time. The distributor channel's engineer tries to troubleshoot, and after spending hours, they forward the ticket to Palo Alto. It is a very time-consuming process. The distributor channels also do not operate 24/7, and they are very lazy in responding to the calls."
"The configuration framework for Palo Alto Networks Next-Generation firewalls should be simplified, particularly for applications like ASG authentication."
"Their support is very limited. It's limited compared to the competitors."
 

Pricing and Cost Advice

"The tool's pricing is neither cheap nor expensive. Overall, I find it to be competitive in the market."
"In the Asian economy in which we operate, FortiGate is expensive."
"FortiGate Next-Generation Firewall is cheaper than Cisco or CheckPoint."
"Fortinet costs are 25% lower than the high-cost provider. There is an equipment cost and a recurring monthly cost for licenses and technical support."
"By default, they give SD-WAN along with the firewall. They don't have separate licensing for the SD-WAN functionality. However, they have security licenses that are sold separately on a subscription basis. Customers can consume these security features to protect their users from internet traffic."
"The price of FortiGate is comparable to that of most other firewall solutions and is more affordable than Cisco."
"The pricing of the solution is very competitive."
"It is affordable. Palo Alto is much more expensive than Fortinet."
"The cost per year for licensing, and hardware, is approximately $850 for the basic plan."
"Hillstone's pricing is economical and neither very high nor very low."
"The tool's pricing is reasonable. It depends on the model. The product's pricing is around 600 USD. You need to buy a software license to activate the features. You need to pay around 150 USD for that."
"The licensing model is very complex with many subcategories of licenses you can purchase. They could make it more simplified for customers to understand."
"The Palo Alto solution is actually not expensive. It was comparable to the old firewall manufacturers that we were using. From the benefits that we have gotten out of the Palo Alto products, it is well worth the difference in cost, even though the difference in cost is not much at all."
"These firewalls are not cheap, but they have a reasonable licensing model."
"Palo Alto Networks NG Firewalls are expensive compared to WatchGuard XTM firewalls."
"There is an advantage to going with the high availability pair licensing model versus the standalone. It gives you a high availability pair, but the pricing is only a slight increase over a single system. It makes sense to take a look at your add-on functionality, like the Applications and Threats subscription and URL protection subscription. On the user side, I might want everything. However, on the server side, I might not need very much. I might want the Applications and Threats subscription and not much else. So, you don't have to buy all the bells and whistles for every firewall. Depending on what the function is, there are ways around it."
"It's very expensive. However, we usually use all of the subscriptions and threat alerts on any firewall that uses the internet. For each edge security endpoint, we use all subscriptions. Otherwise, we just utilize the threat alert, the antivirus, WildFire, etc."
"In terms of price, the user finds it expensive, rating it around nine."
"Active/Passive mode is very redundant, but they require you to buy all the associated licensing for both firewalls, which is kind of a waste of money because you are really only using the services on one firewall at a time."
"The solution is expensive."
report
Use our free recommendation engine to learn which Firewalls solutions are best for your needs.
893,221 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
10%
Comms Service Provider
10%
Manufacturing Company
9%
Financial Services Firm
7%
Comms Service Provider
14%
Construction Company
12%
Financial Services Firm
11%
Manufacturing Company
8%
Computer Software Company
10%
Manufacturing Company
9%
Financial Services Firm
8%
Comms Service Provider
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business367
Midsize Enterprise135
Large Enterprise193
By reviewers
Company SizeCount
Small Business9
Midsize Enterprise1
By reviewers
Company SizeCount
Small Business76
Midsize Enterprise56
Large Enterprise85
 

Questions from the Community

Which is the better NGFW: Fortinet Fortigate or Cisco Firepower?
When you compare these firewalls you can identify them with different features, advantages, practices and usage a...
What is the biggest difference between Sophos XG and FortiGate?
From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know...
What are the biggest technical differences between Sophos UTM and Fortinet FortiGate?
As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite ...
What needs improvement with Hillstone E-Series?
We received an update for the tool in July. The update was provided for the tool as there was a problem with the fire...
What is your primary use case for Hillstone E-Series?
I use the solution in my company for site-to-site VPN, SSL VPNs, URL filtering, IPS, IDS and all the other features w...
What advice do you have for others considering Hillstone E-Series?
Our company did not use the tool's micro-segmentation features. There were no issues while integrating the tool. I ha...
What is a better choice, Azure Firewall or Palo Alto Networks NG Firewalls?
Azure Firewall Vs. Palo Alto Network NG Firewalls Both solutions provide stellar stability and security. Azure Firew...
Features comparison between Palo Alto and Fortinet firewalls
In the best tradition of these questions, Feature-wise both are quite similar, but each has things it's better at, it...
Which is better - Palo Alto Networks NG Firewalls or Sophos XG?
Palo Alto Networks NG Firewalls have both great features and performance. I like that Palo Alto has regular threat si...
 

Also Known As

Fortinet FortiGate Next-Generation Firewall
No data available
Palo Alto NGFW, Palo Alto Networks Next-Generation Firewall
 

Overview

 

Sample Customers

Amazon Web Services, Microsoft, IBM, Cisco, Dell, HP, Oracle, Verizon, AT&T, T-Mobile, Sprint, Vodafone, Orange, BT Group, Telstra, Deutsche Telekom, Comcast, Time Warner Cable, CenturyLink, NTT Communications, Tata Communications, SoftBank, China Mobile, Singtel, Telus, Rogers Communications, Bell Canada, Telkom Indonesia, Telkom South Africa, Telmex, Telia Company, Telkom Kenya
Bank of China Macao, Instituto Tecnológico Bolivariano, Ministry of Labor in San Salvador, FEDCO
SkiStar AB, Ada County, Global IT Services PSF, Southern Cross Hospitals, Verge Health, University of Portsmouth, Austrian Airlines, The Heinz Endowments
Find out what your peers are saying about Hillstone E-Series vs. Palo Alto Networks NG Firewalls and other solutions. Updated: April 2026.
893,221 professionals have used our research since 2012.