No more typing reviews! Try our Samantha, our new voice AI agent.

Hillstone E-Series vs Palo Alto Networks NG Firewalls comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Jan 25, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Fortinet FortiGate
Sponsored
Ranking in Firewalls
1st
Average Rating
8.4
Reviews Sentiment
6.8
Number of Reviews
590
Ranking in other categories
Secure Web Gateways (SWG) (2nd), Intrusion Detection and Prevention Software (IDPS) (1st), Software Defined WAN (SD-WAN) Solutions (1st), WAN Edge (1st), ZTNA (1st), Unified Threat Management (UTM) (1st)
Hillstone E-Series
Ranking in Firewalls
39th
Average Rating
9.2
Reviews Sentiment
7.7
Number of Reviews
10
Ranking in other categories
SSL VPN (9th), Enterprise Infrastructure VPN (22nd)
Palo Alto Networks NG Firew...
Ranking in Firewalls
6th
Average Rating
8.6
Reviews Sentiment
7.2
Number of Reviews
198
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of April 2026, in the Firewalls category, the mindshare of Fortinet FortiGate is 17.2%, down from 21.3% compared to the previous year. The mindshare of Hillstone E-Series is 0.6%, up from 0.3% compared to the previous year. The mindshare of Palo Alto Networks NG Firewalls is 5.2%, up from 3.5% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Firewalls Mindshare Distribution
ProductMindshare (%)
Fortinet FortiGate17.2%
Palo Alto Networks NG Firewalls5.2%
Hillstone E-Series0.6%
Other77.0%
Firewalls
 

Featured Reviews

Abhinandan Yadav - PeerSpot reviewer
Network Security Engineer at Arrow PC Network Pvt Ltd
Unified security and sd-wan have improved uptime and cut wan costs for multi-site branches
Users report stability issues in certain versions, which requires regular updates. Real-world attacks have also highlighted the need for urgent patching of vulnerabilities.Fortinet FortiGate, while a powerful and feature-rich web firewall, could improve in areas like firmware stability, documentation, and ease of use. The learning curve can be steep for some users. For beginners, support quality can vary, and frequent updates with occasional vulnerabilities call for careful patch management. However, once Fortinet FortiGate is configured, it remains highly reliable and efficient. Customer support needs improvement, as I find it very slow, with reports from other users reflecting that customer support is inadequate.
TahirMahmood - PeerSpot reviewer
IT Manager at Zubair Feeds
Offers good features like URL filtering, IPS, and IDS to users
We received an update for the tool in July. The update was provided for the tool as there was a problem with the firewall, where too much memory was consumed, and the firewall was hanging a lot. When we updated the tool's features, everything became okay. The tool only had some memory-related problems. It took the tool a month to fix the issues.
Abhinandan Yadav - PeerSpot reviewer
Network Security Engineer at Arrow PC Network Pvt Ltd
Advanced visibility has transformed security policies and provides proactive threat prevention
Palo Alto Networks NG Firewalls are powerful, but there are areas for improvement that could enhance their effectiveness, such as cost and licensing models. One of the main challenges we face is the high cost, especially for small to mid-sized businesses (SMBs), with licensing for features such as threat prevention, URL filtering, and WildFire being quite expensive. Additionally, centralized management with Panorama is a dependency for managing multiple firewalls, leading to added costs and complexity, and the built-in centralized management features could be made more user-friendly. Moreover, the learning curve associated with the initial setup and advanced configuration including NAT, decryption, and routing can be complex for new users, and enhancements in logging and reporting could also improve the user experience. There are a few more areas where improvements could streamline operations, such as optimizing commit times. Sometimes committing changes takes a noticeable amount of time, particularly for larger configurations, so a faster commit option would significantly help during urgent troubleshooting. Easier policy troubleshooting is necessary as well. Even though logs are detailed, finding the exact rule match and issue can still be time-consuming in complex environments, so having automated policy simulation and a recommendation tool would expedite troubleshooting. Additionally, better default templates and best practices for SMB data centers and branch offices would speed up deployment and reduce errors. Enhancing integration visibility through a unified dashboard would simplify monitoring, and improving the firmware upgrade process to allow for a more seamless zero downtime upgrade would also enhance operations, as upgrades are stable but typically require careful planning and downtime.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"I appreciate the ease of use, ease of setup, and the different abilities it has; I have been very pleased with it over SonicWall, the interface of Fortinet FortiGate is a lot easier to use and more robust, plus their VPN option is much better."
"The next-gen features, the unified threat management capabilities are something that just about everybody is interested in at this point."
"The UTM feature is quite good. FortiAP is easy to deploy because both Fortigate and FortiAP are under the same brand. Otherwise, you need to do more work on the configuration."
"The solution effectively controls browsing traffic."
"With Fortinet FortiGate, we improved security significantly."
"Buy FortiGate for a hassle free network management and excellent ROI."
"The simplicity of the configuration and the stability of the product are most valuable. The VPN concentrator is very useful."
"Fortinet FortiGate is a stable solution."
"This solution has two main features that we find very valuable; a threat-intelligence option, and a web/application filtering option."
"Five out of five ROI."
"The installation is easy, we have not had any complaints from our customers."
"This solution has two main features that we find very valuable; a threat-intelligence option, and a web/application filtering option. The technical support team are very good and very quick."
"Stability-wise, I rate the solution a ten out of ten."
"Working with the Hillstone E-Series has, from a remote perspective, allowed me to give my clients secure connectivity from a remote location to their offices or their servers."
"The most valuable feature of the Hillstone E-Series is its user-friendliness."
"If an organization is not looking for a web proxy, it's a very, very good product."
"There are plenty of features available in this solution, such as attack blocker and spam blocker, and it is very robust and in-depth."
"Technical support is proactive in letting us know when there are updates that need to be made to the system."
"The most valuable features are Wildfire, URL filtering, and IPS."
"When we put it on the border, it was blocking everything that we were getting ahead of time, and we weren't getting any hits. This includes URL filtering, spam prevention, and anti-virus."
"Application control, IPS, and sandboxing towards the cloud are the most valuable features. It is a very user-friendly product with a very easy-to-use interface."
"The packet level inspection is the most valuable feature. The traffic restriction features allow us to restrict the sub-features of any platform."
"Application control, IPS, and sandboxing towards the cloud are the most valuable features; it is a very user-friendly product with a very easy-to-use interface."
"The application control portion of the solution is its most valuable aspect."
 

Cons

"The solution should allow more user-friendly integrations or deployment"
"Its filtering is sometimes too precise or strict. We sometimes have to bypass and authorize some of the sites, but they get blocked. We know that they are trusted sites, but they are blocked, and we don't know why."
"It would be nice if backups could more easily migrate between different models."
"We had a minor problem where there was a major system upgrade on the hardware platform and the Mac client was not available as soon as it might have been."
"Fortinet needs more memory to save the log files. We need it to save the logs on the hardware and not in the cloud."
"The SD-WAN functionality is a bit overly complicated and not fully documented."
"Fortinet currently has many products bundled with FortiGate including the basic firewall and load balancer, and I think that that they need to have separate product portfolios for each of these specialized services."
"The documentation available for Fortinet FortiGate should be improved"
"The tool provides just a general report. It does not provide a granular report. Hence, the tool should work on its reporting feature."
"The tool needs to improve its price."
"The licensing model is very complex with many subcategories of licenses you can purchase. They could make it more simplified for customers to understand."
"I am not sure if this solution offers active directory integration. Adding that feature will definitely be an advantage."
"Support from Hillstone E-Series has a shortcoming that needs improvement."
"SSL VPN license cost is not cheap."
"The solution doesn't have a web proxy built into the system like Sophos. This is something they should work to change."
"The current usage reporting is very basic."
"Palo Alto is like Microsoft. It has varied features, but it's too technical."
"There is a web-based GUI to do management, but you need to know how the machine or firewall operates. There are hundreds of different menus and options. I have used other firewalls before. Just implementing or designing a policy with Palo Alto, if you want a certain port to be open to different IP addresses, then that could take 20 to 25 clicks. That is just testing it out. It is quite complex to do. Whereas, with other places, you tell it, "Okay, I want this specific port open and this IP address to have access to it." That was it. However, not with Palo Alto, which is definitely more complex."
"When there was change from IPv4 to IPv6, some of the firewalls still didn't support IPv6. In North America, we have seen most customers are using IPv6, as they are getting the IPv6 IPs from their ISPs. Sometimes, when they go through the firewall, it denies the traffic."
"The reporting and visibility are phenomenal, but you don't get that information out of the box. They can email reports regularly, and the functionality is all there. However, a lot of it is based on an older model for email, where customers have in-house email servers. The small and medium-sized business customers I deal with are moving toward Office 365 or some other cloud-based mail and not maintaining their own internal mail servers."
"The only thing that is a little strange is in Policy-Based Forwarding."
"In Mexico, Palo Alto's discounts are significantly lower than Cisco's. They are also more expensive – about 15% or 20% – than Cisco, but their platforms are very similar."
"The areas that need to improve are network protection and user identification."
"The solution needs some management tool enhancements. It could also use more reporting tools."
 

Pricing and Cost Advice

"The product is expensive compared to one of its competitors."
"Fortinet FortiGate IPS' licensing is quite simple to understand."
"It's not the cheapest, but it's value for money. Given everything we've got out of it: the DMZ port, the VPN, and the high availability, it's a pretty reasonable price."
"The price for the device and software is high. However, the solution is of good quality and has a lot of features."
"The price is fine."
"Its pricing is fine. It is on a yearly basis. Other than the licensing fee, there is no extra fee."
"It is an expensive solution."
"The price is high compared to some of the other solutions."
"The tool's pricing is reasonable. It depends on the model. The product's pricing is around 600 USD. You need to buy a software license to activate the features. You need to pay around 150 USD for that."
"The licensing model is very complex with many subcategories of licenses you can purchase. They could make it more simplified for customers to understand."
"Hillstone's pricing is economical and neither very high nor very low."
"The cost per year for licensing, and hardware, is approximately $850 for the basic plan."
"It can be quite expensive, but there's a good incentive for the three-year contracts. The part that is especially confusing is for the virtual environment. The credits or the licensing system can be very confusing."
"Palo Alto Networks NG Firewalls are expensive."
"Palo Alto is not a cheap solution but it is competitive when it comes to subscriptions."
"We were very happy when they released the PA-440s. Previously, we had been looking at the PA-820s, which were a bit of overkill for us. Price-wise and capability-wise, the PA-820s hit the nail on the head for us."
"This is not the firewall to choose if you are looking for the cheapest and fastest solution. Palo Alto NGFWs are expensive. By the time you license them up and get them fully functional, you have spent quite a bit of money. If it is a small branch office with 10 to 15 users, that is hard to justify."
"I don't know about the price of the platform or the license fees, as the finance department deals with that. I only bill for the materials involved in the design."
"There is an advantage to going with the high availability pair licensing model versus the standalone. It gives you a high availability pair, but the pricing is only a slight increase over a single system. It makes sense to take a look at your add-on functionality, like the Applications and Threats subscription and URL protection subscription. On the user side, I might want everything. However, on the server side, I might not need very much. I might want the Applications and Threats subscription and not much else. So, you don't have to buy all the bells and whistles for every firewall. Depending on what the function is, there are ways around it."
"This is an expensive product, which is why some of our customers don't adopt it."
report
Use our free recommendation engine to learn which Firewalls solutions are best for your needs.
886,719 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
11%
Comms Service Provider
10%
Manufacturing Company
8%
Financial Services Firm
7%
Comms Service Provider
13%
Construction Company
12%
Financial Services Firm
10%
Manufacturing Company
8%
Computer Software Company
10%
Manufacturing Company
9%
Financial Services Firm
8%
Educational Organization
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business366
Midsize Enterprise135
Large Enterprise192
By reviewers
Company SizeCount
Small Business9
Midsize Enterprise1
By reviewers
Company SizeCount
Small Business75
Midsize Enterprise56
Large Enterprise85
 

Questions from the Community

Which is the better NGFW: Fortinet Fortigate or Cisco Firepower?
When you compare these firewalls you can identify them with different features, advantages, practices and usage a...
What is the biggest difference between Sophos XG and FortiGate?
From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know...
What are the biggest technical differences between Sophos UTM and Fortinet FortiGate?
As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite ...
What needs improvement with Hillstone E-Series?
We received an update for the tool in July. The update was provided for the tool as there was a problem with the fire...
What is your primary use case for Hillstone E-Series?
I use the solution in my company for site-to-site VPN, SSL VPNs, URL filtering, IPS, IDS and all the other features w...
What advice do you have for others considering Hillstone E-Series?
Our company did not use the tool's micro-segmentation features. There were no issues while integrating the tool. I ha...
What is a better choice, Azure Firewall or Palo Alto Networks NG Firewalls?
Azure Firewall Vs. Palo Alto Network NG Firewalls Both solutions provide stellar stability and security. Azure Firew...
Features comparison between Palo Alto and Fortinet firewalls
In the best tradition of these questions, Feature-wise both are quite similar, but each has things it's better at, it...
Which is better - Palo Alto Networks NG Firewalls or Sophos XG?
Palo Alto Networks NG Firewalls have both great features and performance. I like that Palo Alto has regular threat si...
 

Also Known As

Fortinet FortiGate Next-Generation Firewall
No data available
Palo Alto NGFW, Palo Alto Networks Next-Generation Firewall
 

Overview

 

Sample Customers

Amazon Web Services, Microsoft, IBM, Cisco, Dell, HP, Oracle, Verizon, AT&T, T-Mobile, Sprint, Vodafone, Orange, BT Group, Telstra, Deutsche Telekom, Comcast, Time Warner Cable, CenturyLink, NTT Communications, Tata Communications, SoftBank, China Mobile, Singtel, Telus, Rogers Communications, Bell Canada, Telkom Indonesia, Telkom South Africa, Telmex, Telia Company, Telkom Kenya
Bank of China Macao, Instituto Tecnológico Bolivariano, Ministry of Labor in San Salvador, FEDCO
SkiStar AB, Ada County, Global IT Services PSF, Southern Cross Hospitals, Verge Health, University of Portsmouth, Austrian Airlines, The Heinz Endowments
Find out what your peers are saying about Hillstone E-Series vs. Palo Alto Networks NG Firewalls and other solutions. Updated: April 2026.
886,719 professionals have used our research since 2012.