Try our new research platform with insights from 80,000+ expert users

IPFire vs Untangle NG Firewall comparison

Sponsored
 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Fortinet FortiGate
Sponsored
Ranking in Firewalls
2nd
Average Rating
8.4
Reviews Sentiment
7.2
Number of Reviews
318
Ranking in other categories
Software Defined WAN (SD-WAN) Solutions (1st), WAN Edge (1st)
IPFire
Ranking in Firewalls
37th
Average Rating
8.0
Number of Reviews
1
Ranking in other categories
No ranking in other categories
Untangle NG Firewall
Ranking in Firewalls
27th
Average Rating
8.6
Reviews Sentiment
7.2
Number of Reviews
24
Ranking in other categories
Unified Threat Management (UTM) (8th)
 

Mindshare comparison

As of March 2025, in the Firewalls category, the mindshare of Fortinet FortiGate is 20.8%, up from 17.8% compared to the previous year. The mindshare of IPFire is 1.6%, up from 0.1% compared to the previous year. The mindshare of Untangle NG Firewall is 1.1%, down from 1.4% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Firewalls
 

Featured Reviews

EhabAli - PeerSpot reviewer
Efficient, user-friendly, and affordable
In the past, NSS Labs was utilized to test files and verify the numbers and datasheets. It would be beneficial to have an organization or testing lab that can verify the numbers in our datasheets since changes are frequently made, which can be inconvenient for review. For instance, when comparing different competitors such as Forcepoint, Palo Alto, and Check Point, the throughput or numbers in the datasheet may be lower than the actual numbers. Conversely, Fortinet typically reports very high numbers, but they cannot be replicated in the real world. Therefore, it would be advantageous for them to partner with a neutral testing organization such as NSS Labs to validate these numbers, thus providing more credibility and comfort to everyone regarding the accuracy of the datasheets. For the migration, everyone has a firewall in use and I am selling Fortinet. Typically, I am replacing another firewall. Previously, there was a tool available to convert configurations from one firewall, such as Palo Alto, to Fortinet, but this tool is no longer free. If it could be made free again, it would be very beneficial. This tool shows a lot of promise and is very good. Making it free would help many companies deliver their products in a more efficient and integrated way. It would also be more valuable to include the tool with the firewall package or license instead of having to pay extra for it. Paying extra puts more pressure on small companies to deliver the firewall and complete the configuration, especially if they have hundreds or thousands of policies. It's very painful to move through these policies line by line. The stability has room for improvement. When it comes to Secure SD-WAN, everything is fine. They are going the right way. SD-WAN is very promising. They can provide the SD-WAN solution separately, but they will not take this approach because even the smallest firewall can support the features, so there is no need to have a separate service or appliance. They are following the right steps, and there is nothing to be improved. Feature-wise, I'm really satisfied with the new release, and the features they have added. For now, it's fine.
Amr Fouad - PeerSpot reviewer
Prevented any kind of hacking and enables us to comply with customer requirements
We use the solution for firewall, intrusion prevention and detection. We installed it in order to comply with customers requirements IPFire has prevented any kind of hacking and enables us to comply with customer requirements. Accessing the internet was a bit complicated. We opted for this…
MatthewSmith3 - PeerSpot reviewer
Thorough with all-in-one security functions and good affordability
The all-in-one gateway security functions and the ability to install it on generic equipment stand out. The centralized management console is great. I can template my installations and configurations. My ability to monetize it as a gateway security appliance to offer enhanced service offerings allows me to increase our price point. I provide it as a managed device to many of our clients. I take on the initial costs and charge them a monthly fee. They have threat detection.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Centralized monitoring, policy management, and virtualized appliances allow us to take control over our public and private infrastructure."
"It can expand easily."
"The FortiGate controls the user's activities and maximizes my bandwidth use overall."
"Fortigate represents a really scalable way of delivering perimeter network security, some level of layer 7 security, WAF, and also a way to create a meshed ADVPN solution."
"The most valuable feature of Fortinet FortiGate is the simple configuration."
"FortiGate's web and URL filtering are unlike any other firewall I've used. The functionality of URL filtering in those solutions is problematic because everything is encrypted, and firewalls can't break that encryption protocol. Fortinet has an SSL proxy, so the encryption is done before the packet ever leaves the FortiGate. The URL filter is definitely one of the most helpful features."
"Security management tool that's easy to integrate and easy to work with. No issues found with its stability and scalability."
"The SD-WAN feature is the most valuable. This feature evolved from link load balancing. It has helped us in terms of our uptime and privatizing applications whenever we experience an outage. The SD-WAN feature has been a plus for us. Two-factor authentication has allowed us to add more users in terms of remote working. We have two-factor authentication for remote workers to authenticate them before they get on the network."
"IPFire has prevented any kind of hacking and enables us to comply with customer requirements."
"The all-in-one gateway security functions and the ability to install it on generic equipment stand out."
"None of my clients has had a ransom or breach using Untangle."
"The Untangle firewall is a software firewall, so it runs on generic hardware. We found that was probably the best feature, and it's why we chose it when we started using it three years ago."
"The web blocking for my clients and the application control are valuable."
"Easy to set up and easy to integrate."
"It is not attached to an appliance, meaning if you get a good PC/server, then you can already run a firewall."
"Web Filter is effective, Web Cache offers bandwidth savings, and the VPN setup is easy."
"The product is easy to implement."
 

Cons

"The solution is very expensive."
"There are some complex administration tasks in their administration portal. That needs to be improved."
"While FortiGate is cheaper than most other solutions, we're seeing increased license renewal costs. Most of our clients are asking for more significant discounts because the price is going up."
"The solution could have licensing fees reduced in the future."
"The logs need to be better. They need to be more visible and easier to access."
"There can be more security in hybrid implementations. When a customer has a hybrid environment where some parts are in the cloud, we need a consistent security solution for such scenarios."
"Fortinet FortiGate could improve by having more capabilities for troubleshooting VPN connections. For example, I do get some feedback about the current status, but I could use some history and logging of important events. The information is logged in our Syslog server, but I could use that information from the device. If they could provide a GUI to have some more insight on what's going with my VPN would be useful."
"There is one big configuration file with no separations for the unique VDOMs. Maybe they could separate individual VDOM configuration files with the root VDOM configuration file referencing the individual VDOM config files.​"
"Accessing the internet was a bit complicated."
"We have a minor issue when assigning IP addresses in the ARP tables. You should be able to go into the ARP tables, look at the IP address and say, "Nope, they need to be on this side on this IP address." The ability to set a DHP reservation from the ARP tables would be great. It's no big deal, but it would be nice to have."
"The user interface, training, and general product innovation need improvement. Enhancements could also be made to their reporting and accessibility."
"It would be much easier if there was a mobile app."
"There is room for improvement in the logs. Like with Cisco, I can do almost everything and know almost anything about what's running. Untangle works very much out of the box. It's very user-friendly, but it's not engineer-friendly. So, it's good for a home user. For something fairly easy, but at the same time, with good technology to have at home, because at home, I'm not a millionaire or anything like that. So it's not like I'm worried to get hacked. I didn't want something like a Cisco firewall; it would be a bit overkill to have at home. So that's why I went for Untangle. But it lacks a few features. It's just a tick-box kind of thing. So they have apps and turn on and off the apps. The VPN's configuration is all very ticked. They have a few custom configurations, but it's not that much."
"The common center facility that Untangle provides should be available on-premises. There are great corporations here in Mexico that like the Untangle solution, but they don't like the fact that the monitoring and access to the appliance are in the cloud. They request for the common center facility to be available and installed on-premises."
"On their low-end appliance, they could have more memory and the largest storage space. The low-end appliance comes with a too-small hard drive, and it could use a little extra room. It only comes with about 4 gigs or 8 gigs of memory, and the hardware space is only 40 gigs, which is really small."
"The solution's licensing count could be improved."
"Whenever there are a large number of endpoint VPN clients, connectivity becomes slow."
 

Pricing and Cost Advice

"The price is really low. It's cheap in comparison to the cost of Cisco or CheckPoint, for example."
"Before choosing a piece of equipment you have to take into account the cost-benefit offered by each one. Sometimes it is not worth paying a very cheap price to have a minimum level of security."
"The price of Fortinet FortiGate is better than Cisco, Check Point, and Palo Alto. In terms of pricing, it's probably a better-priced firewall solution overall."
"The price of FortiGate is good."
"I think the price of Fortinet FortiGate is very reasonable."
"Its pricing is good. It's average or normal as compared to Palo Alto and Check Point firewalls."
"The price of the license and warranty can be better because it is very expensive."
"FortiGate's pricing falls within the mid-range when compared to other leading firewall solutions."
Information not available
"For the home use, it's cheap."
"Usually, it's about $350 a year for 12 users, and it's about $600 for 50 users. It's very reasonable as compared to the others. One of the reasons is that they're all open-source. You just buy their appliance and put it in until it dies. Because it's run under open platforms, mine seems to always work on older equipment. I've taken old equipment and put a new hard disk in it. I have taken about nine-year-old computers and put their operating system on them, and ran them like a champ. The only thing that changed was the hard drive because I don't trust a hard drive that's more than three to four years old."
"It is not expensive. It is cheaper than Fortinet."
"We pay $350 USD per year for the solution. There are no additional costs. As long as you're not using a physical appliance, that's all you need."
"It is not expensive. The best part is that it is based on the pay-per-use kind of scenario. An increase or decrease in the number of people doesn't make any difference. We are really happy about using this particular scenario."
"It is the most cost-effective to use."
"The pricing model is better than with SonicWall."
"The setup cost is about $2000 to $3000 per year."
report
Use our free recommendation engine to learn which Firewalls solutions are best for your needs.
842,388 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Educational Organization
22%
Computer Software Company
14%
Comms Service Provider
7%
Manufacturing Company
6%
Comms Service Provider
23%
Computer Software Company
14%
Government
9%
Educational Organization
8%
Computer Software Company
14%
Comms Service Provider
11%
Government
7%
Educational Organization
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
 

Questions from the Community

Which is the better NGFW: Fortinet Fortigate or Cisco Firepower?
When you compare these firewalls you can identify them with different features, advantages, practices and usage a...
What is the biggest difference between Sophos XG and FortiGate?
From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know...
What are the biggest technical differences between Sophos UTM and Fortinet FortiGate?
As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite ...
What needs improvement with IPFire?
Accessing the internet was a bit complicated.
What is your primary use case for IPFire?
We use the solution for firewall, intrusion prevention and detection. We installed it in order to comply with custome...
What advice do you have for others considering IPFire?
I recommend the solution. Overall, I rate the solution an eight or nine out of ten.
What do you like most about Untangle NG Firewall?
The product helps small and medium enterprises secure their networks from intrusions. It also has features like DNS b...
What needs improvement with Untangle NG Firewall?
The user interface, training, and general product innovation need improvement. Enhancements could also be made to the...
 

Also Known As

FortiGate 60b, FortiGate 60c, FortiGate 80c, FortiGate 50b, FortiGate 200b, FortiGate 110c, FortiGate, Fortinet Firewall
No data available
No data available
 

Overview

 

Sample Customers

Amazon Web Services, Microsoft, IBM, Cisco, Dell, HP, Oracle, Verizon, AT&T, T-Mobile, Sprint, Vodafone, Orange, BT Group, Telstra, Deutsche Telekom, Comcast, Time Warner Cable, CenturyLink, NTT Communications, Tata Communications, SoftBank, China Mobile, Singtel, Telus, Rogers Communications, Bell Canada, Telkom Indonesia, Telkom South Africa, Telmex, Telia Company, Telkom Kenya
1. Siemens 2. IBM 3. Cisco 4. Dell 5. HP 6. Intel 7. Oracle 8. Google 9. Microsoft 10. Amazon 11. Apple 12. Facebook 13. Twitter 14. Netflix 15. Adobe 16. SAP 17. VMware 18. Juniper Networks 19. Ericsson 20. Nokia 21. AT&T 22. Verizon 23. T-Mobile 24. Vodafone 25. Orange 26. Deutsche Telekom 27. British Telecom 28. Comcast 29. Time Warner 30. Sony 31. Samsung 32. LG
North American Stamping Group, Cerebral Palsy of North Jersey (CPNJ), Brown County Schools, IN, City of Bridgeton, MO, Lancaster County, SC, Vision Charter School, Clay County Sheriff’s Department, NC, Breakwater School, Boys & Girls Club of Manchester, NH, Admiral Farragut Academy, Flow Companies, No Ordinary Hotel, KECdesign,
Find out what your peers are saying about Netgate, Fortinet, OPNsense and others in Firewalls. Updated: March 2025.
842,388 professionals have used our research since 2012.