Try our new research platform with insights from 80,000+ expert users

Prisma Access by Palo Alto Networks vs Prisma SD-WAN comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Oct 6, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

iboss
Sponsored
Ranking in Secure Access Service Edge (SASE)
11th
Average Rating
8.6
Reviews Sentiment
7.1
Number of Reviews
14
Ranking in other categories
Secure Web Gateways (SWG) (12th), Internet Security (4th), Web Content Filtering (4th), Cloud Access Security Brokers (CASB) (8th), ZTNA as a Service (12th)
Prisma Access by Palo Alto ...
Ranking in Secure Access Service Edge (SASE)
1st
Average Rating
8.2
Reviews Sentiment
7.1
Number of Reviews
62
Ranking in other categories
Secure Web Gateways (SWG) (3rd), Cloud Access Security Brokers (CASB) (1st), Enterprise Infrastructure VPN (5th), ZTNA as a Service (2nd)
Prisma SD-WAN
Ranking in Secure Access Service Edge (SASE)
8th
Average Rating
8.8
Reviews Sentiment
7.3
Number of Reviews
19
Ranking in other categories
Software Defined WAN (SD-WAN) Solutions (6th), WAN Edge (6th)
 

Mindshare comparison

As of February 2025, in the Secure Access Service Edge (SASE) category, the mindshare of iboss is 1.5%, up from 1.2% compared to the previous year. The mindshare of Prisma Access by Palo Alto Networks is 17.9%, down from 19.7% compared to the previous year. The mindshare of Prisma SD-WAN is 2.1%, down from 3.2% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Secure Access Service Edge (SASE)
 

Featured Reviews

Matt Crockford - PeerSpot reviewer
It's easy to roll out, and their understanding of our business made it seamless
One aspect we value about iboss is its simplicity. Their customer service is brilliant, and they are super responsive and knowledgeable. It's easy to roll out, and their understanding of our business made it seamless. We were impressed by the solution's mental health function, which can detect if someone needs help. It scans what users are browsing and flags warning signs so we can check to see if they are okay. We've had to use it a couple of times. The user interface is highly intuitive. Our IT team picked it up with minimal training. It's arranged so that it's easy to find where things are. Another advantage is the single pane of glass console, which gives you visibility into what's happening. We're not fully there yet because we haven't implemented zero trust, but we're excited about the possibilities from the demos we've seen. We launched a POC of iboss' ChatGPT Risk Protection feature two weeks ago. AI is a great tool, but you need to be careful what you put into it. My biggest fear is employees inputting sensitive corporate information or customer PII data into one of these chatbots. I was impressed by our trial of the feature. It's exactly what we wanted. Now, when a user goes to ChatGPT, there's a banner warning them not to share information, and we can block conversations containing customer data like bank details and email addresses. I don't want to stop people from using it, but we need visibility. We've only tried it on a test group of 15 people. You can configure it to look for specific keywords or integrate it with your DLP policy if you have that configured
Partha Dash - PeerSpot reviewer
Makes us part of a bigger security ecosystem with updates taken care of for us, but pricing and support need work
There are definitely a number of things that could be improved. One of them is geographic coverage. China is still an issue because the solution does not operate there properly due to government regulations. I believe Palo Alto is trying pretty hard to get into partnerships with Alibaba and other cloud providers, but they do not have the same compelling offering in China that they have in the rest of the world. Businesses that are operating within China have to be very sure to evaluate the solution before making a buying decision. It is not an issue with Palo Alto, rather it is predominantly the result of government rules, but it's something that Palo Alto needs to work on. There is also room for improvement when it comes to latency in a couple of regions, including India and South America. They might have to increase their presence in those locations and come up with more modern cloud architectures. The third area is that, while Palo Alto has understood the essence of building capabilities around cloud technology and have come up with a CASB offering, that is a very new product. There are other companies that have better offerings for understanding cloud applications and have more graceful controls. That's something that Palo Alto needs to work on.
Libin Joseph - PeerSpot reviewer
Administration is very flexible for devices and policies; everything is in a single portal
In some areas, compared to other SD-WANs, Prisma SD-WAN has fewer features. First of all, sometimes, if one device is down, the other device will not come up. When there are two devices and we have created HA, that means one device gets a priority of 100 and the other is given 90. The 100 priority is active and the 90 is the backup. In some cases, the primary device is down, but the secondary device is not becoming active. In that case, we have to reboot the devices, causing an outage. I would also like to see improvement in the product training for customers. Palo Alto has not initiated very much training but they have to do so because this is a new product. If you have experience in a legacy environment, and you are moving to Prisma SD-WAN, you don't have a training framework. That is one of the disadvantages. Although they have a training portal, it is a read-only platform. They need training for engineers so that engineers can work very quickly and properly. And with software upgrades, sometimes the device does not come up and we have to do a manual restart. It doesn't happen every time, maybe one or two times out of 100. It's minimal but it does happen.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Our primary use case for this product is DLP,"
"Content filtering is the most useful feature of iboss."
"The solution has massively improved our security posture, giving us full visibility into what our staff does online."
"Iboss is a solution that prevents advanced persistent threats, and has a zero tolerance for attacks."
"From a use-case scenario, what I like the most is the plug-in. I like the fact that we can do the filtering of these devices offsite independent of the network they are connected to, and we do not have to have traffic coming back inside our network."
"The security aspect of the solution, particularly the malware behind it, is excellent. That's something that really helped us out. It's not just a simple proxy that just blocks the insights of potential threats that come on behind it. They do malware detection and that helps us a lot."
"iboss is easy to use despite its complexity. Multiple engineers manage it, but it's significantly more straightforward to administer than traditional VPNs and web proxies."
"The iboss system is highly reliable. The false positive rates are small compared to some other systems we've experienced through other partner agencies who use competing solutions."
"There is a system for monitoring the traffic. You can monitor the traffic of the connected people and point out any issues on the connection part."
"The most valuable features of the solution are in the areas of the secure remote access it provides while also being user-friendly."
"We have an application called ADEM that helps us troubleshoot network-related issues. It helps us to isolate an issue whether it is on the ISP level, endpoint level, or system access level."
"It's quite reliable and performs well for users."
"Security is absolutely spot-on, really top-notch. It's the result of all the components that come together, such as the HIP [Host Information Profile] and components like Forcepoint, providing end-user content inspection, and antivirus. It incorporates DLP features and that's fantastic because Prisma Access makes sure that all of the essential prerequisites are in place before a user can log in or can be tunneled into."
"The Autonomous Digital Experience Management (ADEM) offered by Palo Alto is a good reporting tool. It gives insights into how things are going within the network. It takes all the data from the users' endpoints and does an analysis, and it suggests changes as well."
"Prisma integrates well with Cortex XDR and Cortex Data Lake. My company has been also using Prisma Access in-house for nearly a year, and it integrates seamlessly."
"The solution has all its capabilities in a single cloud delivery platform which is great and it provides overall good protection."
"Prisma's analytics provide a lot of valuable data. I like the internet health chart that shows latency, dropped packets, MOS for data quality, etc. It also runs a continuous speed test in the background. I've used it multiple times to troubleshoot internet connections when the service provider has attempted to claim nothing is wrong with the circuit. It gives me data to send them showing we're not getting the speed we should, or there is constant packet loss."
"The security offered by the solution is pretty good."
"Prisma SD-WAN is recommended due to its comprehensive capabilities."
"The solution's most valuable feature is the visibility of the logs."
"Prisma SD-WAN is intuitive. We have a better idea of the different tools we can use and jump between the menus quickly."
"The dynamic routing in Prisma SD-WAN is high-speed and valuable because it quickly adjusts, so users do not realize the link is down."
"I like that the integration with Palo Alto is easy."
"When it comes to supporting large, complex, network architectures, it's a very simple architecture. The main component is the fabric. It's very easy to troubleshoot if there is an issue happening in the underlying network."
 

Cons

"Sometimes when you call in support, you get someone who is just following a sheet. It feels like a runaround. You feel that you are running into that support wall."
"To scale up, a new iboss Node Blade Chassis must be purchased."
"Fold that in with the risk intelligence they're getting from all of the different subscriptions they are a part of. Now, these security companies subscribe to things like emerging threats, databases, etc. You can fold all this intelligence to decide what's happening on an endpoint. I would love to see them start moving into that space. That would compete directly with Microsoft. Maybe that's why they haven't. Having that ability native within the solution would be great. The other area in which I would love to see improvement is more detailed descriptions of why they block websites."
"Sometimes, obviously, there are bugs."
"The solution could be stronger on the integration side and offer more cloud applications like G Suite or Oracle."
"SSL decryption: We had issues with learners using apps instead of using web browsers. This type of encryption is tough for any appliance in a BYOD environment."
"The dashboards for local use could be better."
"Iboss is growing so fast that it is often hard for them to keep up with the challenges."
"We are using the SaaS offering. We use our applications for microservices. We use Twistlock to scan containers, and it displays these results in Prisma, which is a good feature because we can see vulnerabilities with respect to these containers. We can see everything in a very detailed manner. However, when you have different environments for a single application, such as DEV, QA, PROD, and TEST, all these environments run multiple containers, which can lead to a very high number of containers. In such a scenario, it shows you the alerts for all those containers that have vulnerabilities. If you show the results of all the containers that share the same image, it is not going to add any value. Therefore, they should narrow down the alerts based on a container. It should show information for a single container. Otherwise, the person who is looking at the results gets the impression that he has to fix all these issues. This is something that they can improve."
"I would like to see support for custom applications."
"The documentation is generally good, but they could provide a more detailed description of all the configuration steps. I have to search for information or call support. Palo Alto could add more knowledge base articles about configuration with screenshots and walkthroughs. That would be helpful. When configuring a product, you want to see examples of how it is done."
"The cloud setup is straightforward, and the onboarding process is much better, but the on-premises initial setup is slightly complex."
"Pricing for Prisma Access and Prisma SD WAN is high due to the need for different hardware flavors like IONs."
"There is room for improvement in the multi-environment visibility, especially around containers."
"One area for improvement is for them to stay on top of keeping their CVEs on their platform up to date."
"They automatically update and they should give us time to fully understand what they're updating so that we can make sure it doesn't impact production."
"There are two parallel things that we want Palo Alto to work on. First, customers want a unified appliance that does the work of all firewalls in addition to SD-WAN. Second, the cloud presence should be completely automated. If I purchase the SASE architecture, I shouldn't worry about deployments in Prisma Access or on Prisma SD-WAN. It should be deployed in one go."
"The only con is the pricing because it's more premium."
"Prisma could be a little cheaper."
"Prisma SD-WAN should provide more flexibility and scalability on the hardware."
"The solution should include custom ports and group voice connections."
"They could add more advanced security features to the product."
"If Palo Alto could open the platform to manage other SD-WANs, it would be beneficial."
"Accessibility could be improved. Any new person attempting to access Prisma will have difficulty. It doesn't have CLI available."
 

Pricing and Cost Advice

"The overall pricing for iboss is very competitive and transparent."
"We have not priced the solution recently, but they were competitive with other vendors in the past."
"It is not expensive, and it is also not cheap. iboss is priced right in the sweet spot for the number of features it offers."
"It is expensive compared to one of its competitors."
"It is probably in line with other solutions, but I do not deal with the financial side."
"We have to pay additional costs for maintenance and support services."
"There's no reason not to buy the enterprise version that gives you unlimited PoPs, but you must understand the limitations you impose on yourself if you do that. If you go crazy, that allowlist will be too big for Kubernetes clusters."
"It's pricey, it's not cheap. But you get what you pay for."
"This is not an expensive product and everything is included with one license."
"Prisma SaaS is more expensive than similar solutions but I think it's worth it."
"It is pretty expensive. We have to balance the cost of some features. They need to work on some of the services and products, price-wise."
"The initial prices of Prisma Access were okay. But as soon as you start deploying Palo Alto gear, the support prices and the recurring prices, which are the major operational costs, tend to increase over time."
"The pricing for this solution is on the higher end."
"Prisma SD-WAN is a pretty expensive solution."
"On a scale from one to ten, where one is cheap and ten is expensive, I rate the solution's pricing an eight out of ten."
"It is more expensive than Fortinet."
"If you're already invested in a Palo Alto product, it would be logical to use this solution. If not, there might be some other solutions that are more viable in terms of pricing."
"This solution stood out because it cost considerably less than the other SD-WAN solutions out there from Cisco."
report
Use our free recommendation engine to learn which Secure Access Service Edge (SASE) solutions are best for your needs.
832,891 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
13%
Financial Services Firm
12%
Manufacturing Company
9%
Government
6%
Computer Software Company
14%
Manufacturing Company
12%
Financial Services Firm
12%
Government
6%
Educational Organization
28%
Computer Software Company
10%
Manufacturing Company
7%
Financial Services Firm
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about iboss?
Content filtering is the most useful feature of iboss.
What needs improvement with iboss?
I have the same complaint about them that I have about other software companies. Sometimes when you call in support, ...
What is your primary use case for iboss?
We are a PreK-12 public school district, and we use iboss to filter internet content for our students at home and sta...
What is the better solution - Prisma Access or Zscaler Private Access?
We looked into Prisma Access before choosing Zscaler Private Access (ZPA). Palo Alto’s Prisma Access is a secure ac...
What do you like most about Prisma Access by Palo Alto Networks?
The most valuable features of the solution are in the areas of the secure remote access it provides while also being ...
What is your experience regarding pricing and costs for Prisma Access by Palo Alto Networks?
The pricing is on the higher side, rating it around eight to nine out of ten. While it is justified for its value, th...
What do you like most about Prisma SD-WAN?
The product's initial setup phase is straightforward.
What is your experience regarding pricing and costs for Prisma SD-WAN?
The price for Prisma is a bit high, but it is a premium service. The higher tier provides flexibility and scalability...
What needs improvement with Prisma SD-WAN?
If Palo Alto could open the platform to manage other SD-WANs, it would be beneficial. Currently, it only manages Palo...
 

Also Known As

iBoss Cloud Platform
Palo Alto Networks Prisma Access, Prisma Access, GlobalProtect, Palo Alto GlobalProtect Mobile Security Manager, Prisma SaaS by Palo Alto Networks, Prisma Access
CloudGenix
 

Overview

 

Sample Customers

More than 4,000 global enterprises trust the iboss Cloud Platform to support their modern workforces, including a large number of Fortune 50 companies.
Concord Hospital, State of Colorado, Essilor International, RheinLand Versicherungsgruppe, University of Westminster, Universidade Nove de Julho, SPAR Austria, CAME Group, ZipRealty, Greenhill & Co., IKT Agder, Aviva Stadium, Animal Logic, Management & Training Corporation, Brigham Young University Hawaii, School District of Chilliwack
Open Networking User Group, Columbia Sportswear Company, Coca Cola
Find out what your peers are saying about Prisma Access by Palo Alto Networks vs. Prisma SD-WAN and other solutions. Updated: January 2025.
832,891 professionals have used our research since 2012.