Try our new research platform with insights from 80,000+ expert users

Prisma Access by Palo Alto Networks vs SonicWall Netextender comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Aug 6, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Prisma Access by Palo Alto ...
Ranking in Enterprise Infrastructure VPN
5th
Average Rating
8.2
Reviews Sentiment
7.0
Number of Reviews
65
Ranking in other categories
Secure Web Gateways (SWG) (4th), Cloud Access Security Brokers (CASB) (1st), ZTNA as a Service (1st), Secure Access Service Edge (SASE) (1st)
SonicWall Netextender
Ranking in Enterprise Infrastructure VPN
13th
Average Rating
7.0
Reviews Sentiment
6.3
Number of Reviews
14
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of January 2026, in the Enterprise Infrastructure VPN category, the mindshare of Prisma Access by Palo Alto Networks is 5.8%, down from 6.3% compared to the previous year. The mindshare of SonicWall Netextender is 3.3%, down from 3.8% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Enterprise Infrastructure VPN Market Share Distribution
ProductMarket Share (%)
Prisma Access by Palo Alto Networks5.8%
SonicWall Netextender3.3%
Other90.9%
Enterprise Infrastructure VPN
 

Featured Reviews

ZJ
Senior DevOps Expert at Telenor
Secure hybrid environments with robust cyber threat protection
The most valuable features are ZTNA 2.0, CASB, Threat Prevention, and Autonomous Digital Experience Management (ADAM). These features are security-driven, providing robust protection against increasing cyber threats by integrating NG Firewalls, SD WAN, and CASB, all within a fully cloud-native solution. This enables easy integration with both legacy and modern platforms, allowing enhanced leverage and scalability.
Rich Darress - PeerSpot reviewer
Chief Operating Officer at Darress Tech
Has provided secure remote access to multiple client networks with consistent performance
When buying the appliance itself, there is one downside that isn't exclusive to SonicWall. When you apply all the security settings, many people have one gig connections for internet ISP. If you're bringing in a one gig connection, you have to have a more robust SonicWall to handle that throughput with all your security settings turned on. It gets pretty pricey upfront if you're bringing in a one gig connection. If the customer starts with a two, three, four, or 500 meg connection and has a small unit, they have to replace the whole box when upgrading to a gig, so scalability there is atrocious. However, this issue exists with pretty much any appliance.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Security is absolutely spot-on, really top-notch. It's the result of all the components that come together, such as the HIP [Host Information Profile] and components like Forcepoint, providing end-user content inspection, and antivirus. It incorporates DLP features and that's fantastic because Prisma Access makes sure that all of the essential prerequisites are in place before a user can log in or can be tunneled into."
"I like it because it's very easy to use. You install the client and you have to know your gateway, but that's something we give to our users. Beyond that, it takes about three seconds to train them on how to use it. And it just works well. That's great for us because it means less administrative time."
"Its hands-off security and the fact that we don't have to maintain it are the most valuable features."
"GlobalProtect has been beneficial for its cloud security capabilities, which are vital as businesses seek hybrid options and need to support remote workers while addressing latency issues."
"The most valuable features of the solution are in the areas of the secure remote access it provides while also being user-friendly."
"Customers are quite happy with Prisma Access by Palo Alto Networks because there is less spending on technologies."
"The setup is relatively straightforward."
"The features I find most valuable is WildFire, user integration, and the basic technology features."
"The initial setup is pretty straightforward."
"The most valuable feature for the Netextender is the ease with which we can integrate it with SAML."
"The SSL-VPN encryption has been fantastic for my organization's data confidentiality and integrity; we've done extensive testing with third-party cybersecurity testing while connected and it has passed with flying colors."
"I found nothing of value in this solution."
"NetExtender works very well. I never had an issue with it, and it has been working well for me. In terms of management, you have good control over the destination. You can use NetExtender to set the policy and the static route for a client. You can modify it based on what your client needs or can access. You have good control over routing."
"The product has two-factor authentication."
"The best features of the SonicWall Netextender were its ease of use."
"The solution provides high availability."
 

Cons

"Prisma Access by Palo Alto Networks should consolidate the portals into a single portal. It is slow and takes more than ten seconds to load a page."
"It would be nice to manage Prisma Access through the cloud instead of through Panorama. You can use the cloud version to monitor Prisma Access, but it doesn't have all the features yet, and it's not 100% done."
"When it comes to integration mechanisms, Prisma SaaS does not support reverse proxy type of integrations."
"There is a lack of integration with third-party solutions like CrowdStrike or SentinelOne in Prisma Access by Palo Alto Networks. Although they have a tight ecosystem with their products, opening up for integration with other solutions would be beneficial."
"Sometimes, we encountered a portal crash. When we told Palo Alto they said it might be the browser or cache, but I think they need to improve it on their side."
"The user interface could be better. They need to work a little bit on the console. It is similar to their firewalls but not exactly. They need to clean it up a bit."
"It applies commits to the firewalls slowly. There isn't an API you can use for anything. We've previously had trouble with the egress IP addresses though we expressed to engineering that those mustn't change. They changed several times without warning, causing a lot of headaches."
"We are using the SaaS offering. We use our applications for microservices. We use Twistlock to scan containers, and it displays these results in Prisma, which is a good feature because we can see vulnerabilities with respect to these containers. We can see everything in a very detailed manner. However, when you have different environments for a single application, such as DEV, QA, PROD, and TEST, all these environments run multiple containers, which can lead to a very high number of containers. In such a scenario, it shows you the alerts for all those containers that have vulnerabilities. If you show the results of all the containers that share the same image, it is not going to add any value. Therefore, they should narrow down the alerts based on a container. It should show information for a single container. Otherwise, the person who is looking at the results gets the impression that he has to fix all these issues. This is something that they can improve."
"The UI could be a little better."
"The only concern I do have is with the zero trust, and the solution is not coping with the newer technologies as much as it needs to do on that particular factor."
"The product does not work well."
"They need to rewrite the software to make it a usable product."
"Sometimes you can get bounced around through the departments until you find the right one. Sometimes if you don't have the most current support contract or your license is out of date, they won't even talk to you."
"The solution takes up a lot of bandwidth."
"Right now, you have to load each license on to an appliance. You can't pool across multiple appliances. So, you end up having to do a lot of administrative work to recover if an internet provider goes down, and you cannot leverage it as easily into a DR solution."
"If the customer starts with a two, three, four, or 500 meg connection and has a small unit, they have to replace the whole box when upgrading to a gig, so scalability there is atrocious."
 

Pricing and Cost Advice

"The pricing can be difficult because it came to us with another agreement, but it can be negotiated. I highly recommend people to compare this product's performance and pricing against BetterCloud, because I feel BetterCloud is better than Prisma SaaS if they're starting from scratch."
"Prisma is in the middle of the road. It's not the most expensive, but it's not the cheapest. There aren't any additional costs, to my knowledge. I know they have some extra modules, but we didn't use them."
"Prisma Access by Palo Alto Networks is an expensive solution, especially when compared to other solutions like Cisco. There are no additional charges apart from the standard licensing costs attached to the solution."
"This is not an expensive product and everything is included with one license."
"The initial prices of Prisma Access were okay. But as soon as you start deploying Palo Alto gear, the support prices and the recurring prices, which are the major operational costs, tend to increase over time."
"The licensing cost is about 18,000 euros."
"I would advise choosing your options according to your company's needs. Just go for what you want and do not pay for anything extra in terms of licensing. You need to determine how much bandwidth is required in your company network, and according to that, you should pay for the license. The mobile user license is based on the number of users who are going to use the VPN solution. You need to determine how many mobile users you are going to have in your network, and you should pay according to that. There are no other costs in addition to licensing, but if you go for the consultant services of Palo Alto networks to deliver the solution for you, then you need to pay something extra. That is not a part of licensing."
"In terms of pricing, considering that it is a two or three years old solution, they should apply big discounts for the next two or three years. This approach will be better for them to capture the market."
"After a certain number of users, you require extra licensing."
"You have to pay for its license. There are some other companies that provide a VPN client for free. When you buy NetExtender, its license is available for one, three, or five years."
"Cost wise, it would be a few hundred dollars for the base appliance with the first five clients. Then from there, your cost per seat depends on how many you're getting. It's a one-time cost, and then you have a few hundred dollars a year for the maintenance contract once you get the one-time seat costs out of the way."
"The price of SonicWall Netextender is reasonable. Whether it's a small shop with only five users or a larger operation with 130 users, we have received no complaints or objections regarding cost from any of the clients we are looking to deploy it with."
"The solution has a pretty good price."
"The solution is cheap itself, not too costly."
"Compared to others, it is cheaper. When we compare it with Palo Alto, Check Point, or Fortinet, it is a little cheaper."
report
Use our free recommendation engine to learn which Enterprise Infrastructure VPN solutions are best for your needs.
879,425 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
12%
Manufacturing Company
11%
Computer Software Company
11%
Government
5%
Computer Software Company
12%
Educational Organization
7%
Comms Service Provider
7%
Outsourcing Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business23
Midsize Enterprise21
Large Enterprise27
By reviewers
Company SizeCount
Small Business10
Midsize Enterprise2
Large Enterprise2
 

Questions from the Community

What is the better solution - Prisma Access or Zscaler Private Access?
We looked into Prisma Access before choosing Zscaler Private Access (ZPA). Palo Alto’s Prisma Access is a secure access service edge (SASE) designed to deliver network security in a cloud-deliver...
What do you like most about Prisma Access by Palo Alto Networks?
The most valuable features of the solution are in the areas of the secure remote access it provides while also being user-friendly.
What is your experience regarding pricing and costs for Prisma Access by Palo Alto Networks?
From my experience, Palo Alto is more expensive compared to solutions like Netskope and Triscale.
What is your experience regarding pricing and costs for SonicWall Netextender?
The pricing for my experience with the setup cost and licensing of SonicWall Netextender is fair. The Netextender itself has no cost. It's the SSL licensing that is attached to the SonicWall. It us...
What needs improvement with SonicWall Netextender?
SonicWall Netextender has not helped with compliance, as it is not applicable for what I'm doing. I've put several feature requests in over the years and they've implemented them all, so it current...
 

Also Known As

Palo Alto Networks Prisma Access, Prisma Access, GlobalProtect, Palo Alto GlobalProtect Mobile Security Manager, Prisma SaaS by Palo Alto Networks, Prisma Access
No data available
 

Overview

 

Sample Customers

Concord Hospital, State of Colorado, Essilor International, RheinLand Versicherungsgruppe, University of Westminster, Universidade Nove de Julho, SPAR Austria, CAME Group, ZipRealty, Greenhill & Co., IKT Agder, Aviva Stadium, Animal Logic, Management & Training Corporation, Brigham Young University Hawaii, School District of Chilliwack
Information Not Available
Find out what your peers are saying about Prisma Access by Palo Alto Networks vs. SonicWall Netextender and other solutions. Updated: December 2025.
879,425 professionals have used our research since 2012.