Try our new research platform with insights from 80,000+ expert users
reviewer1227594 - PeerSpot reviewer
Senior Network Engineer at a tech services company with 201-500 employees
MSP
Works well and helpful for centralized management of devices at different locations
Pros and Cons
  • "Templates and the possibility to apply a configuration to many devices at the same time are the most valuable features. We are able to create templates, and we don't need to go to each firewall to make changes. We can make changes in Panorama, and it automatically applies those changes to all those firewalls on which we want to apply the changes. It provides centralized management."
  • "It communicates with remote devices, and sometimes, there is a little bit of delay during its communication with remote devices. There should be real-time communication or updates from the manager to devices."

What is our primary use case?

It is a management tool, and we use it to manage many devices at many locations. 

What is most valuable?

Templates and the possibility to apply a configuration to many devices at the same time are the most valuable features. We are able to create templates, and we don't need to go to each firewall to make changes. We can make changes in Panorama, and it automatically applies those changes to all those firewalls on which we want to apply the changes. It provides centralized management.

What needs improvement?

It communicates with remote devices, and sometimes, there is a little bit of delay during its communication with remote devices. There should be real-time communication or updates from the manager to devices.

In Panorama and Palo Alto firewalls, I would like to have a traffic simulator. They have packet capture for troubleshooting, but it would help if they can provide a traffic simulator so that we can simulate the traffic and see the route the traffic is taking and get feedback about whether it is blocked or it is able to pass.

For how long have I used the solution?

I have been using this solution for maybe a year and a half.

Buyer's Guide
Palo Alto Networks Panorama
December 2024
Learn what your peers think about Palo Alto Networks Panorama. Get advice and tips from experienced pros sharing their opinions. Updated: December 2024.
824,067 professionals have used our research since 2012.

What do I think about the stability of the solution?

I don't have big deployments. It works and is stable for what I have, and I don't have concerns.

What do I think about the scalability of the solution?

I don't have experience in big deployments. In terms of its users, our network engineers have access to it. We have less than 10 people.

How are customer service and support?

I don't have any experience with their tech support.

Which solution did I use previously and why did I switch?

Its main competitor is Cisco with the next-generation firewalls and FTD. They are managed by FMC, which is a little bit similar to Panorama and firewalls. There are some similarities, but there are also some different approaches. In general, they both are using the same standards. One major difference is that Palo Alto uses security zones, but Cisco doesn't have this feature, which makes Palo Alto better.

How was the initial setup?

It is not so straightforward, but it is also not complex. It is acceptable.

What other advice do I have?

I would advise others to completely evaluate the requirements and build properly with hierarchical templates. This will make it more scalable and manageable in the future.

I would rate Palo Alto Networks Panorama an eight out of 10.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
reviewer1338396 - PeerSpot reviewer
Engineering infrastructure manager at a financial services firm with 10,001+ employees
Real User
It has useful threat prevention and security features and good stability with right configuration
Pros and Cons
  • "The threat prevention and layer seven security features were the most used and important for us. All operations are quite good in this solution."
  • "We found a vulnerability where when we have a low flow, like 2.7K, it is not getting fired by the threat prevention. That's something important to improve on. They should have a proxy or some solution to solve the issue. We also found some issues around decrypting the flow. When we have more flow than expected to decrypt, the performance goes down."

What is our primary use case?

We used Panorama to control all the other modules from Palo Alto and to create the rules.

What is most valuable?

The threat prevention and layer seven security features were the most used and important for us. All operations are quite good in this solution.

What needs improvement?

We found a vulnerability where when we have a low flow, like 2.7K, it is not getting fired by the threat prevention. That's something important to improve on. They should have a proxy or some solution to solve the issue.

We also found some issues around decrypting the flow. When we have more flow than expected to decrypt, the performance goes down.

For how long have I used the solution?

I have used this solution for one year. 

What do I think about the stability of the solution?

Its stability is fine. It supports the only point used here to decrypt the flows. When we have the right configuration, it has good stability.

What do I think about the scalability of the solution?

We didn't scale up the solution because it requires a load balancer, which is not there. We have around 40,000 users.

How are customer service and technical support?

They should have a local technical team. I would rate them a seven out of ten.

How was the initial setup?

It wasn't easy, but it also wasn't very difficult. I would say it was medium. The deployment took around three months.

What other advice do I have?

In order to have the right security level, you need to understand how decryption works or is used in Palo Alto. We had to clarify some points with them related to how decryption works.

I would rate Palo Alto Networks Panorama an eight out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Buyer's Guide
Palo Alto Networks Panorama
December 2024
Learn what your peers think about Palo Alto Networks Panorama. Get advice and tips from experienced pros sharing their opinions. Updated: December 2024.
824,067 professionals have used our research since 2012.
Cristian Jerez - PeerSpot reviewer
Advisor - Network and IT security consultant at Agrosuper
Real User
Top 10
Easy to administrate and easy to control
Pros and Cons
  • "Panorama is very easy, easy to administrate, and easy to control."
  • "It's difficult to implement."

What is most valuable?

Panorama is very easy, easy to administrate, and easy to control.

What needs improvement?

It's difficult to implement. 

For how long have I used the solution?

I have been using Palo Alto Networks Panorama for approximately five years. 

What do I think about the stability of the solution?

Palo Alto is very stable and is a great global solution.

What do I think about the scalability of the solution?

There are more than 5,000 users in my company.

How are customer service and technical support?

I would rate their support a ten out of ten. 

What other advice do I have?

I would recommend this solution. 

I would rate it a ten out of ten. 

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
PeerSpot user
Lead Program Manager at a computer software company with 10,001+ employees
Real User
Flexible, scalable and very user friendly
Pros and Cons
  • "You don't need an overly experienced workforce to handle Palo Alto. It's very easy to use."
  • "They need to do less bug-related releases and create versions that are stable for at least six months at a time. I don't find this issue in other solutions like Cisco, Check Point, FortiGate, or others. Those just provide a patch if there is a bug and we don't have to worry about downtime."

What is our primary use case?

We primarily use the solution for automation purposes and for security.

What is most valuable?

The underlying technology is very good, considering that we are moving to a work-from-home environment.

Panorama is a straightforward tool. Palo Alto is comparative to other firewalls. Some firewall tools are more user friendly, and, from a technical perspective, it is very user friendly as well. It's not like Check Point. We use a setup for offshore development centers. For all those ODCs, we usually use a Palo Alto device. We have few perimeter firewalls which are Palo Alto but for the perimeter predominantly we use Check Point.

You don't need an overly experienced workforce to handle Palo Alto. It's very easy to use.

The solution if extremely flexible and scalable.

What needs improvement?

There are too many OS upgrades. We've had six new versions in the past six months. Even if they are updating it to fix bugs, it's hard to keep pace with the change when you have 800 or more Palo Alto devices that you now need to update and upgrade.

We try to follow version minus one or two for security reasons. To keep pace with the changes, it takes us nearly six months as we have to check with the business, arrange downtime, and count and cover all devices.

These upgrades aren't just little fixes either. Whenever there is a new release, it requires an OS upgrade. It would be nice if there was some automation on the upgrades of the devices.

They need to do less bug-related releases and create versions that are stable for at least six months at a time. I don't find this issue in other solutions like Cisco, Check Point, FortiGate, or others. Those just provide a patch if there is a bug and we don't have to worry about downtime.

For how long have I used the solution?

We've been using the solution for close to seven years at this point. It's definitely been about six years.

What do I think about the stability of the solution?

The solution is very, very stable. There aren't too many issues on it once you get it up and running. We consider it reliable.

What do I think about the scalability of the solution?

The solution is very scalable. If a company needs to expand its services, it can do so rather easily.

We have different businesses running inside the organization. We have close to 800 devices, so it means about 800 different projects are using those devices. Each project has a firewall, so most of these, 80%, are on Palo Alto.

Which solution did I use previously and why did I switch?

We use Check Point as well, however, we don't really like it as much. It's not as user friendly.

Prior to this solution, we were using the ASA products and then Check Point. Check Point is a little complicated. I can use Check Point on my perimeter firewall, but not on my overseas businesses. That's what makes Palo Alto is more user friendly. I can use the GUI to do everything due to the fact that I don't need a skilled person to work on the Palo Alto. On Check Point, I have to go to CLA and do all the changes. 

 It's easy to upgrade or to do anything with the Palo Alto. Technically it's quite sound. It's dynamic, scalable, and there's a lot of things that can be done easily. Plus, I don't need an extremely experienced person to work on Palo Alto. Anybody with two or three years of experience can easily work on a Palo Alto device.

How was the initial setup?

The initial setup is not complex. It's pretty straightforward.

The deployment is easy and uncomplicated. It takes about an hour or so, if not less than an hour. It's pretty quick.

However, we have 800 or more devices. It takes about six months to deploy everything, especially if I have to do everything manually.

We have eight to ten people who manage deployment and maintenance.

What about the implementation team?

We haven't used an integrator or reseller. We handled the implementation ourselves in-house.

What's my experience with pricing, setup cost, and licensing?

In terms of licensing for Panorama and Palo Alto products, we have only the DMC cost and we are billed every year.

It's not overly expensive. It is comparatively okay if you look at other devices. Compared to the top three devices, pricing is okay due to the fact that you have multiple vendors who are selling firewalls and competing with each other for the same clients. 

What other advice do I have?

We're just a customer. We don't have a business relationship with the company.

We have multiple variants of the solution's model. Currently, we are using 8.1.15-H. We also have some virtual firewalls that are recently in Tokyo. We are using close to around 800+ Palo Alto firewalls. 

We're currently developing our virtual firewalls and have them in different locations. 

It is not just Palo Alto. We have other devices as well, so we have close to around 1300 plus firewall devices.

I would recommend the solution to others.

I'd rate the solution eight out of ten. If you need a perimeter type of device, Check Point may be a better option. However, for my businesses, I would choose Palo Alto due to its scalability and user-friendliness. It also has great security features. That said, if it didn't release so many new updates, I would rate it higher, simply due to the fact that so many upgrades requires a lot of work on our part.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Mohamed Farouk Zyada - PeerSpot reviewer
PS & Technical Manager at a tech services company with 11-50 employees
Real User
Top 5Leaderboard
Useful management functionalities an god performance but needs better integration
Pros and Cons
  • "Panorama provides management functionalities."
  • "Integration between Panorama and the Edge Firewall has a lot of issues, like different configuration assets, configuration object templates, lack of flexibility, and not a good browser."

What is our primary use case?

We are dealing with Palo Alto Networks as a firewall.

What is most valuable?

Panorama provides management functionalities.

What needs improvement?

Integration between Panorama and the Edge Firewall has a lot of issues, like different configuration assets, configuration object templates, lack of flexibility, and not a good browser. It needs improvement in saving and synchronization.

For how long have I used the solution?

We have been dealing with Panorama for one year.

What do I think about the stability of the solution?

There is no issue about performance. However, keeping the communication between Panorama and the Edge Firewall is a big issue if there is a different configuration version between both Panorama and Firewall.

What do I think about the scalability of the solution?

We are not working over a complex network, but Panorama manages about six to eight firewalls. We may face a lot of issues when scaling up.

How are customer service and support?

The first layer of support is not very good. The second layer is better.

How would you rate customer service and support?

Neutral

Which solution did I use previously and why did I switch?

We switched from a different solution.

What other advice do I have?

Panorama has a lot of issues accessing and configuring the firewall or deploying the firewall from Panorama. I'd rate the solution five out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
Flag as inappropriate
PeerSpot user
Sontas Jiamsripong - PeerSpot reviewer
Account Presale at a tech services company with 1,001-5,000 employees
Real User
Top 10
Suitable for all sized businesses, simple implementation, but integration
Pros and Cons
  • "The solution is suitable for all sized businesses."
  • "The alerts in Palo Alto Networks Panorama could improve by integration with other systems, such as a forwarding trigger system. For example, if a customer has their own system it would be helpful to have the alarms integrated."

What is our primary use case?

Palo Alto Networks Panorama is a firewall manager for network security, such as deployment, configuration, and controls.

What is most valuable?

The solution is suitable for all sized businesses.

What needs improvement?

The alerts in Palo Alto Networks Panorama could improve by integration with other systems, such as a forwarding trigger system. For example, if a customer has their own system it would be helpful to have the alarms integrated. 

In the future, when doing an update all solutions should be updated at once. For example, if many different solutions are being managed by Palo Alto Networks Panorama the updates can be done for all firewalls, such as EDR and XDR.

For how long have I used the solution?

I have been using Palo Alto Networks Panorama for approximately seven years.

What do I think about the stability of the solution?

I rate the stability of Palo Alto Networks Panorama a seven out of ten.

What do I think about the scalability of the solution?

It does not support all the solutions. However, it can scale easily.

The solution is suitable for all sized businesses.

I rate the scalability of Palo Alto Networks Panorama a five out of ten.

How are customer service and support?

The support could improve from the vendor. There should be standards across all solutions.

How was the initial setup?

The initial setup of Palo Alto Networks Panorama is simple.

What about the implementation team?

We do the deployment of the solution.

What's my experience with pricing, setup cost, and licensing?

The price of Palo Alto Networks Panorama is high. There is a pay-per-use model.

I rate the price of Palo Alto Networks Panorama a five out of ten.

What other advice do I have?

I rate Palo Alto Networks Panorama a seven out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
PeerSpot user
reviewer1324731 - PeerSpot reviewer
Manager - Project at a consultancy with 10,001+ employees
Real User
Centralized management unit that lets you manage multiple regions in one place
Pros and Cons
  • "The initial setup isn't very complex, it's user-friendly."
  • "An area for improvement would be the connectivity, which sometimes means logs can be slow to display."

What is our primary use case?

My primary use of Panorama is as a management unit, including firewall and log management.

What is most valuable?

The most valuable feature is that the management unit is centralized, so you can manage different regions from one place.

What needs improvement?

An area for improvement would be the connectivity, which sometimes means logs can be slow to display.

What do I think about the stability of the solution?

Panorama's stability is very good.

What do I think about the scalability of the solution?

This solution is scalable.

How are customer service and support?

The technical support is very good.

How was the initial setup?

The initial setup isn't very complex, it's user-friendly. The deployment time depends on your capacity planning - how many firewalls will be managed and how many logs or discs you require.

What other advice do I have?

When implementing, make sure someone involved has a good technical understanding of the product and how it will work. I would rate this solution as nine out of ten.

Which deployment model are you using for this solution?

Hybrid Cloud
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
reviewer1360608 - PeerSpot reviewer
Security Technical Lead at a tech services company with 11-50 employees
Real User
Top 5
Efficient firewall management with a user-friendly interface
Pros and Cons
  • "It allows administrators to manage all firewalls from a single interface, reducing the time and effort required for configuration."
  • "It would be beneficial to improve the capabilities of Panorama to handle logs more efficiently, potentially reducing the need for additional local collectors. Adding more predefined dashboards as features would enhance the monitoring and reporting capabilities."

What is our primary use case?

It works as a centralized management solution for Palo Alto Networks firewalls. It allows administrators to manage all firewalls from a single interface, reducing the time and effort required for configuration. Panorama also provides pre-configurations and allows for easy deployment of configuration rules to multiple firewalls. Administrators can also leverage Panorama to change smart IPS rules to Panorama IPS rules, allowing for customization and flexibility in managing security signatures. It also simplifies the process of performing upgrades and complex tasks, making it a valuable tool for efficient firewall management.

What needs improvement?

If a large company uses Panorama as a log collector, it may require setting up multiple local collector devices due to potential limitations in handling firewall logs. It would be beneficial to improve the capabilities of Panorama to handle logs more efficiently, potentially reducing the need for additional local collectors. Adding more predefined dashboards as features would enhance the monitoring and reporting capabilities. The iOPS tools, which are currently offered separately, could be integrated into Panorama to eliminate the need for an additional dashboard or GUI.

For how long have I used the solution?

I have been working with it for nearly four years.

What do I think about the stability of the solution?

It is a stable and reliable solution.

How are customer service and support?

They offer two types of support: Partner Enabled Support and Premium Support. With Partner Enabled Support, partners can open cases with distributors who then relay them to Palo Alto. This process can be time-consuming, leading to customer dissatisfaction. Premium Support allows customers to directly open cases with Palo Alto, bypassing the distributor, but it comes at a higher cost. The majority of high-level clients opt for Partner Enabled Support, despite its drawbacks.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

Among the various high-level firewalls that we previously used, including Check Point and Cisco, Palo Alto Networks Panorama stands out for its stability and ease of configuration. It provides a user-friendly interface that simplifies the process of managing firewall rules. 

How was the initial setup?

Configuring firewall rules is generally straightforward and user-friendly. Certain advanced tasks, such as setting up local collectors and changing log types or indexing can be challenging for end-users. In such cases, assistance from partner companies or Palo Alto Support may be required.

What's my experience with pricing, setup cost, and licensing?

Palo Alto products are generally priced higher compared to their competitors. Its higher price is justified by the reliability, scalability, and extensive feature set that is offered. 

What other advice do I have?

The suitability of Palo Alto products and their pricing depends on the size and the requirements of the company. It would not be a good fit for smaller companies with a limited number of firewalls. For larger companies with multiple clusters or complex configurations, Palo Alto products are highly recommended due to their comprehensive range of features and capabilities. I would rate it nine out of ten.

Disclosure: My company has a business relationship with this vendor other than being a customer:
PeerSpot user
Buyer's Guide
Download our free Palo Alto Networks Panorama Report and get advice and tips from experienced pros sharing their opinions.
Updated: December 2024
Buyer's Guide
Download our free Palo Alto Networks Panorama Report and get advice and tips from experienced pros sharing their opinions.