Next-Generation Firewalls - PA Series vs pfSense | TrustRadius (2024)

Likelihood to Recommend

Next-Generation Firewalls - PA Series vs pfSense | TrustRadius (1)

Palo Alto Networks

Palo Alto firewall only affords by Large level infrastructure having a budget for Security Prospect. I will recommend it for the Card information industry & Confidential data solutions. Because it provides a bucket of security features that are not easily vulnerable.

Incentivized

Read full review

Next-Generation Firewalls - PA Series vs pfSense | TrustRadius (3)

Netgate (Rubicon Communications, LLC)

Because pfSense is built around open source software, it is very convenient to be able to deploy in the event of hardware failure. We once had a client with a proprietary router that failed. While the router was under warranty, the expected time for the new router to arrive was about 2 weeks. We decided to implement pfSense for the client as a stop gap and ultimately ended up deploying the full enterprise appliance. Being able to get up and running using commodity hardware was a huge win for the client. We've also had a great amount of success deploying pfSense hardware at apartment complexes. The DNS resolver works great and we've had no issues handling multiple VLANs with various DHCP scopes on it. Finally, we've had clients that require having a failover cluster. Utilizing the built in CARP capabilities, we've been able to provide a very robust failover system that requires little maintenance and no downtime in the event of equipment failure.

Read full review
Pros

Next-Generation Firewalls - PA Series vs pfSense | TrustRadius (4)

Palo Alto Networks

  • The PA handles VPN connectivity without missing a beat. We have multiple VPN tunnels in use for redundancy to cloud-based services.
  • The PA has great functionality in supporting failover internet connections, again with the ability to have multiple paths out to our cloud-based services.
  • The PA is updated on the regular with various security updates, we are not concerned with the firewall's ability to see what packets are really flowing across the network. Being able to see beyond just IP and port requests lets you know things are locked down better than traditional firewalls.
  • It is a great overall kit, with URL filtering and other services that fill in the gaps between other solutions without breaking the bank.

Incentivized

Read full review

Next-Generation Firewalls - PA Series vs pfSense | TrustRadius (5)

Netgate (Rubicon Communications, LLC)

  • Easy to use. Good user interface design! Easy to understand and easy to set up.
  • Lower hardware requirement. 3 years ago, we used an old PC to run it. Now, we have changed to a router device with Celeron CPU and 8GB RAM. It runs smoothly with a 1000G commercial broadband.

Incentivized

Read full review
Cons
  • Our specific model is a bit slow and outdated and takes up to 10 minutes to commit a configuration change.
  • Nested security rules would be helpful instead of a linear approach. But rule creation in general is very simple.
  • Documentation gives a very straight forward answer to some items but is very vague in others.
  • Support could be a little better. An issue we had a tech was insistent it was the "other guy" and it ended up being the very latest PAN OS upgrade.

Incentivized

Read full review

Next-Generation Firewalls - PA Series vs pfSense | TrustRadius (9)

Netgate (Rubicon Communications, LLC)

  • I did kind of mention a Con in the Pro section with OpenVPN.
  • When I create a config for an employee other employees are able to login to that config.
  • I could be doing something wrong when I am making it - I am not afraid to admit that as I am pretty new to all of this, but it seems like it builds a key and I would think the key would be unique in some way to each employee, but I could be wrong.
  • I actually do not have a lot of Con's for this software - I did not get to set this up on our work network so I am not sure of any downfalls when installing.
  • I installed this on my personal machine in a Hyper-V environment to get a feel for it before I started working on it at work and it seemed pretty smooth. I didn't run into any issues.

Incentivized

Read full review
Likelihood to Renew

Next-Generation Firewalls - PA Series vs pfSense | TrustRadius (11)

Palo Alto Networks

The PA5220s have far exceeded what we have expected out of them. It was a bit of a learning curve coming from another vendor, but everything falls into place now with ease. The capabilities of the solution still surprise us, allowing us to remove other costly hardware and providing a single point of management needed

Incentivized

Read full review

Next-Generation Firewalls - PA Series vs pfSense | TrustRadius (12)

Netgate (Rubicon Communications, LLC)

No answers on this topic

Usability

Next-Generation Firewalls - PA Series vs pfSense | TrustRadius (13)

Palo Alto Networks

In my opinion, the Palo Alto Firewall is the simplest firewall in terms of management interfaces; though it has more advanced options that apply to more advanced use cases. Configuring basic features on the firewall is nearly self-explanatory; configuring more advanced features can be met with very thorough vendor documentation.

Incentivized

Read full review

Next-Generation Firewalls - PA Series vs pfSense | TrustRadius (14)

Netgate (Rubicon Communications, LLC)

The interface is simple, has sane defaults, and is consistent throughout.

Read full review
Support Rating

Next-Generation Firewalls - PA Series vs pfSense | TrustRadius (15)

Palo Alto Networks

We've run into a couple undocumented bugs, but that seems to happen with every brand and technology. Any time we've had to engage Palo Alto support they've always been professional, knowledgeable and prompt. In almost all cases we've been able to resolve our issues without having to escalate our tickets.

Incentivized

Read full review

Next-Generation Firewalls - PA Series vs pfSense | TrustRadius (16)

Netgate (Rubicon Communications, LLC)

No answers on this topic

Alternatives Considered

Next-Generation Firewalls - PA Series vs pfSense | TrustRadius (17)

Palo Alto Networks

No one can say any other companies in this time is better than Palo Alto Networks Next-Generatoin Firewalls. Palo Alto offers very advanced features which protect you[r] organization. Advanced malware protection, anti spam, lots of other threats.

Incentivized

Read full review

Next-Generation Firewalls - PA Series vs pfSense | TrustRadius (19)

Netgate (Rubicon Communications, LLC)

While you can get the performance out of other products, pfSense offers the unique ability to put other services on the same device. Products such as Untagle's NG Firewall and SonicWall's TZ series offer cost effective options for firewall and VPN services, having incoming load balancing and connection proxies on the same device as the firewall offers extremely easy configuration and day to day management of network services

Incentivized

Read full review
Return on Investment

Next-Generation Firewalls - PA Series vs pfSense | TrustRadius (21)

Palo Alto Networks

  • Overall, even though the device is very expensive (both hardware and licensing), the product does produce a decent ROI, given that one (or HA pair) of devices can do so many things, such as anti-virus, anti-malware, URL filtering, SSL decryption, SSL VPN, routing, etc.
  • There will definitely be sticker shock when you're renewal comes up annually (or after 3 years), so be sure to look very carefully at the recurring costs of this product, with respect to licensing and hardware/software maintenance.

Incentivized

Read full review

Next-Generation Firewalls - PA Series vs pfSense | TrustRadius (22)

Netgate (Rubicon Communications, LLC)

  • Using pfSense has allowed us to build a professional network in our small office without needing a lot of proprietary hardware, saving thousands of dollars in IT infrastructure investment.
  • The cost for using pfSense is free, so it's a great option for those who don't have a large IT budget
  • pfSense utilizes all of the industry standard services to provide all of it's functionality, so support for service-level issues is readily available
  • Because of how much work has been put into pfSense to make it rock solid and reliable, we're able to support our network with minimal IT staffing, saving us thousands of dollars/year in personnel alone.

Incentivized

Read full review
ScreenShots
Next-Generation Firewalls - PA Series vs pfSense | TrustRadius (2024)

FAQs

What are the disadvantages of pfSense firewall? ›

Challenging web GUI setup and management: Non-expert users may find it challenging to set up and manage the web GUI, particularly when it comes to assigning WAN and LAN interfaces. Limited API and scripting capabilities: Some reviewers have highlighted the lack of an API for making changes in pfSense.

What is better than pfSense? ›

If you want high customizability and a large support community, pfSense is a good option. If you prioritize an easy-to-use interface and frequent updates, instead, OPNsense may be better. Ultimately, pfSense offers more flexibility for seasoned users, but OPNsense provides a more polished out-of-box experience.

How good of a firewall is pfSense? ›

While you may be willing to sacrifice one firewall feature for another, you do not have to. Pfsense is a reliable firewall and router software that is relied upon by many users across the Internet. It offers the most features with the fewest disadvantages imaginable.

What is the primary weakness of the Palo Alto next-generation firewall? ›

A weakness in Palo Alto Networks' Next Generation Firewall, if deployed using the default configuration, could enable attackers to easily bypass the appliance's detection capabilities, according to independent testing firm NSS Labs.

Why use pfSense instead of router? ›

Easier home network upgrades - replace one or the other (or both) when you choose and as your budget allows. Improved security feature set, e.g., stronger encryption, firewalls and VPN. Greater control over your home network, especially useful given the increasing need to manage home IoT.

What is the biggest problem with a firewall? ›

Vulnerabilities and Misconfigurations: No system is foolproof. Over time, firewall configurations can become outdated or misconfigured, leading to potential vulnerabilities. This can inadvertently allow unauthorized access or cyberattacks.

Do companies use pfSense? ›

Around the world in 2024, over 2728 companies have started using pfSense as Perimeter Security And Firewalls tool.

Is OpenWRT faster than pfSense? ›

On APU routers pfSense and OPNsense achieve about 100Mbit/s throughput. OpenWRT achieves about 140Mbit/s. APU delivers more than 600Mbit/s with Wireguard VPN. If you have a choice between OpenVPN and Wigeguard, choose the latter.

Does pfSense benefit from more RAM? ›

pfSense Hardware Requirements and Guidance

You may be able to get by with less than the minimum, but with less memory you may start swapping to disk, which will dramatically slow down your system.

Which type of firewall is most effective? ›

Proxy firewalls provide robust security by applying application-level filtering. Security teams can leverage port information, TCP headers and also packet contents. Application layer firewalls can act as web filters.

What is the most secure firewall architecture? ›

Proxy servers are the most secure type of firewall, as they filter packets through a protected proxy server. This is done before traffic even reaches the network perimeter.

What does Fortinet do better than Palo Alto? ›

Palo Alto Networks is unable to offer integrated LAN, WLAN, and 5G. Fortinet delivers performance that is on average 5 to 20 times faster than the industry average, including Palo Alto Networks. Palo Alto Networks' single-pass architecture is very cumbersome for pure firewalling.

Why is Palo Alto better than other firewalls? ›

Since traditional firewalls have limited capacity and are only engineered to detect threats based on the pre-configured protocols, hackers can slip through. Palo Alto minimizes your risk by implementing advanced security protocols. It identifies every element that passes through your network or requests access.

What is the downside of packet filtering firewalls? ›

One of the significant disadvantages of packet filtering firewalls is limited logging capabilities. These systems often log minimal information about network traffic, which can be a compliance issue for businesses subject to strict data protection standards.

What are the bad things about firewalls? ›

If you have a firewall positioned before your wide-area network (WAN) but a computer that has accessed your WAN has one of these threats, you can be exposed. Firewalls also cannot prevent unauthorized access to your computer. If your computer has a password, it is important to make sure you keep it private.

What is the rating of pfSense firewall? ›

Netgate pfSense is the #1 ranked solution in best firewalls. PeerSpot users give Netgate pfSense an average rating of 8.6 out of 10. Netgate pfSense is most commonly compared to Fortinet FortiGate: Netgate pfSense vs Fortinet FortiGate.

Top Articles
كيف تتجنب حظر رقمك على واتساب وما هي أسباب الحظر
Definition: Consumer connection programme
Www.craigslist Augusta Ga
Elden Ring Dex/Int Build
Decaying Brackenhide Blanket
Hover Racer Drive Watchdocumentaries
Derpixon Kemono
Top Hat Trailer Wiring Diagram
Sport Clip Hours
Hartford Healthcare Employee Tools
Caliber Collision Burnsville
Oc Craiglsit
All Buttons In Blox Fruits
Foodland Weekly Ad Waxahachie Tx
Buff Cookie Only Fans
The Cure Average Setlist
Tnt Forum Activeboard
Eva Mastromatteo Erie Pa
Commodore Beach Club Live Cam
Www.publicsurplus.com Motor Pool
Shreveport City Warrants Lookup
kvoa.com | News 4 Tucson
Naya Padkar Gujarati News Paper
Hannah Palmer Listal
Beaufort 72 Hour
3 Ways to Drive Employee Engagement with Recognition Programs | UKG
Tomb Of The Mask Unblocked Games World
Mobile Maher Terminal
About | Swan Medical Group
Metra Union Pacific West Schedule
Minecraft Jar Google Drive
Wisconsin Women's Volleyball Team Leaked Pictures
Craigslist Free Manhattan
Entry of the Globbots - 20th Century Electro​-​Synthesis, Avant Garde & Experimental Music 02;31,​07 - Volume II, by Various
Gravel Racing
Tripadvisor Vancouver Restaurants
Cocaine Bear Showtimes Near Cinemark Hollywood Movies 20
Doe Infohub
Martha's Vineyard – Travel guide at Wikivoyage
Lawrence E. Moon Funeral Home | Flint, Michigan
What is a lifetime maximum benefit? | healthinsurance.org
Advance Auto.parts Near Me
Secrets Exposed: How to Test for Mold Exposure in Your Blood!
Fine Taladorian Cheese Platter
Best Restaurant In Glendale Az
Shannon Sharpe Pointing Gif
53 Atms Near Me
Craigslist Psl
Hkx File Compatibility Check Skyrim/Sse
Best brow shaping and sculpting specialists near me in Toronto | Fresha
Ssss Steakhouse Menu
Latest Posts
Article information

Author: Carmelo Roob

Last Updated:

Views: 6284

Rating: 4.4 / 5 (65 voted)

Reviews: 80% of readers found this page helpful

Author information

Name: Carmelo Roob

Birthday: 1995-01-09

Address: Apt. 915 481 Sipes Cliff, New Gonzalobury, CO 80176

Phone: +6773780339780

Job: Sales Executive

Hobby: Gaming, Jogging, Rugby, Video gaming, Handball, Ice skating, Web surfing

Introduction: My name is Carmelo Roob, I am a modern, handsome, delightful, comfortable, attractive, vast, good person who loves writing and wants to share my knowledge and understanding with you.