The most effective features for threat prevention are application-based prevention and WildFire. These features cover various threats, such as ransomware, malware, etc. They provide real-time visibility. By applying appropriate policies, threats can be blocked.
Cloud Next-Generation Firewall as a Service (30-Day Free Trial to PAYG)
Palo Alto NetworksExternal reviews
External reviews are not included in the AWS star rating for the product.
Good for security
The firewall which has multiple engines to filter traffic.
seems to be overly complex and expensive but mostly capable with proper staff
lots of docs and other resources online
features no one uses
overly complex
needs a staff of competant people to run it
The best next-gen firewall available in the market
Palo Alto Networks Cloud NGFW
One of the best, next-generation firewalls
Infrastructure Engineer with more than 3 years of experience
Protects from ransomware and malware but needs improvement in visibility
What is most valuable?
What needs improvement?
The solution needs to improve its visibility. It's not straightforward to use. Understanding the policies, authorizations, and initializing features requires careful review. The product needs to offer proper training.
For how long have I used the solution?
I have been working with the product for three to four months.
What do I think about the stability of the solution?
I rate Palo Alto Networks VM-Series' stability as ten out of ten.
How are customer service and support?
The main issue with the tool's support is the delayed response time, ranging from one to two hours. This delay can impact customers who are waiting for support. Additionally, partners may become busy.
How would you rate customer service and support?
Positive
What other advice do I have?
The tool's improvement in cloud security posture depends on the features used and the licenses purchased. Different suites are available, such as Professional, Core, and Enterprise, each offering various features for endpoint.
Competitors such as Fortinet and Check Point also offer similar features, but I don't know much about their offerings. However, Palo Alto Network VM-Series stands out with its application deployment capability, iOS zone protection, and features like application ID, user ID, and device ID identification. These features enable policy application and on-premises protection, which may not be available in competing solutions.
I rate the overall product a nine out of ten.
Palo Alto Network Cloud - Securing Your Digital Transformation
Effective for threat prevention in our networks,
What is our primary use case?
I've mainly worked with the VM-Series, and a few features have been really effective for threat prevention in our networks, like McAfee training, Accountant ID, and apps ID. These features integrate well with our existing environments and tools, such as Panorama.
What is most valuable?
The VM-Series scalability is fast and easy to implement, improving our security posture as our Azure network grows. The only minor issue we've faced is with the apps ID configuration, which requires specific matching for application filtering. Tools like Loopback help us identify open or denied flows between two firewalls and manage the servers effectively. The Palo Alto system easily identifies rules and objects within roles, making maintenance straightforward.
What needs improvement?
No other major concerns, just the specific issue with Apps ID configuration. Otherwise, overall stability, VPN, IPSec, VRF, and flow management with the VM-Series have been very stable and reliable.
For how long have I used the solution?
I have been using Palo Alto Networks VM-Series for 2 years.
How are customer service and support?
I've had a positive experience with Palo Alto's support. They usually respond within a few hours, which is satisfactory
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
In my experience, Palo Alto and Fortinet offer similar quality and high-level security compared to other vendors like Cisco and Forcepoint. They stand out in terms of reliability and security features. Other vendors may not match their level of performance and security.
How was the initial setup?
It is easy to maintain because we have various tools to manage and monitor the system.
What's my experience with pricing, setup cost, and licensing?
The pricing for Palo Alto is quite high compared to FortiGate, which is more affordable. I don't have the exact figures as my manager handles that, but from my research, Palo Alto's licensing costs are significantly higher.
What other advice do I have?
I would rate Palo Alto Networks VM-Series as an eight overall. My recommendation for others considering this tool would be to ensure they have the budget for it, as it can be expensive compared to alternatives like FortiGate. Also, they should be prepared to understand and document their application metrics thoroughly to implement the firewall correctly.