VM-Series Next-Generation Firewall Bundle 1 [VM-300]
Palo Alto Networks | PAN-OS 8.1.25-h1Linux/Unix, Other PAN-OS 8.1.25-h1 - 64-bit Amazon Machine Image (AMI)
External reviews
External reviews are not included in the AWS star rating for the product.
Rock Solid and Ready for Business
What do you like best about the product?
Palo Alto's versatility, it has the power to handle high volumes of connections while protecting against a multitude of different types of threats.
What do you dislike about the product?
Sometimes the latest version updates do not always seem to be ready for prime time.
What problems is the product solving and how is that benefiting you?
Web application firewalling, virus/malware protection, DDoS attacks. We found that there was a high volume of impersonation and poxy avoidance in use in our organization we were unaware of prior to its inception.
Recommendations to others considering the product:
If your organization is in need of a firewall that can do more than just block a DDoS attack but don't have the budget for multiple devices then you need to check out Palo Alto.
- Leave a Comment |
- Mark review as helpful
palo alto NGFW rreview
What do you like best about the product?
excelent performance when you are adding additional security features - uniques single pass technology
excellent security control for applications (App-ID, User-ID, Content-ID)
Very good support
excellent security control for applications (App-ID, User-ID, Content-ID)
Very good support
What do you dislike about the product?
management of device is not user-friendly
sometimes security updates harm functionalities of running applications
slow response on management plane when you have a lot of different rules (adding, changing rules)
sometimes security updates harm functionalities of running applications
slow response on management plane when you have a lot of different rules (adding, changing rules)
What problems is the product solving and how is that benefiting you?
With Palo Alto we solved the problem of security when we are facing access and traffic from/to Internet. With solution whichi integrate application security check, antimalware check and URL protection we are much more safe when we are exchanging traffic over Internet. We also use site-to-site VPN on Palo ALto firewalls to securely interconnect our companies worldwide.
PAN ng firewalls are truly next gen
What do you like best about the product?
AppID and UserID are probably my favorite features, but I really love PAN's content inspection and wildfire analysis integration. Not to mention Panorama central mgmt across all firewalls and the partner hooks into other interopped vendor's security infrastructure within our environment resulting in overall stronger security posture.
What do you dislike about the product?
some of the appIDs with "dynamic port ranges" like skype for business are opening all the ports when they don't necessarily use all 65535 ports. They should be restricted to least privilege approach. vuln scanners are throwing false positives that traffic is listening due to appID, when it's actually filtered/denied. on the plus side, this could trick hackers recon attempts so it inadvertently has a positive side.
What problems is the product solving and how is that benefiting you?
central firewall access mgmt, malicious content inspection across wifi and wired connections, stronger insight into activity on the network, integration with SIEM are the few off hand that come to mind.
Recommendations to others considering the product:
don't wait, get back control of your network by switching to PAN!
Palo Alto Networks NGFW Review
What do you like best about the product?
All the features that it's well known for, App-ID, User-ID, Content-ID, SSL-Inspection, throughput, Anti-malware and ease of use. It's an all in one box that does everything we're looking for, making easier to manage that if all the features we're across multiple systems.
What do you dislike about the product?
On the lower end models, the commit time is a bit slow.
What problems is the product solving and how is that benefiting you?
Visibility of traffic traversing the network, either internally or to/from the internet, and using that data to further protect it. By giving us the visibility and granularity of control, we can create very specific rules to allow or deny access to different services.
Recommendations to others considering the product:
It is a great platform, easy to use and understand, gives you a lot of control to be as granular as you need to be with your rules. Compare the actual throughput of all the solutions you're looking at, with all the features you plan to use, this number is usually hidden on the datasheet of other vendors but PAN have clearly detailed it.
While the price is higher than most of the other vendors, it has based on our experience will have a longer life and not need to be replaced than another vendor.
While the price is higher than most of the other vendors, it has based on our experience will have a longer life and not need to be replaced than another vendor.
Great firewall but even better customer service!
What do you like best about the product?
Having used many "Next Gen" firewalls I was a bit jaded by all the new hype around Palo Alto but after using their products and integration, it has made my team's much more productive and efficient. With the abilty to use for advanced VPN performance, Wildfire protection from emerging threats and a combination of threat and antivirus definitions. Lastly, highly performant SSL decryption allows us to secure even encrypted traffic to and from our networks. Outside of pure security features, we utilize URL Filtering and analytics which allows us to see our network utilization, risks, and performance on a broad spectrum.
What do you dislike about the product?
All complaints were resolved and fixed in 8.0. One thing to keep in mind would be to release firmware updates that are a bit more vetted to not leave new and current customers wondering which former they should update to if they should update at all. This is always a process we have to consider when looking at new updates and their functionality.
What problems is the product solving and how is that benefiting you?
We were able to solve many complex issues with Palo Alto. We are able to see much greater into our environment and other environments we are looking into for audits. In addition, we are able to offer higher SLAs and KPIs.
Recommendations to others considering the product:
Get a POC in your environment. I think you will be pleasantly surprised with the new releases of hardware how cheap the TCO and how fast the ROI can be on such a great appliance.
Palo Alto Networks - An Administrator's Review
What do you like best about the product?
There's a seemingly endless amount of features which can benefit almost any type of deployment. OS upgrades to the platform continue to be meaningful and introduce new capabilities without requiring additional licensing. The platform and company is always growing and nothing about it seems stagnant or dated.
What do you dislike about the product?
The devices are fairly expensive, which means they may not be a realistic choice for smaller deployments and organizations. This has improved recently though with their latest generation of hardware.
What problems is the product solving and how is that benefiting you?
Threat detection and prevention in a world where everything needs to be considered insecure, as well as analytics and insight into network traffic that is simply not available with lesser products. Palo Alto Networks continues to build and expand on their technologies and product offerings. As an administrator, being able to build our own network around such a robust platform which continues to expand, as our needs do too, has proven very beneficial. Palo Alto Networks technical support has been very helpful in the times when we do run into issues, and the local user base continues to expand which encourages knowledge sharing among security professionals throughout a wide variety of industries. I doubt the feeling of "outgrowing" these firewalls would be possible for a vast majority of networks and administrators.
Recommendations to others considering the product:
The concepts and management of next-gen firewalls can be significantly different compared to legacy firewalls. I'd encourage any prospective users/purchasers to educate themselves on the management and operation of these firewalls. There are many excellent learning resources available online, as well as Palo Alto Networks user groups available for you to join in most major cities.
The absolute best in active firewalls!
What do you like best about the product?
PAN has been the best upgrade to our security since I started here almost 5 years ago. The protection and customization of these firewalls is second to none in my opinion.
What do you dislike about the product?
There was recently an emergency content update that actually broke all of our traffic due to a DNS issue. The emergency content patch was released about 4 hours later *after) we had diagnosed and rolled back ourselves.
Granted, this was the only incident of it's type while we have been using these.
Granted, this was the only incident of it's type while we have been using these.
What problems is the product solving and how is that benefiting you?
PAN has allowed us to be more secure and proactive in our network security.
Recommendations to others considering the product:
PANs are a bit challenging to set up. We had to have consultants assist with the early stages of implementation.
Best Firewall
Best firewall on the market that I can now spin up whenever I want. That is fantastic! Same great functionality as the real boxes.
showing 41 - 48