Skip to main content
FortinetCustomer feedback

Fortinet is positioned as the leading affordable alternative to Palo Alto Networks for enterprise firewalls, with users praising its GUI-first design and capable management tools like FortiManager.

What happened

Post: "Would you consider replacing Palo Alto and/or Fortinet with Juniper SRX?"

Source

RedditSep 26, 2026By u/Linklights

r/networking

Would you consider replacing Palo Alto and/or Fortinet with Juniper SRX?

upvotes
68
comments
122

Post

Whenever the conversation on enterprise firewalls comes up on this group, I've noticed the discourse is always incredibly predictable: "Palo Alto if you can afford it, Fortinet if you cannot. Honorable mention: Cisco FTD but we all hate those" Juniper SRX? Never even mentioned in these topics. I'm wondering why, though? What am I missing, or rather what are SRX missing to not be a major contender for enterprise NGFW consideration? It looks like SRX is more heavily used in Carrier & Telco networks versus enterprise networks. Do you consider SRX a true "NGFW" firewall? Is it really as simple as "Palo and Fortinet have a nice GUI to manage and audit the security policy, and Juniper doesn't?"

Extracted from these lines

  • "Palo Alto if you can afford it, Fortinet if you cannot."

    From the post

  • [comment u/underwear11] They bolted on a GUI later when they were getting crushed by Fortinet and Palo's GUI first.

  • [comment u/Legal_Sound9116] Security Director never matched Panorama or FortiManager for managing lots of rules across many sites...

reddit.com/r/networking/comments/1wqsbsk/would_you_consider_replacing...Read the full source

Comments on the post

5 of 122 comments
  • “I've installed and managed SRX's as the primary firewalls for organizations. They do work as enterprise firewalls and have some advantages over more mainstream firewall offerings. SRX's are different than most in that it's an excellent router that also acts as a firewall. Also, as a basic firewall they don't need licensing to work and they do HA clustering for free. They are pretty ideal for thing”

    u/ZeniChan45 points · Sep 26, 2026View

  • “The disclosure is the same because the question is the same - "what's the best firewall?" without any specifics. And without any specifics, you get the same generic answer. Add some more specifics - and you can have some different results. Though honestly I can't think of any reason to use SRX over other vendors. Maybe if I had some very messed up design where I had to do advanced routing on my”

    u/Gesha2425 points · Sep 26, 2026View

  • “We used SRX for like 10+ years but when it came time to replace them (~8 years ago now) and start using "NGFW" features, all of that just felt tacked on to SRX in different ways over time. We evaluated all 4 you mentioned at the time and Palo and Fortinet were designed with all of that in mind from day one, so it all just worked better and it easier to maintain. We also had significant issues with”

    u/bh014 points · Sep 26, 2026View

  • “go enable security features on the srx’s with even a medium amount of traffic and come back to us telling us you made a mistake. They’re great routers, terrible firewalls. Everything is a chore to configure on it firewall wise, last I configured a remote access VPN for juniper secure connect it was not available on Linux and that was a pain in the a$$ for a project where the entire organisation”

    u/IceCreamPoint13 points · Sep 26, 2026View

  • “SRXs are used mostly as routers in Carrier and Telco, that's why you see them there. They explicitly are not doing many of the advanced security features of a true NGFW, so SRXs are easier to automate because it was built with CLI being the primary management mechanism. They bolted on a GUI later when they were getting crushed by Fortinet and Palo's GUI first. As a router, I would use SRX but not”

    u/underwear118 points · Sep 26, 2026View

Extracted by Autobound

From the Signal API record
Signal
Customer feedback

What this signalsUser posts often show product pain before it reaches reviews or churn.

Subreddit
r/networking

Companies

  • Palo Alto NetworksAlso named
  • Juniper NetworksAlso named
  • CiscoAlso named

The full record

From the Signal API record

Numbers

Mentions
26

Details

Timing
Ongoing state
Category
General
Virality
High
Post kind
Text
Prominence
Core
Company's role
Vendor

Topics and mentions

Topics

  • firewall
  • usability
  • vendor comparison
  • ngfw
  • pricing

Flair

  • Security

Products named

  • FortiManager
  • FortiOS

Extraction

Sentiment
Positive
Detected
Sep 26, 2026
signal_type
reddit-company
signal_subtype
customerFeedback

Use this data

Get every Reddit signal for Fortinet and the companies you sell to, in the tools you already use.

  1. Ask Claude about it

    Connect Autobound to Claude, Claude Code or Cursor with MCP. Then ask: “What changed at Fortinet this week?”

  2. Send it to your own tools

    The Signal API returns Reddit signals for any list of companies as JSON, for your CRM, warehouse or app.

  3. Try it free

    Sign up and spend your free credits on the companies you sell to.

    Start Free1,000 free credits

The API returns more than this page shows

This page shows a preview. The full reddit-company record in the Signal API and MCP can also have these 8 fields. Some fields are empty for some signals.

Company

  • linkedin_urlValue in the API
  • industriesValue in the API
  • employee_count_lowValue in the API
  • employee_count_highValue in the API
  • revenueValue in the API
  • descriptionValue in the API

Signal

  • signal_nameValue in the API
  • associationValue in the API
Show the full JSONThe record on this page and the API request

GET /v1/signals/5346c60f-348a-5082-a64d-ea5f53fb8ec0 returns this record as JSON. POST /v1/companies/enrich returns every signal for fortinet.com.

{
  "signal_id": "5346c60f-348a-5082-a64d-ea5f53fb8ec0",
  "signal_type": "reddit-company",
  "signal_subtype": "customerFeedback",
  "detected_at": "2026-09-26T14:45:33+00:00",
  "company": {
    "name": "Fortinet",
    "domain": "fortinet.com"
  },
  "data": {
    "nsfw": false,
    "stage": "none",
    "awards": 0,
    "timing": "ongoing_state",
    "topics": [
      "firewall",
      "ngfw",
      "pricing",
      "usability",
      "vendor comparison"
    ],
    "post_id": "1wqsbsk",
    "summary": "Fortinet is positioned as the leading affordable alternative to Palo Alto Networks for enterprise firewalls, with users praising its GUI-first design and capable management tools like FortiManager.",
    "category": "general",
    "comments": [
      {
        "url": "https://www.reddit.com/r/networking/comments/1wqsbsk/comment/pc709qt/",
        "depth": 0,
        "score": 45,
        "author": "ZeniChan",
        "excerpt": "I've installed and managed SRX's as the primary firewalls for organizations. They do work as enterprise firewalls and have some advantages over more mainstream firewall offerings. SRX's are different than most in that it's an excellent router that also acts as a firewall. Also, as a basic firewall they don't need licensing to work and they do HA clustering for free. They are pretty ideal for thing",
        "posted_at": "2026-09-26T16:12:33.000Z",
        "author_url": "https://www.reddit.com/user/ZeniChan/"
      },
      {
        "url": "https://www.reddit.com/r/networking/comments/1wqsbsk/comment/pc6iall/",
        "depth": 0,
        "score": 25,
        "author": "Gesha24",
        "excerpt": "The disclosure is the same because the question is the same - \"what's the best firewall?\" without any specifics. And without any specifics, you get the same generic answer.\n\n Add some more specifics - and you can have some different results. Though honestly I can't think of any reason to use SRX over other vendors. Maybe if I had some very messed up design where I had to do advanced routing on my",
        "posted_at": "2026-09-26T14:50:15.000Z",
        "author_url": "https://www.reddit.com/user/Gesha24/"
      },
      {
        "url": "https://www.reddit.com/r/networking/comments/1wqsbsk/comment/pc6kzbj/",
        "depth": 0,
        "score": 14,
        "author": "bh0",
        "excerpt": "We used SRX for like 10+ years but when it came time to replace them (~8 years ago now) and start using \"NGFW\" features, all of that just felt tacked on to SRX in different ways over time. We evaluated all 4 you mentioned at the time and Palo and Fortinet were designed with all of that in mind from day one, so it all just worked better and it easier to maintain. We also had significant issues with",
        "posted_at": "2026-09-26T15:02:48.000Z",
        "author_url": "https://www.reddit.com/user/bh0/"
      },
      {
        "url": "https://www.reddit.com/r/networking/comments/1wqsbsk/comment/pc72s1s/",
        "depth": 0,
        "score": 13,
        "author": "IceCreamPoint",
        "excerpt": "go enable security features on the srx’s with even a medium amount of traffic and come back to us telling us you made a mistake.\n\n They’re great routers, terrible firewalls. Everything is a chore to configure on it firewall wise, last I configured a remote access VPN for juniper secure connect it was not available on Linux and that was a pain in the a$$ for a project where the entire organisation",
        "posted_at": "2026-09-26T16:23:45.000Z",
        "author_url": "https://www.reddit.com/user/IceCreamPoint/"
      },
      {
        "url": "https://www.reddit.com/r/networking/comments/1wqsbsk/comment/pc6r1do/",
        "depth": 0,
        "score": 8,
        "author": "underwear11",
        "excerpt": "SRXs are used mostly as routers in Carrier and Telco, that's why you see them there. They explicitly are not doing many of the advanced security features of a true NGFW, so SRXs are easier to automate because it was built with CLI being the primary management mechanism. They bolted on a GUI later when they were getting crushed by Fortinet and Palo's GUI first. As a router, I would use SRX but not",
        "posted_at": "2026-09-26T15:30:57.000Z",
        "author_url": "https://www.reddit.com/user/underwear11/"
      },
      {
        "url": "https://www.reddit.com/r/networking/comments/1wqsbsk/comment/pc7u452/",
        "depth": 0,
        "score": 8,
        "author": "veritropism",
        "excerpt": "Adding to what others said, some history...\n\n The top engineering lead for juniper firewalls realized that with better hardware, they could start doing amazing things for the time - checkpoint had started a few NGFW-like initiatives and he saw a huge leap forward was possible.\n\n Juniper refused to fund something that would obsolete thier existing investment in the current firewalls.  He quit, and",
        "posted_at": "2026-09-26T18:24:05.000Z",
        "author_url": "https://www.reddit.com/user/veritropism/"
      },
      {
        "url": "https://www.reddit.com/r/networking/comments/1wqsbsk/comment/pc98jw2/",
        "depth": 0,
        "score": 8,
        "author": "GodlessThoughts",
        "excerpt": "Let’s clear up some of the dogmatic takes in this thread.\n\n The SRX is the most capable router of any major firewall vendor having features for free that most license at best or at worst don’t even offer. Things like carrier grade NAT are built right in to the base offering.\n\n The SRX has some bleeding edge features that lend themselves well modern data center security. Namely, multinode high avai",
        "posted_at": "2026-09-26T22:17:15.000Z",
        "author_url": "https://www.reddit.com/user/GodlessThoughts/"
      },
      {
        "url": "https://www.reddit.com/r/networking/comments/1wqsbsk/comment/pc77zzo/",
        "depth": 0,
        "score": 7,
        "author": "ncgbulldog1980",
        "excerpt": "I as someone that just replaced a palo with cisco FTD, Dont you will regret it",
        "posted_at": "2026-09-26T16:46:45.000Z",
        "author_url": "https://www.reddit.com/user/ncgbulldog1980/"
      }
    ],
    "evidence": [
      "[post] \"Palo Alto if you can afford it, Fortinet if you cannot.\"",
      "[comment u/underwear11] They bolted on a GUI later when they were getting crushed by Fortinet and Palo's GUI first.",
      "[comment u/Legal_Sound9116] Security Director never matched Panorama or FortiManager for managing lots of rules across many sites..."
    ],
    "virality": "high",
    "post_date": "2026-09-26T14:45:33.000Z",
    "post_kind": "text",
    "post_text": "Whenever the conversation on enterprise firewalls comes up on this group, I've noticed the discourse is always incredibly predictable:\n\n\"Palo Alto if you can afford it, Fortinet if you cannot. Honorable mention: Cisco FTD but we all hate those\"\n\nJuniper SRX? Never even mentioned in these topics.\n\nI'm wondering why, though? What am I missing, or rather what are SRX missing to not be a major contender for enterprise NGFW consideration? It looks like SRX is more heavily used in Carrier & Telco networks versus enterprise networks.\n\nDo you consider SRX a true \"NGFW\" firewall? Is it really as simple as \"Palo and Fortinet have a nice GUI to manage and audit the security policy, and Juniper doesn't?\"",
    "sentiment": "positive",
    "subreddit": "networking",
    "post_flair": [
      "Security"
    ],
    "post_title": "Would you consider replacing Palo Alto and/or Fortinet with Juniper SRX?",
    "prominence": "core",
    "source_url": "https://www.reddit.com/r/networking/comments/1wqsbsk/would_you_consider_replacing_palo_alto_andor/",
    "entity_role": "vendor",
    "post_author": "Linklights",
    "upvote_ratio": 0.8953488372093024,
    "mention_count": 26,
    "mention_surge": true,
    "subreddit_url": "https://www.reddit.com/r/networking/",
    "total_upvotes": 68,
    "comments_total": 123,
    "total_comments": 122,
    "other_companies": [
      {
        "name": "Palo Alto Networks",
        "role": "competitor",
        "domain": "paloaltonetworks.com"
      },
      {
        "name": "Juniper Networks",
        "role": "competitor",
        "domain": "juniper.net"
      },
      {
        "name": "Cisco",
        "role": "competitor",
        "domain": "cisco.com"
      }
    ],
    "post_author_url": "https://www.reddit.com/user/Linklights/",
    "signal_category": "feedback",
    "comments_included": 16,
    "products_mentioned": [
      "FortiManager",
      "FortiOS"
    ]
  }
}

Long text fields are shortened on this page.

Looking up one signal by its id is free. Enrich costs 2 credits per signal returned; a call with no results is free.