r/networking
Would you consider replacing Palo Alto and/or Fortinet with Juniper SRX?
- upvotes
- 68
- comments
- 122
Post
Whenever the conversation on enterprise firewalls comes up on this group, I've noticed the discourse is always incredibly predictable: "Palo Alto if you can afford it, Fortinet if you cannot. Honorable mention: Cisco FTD but we all hate those" Juniper SRX? Never even mentioned in these topics. I'm wondering why, though? What am I missing, or rather what are SRX missing to not be a major contender for enterprise NGFW consideration? It looks like SRX is more heavily used in Carrier & Telco networks versus enterprise networks. Do you consider SRX a true "NGFW" firewall? Is it really as simple as "Palo and Fortinet have a nice GUI to manage and audit the security policy, and Juniper doesn't?"
Extracted from these lines
"Palo Alto if you can afford it, Fortinet if you cannot."
From the post
[comment u/roiki11] Palo is just ridiculously expensive so they're a lot cheaper pound for pound
[comment u/snokyguy] I’m beyond done with palo altos complacency in the space; utter lack of product team knowledge; and pitiful, pitiful support.