I am the team manager responsible for various security products. My customers use Palo Alto Networks products, and I am working with Palo Alto partners. We support a variety of solutions including Strata firewalls, Prisma SD-WAN, and Wildfire for advanced threat protection.
VM-Series Virtual Next-Generation Firewall (BYOL)
Palo Alto Networks | PAN-OS 11.1.6-h7Linux/Unix, Other 11.1.6-h7 - 64-bit Amazon Machine Image (AMI)
External reviews
External reviews are not included in the AWS star rating for the product.
Pros and cons of Palo Alto VM-Series
To maximize efficiency at more traffic situations, you can use technologies like Intelligent Traffic offload.
Experience
Robust and scalable virtual firewall solution is the key for Enterprise-wide cloud security
Cloud-Native.
Multi-Cloud Feature.
Scalability and Flexibility
Comes with High Performance Networking
recommended for security purposes for cloud environments.
My Experience using Palo Alto VM-Series
Can overcome complex threat landscapes with robust threat intelligence and great reliability
What is our primary use case?
What is most valuable?
Wildfire, a sandboxing product, allows for analyzing malware in virtual machines. Its strength lies in threat intelligence, which is significant for proactive defense. Palo Alto's robust threat intelligence supports new updates, and I can open cases directly with their Threat Intelligence team. Customers appreciate the throughput and reliability of VM-Series Firewalls, as they can be managed efficiently through Panorama.
What needs improvement?
I find it difficult to reach technical support at Palo Alto Networks. Most customers go for partner-enabled support, which involves multiple layers, leading to delays. Additionally, the technical maturity level of support is not always high, resulting in dissatisfaction. The pricing of Palo Alto is relatively high, particularly for smaller companies.
For how long have I used the solution?
I have been familiar with Wildfire for nearly five years. I have been working with the VM-Series for nearly two years.
What do I think about the stability of the solution?
Palo Alto products are stable compared to others. Stability issues may arise when exceeding throughput limits, but hardware is generally very stable.
What do I think about the scalability of the solution?
Scalability is a strength of Palo Alto VM-Series. They are easy to upgrade, and with credit licensing, they scale effectively according to demand.
How are customer service and support?
I can give Palo Alto Networks technical support a six out of ten. It is very hard to reach, and the process can be lengthy and frustrating because support involves several layers.
How would you rate customer service and support?
Neutral
How was the initial setup?
Initial setup is easy, especially in public cloud environments where VM-Series can be obtained from the marketplace.
What was our ROI?
Our ROI is measured in terms of catch rate, however, customers often focus on the total price of the product rather than detailed ROI calculations.
What's my experience with pricing, setup cost, and licensing?
Palo Alto is expensive in terms of pricing, particularly when comparing features to cost. Their Premier Support is also very expensive and not widely chosen by customers.
Which other solutions did I evaluate?
I would recommend Check Point and Fortinet as alternatives for companies where the budget is a concern.
What other advice do I have?
I would recommend Palo Alto VM-Series to others and rate it an eight out of ten. However, for companies below midsize, it may not be a fit due to cost. For those companies, I suggest considering products like Check Point or Fortinet.
Which deployment model are you using for this solution?
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Experience robust security with fast and efficient VPN and antivirus capabilities
What is our primary use case?
The main gateway for my organization is Palo Alto because my SAP data is hosted there. My staff operates behind Palo Alto, and numerous software applications and websites are hosted on it. I wanted a strong product for security, particularly for ransomware, malware, and a strong VPN for accessing SAP through VPN and CloudProtect.
What is most valuable?
Palo Alto offers excellent security, with features such as email scanning, malware protection, and efficient VPN and antivirus capabilities. There is no latency, making it faster compared to my previous solutions. The services are hosted and run quickly, which enhances our operations. The security against DDoS attacks has also been improved significantly.
What needs improvement?
There is a need for two-factor authentication, particularly for VPN and CloudProtect. It would enhance security further. The individual certificate feature where a unique certificate is attached to each user would also be valuable. If Palo Alto adopts this, they would excel.
For how long have I used the solution?
I have been using Palo Alto for the last three months.
What do I think about the stability of the solution?
Palo Alto is very stable. I would rate it ten out of ten.
What do I think about the scalability of the solution?
It is very scalable. If I were to rate it on a scale, it would receive nine out of ten, and with two-factor authentication, it would be ten.
How are customer service and support?
The technical support is very good. I rate it nine out of ten.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
I was previously using Sophos. The switch to Palo Alto was driven by the need for a product that could manage all my in-house data and offer superior security. Sophos was not offering the class A level of service that Palo Alto provides.
How was the initial setup?
The initial setup of Palo Alto was straightforward as the vendor completed it efficiently in one day.
What about the implementation team?
The product was installed by our vendor.
What was our ROI?
As of now, I am content with the pricing. Although the price might seem high, it reflects the quality of the product similar to the difference between Android and Apple products.
What's my experience with pricing, setup cost, and licensing?
The pricing is reasonable and reflects the quality of the product. There are no issues with the cost, as it is commensurate with the quality received.
What other advice do I have?
My overall rating for Palo Alto Networks VM-Series is nine points out of ten.
The solution effectively handles security issues and ensures data safety.
Advanced threat prevention with visibility and control
What is our primary use case?
We manage public or private cloud traffic, inspecting for security through various profiles. This includes managing traffic for southeast, east-west, inbound, and A access, applying security profiles to the traffic. I also work with the Check Point Next Generation Firewall and Palo Alto Firewalls.
What is most valuable?
The most effective features for threat prevention include the threat prevention signature level, the application filter capability, and the visibility provided by the firewalls.
We use these tools to prevent all known and unknown threats using Palo Alto Networks' Wildfire and other data filtering tools to gather information, analyze traffic, manage malicious traffic, and offer visibility, control, and attack prevention.
What needs improvement?
When managing the firewall, it involves a Strata Cloud web browser that requires improvement to enhance deployment ease and call center efficiency.
Additionally, focusing more on enhancing the Stata Cloud Manager would be beneficial.
For how long have I used the solution?
I have used this solution for three years.
What do I think about the stability of the solution?
The solution is very stable and has been in the market for the last 16 weeks.
What do I think about the scalability of the solution?
We are very much satisfied with the tool's scalability.
It rates up to nine out of ten for scalability satisfaction.
How are customer service and support?
The support is quite responsive, but the support quality could be improved. They should focus on enhancing the support provided.
How would you rate customer service and support?
Positive
How was the initial setup?
The setup is easy; I would rate it ten out of ten for ease of setup.
What was our ROI?
Customers can see data within a week, indicating a quick return on investment.
What's my experience with pricing, setup cost, and licensing?
The pricing is at a reach level. I'm not the person who deals with exact pricing details.
What other advice do I have?
I recommend going with the VM series, as it integrates advanced technological standards on a single platform and supports Kubernetes and Docker, which other vendors often don't offer.
I rate the overall solution ten out of ten.
Which deployment model are you using for this solution?
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Enhanced threat prevention with advanced security controls
What is our primary use case?
The primary use case involves using next-generation firewalls, hardware, VM-Series, Prisma Access for SASE solutions, Prisma Cloud for cloud security posture management, and Cloud Workload Protection. It's used primarily for securing customers' virtualized data center environments as well as public cloud environments.
How has it helped my organization?
The additional visibility, which was lacking with cloud-native tools, has improved the organization's cloud security posture. Advanced enforcement and granular security controls help manage potential threats.
What is most valuable?
The most effective feature for threat prevention is the threat prevention model in the VM-Series. This is bundled with advanced URL filtering, decryption, and wildfire sandboxing.
What needs improvement?
If additional web application firewall capabilities could be integrated into the existing firewall, it would negate the need for additional products.
For how long have I used the solution?
I've been working with Palo Alto VM-Series for at least five to six years now.
What do I think about the stability of the solution?
We haven't had challenges with failovers yet.
What do I think about the scalability of the solution?
We've controlled the scalability via VMSS in Azure, using auto-scale groups in AWS. It's quite seamless, though there's room for improvement in cost management, especially during traffic spikes.
How are customer service and support?
The technical support is great. We've had no challenges and there are established channels for customer success and professional services.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
In the past, I used to work with Check Point, but haven't worked with them lately. Given the support from Palo Alto, there hasn't been a necessity to explore others.
How was the initial setup?
The integration process involved using a Panorama setup for centralized firewall administration, transitioning from cloud-native firewalls to VM-Series.
What about the implementation team?
We are primarily a consulting firm and reseller, so we've had significant involvement in the process.
What's my experience with pricing, setup cost, and licensing?
The solution tends to add to costs especially when scaling, although measures like using large compute instances minimize the need for scaling.
Which other solutions did I evaluate?
Potential competitors mentioned are Check Point and Cisco but haven't been evaluated recently.
What other advice do I have?
For straightforward firewall inspection and basic IPS, IDS requirements, native firewalls might suffice. For more advanced needs, using VM-Series or Palo Alto Firewalls is recommended.
I would rate it an eight out of ten.
Which deployment model are you using for this solution?
Enables us to address a lot of customer queries
What is our primary use case?
I use it for two main reasons. In case there is a customer query, Palo Alto firewall is one of the vendors that we support for syslogs, rule management, change management, and traffic monitoring.
Our product is used to query the firewall and provide a dashboard that raises alarms if any suspicious activity is detected. It involves the management of the firewall. We have a partnership with Palo Alto, and I have worked with VM-Series.
When a customer encounters an issue with our product in accordance with Palo Alto, I analyze the problem and provide solutions. Additionally, I have constructed a lab with network devices for partner training. This lab uses Palo Alto firewalls for communication.
How has it helped my organization?
By using this firewall, we were able to address a lot of customer queries and answer to their VM-Series. This helped us retain our customers and gain confidence from them.
What is most valuable?
Palo Alto is easy to use. The UI is very easy to understand and does not require any certification or highly skilled technician to handle the firewall. It is very user-friendly and straightforward out of the box.
What needs improvement?
An area for improvement would be AI-related features, particularly in rule management or threat intelligence. Focusing on AI-based threat detection would be beneficial.
Additionally, enhancing the ease of accessing technical support would be useful.
For how long have I used the solution?
I have been using Palo Alto Networks VM-Series for about three to four years.
What do I think about the stability of the solution?
Stability is good. Once it is configured, it is stable, and I would rate it nine out of ten. I have not experienced any outages with Palo Alto, unlike other vendors like Sophos.
What do I think about the scalability of the solution?
Scalability is good, and I would rate it eight out of ten. We use it for testing with a low load, and it works well. In production setups, I have observed it being used effectively with a large number of transactions per second.
How are customer service and support?
Reaching technical support is challenging, and I may not be eligible for direct support since I'm not a customer. It involves multiple channels. I would rate their technical support seven out of ten.
How would you rate customer service and support?
Neutral
Which solution did I use previously and why did I switch?
I previously used Cisco ASA, an older version, due to its market leadership at the time. We moved to Palo Alto due to multiple customer requests for other solutions like Sophos, FortiGate, SonicWall, and WatchGuard.
How was the initial setup?
The initial setup was very easy and can be rated nine out of ten. It is straightforward to configure, and the UI is simple.
What about the implementation team?
I did everything myself. One person is sufficient for the deployment and maintenance of five to seven firewalls.
What was our ROI?
The return on investment is seen in customer retention and addressing their queries rather than in revenue.
What's my experience with pricing, setup cost, and licensing?
I'm not the right person to give a rating for pricing, as I use a not-for-sale license provided by Palo Alto for testing.
Which other solutions did I evaluate?
We evaluated Cisco ASA, but due to diverse customer demands and requests for vendors like Sophos, FortiGate, SonicWall, and WatchGuard, we extended our support to Palo Alto as well.
What other advice do I have?
For software application firewalls, this is the best solution. If you are using it in a cloud or as an application firewall, then Palo Alto Networks VM-Series is the best one for you.
I would rate it an eight out of ten.