All the PwC offices in Pakistan use Palo Alto in their environment. It is a global solution.

VM-Series Next-Generation Firewall Bundle 1 [VM-300]
Palo Alto Networks | PAN-OS 8.1.25-h1Linux/Unix, Other PAN-OS 8.1.25-h1 - 64-bit Amazon Machine Image (AMI)
External reviews
External reviews are not included in the AWS star rating for the product.
Palo Alto Networks Next-Gen Firewall : Mon expérience
Performance, security and visibility
also to make an eficient web filter.
We have a single panel to monitoring about network traffic, apps usage, threats, with a simple dashboard
Sécurité efficace et efficiente avec les profils de sécurité des NGFW de Palo Alto
Meilleur pare-feu que l'argent peut acheter
Les leaders dans le pare-feu de nouvelle génération (NGFW)
La sécurité à l'avant-garde
Provides excellent filtering and blocking features and enables users to examine reports easily
What is our primary use case?
What is most valuable?
Palo Alto is a good product. The features are up to the mark. No other product can compete with Palo Alto’s features. The filtering feature is good. We can block the traffic and examine the report easily. The blocking functionality works very well compared to other firewalls. I rate the ability of the tool to keep up with the trends in firewalls an eight out of ten.
What needs improvement?
The product must create some awareness in Pakistan. People are less aware of Palo Alto. Everyone knows about Fortinet and Cisco. Very few vendors are promoting the tool.
For how long have I used the solution?
I have been using the solution for four to five years.
What do I think about the stability of the solution?
The stability is fine. I rate the stability a seven out of ten.
What do I think about the scalability of the solution?
I rate the product’s scalability an eight out of ten. We have 2500 users. We use the tool daily. All our traffic passes through it.
How was the initial setup?
I rate the ease of setup a seven out of ten. The setup is moderately easy. The product is deployed on the cloud. The deployment takes two to three days since it has global rules.
What about the implementation team?
The tool was deployed in-house.
What was our ROI?
We have seen an ROI of 60% to 70%.
What's my experience with pricing, setup cost, and licensing?
Companies in Pakistan have limited budgets. Palo Alto is more expensive than other products. So, people are reluctant to put Palo Alto in their environment. It's too costly compared to other tools. I rate the pricing a nine out of ten.
What other advice do I have?
We had deployed the solution in 2018. We used a different product before, but my organization switched to Palo Alto. It was the management’s decision. Overall, I rate the tool an eight out of ten.
Offers threat prevention and WildFire features with outstanding stability
What is our primary use case?
Our company sometimes uses a data center edge firewall from Cisco, Fortinet, Forcepoint, or any other vendor, and the solution is used to cover apps and data.
What is most valuable?
The threat prevention and WildFire features are the most valuable features. DNS is another good feature of the product.
What needs improvement?
The flexible throughput in Palo Alto Networks VM-Series can be improved. The customers of our organization demand 500 meg throughput and the payment also depends on it. The basic firewall from Palo Alto has the size of one gig, and it isn't logical for a customer to buy for one gig when just 500 meg is required. Palo Alto Networks VM-Series should become a more flexible firewall.
VM management in an environment is difficult with Palo Alto Networks VM-Series, but it can be smoothly managed through Panorama. The vendor can work on enhancing and processing that will not affect the server itself or the VM firewall protection. In our company, we have multiple VMs implemented on the same server, and the Palo Alto Networks VM-Series is used to protect these VMs completely. The tools being used should not affect the operations between VMs.
For how long have I used the solution?
I have been using Palo Alto Networks VM-Series for almost four years.
What do I think about the stability of the solution?
I would rate the stability of the product a nine out of ten. I am facing multiple stability issues with other competitor tools in our company.
What do I think about the scalability of the solution?
I would rate the scalability a seven out of ten. I would've rated Palo Alto Networks VM-Series more if the flexible throughput was better. I would rate the scalability of other competitor tools a four out of ten. Palo Alto Networks VM-Series is suitable for businesses of every size or scale.
How are customer service and support?
The vendor provides two support modules: backline and premium support. If you need to open a case directly with Palo Alto to solve a problem, you must purchase premium support.
Premium support is highly expensive—almost five times the cost of availing backline support. Local distributors of the product manage the backline support and have extended response time, and the team might not have mature knowledge to solve issues.
How was the initial setup?
The solution's initial setup process is very easy. A hybrid deployment model is available for Palo Alto Networks VM-Series. Panorama can manage the solution's VM, physical, and cloud versions, making it an impressive monitoring tool.
A more mature and enhanced tool can be used in integration to migrate from other competitor solutions to Palo Alto Networks VM-Series. For instance, if a customer has a legacy firewall from Cisco or Fortinet and there is a need to migrate to Palo Alto, I will require a mature migration tool that will make the process easier for engineers to migrate the rules, policies, and application IDs.
What's my experience with pricing, setup cost, and licensing?
The licensing model should be improved. Palo Alto Networks VM-Series is the most expensive tool among competitors.
Which other solutions did I evaluate?
Palo Alto Networks VM-Series and the competitor products provide multiple series of bandwidth, features, implementation models and capable management tools. But Palo Alto Networks VM-Series is the most stable compared to all other competitor tools. The signature or behavior of the database is more mature in Palo Alto Networks VM-Series than others.
Palo Alto Networks VM-Series allows you to analyze the behavior of any traffic or probable attack.
What other advice do I have?
The solution easily integrates with the client's cloud security architecture. If in our company, we get a customer who's depending on the container, then security is required for the container from OpenShift or any other vendor, I use Prisma to secure the environment instead of traditional firewalls.
The solution's sizing and architecture are highly expensive. It's an effective and stable firewall that detects all attacks. Palo Alto Networks VM-Series can adapt quickly to an organization's changing security or policy needs. Overall, I would rate the product an eight out of ten. I will definitely recommend Palo Alto Networks VM-Series to other users.
Protects from ransomware and malware but needs improvement in visibility
What is most valuable?
The most effective features for threat prevention are application-based prevention and WildFire. These features cover various threats, such as ransomware, malware, etc. They provide real-time visibility. By applying appropriate policies, threats can be blocked.
What needs improvement?
The solution needs to improve its visibility. It's not straightforward to use. Understanding the policies, authorizations, and initializing features requires careful review. The product needs to offer proper training.
For how long have I used the solution?
I have been working with the product for three to four months.
What do I think about the stability of the solution?
I rate Palo Alto Networks VM-Series' stability as ten out of ten.
How are customer service and support?
The main issue with the tool's support is the delayed response time, ranging from one to two hours. This delay can impact customers who are waiting for support. Additionally, partners may become busy.
How would you rate customer service and support?
Positive
What other advice do I have?
The tool's improvement in cloud security posture depends on the features used and the licenses purchased. Different suites are available, such as Professional, Core, and Enterprise, each offering various features for endpoint.
Competitors such as Fortinet and Check Point also offer similar features, but I don't know much about their offerings. However, Palo Alto Network VM-Series stands out with its application deployment capability, iOS zone protection, and features like application ID, user ID, and device ID identification. These features enable policy application and on-premises protection, which may not be available in competing solutions.
I rate the overall product a nine out of ten.
Effective for threat prevention in our networks,
What is our primary use case?
I've mainly worked with the VM-Series, and a few features have been really effective for threat prevention in our networks, like McAfee training, Accountant ID, and apps ID. These features integrate well with our existing environments and tools, such as Panorama.
What is most valuable?
The VM-Series scalability is fast and easy to implement, improving our security posture as our Azure network grows. The only minor issue we've faced is with the apps ID configuration, which requires specific matching for application filtering. Tools like Loopback help us identify open or denied flows between two firewalls and manage the servers effectively. The Palo Alto system easily identifies rules and objects within roles, making maintenance straightforward.
What needs improvement?
No other major concerns, just the specific issue with Apps ID configuration. Otherwise, overall stability, VPN, IPSec, VRF, and flow management with the VM-Series have been very stable and reliable.
For how long have I used the solution?
I have been using Palo Alto Networks VM-Series for 2 years.
How are customer service and support?
I've had a positive experience with Palo Alto's support. They usually respond within a few hours, which is satisfactory
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
In my experience, Palo Alto and Fortinet offer similar quality and high-level security compared to other vendors like Cisco and Forcepoint. They stand out in terms of reliability and security features. Other vendors may not match their level of performance and security.
How was the initial setup?
It is easy to maintain because we have various tools to manage and monitor the system.
What's my experience with pricing, setup cost, and licensing?
The pricing for Palo Alto is quite high compared to FortiGate, which is more affordable. I don't have the exact figures as my manager handles that, but from my research, Palo Alto's licensing costs are significantly higher.
What other advice do I have?
I would rate Palo Alto Networks VM-Series as an eight overall. My recommendation for others considering this tool would be to ensure they have the budget for it, as it can be expensive compared to alternatives like FortiGate. Also, they should be prepared to understand and document their application metrics thoroughly to implement the firewall correctly.