Skip to content
Anyone running both...
 
Notifications
Clear all

Anyone running both Juniper and Palo Alto firewalls? Real comparison

1 Posts
1 Users
0 Reactions
1 Views
(@julie)
Trusted Member
Joined: 1 week ago
Posts: 29
Topic starter   [#5362]

Hi everyone, I've been lurking here for a bit and finally decided to post. I work in product analytics, and my team is increasingly involved in discussions about our internal security infrastructure, especially around how we track and segment user data flows.

Our current environment is mostly Juniper SRX (some older 300 series, some newer 5400s). There's a strong push from part of the org to standardize on Palo Alto, likely the 5200 series, for all new deployments. The sales pitches are... intense, to say the least. I'm naturally skeptical of marketing claims versus real-world performance.

I'm hoping to get some unbiased, practical insights from people who have actually run both platforms side-by-side in production. Not just "which is better," but specifics.

* From an operational standpoint, how does policy management and rule logic compare day-to-day? I've heard PAN's App-ID is a different philosophy than traditional port/protocol rules.
* Have you hit any surprising throughput or performance gaps compared to the datasheet, especially with threat prevention features fully enabled?
* For those who migrated, what was the most painful part of translating Juniper rulesets or security policies over to Palo Alto? Any "gotchas"?

Our team really values data-driven decisions, so any concrete examples or lessons learned would be incredibly helpful. I want to understand the real operational differences, not just the feature checklists. Thanks in advance for any insights you can share.



   
Quote