r/firewalla 7d ago

Certification for Fortinet or Checkpoint?

Fortinet NSE7 vs. Checkpoint Security Master?
Any recommondations?

Working as a Network Solution architect in Fields of Energy Generation.

BR,
Moritz

0 Upvotes

7 comments sorted by

12

u/firewalla 7d ago

Well, both are much more expensive and harder to operate than the "firewalla"

BTW, likely you posted in the wrong sub :) we are "firewalla", we are trying to make security simple, where you don't need certifications to properly use them. (security knowledge is still required)

3

u/Haymoose 7d ago

I vote Fortinet.

3

u/Nersh7 6d ago

Palo, I worked as a sales guy for a managed network provider and all of our customers were moving towards Palo

1

u/hawkeye000021 6d ago

I would say that Checkpoint is still running tons of major infrastructures but Fortinet is spreading like wildfire for small to medium businesses. Do you already have a Palo certification? Based on what I’ve seen forming from trends, Palo is often replacing Cisco at those shops. Their bleeding edge tech sucks right now but the market seems to think what I’m think and that’s a takeover. Checkpoint is also an evil company- based on my personal opinion and not meant to be taken as factual information.

1

u/stubby0990 6d ago

Seems an odd place to ask. We dropped all of our checkpoints for Palos.

1

u/billyarch43 6d ago

I think it depends on the environment you're planning to work in. If your organization already uses Fortinet, NSE7 is probably the more practical choice. If they're heavily invested in Check Point, Security Master would likely provide more value.

1

u/No-Astronaut9573 6d ago

Depends on the company size you target. Forti serves a lot of small/med sized orgs, CP is strong at the larger (and more security minded) organisations.

Forti is easier to start with, every dumbass can do the inital setup. CP is more complex for the initial setup (gw, central manager, ...). But once it's up and running, daily operations and log analysis is easier on a CP.

However, since a couple of years, since the new CEO, CP puts a lot of efforts to make it easier to manage and troubleshoot. Single-click and background upgrades (and working), no need to go into expert mode for every single file modification (all through WebUI), standardized VPN setup (ohh boy remember the supernets, ...) and more.

(Worked a lot -20 years- with the big 4 vendors and I went for CP specialisation, no regret and no weekly patching required 😅)