We performed a comparison between Huawei NGFW and Zscaler Internet Access based on real PeerSpot user reviews.
Find out what your peers are saying about Netgate, Fortinet, OPNsense and others in Firewalls."The solution can scale well."
"It's inexpensive compared to some of the other technology out there."
"The web tutor and automatic rules by schedule are good features."
"The most valuable feature of Fortinet FortiGate is URL filtering."
"The most useful functionality of Fortinet FortiGate is the user interface, multiple engines, and their cloud with the latest integrations. Additionally, the Security Fabric tool is very good."
"Whenever I need something, Fortinet improves and updates the software for me."
"Provides good firewall security and has great VPN features."
"I like that you are able to manage FortiGate from the FortiManager to create a more centralized environment."
"I am impressed with the product's antivirus features, strong encryption, policy implementation and easier installation."
"We have found the initial setup to be straightforward."
"The setup is quite easy."
"It enables us to configure different policies and restrictions for specific users within the same subnet."
"Huawei support is excellent. I rate it 10 out of 10."
"The solution's implementation is pretty easy."
"The solution's performance is good with IPSec."
"Huawei was able to assist us in the installation of their product. The installation was very fast."
"I like the granularity of the control of all the traffic, including SSL inspection. I also like the fact that the user interface is intuitive. The latencies with Zscaler are minimal compared to those of any other competitor. Other competitors do not really have the global scale that Zscaler has and cannot promise low latencies."
"The best thing about Zscaler Internet Access is the website filtering. In the UAE it's quite an important feature because most of the malware comes through the SQL injection and through downloads from websites. Zscaler helps protect against that."
"The users are at different locations, and Zscaler helps us to put the organization's central security controls on these roaming users."
"In terms of management and visibility, there is a single panel where you can configure the policies for your entire organisation worldwide."
"Zscaler Internet Access protects using data loss prevention. If you have a CASB exposing your cloud out into the network, then Zscaler Internet Access will go ahead and control that unknown cloud application in the CASB, protecting it. There is also data detection with exact data match. This improves the data coming into your cloud so you are protecting it."
"All internet access flows through the Zscaler proxy, regardless of whether people are in office or remote. I have greater control site access and I minimize the number of compromises that we experience to almost none."
"One feature that is valuable to me from an implementation point of view is that it's very easy to implement."
"Overall, we're very happy with our product."
"FortiGate support could do some improvements on their IPv6 configuration. Right now it's still in the very early stage for utilizing in an enterprise level network environment."
"I would like to see improvements in the support from Fortinet. Here in the Philippines, whenever we have problems with a Fortinet product, we mostly ask for support from distributors and resellers and not directly from Fortinet."
"The license renewal process, annual renewal price, and the web application firewall features should be improved."
"The improvement is related to logs. Instead of the CLI, we should be able to have more insights into the logs of the firewall in the GUI."
"I feel that the reporting needs to be improved."
"I would like some automated custom reporting."
"Compared to some other products, the DLP is not at par for the moment."
"There are some complex administration tasks in their administration portal. That needs to be improved."
"The tool does not have web functionality. It needs to also have high end firewalls."
"One issue is integration. Huawei can't detect Indicators of Compromise (IoC). I can get a lot of information about security, but can't automatically input the EP, domain URL, and file hashes I get from Hackersworld into my blocklist."
"The solution does not have sandboxing features."
"The solution isn't cheap. It's market price."
"The solution could be more secure and have better integration."
"One issue we've encountered with Huawei NGFW is that after using a firewall for two or three years, we need to replace it. The new firewalls often have more features and better memory or throughput. However, sometimes, they lack some features that the old ones had."
"With the Huawei firewall, none of the features comes at the top. We found out later that customer support is really not good. For this firewall, because of our customers' routine, for example, every six months they'll do a penetration test to find weaknesses. So whenever they came up with VAPT reports, they are looking to Huawei for help. I think that's basically because it's a different culture. Chinese culture and our culture is different. They have always tried to help find some excuses or say some other things that cannot help you solve the problem immediately."
"The documentation needs to be improved. When they retire old models, they also retire the documentation. However, if you are still using an older model, you still need access to that documentation. And yet, they go ahead and removed it. It's gone. You are therefore stuck with a device with no documentation and technical support that isn't very helpful as they also remove support assistance as well."
"Sometimes it's not easy to use during large deployments of workstations."
"Zscaler does not provide dedicated IPs to each customer. Hence, they share a pool of IPs provided by Zscaler. There is a chance of blacklisting these IPs. I also do not like the multi-management portal."
"I don't know whether it's Zscaler or not, however, sometimes I can't access my time management. I need to wait and try again a few hours later. Typically, if I let some time pass, I can access it again."
"The solution can be improved by advancing some of the newer technologies such as the DLP feature, and adding email security."
"One thing that they could improve is the ability to import rules from other platforms."
"Zscaler should provide adjacent services, which would be complementary to their current offering that could to be more pragmatic for a customer. For example, if you take Akamai, you get multiple sets of services, all depending on the customer and the strategy and the complexity and the problems. In some areas, they are more varied in terms of coverage."
"It needs better integration with other applications. It takes a fair amount of regular activity to apply the by-passes because it is very strict in its restrictions and frequently you have to go in and open things up to allow the workforce to work."
"What could be improved in Zscaler Internet Access is its price. It could be cheaper."
Huawei NGFW is ranked 31st in Firewalls with 20 reviews while Zscaler Internet Access is ranked 2nd in Secure Web Gateways (SWG) with 46 reviews. Huawei NGFW is rated 7.2, while Zscaler Internet Access is rated 8.2. The top reviewer of Huawei NGFW writes "A scalable and easy-to-setup product that can be used to configure different policies for specific users". On the other hand, the top reviewer of Zscaler Internet Access writes "Provides integrated CASB and file sandboxing but could be less expensive ". Huawei NGFW is most compared with Cisco Secure Firewall, Netgate pfSense, Meraki MX, Palo Alto Networks NG Firewalls and OPNsense, whereas Zscaler Internet Access is most compared with Cisco Umbrella, Microsoft Defender for Cloud Apps, Netskope , Prisma Access by Palo Alto Networks and Appgate SDP.
We monitor all Firewalls reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.