We performed a comparison between Sophos XG and Zscaler Internet Access based on real PeerSpot user reviews.
Find out in this report how the two Firewalls solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI."Its administrative panel is very intuitive and simple. It is simpler than the other solutions that we had. As an administrator, we are always looking for the easiest solution to manage network policies. We are able to filter everything on our network and also use the VPN feature, which is important these days when people are working remotely during COVID."
"The CLI is robust and powerful, enabling rapid, consistent changes via SSH."
"FortiGate is very simple to manage and easy to use."
"It is easy to use and performs very well."
"This product is definitely scalable."
"Overall security features and performance routing is good."
"The features that I have found most valuable are the SD-WAN and their IP4 policy."
"It is useful for protecting and segregating the internal networks from the internet. Most of our customers also use the FortiGate client to connect to their offices by using the VPN client, and of course, they usually activate the antivirus, deep inspection, and intrusion prevention services. They are also using it for web filtering and implementing various policies dealing with forwardings, NAT, etc."
"The most valuable feature is web filtering."
"Sophos offers great disk encryption, anti protection, and the interface is very user-friendly."
"Sophos XG Firewall is very usable, very easy to install, and very user friendly."
"The most valuable feature of Sophos XG is the VBM."
"I particularly like the visibility it provides into network traffic, allowing us to identify and address issues efficiently."
"Technical support is responsive."
"The most valuable feature I have found to be the reporting function."
"It's a good security tool and it aligns with the rest of our security stack."
"The solution is stable and reliable."
"For our needs, the cloud-native proxy architecture is a very good solution. We are moving away from on-prem appliances and moving more toward cloud-based solutions. Zscaler is a good fit for our strategy. This architecture helps with cyber threats because we inspect most of the traffic and we can see that a lot of threats are stopped directly in the secure web gateway."
"The scanning feature is impressive, because they do not introduce a big latency to the traffic."
"The solution offers a distributed organization to master and to control all of the endpoints."
"We don't have to buy equipment to use it. And when our engineers set it up on our side, we just configured a few settings and we were in."
"The VPN is valuable, as the whole technology is very different from a traditional VPN."
"All internet access flows through the Zscaler proxy, regardless of whether people are in office or remote. I have greater control site access and I minimize the number of compromises that we experience to almost none."
"In terms of management and visibility, there is a single panel where you can configure the policies for your entire organisation worldwide."
"Due to its higher cost, Fortinet FortiGate can lead to increased operational expenses."
"Fortinet FortiGate could improve by having better visibility. Palo Alto has better visibility."
"The biggest "gotcha" is that if the client purchases what they call the UTM shared bundle, which has unified threat management on both, it's not as easy to manage if you have more than one firewall."
"I could not configure sFlow from the FortiGate graphical user interface. I realized that the sFlow configuration is available only from the CLI, and discovered that sFlow is not supported on virtual interfaces, such as VDOM links, IPsec, or GRE."
"Fortigate's hardware capacities could be improved."
"A couple of things I've seen that need improvement, especially in terms of a hard coding. The driver-level active moment really is out-of-the-box and we have to have contact the customer support and sometimes it is difficult to resolve."
"Their software support needs improvement. I would prefer to have better support for bug fixes. Sometimes, we open a ticket, and it is very difficult to get a solution. Specifically, we are not at all happy with their support for load balancing."
"There are some tiny bugs that sometimes affect the operations. In the past revision of it, there was a bug. Because of the bug, we had to downgrade the version. It happened only with the last revision."
"In the Sophos XG, the SD-WAN has all the rules done separately, such as net policy routing. In the previous version, they were all in a single rule and everything was done that way. The way it is now is difficult for us because we are not used to this newer version. The firewall rules should be easier to configure and create. Everything should be done with a single click."
"Sophos XG could improve by coming out with more innovative feature developments."
"The current bandwidth consumption is no longer shown in the XG and XGS."
"Sophos can improve the debugging of the WAPS function."
"An area of improvement would be the reporting as diagnostic graphs take a long time to load and refresh. If there could be an option to show only select graphs, it may speed up the graphics."
"I would like to have more artificial intelligence in the web monitoring service that comes with it. It should alert us when particular events happen. It has already got some of that. I know that it is more of a service, and Sophos is already looking at it. It is called SIEM."
"The training manual provided to users lacks proper guidance on configuration procedures."
"In the next release, I would like to see improvements to simplify the interface and more policy deployments."
"There are a few features that are not compatible with the Azure cloud."
"When you have appliances, SSL inspection is always a headache due to poor performance and/or lack of ciphers implemented. "
"Sometimes, support isn't available."
"Zscaler Internet Access needs to integrate more ISPs. It is good to have more than three ISPs."
"The solution can be improved by advancing some of the newer technologies such as the DLP feature, and adding email security."
"The main issue with Zscaler Internet Access is proxy IP detection, which sometimes makes sites inaccessible."
"It needs better integration with other applications. It takes a fair amount of regular activity to apply the by-passes because it is very strict in its restrictions and frequently you have to go in and open things up to allow the workforce to work."
"I don't know whether it's Zscaler or not, however, sometimes I can't access my time management. I need to wait and try again a few hours later. Typically, if I let some time pass, I can access it again."
Sophos XG is ranked 7th in Firewalls with 192 reviews while Zscaler Internet Access is ranked 2nd in Secure Web Gateways (SWG) with 46 reviews. Sophos XG is rated 8.2, while Zscaler Internet Access is rated 8.2. The top reviewer of Sophos XG writes "Easy to use and deploy with an improved pricing structure in place". On the other hand, the top reviewer of Zscaler Internet Access writes "Provides integrated CASB and file sandboxing but could be less expensive ". Sophos XG is most compared with Netgate pfSense, OPNsense, Sophos XGS, SonicWall TZ and Meraki MX, whereas Zscaler Internet Access is most compared with Cisco Umbrella, Microsoft Defender for Cloud Apps, Netskope , Prisma Access by Palo Alto Networks and Appgate SDP. See our Sophos XG vs. Zscaler Internet Access report.
We monitor all Firewalls reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.