We performed a comparison between Netgate pfSense and Sophos XGS based on real PeerSpot user reviews.
Find out in this report how the two Firewalls solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI."The most valuable feature is the ease of use."
"FortiGate Secure SD-WAN includes best-of-breed next-generation firewall (NGFW) security, SD-WAN, advanced routing, and WAN optimization capabilities, delivering a security-driven networking WAN edge transformation in a unified offering."
"Good anti-malware and web filtering features."
"Customers want to load balance more than eight lines or six internet lines. FortiGate is the only solution that can accomplish this."
"Good performance, stability, and virtual domain ability."
"The technical support is great."
"This is an easy solution to deploy."
"Easy to implement, and it is also reliable."
"Its reliability and cost-effectiveness stand out."
"What I found most valuable is the cost of the platform, the flexibility of the platform, and the fact that the ongoing fees are not there as they are with the competitor. Some people may think you're taking a risk with using Opensource. I think it just provides the end user, specifically for us small, medium business providers of services, the flexibility we need at the right cost to provide them a higher end, almost enterprise type service."
"It is a stable solution. It is also easy to install and can be deployed and maintained by one team member."
"The classic features such as content inspection, content protection, and the application-level firewall, are the most important."
"Content protection, content inspection, and the application level firewall."
"This solution has increased the level of security, given us more control, provided a deep insight into network traffic, and is a great VPN solution."
"The intrusion detection feature is the most valuable. It is an open-source firewall, so there is a lot of material on it. I also find the open VPN capability very nice. It is pretty customizable. The clustering and the high availability are the two biggest things to be able to get out of a firewall."
"My company mainly works in the health and educational domain, schools and universities. I prevent the improper use of content from schools and universities. I defend the medical records for the patients in our hospitals. That is the main use case for me for the firewall."
"The feature that I find most valuable is the synchronized security option where the endpoint talks to the firewall."
"The Sophos XGS product is highly versatile and well-suited for various companies, including small, medium, and large enterprises. Its effectiveness lies in its inspection firewall capabilities, making it a commonly chosen option in our country due to its reasonable pricing. Sophos Firewall's support for VPN encryption and thorough inspection makes it a suitable choice for many companies, and I recommend it accordingly. At the moment, I can't propose any new features. The primary concern is the traffic stability, which needs improvement. Although the traffic stability is generally good, it has been noted that it can impact RAM and CPU, affecting workflow and inspection."
"There are good KCL rules and policies as well as NATing rules."
"The most valuable features in Sophos XGS are identity and VPN. It is a very good solution that is able to detect and prevent a lot of malicious activity."
"In this solution, the most valuable feature is that it's a security device. Maintaining security is very valuable for us. The other feature that we did not find in other products is that it works well with thin client environments."
"The threat intelligence capabilities of the tool are good."
"Spam filtering is what I love most about XGS."
"It is a scalable solution."
"I could not configure sFlow from the FortiGate graphical user interface. I realized that the sFlow configuration is available only from the CLI, and discovered that sFlow is not supported on virtual interfaces, such as VDOM links, IPsec, or GRE."
"One issue that I have had is that sometimes I need to monitor the traffic, so I need to filter it according to the user and which user is using it the most. I experience a bottleneck most of the time, particularly at the peak time when the number of contracts and users are at maximum."
"If they could extend their fabric towards other vendor environments for integration, that would be great."
"There is a lot of improvement needed with SSL-VPN."
"Fortinet FortiGate could improve by adding FortiAnalyzer to its solution, we should not have to use another solution. FortiAnalyzer can provide more detailed information."
"It should provide better visibility over the network and more information in the form of reports for the end users. Its installation should also be easier."
"We would like to see an upgrade to the VPN feature, we are using the VPN from outside of our office and there is a limitation to 10 connections, more connections would be suitable."
"From a reporting perspective, there's room for improvement. They're providing FortiAnalyzer through which one can get some enhancements, but the visibility and reporting still need slight improvement."
"We have not had any problems with it, and we also do not have a need for any new features. If anything, its reporting can be better. Sophos has better reporting than pfSense. Sophos has more detailed information. pfSense is not as detailed. It is summarized."
"Also, simplifying the rules for the GeoIP. Making it simpler to understand would be an improvement."
"Other solutions provide more scope for growth. For instance, we can have only 10 to 20 employees on VPN, but other solutions can support more users. We also have more capabilities to increase the performance of the solution."
"The integration should be improved."
"The VPN feature of the solution could improve by adding better functionality and providing easier configure ability."
"The GUI could use improvements, though it is manageable."
"I have been using WireGuard VPN because it is a lot faster and more secure than an open VPN. However, in the latest version of pfSense, they have removed this feature, which is one of the main features that I need. They should include this feature."
"pfSense has some limitations in detecting site sessions. We want to control internet usage based on sites and their content, and pfSense doesn't perform this function."
"The reporting could be better."
"In the new release 19, there should be the implementation of a cloud service that you can use to set up the IPSec tunnels, and the SD-WAN from the WAN dashboard, and then you can push that configuration out to every firewall that you have."
"The application is a little slow; it takes five to ten seconds to respond to every click when configuring. If we need to do significant configuration, it can take a lot of time. This might be because we have a low-end machine, and it could be faster with a high-end one."
"There are some bugs relating to the product that allow VPN users to bypass the firewall."
"Sophos XGS could improve the automation system. It could be better if there was some level of automation, attacks automation, meaning if this happens, then it automatically executes a particular process."
"In future releases, this solution could have more graphical elements on the dashboard to make it easier to understand."
"Sophos XGS would benefit from further development in the SD-WAN area."
"Sophos XGS could improve by having better integration with Active Directory."
Netgate pfSense is ranked 1st in Firewalls with 128 reviews while Sophos XGS is ranked 17th in Firewalls with 62 reviews. Netgate pfSense is rated 8.6, while Sophos XGS is rated 7.8. The top reviewer of Netgate pfSense writes "User-friendly, easy to manage the firewall, rule-wise and interface-wise". On the other hand, the top reviewer of Sophos XGS writes "Easy to use, simple to learn, and offers great reporting". Netgate pfSense is most compared with OPNsense, Sophos XG, KerioControl, Sophos UTM and Cisco Secure Firewall, whereas Sophos XGS is most compared with Sophos XG, OPNsense, WatchGuard Firebox, Palo Alto Networks NG Firewalls and Meraki MX. See our Netgate pfSense vs. Sophos XGS report.
See our list of best Firewalls vendors.
We monitor all Firewalls reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.