We performed a comparison between Fortinet FortiGate and Sophos XG based on our users’ reviews in five categories. After reading all of the collected data, you can find our conclusion below.
Comparison Results: Fortinet FortiGate and Sophos XG had similar user ratings regarding ease of deployment, service and support, and ROI. In terms of features, each software has its pros and cons. Fortinet FortiGate offers some great features, but it is a little more complex and needs better reporting. Sophos XG provides a stable, complete firewall solution, but it fails to integrate well with other products, and the SD-WAN needs improvement. Sophos XG was the better option for pricing, as they offer flexible pricing based on region.
"The ease of setting the solution up is a valuable aspect for us."
"The UTM feature is quite good. FortiAP is easy to deploy because both Fortigate and FortiAP are under the same brand. Otherwise, you need to do more work on the configuration."
"The security on offer is very good."
"The most valuable feature of Fortinet FortiGate is the simple configuration."
"The most valuable features are SD-WAN, application control, IPS control, and FortiSandbox."
"The base firewall features are quite valuable to us."
"The SD-WAN function is very developed. It has SD-WAN functionality with security features in one device. We can manage from one single console SD-WAN and the security policy."
"You can create multiple Virtual Domains (VDOMs), which are treated as separate firewall instances."
"One feature of Sophos XG that I found incredibly beneficial for threat prevention is its endpoint protection."
"The initial setup was straightforward."
"SD-WAN features should be added."
"The most valuable feature of this solution is that the license offers everything."
"It's a good security tool and it aligns with the rest of our security stack."
"The most valuable is the synchronized security between Sophos XG and Sophos endpoint because it provides a lot of visibility about unknown applications. The endpoint shares the information of unknown applications, and you can learn about those applications and create policies to allow or block those applications."
"The most useful aspect of the solution is the concept of integrated security."
"I like the firewall, inbound, and outbound modules the most. The VPN feature also works well. It is very easy to configure rules in Sophos XG. We have got local service here in Zimbabwe from Sophos, which is something that I like a lot. We have got good local support, and they come on-site when we have any challenges. Sophos provides a lot of good training all around Zimbabwe. They are quite dominant here, similar to other solutions like Fortinet or WatchGuard."
"The customization could be improved. Cisco, for example, is much better at this. They need to work to be at least as good as they are."
"I would like to have logs, monitoring, and reporting for a month without extra fees."
"Compared to some other products, the DLP is not at par for the moment."
"Scalability for Fortinet FortiGate needs to be improved. SD-WAN security for this solution also needs some improvement."
"Fortinet needs to overhaul its documentation."
"I would like to see improvements in the support from Fortinet. Here in the Philippines, whenever we have problems with a Fortinet product, we mostly ask for support from distributors and resellers and not directly from Fortinet."
"MTBF: Hardware failure is more common when compared to SonicWall or Cisco ASA."
"A sandbox would be good in order to be able to inspect the emails containing spam and be able to validate the emails that contain malware, prior to delivering to the customer."
"LAN inbound and outbound traffic requires more control."
"For the moment, managing the Sophos interface is a little bit challenging."
"The solution could be improved if it offered more documentation or at least provided more information about the products themselves."
"One feature I would like to add is remote wipeout capability. This would be useful in cases where a user leaves the organization and fails to return their laptop. Remote wipeout would allow for the deletion of data from the device with a single command. Regarding technical support from Sophos XG, it's generally satisfactory. However, the response time could be improved. It takes around one hour to receive assistance, but reducing this to 30-45 minutes would benefit us."
"The reports could improve, they do not seem complete and more information could be added."
"It is already secure but it could be better in terms of other breaches that may occur."
"Their support is fairly good, and they come back to me. I've had an issue once or twice where I couldn't understand what the support person was saying because those calls were probably routed to India. They were a bit difficult to understand, but it is generally not an issue."
"The VPN device could be improved upon."
Fortinet FortiGate is ranked 2nd in Firewalls with 306 reviews while Sophos XG is ranked 7th in Firewalls with 192 reviews. Fortinet FortiGate is rated 8.4, while Sophos XG is rated 8.2. The top reviewer of Fortinet FortiGate writes "It's a reliable solution that's easy to install and cheaper than competitors ". On the other hand, the top reviewer of Sophos XG writes "Easy to use and deploy with an improved pricing structure in place". Fortinet FortiGate is most compared with Cisco Secure Firewall, Netgate pfSense, Meraki MX, Check Point NGFW and WatchGuard Firebox, whereas Sophos XG is most compared with Netgate pfSense, OPNsense, Sophos XGS, SonicWall TZ and Palo Alto Networks NG Firewalls. See our Fortinet FortiGate vs. Sophos XG report.
See our list of best Firewalls vendors.
We monitor all Firewalls reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.
Go with Sophos XG or if you have tight budget and technical expertise then can move with pFsense.
Dear Sharif.
For 150 users any firewall will work perfectly. You can choose as per your convenience, availability, price, and better implementation partner in your region. Keep a bigger box at the central location and configure SD-WAN. SOPHOS has by default SD WAN. Make sure you have secure access to the cloud and all endpoints should have endpoint protection else only firewall will not help.
Most of the cloud service providers work on any-any rule because their responsibility is network uptime and availability. Security of your setup is your responsibility.
Manageability is better in Fortinet however features are better in SOPHOS. License bundle & ATP functions are are good in SOPHOS. Support response is good in SOPHOS but you will find less tickets in FORTINET once it is implemented as per your setup.
Overall both are good for your setup. You can choose as per convenience.
Hope this will help.. Greetings .. Ravi
In my opinion, the first point of strength is the support, and FortiGate is doing a great job in terms of support. It has numerous reference guides for configuration. The other advantage is ease of management in both the UI and CLI levels. You can use FortiGate modules to protect against web and virus attacks.
Hello Sharif,
I prefer FortiGate SDWAN Devices (FortiGate) even though we also deliver Sophos to our clients.
The decentralized FortiGate devices work as firewalls with an excellent security ecosystem. FortiGate and most other items work as Hardware units or on virtual machines.
As a Telco company we have a lot of companies working in different industries with various requirements. We can support them all with FortiGate.
Our customers prefer the security features, the stable ecosystem for life cycle management, for device/user/policy management, thread detection & prevention, intrusion prevention, sandboxing, ... the low operation effort to build a stable company network that supports the need of any customer size.
In our business, we also like that the architecture of a company network can be easily changed if the customer requirements change. From single-line sites to Data Centers with high availability and Cloud integration FortiGate can be used in any design.
The different security features that can be added by the license are powerful and integrated into the management dashboard. Updates of protection mechanisms against new threads happen automatically as soon as a new protection mechanism is available when new threads occur. The security team at Fortinet is excellent.
Greetings
Andre
Hi, XG is EOL the new series is XGS, both are excellent equipment but I prefer Fortigate, why ??? DHCP slection, leader SD-WAN, many IPSEC dynamics is possible on SOPHOS but is limit the are conflicts with many IP's dynamics you need to use DDNS, SSL tunnel for remote clients, VRF, advanced routing with OSPF and BGP ("as path"). Greetings