We performed a comparison between Fortinet FortiGate, Netgate pfSense, and Sophos XG based on real PeerSpot user reviews.
Find out what your peers are saying about Netgate, Fortinet, OPNsense and others in Firewalls."It is easy to use and performs very well."
"The wireless control is helpful."
"Fortigate's most valuable feature is that it doesn't need a push policy when writing rules."
"Its stability is the most valuable."
"It is quite easy to handle."
"It's a user-friendly firewall. Most of the tasks are very simple. It's simple to configure and troubleshoot this firewall."
"Web filtering and two-factor authentication are great features."
"The features that I have found most valuable are the SD-WAN and their IP4 policy."
"I can manage it easily by myself."
"Content protection, content inspection, and the application level firewall."
"The most valuable features of pfSense are security, user-friendliness, and helpful online management."
"pfSense allows us to spread the hours of connection and do the filtering on the pfSense site."
"The features I have found best are ease of use, GUI, and performance."
"Creation of certificates and the facility to administer services are valuable features."
"The concurrent users are perfect for us."
"Open source and support are valuable. I have community support."
"The firewall feature of Sophos XG has been the most effective for threat prevention."
"We created and configured a VPN for connecting our remote sites and also to make it more secure and reliable. We also like its two-factor authentication features."
"I like the functionality and the user interface."
"I have found the feature allowing you to manage everything from a centralized location beneficial."
"This solution is very user-friendly and even a non-professional can configure the policies."
"it's user-friendly, not complex."
"Price-wise the solution offers acceptable rates. You can find cheaper solutions on the market but when you go cheaper you have fewer features. Today, based on iQuate market the price is very reasonable and affordable, and it's good if you get a good discount. Discounts can be offered by the vendor. If it's a competitive upgrade which means the customer is upgrading from another vendor, Sophos provides extra discount so they can win the deal. In general, it is a good price."
"It is feature-rich, I like the server authentication, and the reports are good."
"From a reporting perspective, there's room for improvement. They're providing FortiAnalyzer through which one can get some enhancements, but the visibility and reporting still need slight improvement."
"To the best of my knowledge, Fortinet does not have a CASB solution and Fortinet does not have a Zero trust solution."
"Improvement is needed in the Web Filter quotas to restrict users with allocated quotas."
"There are some tiny bugs that sometimes affect the operations. In the past revision of it, there was a bug. Because of the bug, we had to downgrade the version. It happened only with the last revision."
"The visibility of the network can be better. The GUI can be improved for better visibility of the network flow. Other solutions have better GUI in terms of network visibility."
"Fortinet FortiGate needs to improve the protection, it did not prevent us from being attacked. Additionally, Fortinet FortiGate could provide more features for WAF devices. I should not have to purchase two solutions, it would be a benefit to combine these features into one solution."
"There are SD-WAN network monitoring, SD-WAN features, Industrial Databases, Internet of Things, Detection, etc., however, we do have not licenses for those features. We thought that if you bought a product, you should have all of the features it offers. Why should you need to make so many extra purchases to enable features? They should have one price for the entire offering."
"The security of Fortinet FortiGate could improve."
"The integration of pfSense with EPS and EDS could be better. Also, it should be easier to get reports on how many users are connecting simultaneously and how sections connect in real-time."
"In terms of areas of improvement, the interface seemed like it had a lot. The GUI interface that I had gotten into was rather elaborate. I don't know if they could zero in on some markets and potentially for small, medium businesses specifically, give them a stripped-down version of the GUI for pfSense."
"It needs to be more secure."
"Also, simplifying the rules for the GeoIP. Making it simpler to understand would be an improvement."
"A malware blocker should be included. I do not know if it is included yet. However, until now, we have not experienced a large malware invasion."
"Needs services on additional features, such as managing inventory and generating reports."
"If you want to take advantage of all of the solution's options, you need to have a bit of a technical background. It's not for a layperson."
"The product must provide integration with other solutions."
"I would like the update process to be easier, to update the firmware of the boxes. I think it's much better automatically than having to do it manually: Download the file, do network discovery. I they can make the update process much more automatic that would help."
"The pricing can be high unless you choose a longer contract."
"In the Sophos XG, the SD-WAN has all the rules done separately, such as net policy routing. In the previous version, they were all in a single rule and everything was done that way. The way it is now is difficult for us because we are not used to this newer version. The firewall rules should be easier to configure and create. Everything should be done with a single click."
"I'd like to see better reporting. While the logs are great, the reports are not."
"When upgrading the firewalls, the process could be easier."
"There is an area that is very specific to our setup, where working tools you cannot easily establish a VPN between two internal networks."
"We had a difficult time assigning IP addresses to specific MAC addresses."
"SD-WAN would benefit from further improvement, particularly in terms of incorporating optimization techniques that are not typically found in traditional firewalls. Nowadays, WAN optimization features are being integrated into many firewalls, and implementing similar capabilities in SD-WAN would enhance its performance and functionality."