We performed a comparison between Fortinet FortiGate, Fortinet FortiGate-VM, and Sophos XG based on real PeerSpot user reviews.
Find out what your peers are saying about Netgate, Fortinet, OPNsense and others in Firewalls."The web tutor and automatic rules by schedule are good features."
"Overall, the pricing of the solution is very good. The product offers good value."
"Its stability is the most valuable."
"The user interface (UI) is very, very good."
"It has improved our organization with control data."
"You can create multiple Virtual Domains (VDOMs), which are treated as separate firewall instances."
"The FortiGate controls the user's activities and maximizes my bandwidth use overall."
"Easy to implement, and it is also reliable."
"The performance overall is very good."
"Operations have been flawless."
"The best part about FortiGate-VM is its strong security."
"It has allowed us to centralize every network service into one appliance."
"The initial setup was quite straightforward."
"The solution is very secure, and its technical support is on point."
"Initial setup is very straightforward with a wizard, if needed."
"The most valuable feature is the WAN optimization."
"The most valuable features of Sophos XG are user-friendliness and it is highly secure."
"The firewall provides network visibility and reporting capabilities, constantly improving over time. It can be integrated with the cloud console, allowing centralized management of multiple firewalls. integration with endpoint security products ensures seamless traffic flow and rule enforcement, even when endpoints are not directly connected to the firewall."
"The solution is more cost-effective than FortiGate, Cisco and Palo Alto, which have very expensive licenses."
"I like the fact that it can self remove malware and do updates on the cloud via Sophos Central."
"Sophos XG has cybersecurity. It integrates with the antivirus software."
"IPS and advanced threat protection (ATP) are the most valuable features. I am able to segment my network traffic and block incoming connections. It is also easy to use."
"The VPN is easy and has good logging, monitoring and notifications."
"Each user has the ability to manage the solution."
"The renewal price and the availability could be improved."
"Scalability for Fortinet FortiGate needs to be improved. SD-WAN security for this solution also needs some improvement."
"Lacks sufficient security options."
"This product needs to have an analysis feature, rather than having the analysis done through the integration of a different product."
"Fortinet FortiGate needs to improve the protection, it did not prevent us from being attacked. Additionally, Fortinet FortiGate could provide more features for WAF devices. I should not have to purchase two solutions, it would be a benefit to combine these features into one solution."
"The pricing could be a bit better, especially when you consider how they have the most basic offering priced."
"FortiGate support could do some improvements on their IPv6 configuration. Right now it's still in the very early stage for utilizing in an enterprise level network environment."
"We were not able to build a full-mesh VPN; however, I am not sure if this was the fault of Fortinet FortiGate."
"It would be useful to have integration with different reporting tools. This is something we are sorely missing. It would be a plus to have reporting integrations. It would be good to have more integration with the identity suites, such as Office 365 and Azure Active Directory, of different providers that we use. Integrations are already available, but it would be nice to have some more advanced options."
"There were challenges during setup, and many of them were self-inflicted."
"To improve FortiGate-VM, Fortinet needs to harden it more. For example, if you are using Hyper-V, then you need guidelines for hardening FortiGate-VM that are specific to the Hyper-V environment. If it's VMware, there should be at least a guideline on how to harden the firewall."
"New versions are complicated with a big configuration."
"The tool is expensive."
"The price model is not transparent by any means and should be made more clear. What's included in the packages is often not very obvious."
"The technical support is not very responsive and is an area that needs to be improved."
"In the next release, we would like to see full integration with VMware NSX virtualized networks."
"Sophos XG could improve by making the remote access and VPN better."
"The main problem with Sophos XG today is that it doesn't have a feature where you actually know the quality of an international link, which would allow us to we know if the link is operational or not. We need more information. It's losing packets on the network. It's high latency. So, we need more information to know if the link is really bad or really good, and today, we will only know if it's working and this just isn't enough."
"It would be beneficial if the platform provided more flexible support for a variety of devices."
"It is complicated to get the reports if you are not experienced with Sophos."
"One area where Sophos XG could improve is in its patch management system."
"It is performing well. However, the only challenges that we are facing are the effectiveness with blocking the proxy and tuneling applications, aside from proxy and similar applications. So the application filter on the product is not really performing 100%. Every now and then there are some updates that are happening on such applications, and it takes time until it gets the appropriate updates and becomes capable of capturing such applications and blocking them. A new feature I would really like to see would be some sort of an enhanced application filter with greater efficiency when it comes to the applications that can bypass firewall policies. These applications are really a nightmare. Once they are on the network and not detected, or the appliance is not really successful in capturing them and unblocking them, the bandwidth gets wasted all the time."
"The pricing has gotten much higher."
"Sometimes when you roll out a new firmware, you find that the rules you already have in place are broken, so it's difficult to migrate to a new firmware. That's the only downside I've experienced in Sophos."