We performed a comparison between Cisco Secure Firewall and Sangfor NGAF based on real PeerSpot user reviews.
Find out in this report how the two Firewalls solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI."Fortigate is very scalable to serve our customers' needs. We have scaled already from fifty to more than a hundred instances of Fortinet FortiGate. Around 20 staff are required for deployment and maintenance, mostly engineers."
"The most valuable features of Fortinet FortiGate are the APIs. They are the most widely known."
"Fortinet FortiGate is a security device. It can optimize security on the networks of a company. It actually protects the company from attacks from outside. With FortiGate, you can categorize the users. You can create a group of users that can access all of the websites for their work. You can limit other users' access."
"All of the features of Fortinet FortiGate are useful and the security protection is good."
"LinkGreat firewall capabilities"
"It has improved our security capabilities."
"We purchased Fortinet because of the pricing, its functionality, because it met our requirements, and the total cost of ownership over five years was quite reasonable. In the market, Fortinet is rated quite well."
"The technical support in our region is excellent."
"They provide DDoS protection and multi-factor authentication. That is a good option as it enables work-from-home functionality."
"IPSec Tunnel and AnyConnect (of course), the context awareness was a good feature, but clumsy at the beginning. I think it's better now."
"They are easy to maintain."
"The technical team is always available when we have problems."
"The command line is the same as it is on the Cisco iOS router."
"I have access to the web version of Cisco Talos to see the reputation of IP addresses. I find this very helpful. It provides important information for my company to obtain the reputation of IP addresses. The information in Talos is quite complete."
"One of the nice things about Firepower is that you can set it to discover the environment. If that is happening, then Firepower is learning about every device, software operating system, and application running inside or across your environment. Then, you can leverage the discovery intelligence to get Firepower to select the most appropriate intrusion prevention rules to use for your environment rather than picking one of the base policies that might have 50,000 IPS rules in it, which can put a lot of overhead on your firewall. If you choose the recommendations, as long as you update them regularly, you might be able to get your rule set down to only 1,000 or 1,500, which is a significant reduction in a base rule set. This means that the firewall will give you better performance because there are less rules being checked unnecessarily. That is really useful."
"Firewall help with cybersecurity resilience. I really like this Cisco product. It's user-friendly. I don't like some other vendors. I've tried those in the past. Cisco is pretty easy. A caveman could do it."
"Sangfor NGAF specializes in ransomware detection and helps to protect our network from ransomware threats and malware."
"The price versus value is good because the solution is less expensive than Sophos, Fortinet, or SonicWall."
"In our hospital, Sangfor NGAF works well for us in terms of ensuring confidentiality and availability, which are crucial in the healthcare industry."
"In terms of the most valuable features, the IPS report is quick and updated. Performance is also valuable."
"We've found the technical support to be helpful."
"It is a stable solution."
"The product is very fast and reliable."
"The most valuable feature of Sangfor NGAF is its integration."
"In terms of what could be improved, the SD-WAN is quite difficult, because if you install the new box, 15 is okay, but if you change from an old configuration, if there is already configuration and a policy when you change to SD-WAN, you must change the whole policy that you see in the interface."
"Maybe they could make some features more accessible, such as a way to translate directions between two networks that share the same subnets."
"They should improve high CPU and memory usage that occurs."
"Fortinet already improved FortiGate, but in the current market, many brands of security devices have improved together. Fortinet still needs to catch up with market standards. Fortinet is lacking in features in comparison to competitors."
"Their software support needs improvement. I would prefer to have better support for bug fixes. Sometimes, we open a ticket, and it is very difficult to get a solution. Specifically, we are not at all happy with their support for load balancing."
"Fortinet doesn't provide multiple virtual firewalls which would facilitate end users and customers."
"Fortinet could improve the windows opener or the virtual IP solutions for opening windows. The virtual IP settings need improvement as firewalls are trending in new development directions."
"The reporting in Fortinet FortiGate could improve. Customers are having to purchase additional reporting components. When I have used the Sophos solution it is a complete solution, in Fortinet FortiGate you have to use additional tools to have the features needed."
"I have a lot of difficulties with the solution's Firewall Management Center (FMC) and the GUI. Neither is responsive enough and should be improved."
"It doesn't have Layer 7 security."
"The Sandbox and the Web Censoring in this solution need to be improved."
"We would like to see MS Word BPM as a feature."
"Lacks a good graphical user interface."
"We were also not too thrilled when Cisco announced that in the upcoming new-gen ASA, iOS was not going to be supported, or if you install them, they will not be able to be managed through the Sourcefire. However, it seems like Cisco is moving away from the ASA iOS to the Sourcefire FireSIGHT firmware for the ASA. We haven't had a chance to test it out."
"Most of the features don't work well, and some features are missing as well."
"The GUI interface could be improved when compared to other solutions."
"The setup phase is quite complex."
"The support offered by the product has certain shortcomings where improvements are required. The knowledge levels and response time of the support team need improvement."
"The solution has too many bugs and these slow down the implementation."
"The interface and user experience are horrible."
"The reporting and log management could be improved."
"Sangfor has recently increased their prices."
"Sangfor could improve by providing better real-time reporting, as the current reports don't offer the level of detail we need, especially for runtime insights."
"The firewall system needs gradual improvements because there are more threats and challenges every day."
Cisco Secure Firewall is ranked 4th in Firewalls with 404 reviews while Sangfor NGAF is ranked 21st in Firewalls with 29 reviews. Cisco Secure Firewall is rated 8.2, while Sangfor NGAF is rated 7.8. The top reviewer of Cisco Secure Firewall writes "Highlights and helps us catch Zero-day vulnerabilities traveling across our network". On the other hand, the top reviewer of Sangfor NGAF writes "Affordable, easy to configure firewall with fast, responsive support". Cisco Secure Firewall is most compared with Palo Alto Networks WildFire, Netgate pfSense, Meraki MX, Sophos XG and Juniper SRX Series Firewall, whereas Sangfor NGAF is most compared with Sophos XG, Palo Alto Networks NG Firewalls, Netgate pfSense, Fortinet FortiOS and OPNsense. See our Cisco Secure Firewall vs. Sangfor NGAF report.
See our list of best Firewalls vendors.
We monitor all Firewalls reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.