Meraki MX vs Sophos UTM comparison

Cancel
You must select at least 2 products to compare!
Cisco Logo
3,409 views|2,504 comparisons
93% willing to recommend
Sophos Logo
3,486 views|2,369 comparisons
89% willing to recommend
Comparison Buyer's Guide
Executive Summary

We performed a comparison between Meraki MX and Sophos UTM based on real PeerSpot user reviews.

Find out in this report how the two Unified Threat Management (UTM) solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI.
To learn more, read our detailed Meraki MX vs. Sophos UTM Report (Updated: March 2024).
767,847 professionals have used our research since 2012.
Q&A Highlights
Question: What are the biggest differences between Meraki and Sophos? Which one is good for security and SD-WAN?
Answer: I presume the topic is UTM appliances (as Meraki and Sophos have many products). Any physical site connected to the Internet needs some kind of a firewall, yes? That firewall should be at the site (if it is "in the cloud" you lose performance/time/bandwidth, and you still might get a man-in-the-middle issue). For 30-80 users, for devices with prices under $5000 with taxes and shipment (for appliance plus 3 years of full licenses and warranty/support), for me, there were only two real options: Sophos XG 210 and Fortinet FortiGate FG100E (both negotiated at/under C$4350+tax), with Dell NSA 2650 a distant third (includes only 1 or 2 years of licenses/support and is more expensive). I got the Sophos XB2133SUS part number (XG210) device with a bonus device for High Availability (part number XG21T3HUS) for less than C$4300+tax. Both devices (Sophos XG210 and Fortinet FG100E) have 6+ WAN/configurable ports. For performance, look at performance with all the security features enabled (Deep Packet Inspection, VPN, antivirus, etc). I do SD-WAN using an extra device (~firewall) in front of the actual firewall. Meraki is not well known for UTM firewalls (sorry), but may do SD-WAN and may manage mobile devices better. I am afraid of their ongoing costs - for example, Meraki Wireless Access Points may stop working completely if the support fee is not paid (and that is a total No-No in my books; I understand not to be able to make more changes - but to stop a service??). As I see, for many folks - ongoing costs are just an after-thought, so maybe it does not matter much. For me, what matters is the actual performance, the security features, Support, initial cost and ongoing (support/licenses renewal) cost.
Featured Review
Quotes From Members
We asked business professionals to review the solutions they use.
Here are some excerpts of what they said:
Pros
"I love the simplicity of Meraki MX — specifically, the simplicity of the dashboard.""It prevents us from being hacked and delivers information about who and where the attack came from.""In a week, we can make new policy and view what all our users did.​""I think cloud management is key. The cloud management and support are the two things that make the product great.""The cloud management system is really valuable.""Since it has an integrated dashboard for all the products, customers can get complete network analytics regarding what the user is doing, monitoring, and observing.""What I like best about Meraki MX is that it's easy to deploy remotely. The product works. It has automatic updates. I also like that Meraki MX is a brilliant device. You turn it on, stick the key in there, activate it, and then you're done. Meraki MX does what my customers need at the end of the day, so I also like that.""The solution is good for load balancing."

More Meraki MX Pros →

"It allows our developers to be able to securely log into servers to deploy and manage software.""It helps us with protection, with concurrent use of the VPN.""The product is extremely intuitive.""The isolation of infected machines is a big feature. Also, the ability to detect external sources that change files on a file server is really big.""It's a stable solution.""The stability of Sophos UTM is very good. The solution has been stable since Sophos took over Cyberoam which was the original company providing this solution.""The most valuable feature of Sophos UTM is the endpoint protection feature.""It is a very good product. The threat monitoring process is the most valuable feature."

More Sophos UTM Pros →

Cons
"MX can only be managed via a web interface, but I'm accustomed to using a CLI or a graphical interface. I would also like to see more reporting features. It doesn't provide enough information for me to know precisely about some clients.""Expensive licensing and firewall stops immediately working if the license is not renewed at expiration date.""It would be nice to get detailed logging information without third-party software.""In the next release, because the security is pretty basic, I think they could include additional security features.""We have been having a problem with the VPN. When the energy goes down and is back again, the VPN link doesn't get established. We have to manually turn off the modems and other pieces of equipment and manually establish the VPN. It has been around one month since we have been having this problem, and we don't have enough support from Meraki to solve the problem.""The solution's pricing should be reduced.""I do not have the kind of feature I need for SSL decryption in Meraki MX. It would be great to see the SSL decryption feature in Meraki MX.""Pricing is an area where the solution lacks since it is an expensive tool."

More Meraki MX Cons →

"The reporting could be a lot better.""In short, the UI and UX are the areas of improvement in Sophos UTM and similar solutions compared to Palo Alto.""The solution needs to do better at covering mobile devices, although they may have an integrated solution for that purpose.""I didn't like it much. It suits only small businesses. It isn't scalable and reliable. There is a very critical issue with the power supply.""The solution needs better integration with captive portals and XGs.""I would like to see Sophos UTM add support for all the new threat-detection technologies and the ability to respond to novel security threats that come along every day.""I would like them to move from the Classic Load Balancer to the Network Load Balancer. This would make it easier to do certain things with Amazon. They are able to do some enhancements with Network Load Balancer that they are unable to do with Classic Load Balancer.""The solution is not scalable."

More Sophos UTM Cons →

Pricing and Cost Advice
  • "It can always improve pricewise regarding throughput."
  • "It is more expensive than other solutions, but it is a cloud-managed network solution and support is given at the moment you call. That give a very big plus."
  • "The Meraki UTM is excellent when you buy the Advanced Security license. If you buy a different license you lost all the valuable functions."
  • "Pricing varies as per the type of license."
  • "Meraki is also expensive, but it's a little bit less expensive and it's easier to configure than Cisco ASA."
  • "The price varies depending on the hardware platform as well as the type of license and whether you're adding security or not."
  • "The license cost depends on the box. We acquired a different product line. We are dealing with MX appliance now, that is, MX6, MX54, MX100, MX250, MX450. Every box has got an identity, and it has got its own specification. Every box has got a different license fee. We deployed Meraki MX in UAE when it was not a mature product. We took a risk, but we were successful. We saved a huge amount of money after implementing and removing all the MPLS and leased lines. We got a broadband connection because Meraki MX could work on a broadband connection. We have drastically saved a very good amount of money, which was one of the successful things apart from the successful solution."
  • "The price is slightly increased, but reasonable."
  • More Meraki MX Pricing and Cost Advice →

  • "The licensing model is very straightforward, it's a bit pricey, but for what you get, it's well worth it."
  • "If you can afford it, go for a small Check Point, as it is easier to manage."
  • "Unless you are in the United States, or you have to use Sophos, you can't contact Sophos directly. You have to use a third-party ​company, and they all have different ways of how they explain their licensing."
  • "Go to a vendor and let them assess your needs so you can get a right-sized device."
  • "Sophos offers free training when selling their products from within the partner portal.​"
  • "I would recommend to follow Sophos’ sizing guidelines for choosing which license and model to use. Sophos has their own way of going about this and supplies partners with all the information required. If you follow their documentation and guidelines, there should be zero questions about licensing and sizing."
  • "For under 50 users, MSP licensing is profitable."
  • "​In the case of a software/virtual appliance subscription, you pay by protecting user/IP addresses. You can do this to as much hardware resources as you like.​​"
  • More Sophos UTM Pricing and Cost Advice →

    report
    Use our free recommendation engine to learn which Unified Threat Management (UTM) solutions are best for your needs.
    767,847 professionals have used our research since 2012.
    Comparison Review
    Anonymous User
    I have used both Sophos and Fortinet products in production and I have found the Sophos UTM appliances (hardware and virtual) to be a better fit most of the time -- with a few caveats which I will touch on below. In both instances, the transition from TMG will be mostly straightforward. The main hang-ups will be with the VIP/load balancing and SSL. For some reason that completely escapes me, both of these vendors make getting valid certificates onto their boxes unnecessarily difficult -- the Fortinet appliances more so than the Sophos UTM appliances. At one point a Fortinet engineer had to write an entire manual on how to get an SSL certificate uploaded successfully on the 4.x firmware Sophos: The one feature that is missing (and this makes some amount of sense) from the Sophos appliance is BITS caching for updates. Other than that, Sophos offers a full replacement for TMG on UTM9. The XG platform also offers a replacement for the TMG; however, some of the rumblings about upcoming releases suggests that Sophos is going to give XG the Apple iOS treatment and "streamline" the interface...potentially cutting out/hiding some functionality. On the effectiveness of the NGFW, Sophos is mostly good but has a few issues blocking all pieces of an application. For instance, we had to build custom blocking rules for OpenVPN (the vpn was being used to bypass the content filter) because the default Application Control wasn't effectively blocking the application. Fortinet: If it… Read more →
    Answers from the Community
    Melwyn DSouza
    it_user1150056 - PeerSpot reviewerit_user1150056 (Managing Director at Onesecure)
    Real User

    To be honest, if you are still buying firewall appliances and UTM licenses you are already behind a very obvious requirement to move to Cloud security. Buying UTM does not solve the growing risk of mobility and cloud application delivery. It would be worthwhile reading Gartner's SASE paper on security transformation. Or research Zscaler, who has been delivering this model for 10 years.

    If a user is in your network behind your UTM, what stops him from connecting to his mobile phone Hotspot and bypassing all UTM, DLP, etc. Security has to move from the network to the endpoint. Protection regardless of location, device or network. Anything less is a massive compromise and a false sense of actual security.

    Elom Kutsienyo - PeerSpot reviewerElom Kutsienyo
    Reseller

    Sophos gives on-premise UTM functionalities that work like traditional UTMs (such as FortiGate, Firepower and the likes). Meraki MX devices are managed from the cloud and are subscription-based but also extremely easy to configure.

    If you want a very easy to configure solution with a minimum IT staff and prefer OPEX over CAPEX, go with Meraki.

    If you want on-premise control, and prefer CAPEX over OPEX, go with Sophos.

    Tony Tuite - PeerSpot reviewerTony Tuite
    Reseller

    I haven't had any experience with Sophos, but in small business environments I've found the Meraki devices to be needlessly complex. As one who has worked quite a bit with enterprise Cisco devices, I can't say I'm surprised. In my opinion, complexity doesn't necessarily denote better functionality.

    Most concerning to me, though, the Meraki devices also stop functioning entirely if you don't renew. their licenses, and it's some $500 per year *per device.* Any situation where a license not being reactivated can shut down your entire network is a huge concern, particularly at such high cost. We aren't talking Karen not being able to use Acrobat or something here... we're talking entire site outage. That is enough to make any technician worth their salt have a mild seizure.

    Chirag Gandhi - PeerSpot reviewerChirag Gandhi
    User

    When it comes to Security, I have very good experiences with Sophos, I can say the security solution is absolutely great in Sophos. Whereas I have never used Meraki, so I can't comment anything on it.

    SD-WAN; no experience on any of the requested products, so better not to make any false comment/advice.

    Questions from the Community
    Top Answer:We have Meraki Mx devices now, we are looking to replace them. But that is because the Meraki MX platform lacks SSL Inspection, Granular Firewall rules (Block only, no allow setting), client vpn… more »
    Top Answer: Cisco Adaptive Security Appliance (ASA) software is the operating software for the Cisco ASA suite. It supports network security and firewall options. We researched both Meraki and ASA. We liked… more »
    Top Answer:Meraki equipment requires a current license in order to operate. This also gets you hardware replacement and tech support while the license is current. Fortigate requires a current license for… more »
    Top Answer:As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite good. The most valuable features for me are their web and email filtering. I would… more »
    Top Answer:The Sophos UTM is a UTM and Sophos XG is the NGFW. First, you must know about the difference between a UTM and NGFW. They can not be compared with each other because the price, license, firewall… more »
    Top Answer:The most valuable feature of Sophos UTM is the endpoint protection feature.
    Ranking
    Views
    3,409
    Comparisons
    2,504
    Reviews
    16
    Average Words per Review
    426
    Rating
    7.8
    Views
    3,486
    Comparisons
    2,369
    Reviews
    27
    Average Words per Review
    392
    Rating
    8.2
    Comparisons
    Also Known As
    MX64, MX64W, MX84, MX100, MX400, MX600
    Astaro
    Learn More
    Cisco
    Video Not Available
    Overview

    Cisco Meraki MX appliances are next-generation firewalls with all the advanced security services needed for today’s IT security. The appliances are ideal for organizations considering a unified threat management (UTM) solution for branch offices, data centers, distributed sites, or campuses. Since Meraki MX is 100% cloud-managed, installation and remote management are simple and zero-touch.

    Meraki MX’s hardware and virtual appliances are configurable in Microsoft Azure, Amazon Web Services (AWS), and Google Cloud Platform, and private cloud support is offered through Cisco NFVIS and Alibaba Cloud.

    Organizations of all sizes and across all industries rely on Meraki MX to deliver secure connectivity to hub locations or multi-cloud environments, as well as application quality of experience (QoE) through advanced analytics with machine learning.

    Cisco Meraki’s advanced QoE analytics offers:

    • End-to-end health of web applications at a glance across the LAN, WAN, and application server.
    • Autonomous machine-learned smart application thresholds applied to identify true anomalies that are based on past behavioral patterns.
    • Ability to monitor the health of all MX WAN links across an entire organization.
    • Ability to detail hop-by-hop VoIP performance analysis across all uplinks.

    Cisco Meraki’s SD-WAN offers:

    The Meraki MX’s SD-WAN is unique in that it can be easily extended to deliver optimized access to resources in public and private cloud environments with virtual MX appliances. Its SD-WAN lowers operational costs and improves the performance of remotely-accessed resources. Users can ensure the availability of the apps and services their employees use most through dynamic path selection, policy-based routing, support for application-layer profiles, and VPN.

    Meraki MX offers industry-leading cloud management that has template-based settings which can scale easily from small deployments to tens of thousands of devices. It features an intuitive web-based dashboard for managing mobile devices, united firewalls, switching, and wireless LAN. Users can also benefit from role-based administration, configurable email alerts for a variety of important events, and easily auditable change logs. Meraki MX is capable of producing summary reports with device, user, and application details archived in the cloud.

    Meraki MX Key Features

    MX has a robust suite of network services in an all-in-one device, which saves you money by eliminating the need for multiple appliances. These services include:

    • SD-WAN capabilities
    • SNORT®-based intrusion detection and prevention
    • Layer 7 fingerprinting
    • Web caching
    • Application-based firewalling
    • Anti-malware
    • Geo-based firewalling
    • Content filtering
    • Site-to-site auto VPN and client VPN
    • Web search filtering
    • Cisco Advanced Malware Protection (AMP)
    • 4G cellular failover
    • Dynamic path selection
    • Web application health and VoIP health

    Reviews from Real Users

    Meraki MX stands out among its competitors for a number of reasons. Two major ones are its easy management and its ability to be accessed remotely. Below is some feedback from PeerSpot users who are currently using Meraki MX as their firewall security solution.

    Craig B., a central services engineer at Liberty Technology, writes, “The web console for managing everything keeps everything on Meraki and keeps us from going somewhere else. It is why I think a lot of people like Meraki. Comparing it to SonicWall or even a different Cisco firewall, like traditional ASAs, managing Meraki is a thousand times easier because of fluidity. You don't have to rebuild a table just to change one rule. It's much more readable for a human.”

    Edgardo C., an IT director, notes,”By using the VPN, we can connect remotely. We have two offices, and we could connect them through the VPN. We could establish a network between two sites, and that has improved and increased communication and productivity. Our remote site is able to access the server remotely.”

    Sophos UTM is a unified threat management platform designed to protect your businesses from known and emerging malware including viruses, rootkits and spyware. The solution provides a complete network security package with everything your organization needs in a single modular appliance.

    Sophos UTM Features

    Sophos UTM has many valuable key features. Some of the most useful ones include:

    • Web and Email Filtering
    • General Management
    • Network Protection
    • Network Routing and Services
    • Advanced Threat Protection
    • Authentication
    • Email Encryption and DLP
    • Web Policy
    • End-User Portal
    • VPN IPsec Client, VPN SSL Client, and Clientless VPN
    • Web Application Firewall Protection
    • UTM Endpoint Protection and Management
    • SEC Endpoint Integration
    • Logging and Reporting

    Sophos UTM Benefits

    There are many benefits to implementing Sophos UTM. Some of the biggest advantages the solution offers include:

    • Simplifies your IT security without the complexity of multiple point solutions
    • Intuitive interface to help you quickly create policies to control security risks
    • Provides clear, detailed reports to give you the insight you need to improve your network performance and protection
    • Complete control to block, allow, shape and prioritize applications
    • Two-factor authentication with one-time password (OTP)
    • Integrated wireless controller
    • Allows you to connect remote offices with easy VPN and Wi-Fi

    Reviews from Real Users

    Below are some reviews and helpful feedback written by PeerSpot users currently using the Sophos UTM solution.

    PeerSpot user Dana B., Network Administrator at a manufacturing company, says “The web and email filtering are the two biggest and most valuable aspects of the solution for us. The solution overall has just been a good, cost-effective solution for us. The solution offers a lot of functionality. The solution scales well. We've found the technical support to be helpful. The stability and performance are quite good.”

    A Technical Director at a security firm mentions, "Sophos SG UTM had all the basic functionality that you needed. It is user-friendly and easy to manage for any integrator."

    Marek M., Senior Network Engineer at a computer software company, comments, “Sophos UTM is the simplest of these products to set up. If you follow the instructions using the wizard, which is just a few steps, then you will have a firewall to protect you and your customer.”

    A Software Sales Manager at a tech services company explains, “The overall visibility of the console is what I find most valuable, plus it's very user-friendly. It can be integrated with other solutions such as SOAR, SIEM, etc., even when you have an existing firewall. I really like that the console can be integrated. You'll see everything on the same window, and the single window feature of the machine is so good. These are the features I really like.”

    James D., IT Manager at Manual Workers Union, states, “The fact that it's on the cloud means we don't have to administer it on our network or deal with a physical machine, which saves us money. The solution has many great features. From the console, we can start different scannings on different machines. We enjoy the centralized reporting part of it. The initial setup is simple. We enjoy its general stability. The solution can scale. So far, the solution has been problem-free.”

    Sample Customers
    Hyatt, ONS
    One Housing Group
    Top Industries
    REVIEWERS
    Comms Service Provider25%
    Computer Software Company13%
    Pharma/Biotech Company6%
    Healthcare Company6%
    VISITORS READING REVIEWS
    Educational Organization21%
    Computer Software Company16%
    Comms Service Provider6%
    Government5%
    REVIEWERS
    Comms Service Provider12%
    Manufacturing Company12%
    Financial Services Firm10%
    Computer Software Company9%
    VISITORS READING REVIEWS
    Computer Software Company18%
    Comms Service Provider10%
    Government8%
    Educational Organization6%
    Company Size
    REVIEWERS
    Small Business56%
    Midsize Enterprise27%
    Large Enterprise17%
    VISITORS READING REVIEWS
    Small Business30%
    Midsize Enterprise32%
    Large Enterprise38%
    REVIEWERS
    Small Business58%
    Midsize Enterprise20%
    Large Enterprise21%
    VISITORS READING REVIEWS
    Small Business36%
    Midsize Enterprise19%
    Large Enterprise45%
    Buyer's Guide
    Meraki MX vs. Sophos UTM
    March 2024
    Find out what your peers are saying about Meraki MX vs. Sophos UTM and other solutions. Updated: March 2024.
    767,847 professionals have used our research since 2012.

    Meraki MX is ranked 2nd in Unified Threat Management (UTM) with 57 reviews while Sophos UTM is ranked 1st in Unified Threat Management (UTM) with 110 reviews. Meraki MX is rated 8.2, while Sophos UTM is rated 8.4. The top reviewer of Meraki MX writes "Cost-effective, simplified, easy to manage, and reliable with advanced security features and granular visibility". On the other hand, the top reviewer of Sophos UTM writes "It's a highly stable platform with very few hardware issues". Meraki MX is most compared with Fortinet FortiGate, Palo Alto Networks NG Firewalls, Cisco Secure Firewall, Sophos XG and Zyxel Unified Security Gateway, whereas Sophos UTM is most compared with Netgate pfSense, Fortinet FortiGate, Sophos XG, OPNsense and Juniper SRX Series Firewall. See our Meraki MX vs. Sophos UTM report.

    See our list of best Unified Threat Management (UTM) vendors.

    We monitor all Unified Threat Management (UTM) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.