We performed a comparison between Netgate pfSense and SonicWall NSa based on real PeerSpot user reviews.
Find out in this report how the two Firewalls solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI."We are very happy with the general bandwidth agility we have seen from one website to another website."
"Easy to implement, and it is also reliable."
"I like Fortinet's cloud management. It allows me to manage all my devices in different branches for three cloud accounts. Even though I use on-prem devices, I can manage everything on the cloud."
"It's inexpensive compared to some of the other technology out there."
"Our project needs to link two sides through the internet. One of these was in Cairo and the other in another city. We used FortiGate as the integrating solution between the two locations, i.e. the Fortinet 30E & 100E."
"Our security improved from being able to put in rules and close off unwanted traffic."
"With FortiClient, you can easily connect when you are home, check out what you want to do, and connect to your network when you are not at work. You can switch on servers and you can check what is wrong."
"Initial setup is easy to configure."
"The ability to perform packet captures on the command line and via the GUI is useful for diagnosing problems."
"The solution is very easy to use and configure."
"Some of the terminologies were more familiar to me than it was when I first encountered Cisco."
"The interface is straightforward and easy to use."
"It has a very nice web interface, and it is very simple to use. The way policies are working is also good."
"Firewall system for small, medium, and large data networks. It allows you to provide security to your environment: DMZ networks, LAN, WAN, etc."
"What I found most valuable is the cost of the platform, the flexibility of the platform, and the fact that the ongoing fees are not there as they are with the competitor. Some people may think you're taking a risk with using Opensource. I think it just provides the end user, specifically for us small, medium business providers of services, the flexibility we need at the right cost to provide them a higher end, almost enterprise type service."
"We've found the stability to be very good overall."
"I like that SonicWall NSa is a stable product. It's also a scalable product."
"Overall SonicWall NSa is a good solution for our use case."
"The most valuable features of this solution are the GUI pre-filtering and the ATP (advanced threat protection)."
"I really like the performance; there are no delays and no latency, which is a unique quality in firewalls nowadays."
"We have not found any vulnerabilities since implementing the solution."
"SD-WAN is a good feature."
"It allows us to block applications, i.e., websites by application type category. It is far more capable than content filtering alone."
"The most valuable features are flexibility, ease of setup, and it's a good product cost-wise."
"Its customer service could be better."
"Vulnerability scanning could be improved."
"Application management can be improved."
"Technical support needs to be improved."
"FortiLink is the interface on the firewall that allows you to extend switch management across all of your switches in the network. The problem with it is that you can't use multiple interfaces unless you set them up in a lag. Only then you can run them. So, it forces you to use a core type of switch to propagate that management out to the rest of the switches, and then it is running the case at 200. It leaves you with 18 ports on the firewall because it is also a layer-three router that could also be used as a switch, but as soon as you do that, you can't really use them. They could do a little bit more clean up in the way the stacking interface works. Some use cases and the documentation on the FortiLink checking interface are a little outdated. I can find stuff on version 5 or more, but it is hard to find information on some of the newer firmware. The biggest thing I would like to see is some improvement in the switch management feature. I would like to be able to relegate some of the ports, which are on the firewall itself, to act as a switch to take advantage of those ports. Some of these firewalls have clarity ports on them. If I can use those, it would mean that I need to buy two less switches, which saves time. I get why they don't, but I would still like to see it because it would save a little bit of space in the server rack."
"The Wi-Fi controller needs a lot of improvement."
"If I had any criticism that I would give FortiGate, it would be that they need to stop changing their logging format. Every time we do a firmware upgrade, it is a massive issue on the SIM. Parsers have to be rebuilt. Even the FortiGate guys came in and said that they don't play well in the sandbox."
"Its price could be better."
"The solution could use better reporting. They need to offer more of it in general. Right now, the graphics aren't the best. If you need to provide a report to a manager, for example, it doesn't look great. They need to make it easier to understand and give users the ability to customize them."
"My only observation is about the quality of the IPSec logs, which are difficult to interpret and are poor in filters."
"If a user doesn't have a large amount of experience in Linux systems, they will have problems using this solution. Users need to be highly skilled in troubleshooting competency. Users who do not have such skills will find the product difficult to use."
"I've never tried it in large environments. All my clients are small businesses with a handful of employees, so I am not sure how it works in large environments. I keep up with recent versions, and there's nothing I'm waiting for, and nothing breaks when I get a new version."
"The GUI could use improvements, though it is manageable."
"The solution could improve by having centralized management and API support online."
"There is more demand for UTMs than a simple firewall. pfSense should support real-time features for handling the latest viruses and threats. It should support real-time checks and real-time status of threats. Some other vendors, such as Fortinet, already offer this type of capability. Such capability will be good for bringing pfSense at the same level as other solutions."
"We are at the moment looking to use it as a proxy service so that we can limit what websites people go and view and that sort of thing. That's an area I've struggled with a little bit at the moment and it could be a bit easier to set up."
"The problem primarily with SonicWall is it's a Unix box. And it's all software, all the activities, blocking, censoring, everything has to happen in the software. If you start hitting the box with a lot of sessions it slows down and that's not what I expect from a firewall."
"Vendor support needs improvement. The frequency of time and support should be increased."
"We're not particularly fond of the way it generally performs. We are finding ourselves rebooting often. There are freeze-ups and that kind of thing. The stability needs to improve exponentially."
"Needs a more detailed reporting feature."
"We also need to increase the throughput because the other devices are slower. The throughput will become slow. Since we're using VoIP, it tends to affect the voice quality. Even if you're using a quality service, it tends to decrease."
"SonicWall needs to work on SD-WAN."
"The product likely isn't a good fit for a large organization."
"After-sales support and hands-on training facilities are not available in my country."
Netgate pfSense is ranked 1st in Firewalls with 128 reviews while SonicWall NSa is ranked 19th in Firewalls with 80 reviews. Netgate pfSense is rated 8.6, while SonicWall NSa is rated 7.8. The top reviewer of Netgate pfSense writes "User-friendly, easy to manage the firewall, rule-wise and interface-wise". On the other hand, the top reviewer of SonicWall NSa writes "Great performance and security with reasonable pricing". Netgate pfSense is most compared with OPNsense, Sophos XG, KerioControl, Sophos UTM and Cisco Secure Firewall, whereas SonicWall NSa is most compared with SonicWall TZ, Meraki MX, Sophos XG, Cisco Secure Firewall and WatchGuard Firebox. See our Netgate pfSense vs. SonicWall NSa report.
See our list of best Firewalls vendors.
We monitor all Firewalls reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.