We performed a comparison between Check Point NGFW and Sangfor NGAF based on real PeerSpot user reviews.
Find out in this report how the two Firewalls solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI."It's user-friendly and easy to operate."
"Easy to implement, and it is also reliable."
"Virtual Domains (VDOMs) are a feature that we found valuable."
"Whenever I need something, Fortinet improves and updates the software for me."
"SSL-VPN is very useful for us and has been very reliable."
"It does a lot for you for intrusion protection and as an antivirus. The threat management bundle is worth the money. You don't need another company to monitor your web traffic for you. You can do everything yourself on the firewall. You restrict your own black list for people on the firewall. You don't need to pay some other company for another product to do that for you. The firewall can do that for you. So, it's an easy-to-use product for people to be independent. They don't need to rely on other vendors to do what the firewall can do. They can do everything."
"The threat prevention is the solution's most valuable aspect."
"UTM/NGFW features and FortiCloud for logs and backups are awesome."
"We have between five and ten firewalls on-premises, and if we want to configure or push the same configuration to all of the firewalls, then the centralized management system is very helpful."
"The Anti-Spoofing has the ability to monitor the interfaces. Suppose any spoofed IP addresses are coming from an external interface, it won't allow them. It will drop that traffic. You have two options with the Anti-Spoofing: prevent or detect. If any kind of spoof traffic is coming through the external interface, we can prevent that."
"One of the most valuable features is performance improvement, wherewith ClusterXL and CoreXL, you can improve performance."
"We have not had any issues with the firewall."
"The only area that Check Point still seems to excel in is their logging."
"Only allows authorized connections and prevents vulnerabilities in a network."
"We can define security policies based on a variety of criteria, including user identity, application, and content type."
"One of the most valuable features is the data center object integration with Azure. We are using Azure a lot and there is very nice synchronization between the objects in Azure, and it's very easy to implement rules using this feature."
"Technical support is very good."
"We've found the technical support to be helpful."
"The level of support provided to local companies is good. They transform their application control and other settings according to that country."
"Sangfor has the best capabilities for securing connections, securing web browsers, securing servers, and general threat protection."
"The stability of Sangfor NGAF is good."
"In our hospital, Sangfor NGAF works well for us in terms of ensuring confidentiality and availability, which are crucial in the healthcare industry."
"Sangfor is a good solution that provides a WAF and firewall solution. Most other vendors, like Sophos and Fortinet and Cisco, only provide one solution. That's a valuable feature of Sangfor."
"SSL VPN is the best feature."
"It's my understanding that more of the current generation features could be brought in. There could be more integration with EDRs, for example."
"There are some problems that support cannot give you a logical reason as to why it happened. For example, I had a case where I was dealing with a WhatsApp application that was giving issues. Technical support gave more than one reason it could be giving issues, but none of them solved the problem. Eventually I solved the problem, but it was far from the solutions that support had given."
"There are problems with the custom reporting of the unique traffic. The data is there, but it is too difficult for us to extract."
"The support we receive when we need to upgrade is not satisfactory and has room for improvement."
"Fortinet FortiGate could improve if it had a cloud-managed solution."
"The Web-filter in this solution is not very good."
"From a reporting perspective, there's room for improvement. They're providing FortiAnalyzer through which one can get some enhancements, but the visibility and reporting still need slight improvement."
"They should improve the interface to make it more user-friendly."
"The area it needs improvement is the SandBlast Agent. It receives a file, or if it detects a Zero-day attack, it takes the file and analyzes it, either on-premise or in the Check Point Cloud, and then it reports back whether the file is secure or non-secure, or is unknown. That particular area definitely needs a bit more improvement, because there is a delay... where it needs improvement is where [SandBlast is] an appliance-based solution rather than a software or cloud-based solution."
"The product or services can be improved from the cost and the pricing perspective."
"Error logs can be more specific."
"I would like to see better Data Leakage protection options and easier-to-understand deployment models for this."
"The technical support is really poor. We have to wait for approximately 48 hours sometimes for a simple solution."
"The web UI for VSX could be better."
"The complexity involved in the solution's initial setup phase and deployment process is an area of concern where improvement is required."
"With the version we're on, it's a bit time-consuming if you have multiple IP addresses to add. But in the later versions, which we're moving to, it makes it a lot easier to add IP addresses with dynamic objects, as they call it."
"The firewall system needs gradual improvements because there are more threats and challenges every day."
"It does not offer any recommendations on how to mitigate or control attacks."
"An area of improvement for Sangfor NGAF could be in the field of reporting and logging."
"Sangfor could improve by providing better real-time reporting, as the current reports don't offer the level of detail we need, especially for runtime insights."
"They need to increase the number of ports in the firewall."
"Sangfor has recently increased their prices."
"Sangfor NGAF could improve by refining its application control policies, especially in addressing challenges with certain types of applications."
"There is room for improvement in dependency on certain infrastructure, like the DNS dependency on the current DNS server that the company has. It should be standalone. It should not depend on any other DNS server."
Check Point NGFW is ranked 5th in Firewalls with 275 reviews while Sangfor NGAF is ranked 21st in Firewalls with 29 reviews. Check Point NGFW is rated 8.8, while Sangfor NGAF is rated 7.8. The top reviewer of Check Point NGFW writes "Good antivirus protection and URL filtering with very good user identification capabilities". On the other hand, the top reviewer of Sangfor NGAF writes "Affordable, easy to configure firewall with fast, responsive support". Check Point NGFW is most compared with Palo Alto Networks NG Firewalls, Sophos XG, Cisco Secure Firewall, Netgate pfSense and Stormshield Network Security, whereas Sangfor NGAF is most compared with Sophos XG, Palo Alto Networks NG Firewalls, Netgate pfSense, Fortinet FortiOS and SonicWall NSa. See our Check Point NGFW vs. Sangfor NGAF report.
See our list of best Firewalls vendors.
We monitor all Firewalls reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.