Try our new research platform with insights from 80,000+ expert users

Check Point Quantum Force (NGFW) vs Sangfor NGAF comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Aug 17, 2025

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Fortinet FortiGate
Sponsored
Ranking in Firewalls
1st
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
574
Ranking in other categories
Secure Web Gateways (SWG) (2nd), Intrusion Detection and Prevention Software (IDPS) (1st), Software Defined WAN (SD-WAN) Solutions (1st), WAN Edge (1st), ZTNA (2nd), Unified Threat Management (UTM) (1st)
Check Point Quantum Force (...
Ranking in Firewalls
5th
Average Rating
8.8
Reviews Sentiment
7.2
Number of Reviews
342
Ranking in other categories
Unified Threat Management (UTM) (2nd)
Sangfor NGAF
Ranking in Firewalls
20th
Average Rating
8.0
Reviews Sentiment
6.5
Number of Reviews
34
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of November 2025, in the Firewalls category, the mindshare of Fortinet FortiGate is 19.9%, up from 19.8% compared to the previous year. The mindshare of Check Point Quantum Force (NGFW) is 2.7%, down from 2.9% compared to the previous year. The mindshare of Sangfor NGAF is 1.1%, up from 1.1% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Firewalls Market Share Distribution
ProductMarket Share (%)
Fortinet FortiGate19.9%
Check Point Quantum Force (NGFW)2.7%
Sangfor NGAF1.1%
Other76.3%
Firewalls
 

Featured Reviews

Vasu Gala - PeerSpot reviewer
A stable solution with an intuitive interface and quick customer service
I have been working with Fortinet FortiGate, WatchGuard, Sophos, and SonicWall. I'm not as comfortable with SonicWall because of their UI and limitations. I prefer Fortinet above all other options. When it comes to configuration, I am confident in my ability to handle various tasks, including creating policies such as firewall rules, web policies, and application policies. Additionally, I can configure VPNs and implement load balancing, among other tasks. Overall, I feel much more comfortable working with Fortinet. Fortinet has made significant improvements by integrating AI with firewalls for threat analysis and prevention. In the past 2-3 years, they have launched FortiSASE and SIEM, and they also provide SOC services. Both Palo Alto and Fortinet FortiGate are excellent. While Fortinet FortiGate comes at higher prices, the functionality and support justify the cost. They promptly resolve firmware issues and inform all support providers about configuration changes.
Devraj Kc - PeerSpot reviewer
Has improved threat prevention and enabled seamless plug-and-play expansion with active-active gateways
Check Point Quantum Force (NGFW) provides numerous features such as threat emulations, anti-bots, and the most outstanding feature is ElasticXL. Since R82, the ElasticXL feature in Check Point Quantum Force (NGFW) has seen significant improvement, allowing use of more than two gateways in an active-active state. If you need to upgrade any device, you can add the same device with plug-and-play capability. Using Check Point Quantum Force (NGFW), we rarely get any threats in its Gaia OS, and compared to its competitors, we need to upgrade them. In the past five years, it has had the least CVE and is one of the most stable products I've ever seen. Check Point Quantum Force (NGFW) can handle growth or changes in my organization's needs. With its ElasticXL feature, I do not need to buy two different firewalls. I can purchase another single firewall with its plug-and-play feature, which matches the growing potential of our organizations.
Zaid Farooqui - PeerSpot reviewer
Enhanced threat detection with integrated security features and good support
We are using application firewalling, WAF, and SD-WAN. The capabilities are mostly within the box. For example, you will get web application firewall WAF as part and parcel of this. SD-WAN is also bundled. It integrates with their SIEM and SOAR solutions very nicely. Lastly, the pricing point is very cost-efficient as well.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The solution protects the environment from internal and external threats."
"Fortinet FortiGate is user-friendly and affordable."
"Fortigate represents a really scalable way of delivering perimeter network security, some level of layer 7 security, WAF, and also a way to create a meshed ADVPN solution."
"The best features of Fortinet FortiGate include the simple user interface."
"The most valuable features are SD-WAN, application control, IPS control, and FortiSandbox."
"All of the features of Fortinet FortiGate are useful and the security protection is good."
"The GUI is very simple, and what is very good is that every product, regardless of size, has the same interface."
"The most valuable features of Fortinet FortiGate are the ease of use and there are several operating systems that can include the hardware capacities. In the newer releases, the resources were more useful because they were included in the operating system."
"There are several ways to implement it."
"The support offers the best services I have experienced. It's better than any other IT vendor."
"With the new SmartTask offered in R80.40, we will be happy to configure some automatic control-functions."
"The interface and the IPS intrusion prevention are the most valuable features of this solution."
"It offers services like navigation, control, and filtering, which ensure that all users stay connected to business applications."
"The product is very scalable."
"We have all the features we want or need in this appliance. It's been good so far."
"Check Point NGFW safeguards users by protecting their internet browsing experience with features such as antivirus, anti-spoofing, and URL filtering control, ensuring we have control over what users can access and block malicious content from entering the organization's network."
"In our hospital, Sangfor NGAF works well for us in terms of ensuring confidentiality and availability, which are crucial in the healthcare industry."
"The price versus value is good because the solution is less expensive than Sophos, Fortinet, or SonicWall."
"I think the tool has the feature to detect and kill ransomware in three seconds."
"In terms of the most valuable features, the IPS report is quick and updated. Performance is also valuable."
"The VPN connectivity feature is really nice."
"It enables us to not only detect but also prevent various types of incoming threats, allowing us to take appropriate corrective actions and exercise control over the network."
"The built-in features function as intended, providing exceptional value."
"I think Sangfor NGAF is more valuable than Cisco products because of its simplicity and ease of management. If I compare it with Palo Alto and Cisco, both are quite complex products. And if I compare it with FortiGate firewalls from Fortinet, I have also used all these products. Fortinet and Sangfor NGAF are similar products because the applications behind the application and policy layers are almost identical."
 

Cons

"With the addition of some features, it is possible that FortiGate can be used in all verticals."
"I would like to see improvements in some of the hard drive features on FortiGate so that we can generate reporting within a single box."
"The biggest "gotcha" is that if the client purchases what they call the UTM shared bundle, which has unified threat management on both, it's not as easy to manage if you have more than one firewall."
"The solution's real-time connection with the cloud could be improved."
"They have recently acquired a CNAP solution which should be integrated into FortiGate boxes natively for protection at any application layer. Since Fortinet FortiGate has Layer 7 protection, they should integrate that as soon as they can for threat detection and network detection."
"The solution could be more evenly structured."
"WAN load-balancing could be a lot better at detecting when a link is poor or inconsistent, and not just flat out dead."
"The solution has limited scalability."
"The support team should be faster."
"The one thing I have been continually asking for is a more robust certification process including self-paced study material similar to Cisco's Security certification track."
"Although Check Point provides annual updates to the Gaia platform, integration with other OEMs is difficult."
"The SmartUpdate interface is a little bit crowded if your company has a lot of software items."
"There are specific parts of the interface that are confusing or harder to navigate."
"When you want to open the gateway by double-clicking on the interface, sometimes it can cause silly problems such as freezing."
"There is a strong demand for security services that can be effortlessly integrated which would ensure that security measures can seamlessly adapt to the cloud infrastructure."
"The upgrade process of Check Point could be simplified to match other products."
"Sangfor could improve their interface capacity on the 5100 series model and upgrade their hardware from one gig to 10 gig. This would improve the overall throughput."
"Sangfor NGAF could improve the policies and default criteria. They could be much better."
"The cost of licensing is very high compared to other firewalls available here."
"Sangfor need greater exposer in the market because the market is mainly saturated by Fortinet. The user experience of Fortinet is quite different compared to NGAF. If we want to switch our users from Fortinet to NGAF, we have to convince them that the user experience will be much easier once once they start to use it."
"Our experience with its customer support was quite challenging."
"The solution has too many bugs and these slow down the implementation."
"The firewall system needs gradual improvements because there are more threats and challenges every day."
"They need to increase the number of ports in the firewall."
 

Pricing and Cost Advice

"Fortinet bundles FortiGate with other products and because of this, the price is a little expensive to some SMB enterprises."
"I would rate the pricing a seven out of ten"
"The pricing for this solution is good."
"We pay for the solution annually."
"Fortinet FortiGate is expensive."
"Work through partners for the best pricing."
"Fortinet FortiGate IPS is cheaper than other solutions like Cisco or Check Point."
"No comment."
"The solution is significantly more expensive than Fortinet, although this holds true to a lesser extent when compared with Palo Alto."
"The price is on the higher side."
"The pricing and licensing are the worst part of Check Point. I usually don't know what I really am buying. When I have to do an inventory of the license, I don't know what it is being used for. Sometimes I feel I am being cheated, and the others times, I feel it is a bargain. Nobody knows! Even the Check Point representatives, they aren't clear on somethings, such as, what is the right license for what I need."
"This product is not cheap and there are additional costs that depend on what model or package that you buy."
"The cost of the pricing and licensing are okay. They are giving me a good product as far as I know. It is more expensive than Cisco, but cheaper than Palo Alto, which is fine. It has many good features, so it deserves a good price as well."
"The price of this product is not too costly and you do not need to pay for all of the features."
"The vendor has a very flexible licensing approach."
"Palo Alto is somehow not as good as Check Point, budget-wise and performance-wise. Palo Alto is more costly than Check Point."
"The price could be more competitive."
"It costs about 8 to 10 thousand dollars per year for 500 users, standard licensing fees included."
"The pricing is reasonable."
"For over 2000 users, the cost is around 5000 to 6000 USD. If you want a web application firewall, you have to purchase an additional license for it."
"The product is very cost-effective compared to other brands or vendors."
"I rate the product price as one on a scale of one to ten, where one is low price and ten is high price."
"The solution has a TCO that is 32% to 50% less than Sophos, Fortinet, and SonicWall."
"If you know you have around 200+ computer users on your network, then the Sangfor NGAF 5200-F-I model would be the minimum recommended model for that amount of users. This model includes modules for packet filtering, deep packet inspection, malware scanning, DSCP filtration, and many other features."
report
Use our free recommendation engine to learn which Firewalls solutions are best for your needs.
872,837 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
14%
Comms Service Provider
9%
Manufacturing Company
8%
Financial Services Firm
6%
Computer Software Company
14%
Financial Services Firm
9%
Outsourcing Company
8%
Comms Service Provider
6%
Manufacturing Company
10%
Financial Services Firm
10%
Computer Software Company
9%
Comms Service Provider
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business350
Midsize Enterprise130
Large Enterprise187
By reviewers
Company SizeCount
Small Business148
Midsize Enterprise94
Large Enterprise199
By reviewers
Company SizeCount
Small Business15
Midsize Enterprise10
Large Enterprise10
 

Questions from the Community

Which is the better NGFW: Fortinet Fortigate or Cisco Firepower?
When you compare these firewalls you can identify them with different features, advantages, practices and usage a...
What is the biggest difference between Sophos XG and FortiGate?
From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know...
What are the biggest technical differences between Sophos UTM and Fortinet FortiGate?
As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite ...
How does Check Point NGFW compare with Fortinet Fortigate?
I have experience on both from Disti and channel experience. Please find below my comments (nothing new as such). -Ch...
Which would you recommend - Azure Firewall or Check Point NGFW?
Azure Firewall is easy to use and provides excellent support. Valuable features include integration into the overall ...
What do you like most about Check Point NGFW?
Check Point NGFW provides essential security, featuring no-obligation access for secure connections, strong intrusion...
What do you like most about Sangfor NGAF?
I think Sangfor NGAF is more valuable than Cisco products because of its simplicity and ease of management. If I comp...
What is your experience regarding pricing and costs for Sangfor NGAF?
The licensing cost is quite high compared to other available firewalls in the market.
What needs improvement with Sangfor NGAF?
The cost of licensing is very high compared to other firewalls available here. There should be improvements in hardwa...
 

Also Known As

No data available
Check Point NG Firewall, Check Point Next Generation Firewall
Sangfor NGAF Firewall Platform
 

Overview

 

Sample Customers

Amazon Web Services, Microsoft, IBM, Cisco, Dell, HP, Oracle, Verizon, AT&T, T-Mobile, Sprint, Vodafone, Orange, BT Group, Telstra, Deutsche Telekom, Comcast, Time Warner Cable, CenturyLink, NTT Communications, Tata Communications, SoftBank, China Mobile, Singtel, Telus, Rogers Communications, Bell Canada, Telkom Indonesia, Telkom South Africa, Telmex, Telia Company, Telkom Kenya
Control Southern, Optimal Media
The Ministry of Science, Technology, and Innovation (Indonesia), Lawson, Inc. (Philippines), Universiti Sultan Zainal Abidin (Indonesia), TEK Automotive (Italy), etc.
Find out what your peers are saying about Check Point Quantum Force (NGFW) vs. Sangfor NGAF and other solutions. Updated: September 2025.
872,837 professionals have used our research since 2012.