No more typing reviews! Try our Samantha, our new voice AI agent.

Check Point Quantum Force (NGFW) vs Sangfor NGAF comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Mar 1, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Fortinet FortiGate
Sponsored
Ranking in Firewalls
1st
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
592
Ranking in other categories
Secure Web Gateways (SWG) (2nd), Intrusion Detection and Prevention Software (IDPS) (1st), Software Defined WAN (SD-WAN) Solutions (1st), WAN Edge (1st), ZTNA (1st), Unified Threat Management (UTM) (1st)
Check Point Quantum Force (...
Ranking in Firewalls
7th
Average Rating
8.8
Reviews Sentiment
7.2
Number of Reviews
347
Ranking in other categories
Unified Threat Management (UTM) (2nd)
Sangfor NGAF
Ranking in Firewalls
21st
Average Rating
8.0
Reviews Sentiment
6.5
Number of Reviews
34
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of June 2026, in the Firewalls category, the mindshare of Fortinet FortiGate is 15.1%, down from 21.7% compared to the previous year. The mindshare of Check Point Quantum Force (NGFW) is 3.0%, up from 2.9% compared to the previous year. The mindshare of Sangfor NGAF is 1.1%, down from 1.3% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Firewalls Mindshare Distribution
ProductMindshare (%)
Fortinet FortiGate15.1%
Check Point Quantum Force (NGFW)3.0%
Sangfor NGAF1.1%
Other80.8%
Firewalls
 

Featured Reviews

JK
IP Network Security Specialist at MTN Ghana
Process-Level CPU Visibility: Introduce detailed CPU-usage metrics per subsystem (e.g., IPS engine, logging) so administrators can quickly identify and address performance spikes.
Analytics with FortiAnalyzer. Being able to pull in logs not just from our FortiGates but from all our other firewalls and then get them in one view has been a game changer. Whether I’m building an executive dashboard or doing a deep dive forensics session, I get everything I need without navigating consoles.Straightforward Application Control. FortiGate spots and blocks unwanted apps (eq. like BitTorrent or streaming services) with accuracy. Segmentation with VDOMs. We’ve carved our data center into four logical ‘mini-firewalls’ enterprise, core, billing, and WAF—all on one box. Each has its own rules and logs, and any traffic between them still gets inspected. It’s like having multiple appliances without the extra hardware. Always-Up-to-Date Threat Feeds. Daily signature updates and AI-driven threat sensing mean we’re blocking the latest vulnerabilities almost as soon as they’re announced.
DS
Network Security Engineer at Connecting Cyber Networks
Advanced threat prevention has protected our perimeter and simplifies daily security operations
Check Point Quantum Force (NGFW) can be improved in several areas. First, the interface could be a little more intuitive for new users. The Smart Console is powerful, but it has a steep learning curve when you start using it. Some simple functions for common tasks would help. Second, the initial setup and configuration take quite a bit of time and expertise. It would be helpful if there were more guides, wizards, or templates to speed that up. Third, the price model could be more transparent and flexible. The license cost can add up quickly, specifically when you want to add more advanced features. Finally, I would appreciate seeing better integration with some third-party security tools we use. Right now, we have to do a lot of manual work to make everything talk to each other. Overall, these are minor things. The core product is really solid and does what it is supposed to do very well. The documentation could be more comprehensive in some areas. When we run into issues, the documentation does not have clear answers, so we end up contacting support. Speaking of support, the response time could be faster sometimes. We have had cases where we need help with a certain security issue, and it takes longer than we would prefer to get a response. As for features, it would be nice to have more general reporting options so we can customize reports for different teams and stakeholders without having to do manual work afterward. One more thing, better mobile access to the dashboard would be helpful. Sometimes we need to check on security alerts when we are away from the office, and the mobile experience is not as smooth as it could be. Again, these are improvements that would make it even better, not issues with the core product itself.
Zaid Farooqui - PeerSpot reviewer
CIO at Indus Motor Company
Enhanced threat detection with integrated security features and good support
We are using application firewalling, WAF, and SD-WAN. The capabilities are mostly within the box. For example, you will get web application firewall WAF as part and parcel of this. SD-WAN is also bundled. It integrates with their SIEM and SOAR solutions very nicely. Lastly, the pricing point is very cost-efficient as well.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Our clients definitely get a return on investment; it is a really good product, and the stability of the product is a very important factor for our clients."
"I value it's IPS and application control solution."
"The most valuable features we found are the SD-WAN, FortiGate SD-WAN, and the standard UTM protection, among others."
"Technical support is acceptable, and they're good in terms of local support and global support."
"This solution has helped our organization by having strong functions and a reliable firewall."
"Overall, we've been pretty happy with the solution."
"The product is scalable."
"It's very easy to configure."
"My customers cite performance and ease of configuration as two of the solution's most valuable features."
"This solution has improved the way our organization functions in multiple ways."
"It has various features, like Threat Prevention and Antivirus. It is easier to use and have knowledge of a single device rather than multiple devices/technologies when doing an installation. It is also easy to use because of having Antivirus and Threat Prevention features within the same firewall."
"We have seen ROI and when you consider the features like central management, antivirus, and threat management, it is a good investment."
"The best feature is the ability to increase the capacity of the solution by exactly what you add, not losing anything for High Availability."
"There is a money saving because we no longer require other devices, like an IPS, a separate antivirus, or vulnerability tests."
"It protects the environment, giving our company advanced features like Antivirus, more granular security policies, and more control over the traffic, e.g., what we want to allow or deny to our environment."
"While not being cheap, their pricing models are competitive."
"The capabilities are mostly within the box."
"In four steps one can configure the entire firewall."
"The product is very fast and reliable."
"The tool's performance is good."
"The VPN connectivity feature is really nice."
"It enables us to not only detect but also prevent various types of incoming threats, allowing us to take appropriate corrective actions and exercise control over the network."
"The stability of Sangfor NGAF is good."
"Sangfor NGAF works accordingly with our customers, the solution has good performance, is easy to use, and integrates well with the endpoints."
 

Cons

"The Wi-Fi controller feature needs a lot of improvement."
"​It needs to improve its ISP load balancing.​"
"In the past I encountered serious bug regarding SCTP and GTP supports."
"I mostly do administration, and I found Cisco to be the hardest major firewall manufacturer to deal with, with Fortinet FortiGate being the second hardest for me."
"It does not have key authentication for admin access."
"It is somewhat expensive compared to other solutions such as Sophos."
"In their IPS Web Security Gateway, the reporting functions need to be a little bit more user-friendly for how to get the reports from it."
"Its reporting and pricing need improvement."
"The Checkpoint tech support takes a long time to resolve problems."
"Check Point can improve in the VPN sector because I still have a problem using VPN in active-active with its R82 feature since it can only incorporate with active tunnel route mode to route mode and policy-based to policy-based."
"The command line interface for troubleshooting issues in Check Point Quantum Force (NGFW) could be simplified, and a better knowledge base document could be provided."
"Check Point NGFW needs to run marketing events. They have also to set up a support center in India."
"Log queries are slow and take time to load."
"It can be expensive, especially for small businesses."
"The antivirus Check Point offers could be better when compared to competitors' firewalls. Updates should be more frequent."
"Complex and not very easy to use."
"The GUI needs to be improved, lacks logic in some areas."
"The product must provide more IPS features."
"The solution should be able to work in a hybrid setup."
"The web interface needs to be improved, making it more user-friendly."
"I feel Sangfor should follow the hierarchy and close deals via resellers instead of closing it all with their own team."
"I think the GUI needs to be improved, there are a lot of areas where the panes do not make sense."
"Sangfor NGAF could improve by refining its application control policies, especially in addressing challenges with certain types of applications."
"The tool's support is an area of concern where improvements are required."
 

Pricing and Cost Advice

"It is not the cheapest one, but its price is very competitive."
"I rate the price of Fortinet FortiGate SWG a seven and a half out of ten since it is not a cheap solution, though I feel it is a good product for the money one pays."
"Fortinet FortiGate has different licensing models, depending on what you're going to do. Services included would depend on the license model. Licenses can be renewed annually."
"I give the pricing of the solution a six out of ten."
"We just pay a flat monthly fee to the vendor for the support."
"Its pricing is fine. It is on a yearly basis. Other than the licensing fee, there is no extra fee."
"I rate the pricing an eight and a half on a scale of one to ten, where one is low, and ten is high."
"The pricing is better compared to other solutions like Check Point, Arista, or Cisco."
"The price is high in comparison to other solutions."
"Check Point solutions are very expensive here. They're good, but they're expensive... Check Point is only useful for customers that have a big IT budget."
"Check Point is a little more expensive than FortiGate."
"Licensing is on a yearly basis and I am happy with the pricing."
"Check Point Firewall costs more compared to the other firewalls in the markets, as pricing is little high. However, it is easy to take the license and use it in the firewall."
"It comes with a significant price."
"The pricing and licensing are the worst part of Check Point. I usually don't know what I really am buying. When I have to do an inventory of the license, I don't know what it is being used for. Sometimes I feel I am being cheated, and the others times, I feel it is a bargain. Nobody knows! Even the Check Point representatives, they aren't clear on somethings, such as, what is the right license for what I need."
"Check Point NGFW is not a cheap solution."
"If you know you have around 200+ computer users on your network, then the Sangfor NGAF 5200-F-I model would be the minimum recommended model for that amount of users. This model includes modules for packet filtering, deep packet inspection, malware scanning, DSCP filtration, and many other features."
"The price is unmatcheable."
"The pricing is reasonable."
"The license of Sangfor NGAF can be purchased at different interval lengths, such as annually or three years. They offer a range of packages to choose from, such as combo or hybrid packages. We are using the complete solution package which includes IM, NGF and SSL VPN, and WAF."
"The solution has a TCO that is 32% to 50% less than Sophos, Fortinet, and SonicWall."
"It is one of the cheapest tools in the market."
"I rate the product price as one on a scale of one to ten, where one is low price and ten is high price."
"We purchased one year technical support and return to factory support, and we also purchased one-year technical support services. So those were additional."
report
Use our free recommendation engine to learn which Firewalls solutions are best for your needs.
900,838 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Comms Service Provider
10%
Computer Software Company
9%
Manufacturing Company
9%
Financial Services Firm
7%
Outsourcing Company
13%
Financial Services Firm
11%
Construction Company
10%
Computer Software Company
10%
Financial Services Firm
11%
Manufacturing Company
10%
Comms Service Provider
9%
Construction Company
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business369
Midsize Enterprise139
Large Enterprise195
By reviewers
Company SizeCount
Small Business162
Midsize Enterprise95
Large Enterprise199
By reviewers
Company SizeCount
Small Business15
Midsize Enterprise10
Large Enterprise10
 

Questions from the Community

Which is the better NGFW: Fortinet Fortigate or Cisco Firepower?
When you compare these firewalls you can identify them with different features, advantages, practices and usage a...
What is the biggest difference between Sophos XG and FortiGate?
From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know...
What are the biggest technical differences between Sophos UTM and Fortinet FortiGate?
As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite ...
How does Check Point NGFW compare with Fortinet Fortigate?
I have experience on both from Disti and channel experience. Please find below my comments (nothing new as such). -Ch...
Which would you recommend - Azure Firewall or Check Point NGFW?
Azure Firewall is easy to use and provides excellent support. Valuable features include integration into the overall ...
What is your experience regarding pricing and costs for Check Point NGFW?
Our experience with pricing for Check Point Quantum Force (NGFW) has been mixed. The initial setup costs were fairly ...
What is your experience regarding pricing and costs for Sangfor NGAF?
The licensing cost is quite high compared to other available firewalls in the market.
What needs improvement with Sangfor NGAF?
The cost of licensing is very high compared to other firewalls available here. There should be improvements in hardwa...
What is your primary use case for Sangfor NGAF?
We are hosting applications over the platform, including websites and NAT traffic from our side. Because it's deploye...
 

Also Known As

Fortinet FortiGate Next-Generation Firewall
Check Point NG Firewall, Check Point Next Generation Firewall
Sangfor NGAF Firewall Platform
 

Overview

 

Sample Customers

Amazon Web Services, Microsoft, IBM, Cisco, Dell, HP, Oracle, Verizon, AT&T, T-Mobile, Sprint, Vodafone, Orange, BT Group, Telstra, Deutsche Telekom, Comcast, Time Warner Cable, CenturyLink, NTT Communications, Tata Communications, SoftBank, China Mobile, Singtel, Telus, Rogers Communications, Bell Canada, Telkom Indonesia, Telkom South Africa, Telmex, Telia Company, Telkom Kenya
Control Southern, Optimal Media
The Ministry of Science, Technology, and Innovation (Indonesia), Lawson, Inc. (Philippines), Universiti Sultan Zainal Abidin (Indonesia), TEK Automotive (Italy), etc.
Find out what your peers are saying about Check Point Quantum Force (NGFW) vs. Sangfor NGAF and other solutions. Updated: June 2026.
900,838 professionals have used our research since 2012.