We performed a comparison between Huawei NGFW and Sangfor NGAF based on real PeerSpot user reviews.
Find out in this report how the two Firewalls solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI."The initial installation is very straightforward."
"The SD-WAN feature is the most valuable. This feature evolved from link load balancing. It has helped us in terms of our uptime and privatizing applications whenever we experience an outage. The SD-WAN feature has been a plus for us. Two-factor authentication has allowed us to add more users in terms of remote working. We have two-factor authentication for remote workers to authenticate them before they get on the network."
"The IPS is good. It protect my network from attackers."
"The most valuable features are the enterprise modeling and the simple interface."
"Whenever we raise a complaint with FortiGate, their response and resolution times are minimal."
"The most valuable feature is the SSL VPN, as it allows us to connect and it separates this product from other firewalls."
"The web filtering feature and the intrusion protection system are the most valuable. It is a resilient appliance. I never had an issue with it in terms of any security breaches."
"The application control features, such as Facebook blocking and Spotify blocking, are the most valuable."
"The support for the solution has been excellent. If we ever had an issue they would send an engineer to help us with our problem."
"The UI is quite good."
"We make use of the new data center, specifically the containerized data center which is built and reviewed by Huawei, including all the device's infrastructure."
"The most useful feature is the performance of the firewalls and networking operations."
"The solution's implementation is pretty easy."
"It enables us to configure different policies and restrictions for specific users within the same subnet."
"The solution's performance is good with IPSec."
"Huawei support is excellent. I rate it 10 out of 10."
"It is a stable solution."
"The built-in features function as intended, providing exceptional value."
"The absolute best part of Sangfor NGAF is their support. It's a 24/7 support channel, and the last time I requested their assistance I got a reply within three minutes. They helped solve the problem immediately."
"We've found the technical support to be helpful."
"It's a very simple to use product."
"Sangfor NGAF specializes in ransomware detection and helps to protect our network from ransomware threats and malware."
"The stability of Sangfor NGAF is good."
"It enables us to not only detect but also prevent various types of incoming threats, allowing us to take appropriate corrective actions and exercise control over the network."
"NGN, reporting and controls."
"We would like to see better pricing."
"I have to say that the initial setup was complex. The deployment took a few days to get set up. Initially, we were using an IPVanish. We switched to this tool since we thought it would be easier. But it turns out it wasn't easier to set up and run."
"The product does need better support in the cloud environment. It's not exactly cloud-native right now."
"Reporting is limited to providing an external appliance for improving the reporting capabilities of the FortiAnalyzer. It does not offer a central management and is also sold separably as an appliance."
"FortiLink is the interface on the firewall that allows you to extend switch management across all of your switches in the network. The problem with it is that you can't use multiple interfaces unless you set them up in a lag. Only then you can run them. So, it forces you to use a core type of switch to propagate that management out to the rest of the switches, and then it is running the case at 200. It leaves you with 18 ports on the firewall because it is also a layer-three router that could also be used as a switch, but as soon as you do that, you can't really use them. They could do a little bit more clean up in the way the stacking interface works. Some use cases and the documentation on the FortiLink checking interface are a little outdated. I can find stuff on version 5 or more, but it is hard to find information on some of the newer firmware. The biggest thing I would like to see is some improvement in the switch management feature. I would like to be able to relegate some of the ports, which are on the firewall itself, to act as a switch to take advantage of those ports. Some of these firewalls have clarity ports on them. If I can use those, it would mean that I need to buy two less switches, which saves time. I get why they don't, but I would still like to see it because it would save a little bit of space in the server rack."
"The price of FortiGate should be reduced because there are some other leading products that are cheaper."
"My only complaint about FortiGate is a lack of QinQ VLAN tunneling. I haven't found this feature in any Fortinet product. You can do this on all Cisco routers, including the smaller models. However, QinQ isn't available on the biggest, most expensive Fortinet units. They still don't have that. I think now we're on software version 6.0, and they still haven't found a solution for QinQ. It isn't a dealbreaker, but that's my main complaint."
"One issue is integration. Huawei can't detect Indicators of Compromise (IoC). I can get a lot of information about security, but can't automatically input the EP, domain URL, and file hashes I get from Hackersworld into my blocklist."
"The tool does not have web functionality. It needs to also have high end firewalls."
"The solution doesn't seem to be very mature. Our networking team says they are experiencing a lot of issues in the firewalls and some routers."
"The solution does not have sandboxing features."
"Wi-Fi scanning and Wi-Fi analysis would be useful features to include in the future."
"There needs to be more security equipment for the solution."
"The WAF capability in the Huawei Firewall is missing."
"Huawei NGFW should have better reporting and a dashboard for the visibility of traffic."
"There is room for improvement in dependency on certain infrastructure, like the DNS dependency on the current DNS server that the company has. It should be standalone. It should not depend on any other DNS server."
"Our experience with its customer support was quite challenging."
"The solution should be able to work in a hybrid setup."
"The product must provide more IPS features."
"The reporting and log management could be improved."
"They need to increase the number of ports in the firewall."
"The setup phase is quite complex."
"The GUI needs to be improved, lacks logic in some areas."
Huawei NGFW is ranked 30th in Firewalls with 18 reviews while Sangfor NGAF is ranked 21st in Firewalls with 29 reviews. Huawei NGFW is rated 7.2, while Sangfor NGAF is rated 7.8. The top reviewer of Huawei NGFW writes "A scalable and easy-to-setup product that can be used to configure different policies for specific users". On the other hand, the top reviewer of Sangfor NGAF writes "Affordable, easy to configure firewall with fast, responsive support". Huawei NGFW is most compared with Cisco Secure Firewall, Meraki MX, Netgate pfSense, Palo Alto Networks NG Firewalls and Juniper SRX Series Firewall, whereas Sangfor NGAF is most compared with Sophos XG, Palo Alto Networks NG Firewalls, Netgate pfSense, Fortinet FortiOS and Sophos UTM. See our Huawei NGFW vs. Sangfor NGAF report.
See our list of best Firewalls vendors.
We monitor all Firewalls reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.