We performed a comparison between Netgate pfSense and Sophos XGS based on real PeerSpot user reviews.
Find out in this report how the two Firewalls solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI."The most valuable feature is the FortiManager for centralized management."
"The most valuable feature of Fortinet FortiGate is load balancing. It can provide central management and VPNA. Additionally, it has enhanced our security environment."
"The most valuable features of Fortinet FortiGate are it is one of the most mature firewalls in the UTM bundle."
"FortiGate's web and URL filtering are unlike any other firewall I've used. The functionality of URL filtering in those solutions is problematic because everything is encrypted, and firewalls can't break that encryption protocol. Fortinet has an SSL proxy, so the encryption is done before the packet ever leaves the FortiGate. The URL filter is definitely one of the most helpful features."
"FortiGate improved our security. It's one of the best hardware firewalls."
"Anti-Spam web content filterinG."
"The most valuable features of Fortinet FortiGate are the different types of profiling. It has been the most effective for me. The WAF and the antivirus profile are the most effective in network protection."
"One of the nice things about FortiGate is that it can be deployed on the cloud or on-premises. You can actually do both. That's the biggest reason why I stick with this solution as opposed to something like Cisco Meraki. Another nice thing is that I can log directly into a FortiGate or get to it through their FortiCloud access products. They're pretty reliable and consistent. One of the reasons why I started using the product was their single pane of management. I can deploy their line of firewalls in conjunction with their switching and access points, and I can manage the entire network from one interface. I don't have to log into one interface for the firewall, another one for the access points, and another one for the switches. These firewalls have access point controller functionality built right into the system, so I don't even have to purchase additional devices to manage them."
"I mostly like all of it. Whatever we use is valuable."
"The "OpenVPN Client Export" package is really helpful in exporting the VPN client software on most popular devices: iOS/Android, Windows, Mac, Linux, and a handful of SIP handsets."
"Is good at blocking IP addresses."
"Sophos Intercept X is scalable. Currently, we have almost 30 people using it in our company."
"This solution has helped our organization by protecting our network from attacks."
"Super easy to manage. Anyone who has been working with firewalls can handle it."
"I handle the scanning for the finance department. I recently encountered an issue with the PCL bills, our company bills. I resolved the matter, cleared the bill, and received calls regarding it using pfsense.The user interface is extremely user-friendly, which is why we use it across various plant sites. Our IT representatives at the plants find it easy to use and manage because of its straightforward interface."
"My technicians find the pfSense's web interface very useful. It is very easy to use. pfSense is very reliable and stable. We like the OpenVPN clients that can be deployed using pfSense very much."
"The initial setup is straightforward."
"It is very stable. I have not heard of any issue where clients would have to replace hardware. It's been really stable for a long while."
"The threat management system and VPN are most valuable."
"In this solution, the most valuable feature is that it's a security device. Maintaining security is very valuable for us. The other feature that we did not find in other products is that it works well with thin client environments."
"Sophos XGS's most valuable feature is content filtering."
"Sophos XGS is profound as a firewall and security product."
"The policies are the greatest feature. They allow us to configure granular control over our network traffic."
"The Sophos XGS product is highly versatile and well-suited for various companies, including small, medium, and large enterprises. Its effectiveness lies in its inspection firewall capabilities, making it a commonly chosen option in our country due to its reasonable pricing. Sophos Firewall's support for VPN encryption and thorough inspection makes it a suitable choice for many companies, and I recommend it accordingly. At the moment, I can't propose any new features. The primary concern is the traffic stability, which needs improvement. Although the traffic stability is generally good, it has been noted that it can impact RAM and CPU, affecting workflow and inspection."
"If they could extend their fabric towards other vendor environments for integration, that would be great."
"I would like to see improvements with the antivirus and IPS as they are not working properly all the time."
"The support structure needs to be improved because every time we contact them, there is a delay in the response."
"Fortinet FortiGate is not very easy to use. The navigation could be improved to make it easier to use."
"Fortinet FortiGate could improve by adding FortiAnalyzer to its solution, we should not have to use another solution. FortiAnalyzer can provide more detailed information."
"Technical support needs to be improved."
"Fortinet already improved FortiGate, but in the current market, many brands of security devices have improved together. Fortinet still needs to catch up with market standards. Fortinet is lacking in features in comparison to competitors."
"They can do more tests before they release new versions because I would like to be more assured. We had some experiences where they release something new and great, but some of the old features are disabled or they don't work well, which impacts the product satisfaction. The manufacturer should be able to prove that everything works or not only that it might work. This is applicable to most of the other services, software, and hardware companies. They all should work on this. We cannot trust every new release, such as a beta release, on the first day. We wait for some comments on the forums and from other companies that we know. We always wait a few weeks before we use the updated version. They should also extend the VPN client application, especially for Linux versions. Currently, it has an application for Linux devices, but it doesn't work the way we want to connect to the VPN. They use only the old connection, not the new one. They have VPN client applications for Windows and Mac, but they can add more useful features to better manage the devices and monitor the current health of each device. Such features would be helpful for our company."
"If a user doesn't have a large amount of experience in Linux systems, they will have problems using this solution. Users need to be highly skilled in troubleshooting competency. Users who do not have such skills will find the product difficult to use."
"The security could be improved."
"The GUI. There are TONS of plugins for pfSense, as such, if a user wants to add quite a bit of functionality, the GUI will feel a little congested."
"They can improve the dynamic of the input of IPs from outside."
"The product could offer more integrated plugins."
"There are some bias issues and some intrusions in our network that have to be addressed. So, we're thinking of changing this firewall to something like a professional hardware-enabled firewall."
"There could be a way to remote to it through a mobile app. You can always browse through your browser on your mobile phone or tablet, but it would be good to have a dedicated app. I understand that iOS and Android developers are expensive, but there should be a mobile app."
"As an open-source solution, there are so many loopholes happening within the product. By design, no one is taking ownership of it, and that is worrisome to me."
"The reporting could be better."
"I recommend Sophos increase the user capacity of the firewall by 1.5 times. For example, say the firewall can accommodate 1,000 users now, then it should handle a load of 1,500 users."
"Sometimes, we haven't received proper support. They couldn't find the solutions that we required. One thing that we need is an NTP server facility. The Sophos XGS device does not have this capacity or this feature."
"The solution could have a bit more functionality."
"We'd always like the solution to be a bit less in terms of cost."
"The VPN capability needs some improvement in Sophos XGS."
"Sophos' technical support has degraded in the last couple of years. They seem to need to ask a lot of questions, even with simple problems, and take a long time to provide solutions."
"There are issues with some designs being able to work on high availability."
Netgate pfSense is ranked 1st in Firewalls with 128 reviews while Sophos XGS is ranked 18th in Firewalls with 58 reviews. Netgate pfSense is rated 8.6, while Sophos XGS is rated 8.0. The top reviewer of Netgate pfSense writes "User-friendly, easy to manage the firewall, rule-wise and interface-wise". On the other hand, the top reviewer of Sophos XGS writes "Highly stable, scalable, and priced well". Netgate pfSense is most compared with OPNsense, Sophos XG, Sophos UTM, KerioControl and Cisco Secure Firewall, whereas Sophos XGS is most compared with Sophos XG, OPNsense, WatchGuard Firebox, Meraki MX and Palo Alto Networks NG Firewalls. See our Netgate pfSense vs. Sophos XGS report.
See our list of best Firewalls vendors.
We monitor all Firewalls reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.