No more typing reviews! Try our Samantha, our new voice AI agent.

Netgate pfSense vs WatchGuard XTM [EOL] comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Netgate pfSense
Average Rating
8.6
Reviews Sentiment
7.2
Number of Reviews
221
Ranking in other categories
Firewalls (2nd)
WatchGuard XTM [EOL]
Average Rating
8.0
Number of Reviews
34
Ranking in other categories
No ranking in other categories
 

Featured Reviews

JA
Principal Cloud Architect - Software Engineer at a consultancy with 11-50 employees
Rapid VPN setup has connected offices in minutes and brings live insights for proactive issue control
What I appreciate the most about Netgate pfSense is the ease and straightforward nature of the platform. I can set up a new office in less than 10 minutes. The benefits of using Netgate pfSense are that I can set up VPNs in less than two to three minutes, and then just deploy the file across my networks, where everybody would be connected in less than an hour. The dashboards of Netgate pfSense bring all the necessary information that I need at a glance, and it is actually a live update every three to five seconds. It is spotless, and I have been able to catch issues before they hit operations.
Generalm4545 - PeerSpot reviewer
General Manager- IT & Automation - Serum at a pharma/biotech company with 1,001-5,000 employees
Protects from attack software and hacking but it doesn't provide the reports in a readable format
In my opinion, image clarity is very important, because I don't get the proper image product on reports. This means that functionality is not there. My engineer does not know how he can replace an order. We attach a log after any kind of keys using a utility instead. For the internet policies that we are implementing, the policy should be based on proper protocols. We use the default policies and there are a number of third-party protocols that appear here. Management with WatchGuard XTM means that out of policy is the problem from our side. In this way, we can not do effective services for people with this one. The policy definition with WatchGuard XTM is not proper for all use case requirements. I've got weekly business reports that I am expecting attachments with from WatchGuard XTM that display data for all kinds of consideration which should be required. Main User Functionality Level Order must adhere to using the admin functionality on the registry, or else our users publish their own name. Maybe these recommendations are irrelevant, but I say that the issue to improve most with WatchGuard XTM is the Main User Function.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Technical support is perfect, excellent."
"The whole layout of the application is pretty decent...The product's initial setup phase is fairly straightforward."
"The most valuable features are the VPN and the capture photo."
"The scalability is very good, where you can do an HA configuration and then bring in another box, if necessary."
"We like the fact that the product is open-source. It's free to use. There are no costs associated with it."
"We switched as we needed more power (as traffic, bandwidth and user accounts grew), pfSense was one good clear substitute, and Cisco is too expensive if you want real throughput power, and it was too hard to administrate when we compared it with pfSense."
"The solution's most valuable feature is that I really like the third-party add-ons, as they give the firewall a ton of flexibility and extra functionalities...The product's initial setup phase was extremely straightforward."
"For everyday tasks, we just get alerts. It's anything that's suspicious, including from our Netgate. So, it's part of how we maintain cybersecurity in our school. This is working alongside our endpoint security solution."
"We switched because WatchGuard offered better value for money without sacrificing security."
"It configures in all-in-one place.​"
"A WatchGuard creates new ways to secure your network."
"We use WatchGuard XTM as a privileged access management solution; I complained about another unstable product and we switched to WatchGuard, which has been good."
"Reputation Enabled Defense indicates that some websites are so infested that it's not even worth visiting them, and therefore saving the bandwidth of going through the detection process."
"This product has helped in securing my SQL database and web applications from DDoS attacks and SQL injections, improved my network speed, and helped me to set specific policies for specific applications which I couldn't do with other products."
"It costs less than the SO works and others (like SonicWall, Cisco, and Barracuda) without increasing so much CPU use."
"The product is easy to use and is the fastest way to learn about firewalls."
 

Cons

"One area where Netgate could improve is communication with its user base."
"Yes, sometimes there are issues if there are some complex configurations."
"We are at the moment looking to use it as a proxy service so that we can limit what websites people go and view and that sort of thing. That's an area I've struggled with a little bit at the moment and it could be a bit easier to set up."
"I would like to see an additional wizard added to pfSense when you add some of their other packages. You can add a package from pfSense to do a particular task, but you need to be a product expert or willing to spend time on the Internet for hours and hours to figure out how to configure some of those features correctly."
"The pfSense product is very powerful in layer 3 but you must add some products to match a viable commercial product which generally has all the functions integrated in one hardware system (proxy, antivirus, etc.)."
"I've encountered persistent issues with the solid-state drives built into pfSense hardware devices."
"It would be very useful if we could place pfSense appliances in customer environments and remotely manage them."
"I would like to see multiple DNS servers running on individual interfaces."
"Initially WatchGuard assured us regarding endpoint security, but we are not sure that the product provides endpoint security features to its full extent."
"The setting policies need improvement. It needs an easier way to do static NAT and check on what policy is being used for that specific traffic."
"The support is poor and lazy."
"Early models of the XTM2 (e.g. 21, 22, 23) line lacked sufficient memory, and caused a number of issues that required frequent reboots."
"The issue that we had was that the integration with Active Directory was a bit of a hassle."
"I’m not in favor having to setup security proxy settings instead of just turning them on like you do with the SonicWALL enhanced OS."
"Tech support is sometimes a little bit slow."
"Unfortunately, I could not disable the default Outgoing policy and if I do all clients could not access the internet even if I created another Outgoing Policy to replace the default one."
 

Pricing and Cost Advice

"Compared to other business routers, pfSense's pricing is reasonable."
"They have a free community version and a paid version. The free version works if you are a home user who needs a fixed cost, but that's not my use case."
"We are using the open-source version which is free. We are testing the solution to see if we are going to go to the enterprise version which requires a license and is not free."
"If you are a technical person, it is a pretty cheap solution because first of all, the Community Edition (CE) is free. I am in Australia, and my pfSense license is about 200 dollars. It is not bad because it is per year and not per month. It is cheap compared to other solutions."
"We are using its Community Edition, which is free. My company is a government school, and we don't have much budget."
"pfSense is open-source."
"The tool is flexible; even the free, open-source version offers many features. From a cost perspective, even the subscription model for commercial support isn't too costly. However, it's important to have someone knowledgeable about Netgate pfSense to take advantage of it. While there are online resources, a professional or someone experienced can get much more out of the solution. I've heard that the IPS/IDS licenses and other features can be costly."
"I would recommend it for a small business or a startup as a starting point. It's also good for companies that are on a tight budget."
"Get at least a maintenance contract for the updates and take a larger WatchGuard than you need. A WatchGuard creates new ways to secure your network."
"It costs less than the SO works and others (like SonicWall, Cisco, and Barracuda) without increasing so much CPU use."
"The licensing and renewal is very expensive."
"Like all other manufacturers, there are a lot of features and different pricing. The best is to talk to a representative.​"
report
Use our free recommendation engine to learn which Firewalls solutions are best for your needs.
906,852 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Comms Service Provider
12%
Computer Software Company
11%
Manufacturing Company
7%
Financial Services Firm
6%
Construction Company
16%
Marketing Services Firm
11%
Financial Services Firm
11%
Performing Arts
9%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business171
Midsize Enterprise33
Large Enterprise29
By reviewers
Company SizeCount
Small Business24
Midsize Enterprise7
Large Enterprise3
 

Questions from the Community

Help me find the best open source router
You don't really specify what type of router you are looking for but if you are talking about a gateway router I recommend PFSense. This software solutions can be installed on youf own hardware or ...
How do I choose between Fortinet FortiGate and pfSense?
Fortinet’s Fortigate is a firewall solution we use and are very much satisfied with its performance. We find Fortigate both cost-effective and efficient. One of the features we like most is that Fo...
What is the difference between PfSense and OPNsense?
Two of the most common and well recognized firewalls, PfSense and OPNsense both support site-to-site IPsec VPN and client, Open VPN and client, and PPTP client. Both also have intrusion detection a...
Ask a question
Earn 20 points
 

Overview

 

Sample Customers

Nerds On Site Inc., RKC Development Inc., Expertech, Fisher's Technology, Ncisive, Consulting, CPURX, Vaughn's Computer House Calls, Imeretech LLC, Digital Crisis, Carolina Digital Phone, Technigogo Technology Services, The Simple Solution, SwiftecITInc, Rocky Mountain Tech Team, Free Range Geeks, Alaska Computer Geeks, Lark Information Technology, Renaissance Systems Inc., Cutting Edge Computers, Caretech LLC, GoVanguard, Network Touch Ltd, P.C. Solutions.Net, Vision Voice and Data Systems LLC, Montgomery Technologies, Techforce, Concero Networks, ASONInc, CPS Electronics and Consulting, Darkwire.net LLC, IT Specialists, MBS-Net Inc., VOICE1 LLC, Advantage Networking Inc., Powerhouse Systems, Doxa Multimedia Inc., Pro Computer Service, Virtual IT Services, A&J Computers Inc., Envision IT LLC, CommunicaONE Inc., Bone Computer Inc., Amax Engineering Corporation, QPG Ltd. Co., IT 101 Inc., Perfect Cloud Solutions, Applied Technology Group Inc., The Digital Sun Group LLC, Firespring
AVG, Cyren, Kaspersky Lab, Lastline, NCP engineering, Trend Micro, Websense
Find out what your peers are saying about Fortinet, Netgate, Cisco and others in Firewalls. Updated: July 2026.
906,852 professionals have used our research since 2012.