Try our new research platform with insights from 80,000+ expert users

Palo Alto Networks K2-Series vs Sophos XG comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Jul 13, 2025

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Fortinet FortiGate
Sponsored
Ranking in Firewalls
2nd
Average Rating
8.4
Reviews Sentiment
7.0
Number of Reviews
390
Ranking in other categories
Software Defined WAN (SD-WAN) Solutions (1st), WAN Edge (1st)
Palo Alto Networks K2-Series
Ranking in Firewalls
34th
Average Rating
8.4
Reviews Sentiment
7.7
Number of Reviews
34
Ranking in other categories
No ranking in other categories
Sophos XG
Ranking in Firewalls
4th
Average Rating
8.2
Reviews Sentiment
7.1
Number of Reviews
214
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of July 2025, in the Firewalls category, the mindshare of Fortinet FortiGate is 21.2%, up from 17.7% compared to the previous year. The mindshare of Palo Alto Networks K2-Series is 0.1%, up from 0.0% compared to the previous year. The mindshare of Sophos XG is 10.9%, up from 9.4% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Firewalls
 

Featured Reviews

Vasu Gala - PeerSpot reviewer
A stable solution with an intuitive interface and quick customer service
I have been working with Fortinet FortiGate, WatchGuard, Sophos, and SonicWall. I'm not as comfortable with SonicWall because of their UI and limitations. I prefer Fortinet above all other options. When it comes to configuration, I am confident in my ability to handle various tasks, including creating policies such as firewall rules, web policies, and application policies. Additionally, I can configure VPNs and implement load balancing, among other tasks. Overall, I feel much more comfortable working with Fortinet. Fortinet has made significant improvements by integrating AI with firewalls for threat analysis and prevention. In the past 2-3 years, they have launched FortiSASE and SIEM, and they also provide SOC services. Both Palo Alto and Fortinet FortiGate are excellent. While Fortinet FortiGate comes at higher prices, the functionality and support justify the cost. They promptly resolve firmware issues and inform all support providers about configuration changes.
Krishnakumar M - PeerSpot reviewer
One of the best tools for the prevention of evasive threats
There is a feature called granular application controls, which I liked. Instead of relying on ports and IP addresses, they use AMP ID. This kind of solution is very good. Another valuable feature is the prevention of evasive threats, which is one of the best tools I've encountered. SSL decryption and app ID-based SSL decryption are also impressive, along with the integration with user ID. Identity-based policies ensuring only authorized users can access specific resources are excellent features. Normally, there is something called SIM or SCIM in IDA IDM, but this feature is provided on the box, which is exemplary.
TarunPanchal - PeerSpot reviewer
Decades of expertise lead to seamless installations and robust security
I typically use the Sophos XG Firewall to enhance my cybersecurity by using all layers. The intrusion prevention system impacts my security posture effectively, as we have not faced any ransomware or cyber threats. I have more than 800 servers live from Sophos. The synchronized security feature has proven to be very beneficial, and I have not encountered any issues. Sophos XG Firewall has contributed to reducing overall costs because it helps save money. We purchased endpoint security for the first time last year, and even without endpoint security, it provides comprehensive security. Sophos XG uses AI effectively to enhance threat detection and response, securing from AI at the packet level.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Our security improved from being able to put in rules and close off unwanted traffic."
"Secure, user-friendly, stable, and scalable network security solution. Installation is straightforward."
"Security, SD-WAN, and Streetscape are valuable features."
"This product is definitely scalable."
"The stability of the solution is excellent, as it is with other Fortinet products."
"The scalability is easy with switches and access points that are basically plug-and-play for the most part."
"The solution is scalable."
"Their reliability and their policy of pre-shipping replacements when a unit has failed."
"As long as the solution is kept updated, it's pretty stable."
"The most valuable features are the intuitive user interface, ease of use, and reporting."
"We've found the solution offers us good stability."
"This is a very reliable firewall and we have never had problems with it."
"It's easy to configure."
"It is a stable solution."
"The solution offers effective security features such as HIDS (Host-based Intrusion Detection System) in global products."
"Mainly, it is very easy to understand, and the logs are very good."
"What I like about his program, is that it is easy to use and easy to manage."
"As a security solution, it's a very good security solution."
"The antivirus features are valuable."
"We can configure rules with the user, traffic, etc., making it a very versatile solution for our network."
"It is very easy to use. You can configure and monitor everything from one unique dashboard."
"The multifactor authentication is helpful because whenever the user wants to connect to the firewall, they have to use the authenticator before they can access it."
"The product is very easy to explore. It has a very good layout."
"The firewall provides network visibility and reporting capabilities, constantly improving over time. It can be integrated with the cloud console, allowing centralized management of multiple firewalls. integration with endpoint security products ensures seamless traffic flow and rule enforcement, even when endpoints are not directly connected to the firewall."
 

Cons

"Fortinet FortiGate could improve by having better visibility. Palo Alto has better visibility."
"The configuration part was challenging, especially converting configurations from another OEM to FortiGate."
"The inability to scale the FortiAnalyzer to match our growth necessitates the purchase of new hardware."
"We haven't tapped into most of the functionalities that Fortinet FortiGate offers because we're using it just for gateway security. One of the things that I would prefer is a more expansive use of their analyzer. They could do more work on FortiAnalyzer in terms of the data and the information coming from it."
"The solution could be improved by addressing limited local reporting. It requires obtaining the FortiAnalyzer for proper visibility because you can't do much from a reporting perspective with just the firewall alone."
"It could use more templates for third-party site-to-site VPN setups other than FortiGate and Cisco."
"It should come integrated or have its own type of network monitor tool in a module. There should just be one package, and you are good to go."
"The support we receive when we need to upgrade is not satisfactory and has room for improvement."
"The graphical user interface is a little complex and difficult to manage. L1 engineers cannot work on the Palo Alto Networks K2-Series because it's too complex, which requires L2 and above level of engineers."
"It would be really helpful to have dashboards that provide information on IOC blockings such as where and how many. It will also be good to know how many hashing files have been reported. It would also be nice to have easy access to this information. Otherwise, it's a painful, manual task."
"Sometimes there are interactions with support or the provider that are not ideal."
"Its networking features could be better."
"I cannot think of anything specific to improve at the moment."
"Threat prevention could use improvement. Not just in malware exploits and C2 traffic; enhancing web traffic protection would be a great upgrade."
"They should implement the features that the other firewalls have."
"It is recommended that the Palo Alto Networks K2-Series be implemented step by step for the Panorama. Sometimes we can't overwrite the configurations because it fails."
"In the Sophos XG, the SD-WAN has all the rules done separately, such as net policy routing. In the previous version, they were all in a single rule and everything was done that way. The way it is now is difficult for us because we are not used to this newer version. The firewall rules should be easier to configure and create. Everything should be done with a single click."
"There should be a workaround in case of equipment breakdown, like a stopgap measure while the equipment is being returned or replaced."
"They made some changes to the firmware update sometime last year, which moved some of the policies from where they were before. Some of the policies, such as NAS policies, were separated, which made it a bit hard for people to trace the policies they had configured."
"Sophos XG could improve by coming out with more innovative feature developments."
"The initial setup is not straightforward."
"We are facing some problems on this firmware version, version 18, that require improvement. We want to improve the email security because it doesn't give proper security with the data protection. Also, our clients are facing some problems where most of the sites which they're accessing are getting blocked. I want to improve those sites, that email security, and the data protection on the Firmware version 18."
"I would like the update process to be easier, to update the firmware of the boxes. I think it's much better automatically than having to do it manually: Download the file, do network discovery. I they can make the update process much more automatic that would help."
"The knowledge base needs improvement, particularly in terms of community support and training videos on platforms like YouTube. Compared to other firewalls, Sophos XG documentation is somewhat confusing and can be difficult to use."
 

Pricing and Cost Advice

"The pricing is justified. It's a little pricey, but what you pay for is what you get."
"Fortinet is the least expensive solution."
"Fortinet FortiGate as a less expensive solution than Palo Alto."
"It was worth the money overall. It's good value."
"The value is the capability of having multiple services with one unique license, not having the limitation per user licensing schema, like other vendors."
"The price is okay."
"It is not the cheapest one, but its price is very competitive."
"The price of FortiGate is average and I would say that based on the top five products available on the market, it is in the affordable range."
"The pricing is expensive."
"Palo Alto firewalls are very expensive."
"When comparing Palo Alto Networks K2-Series with other solutions it is on the higher end of the price scale."
"We are on an annual license to use Palo Alto Networks K2-Series."
"The price of this solution is too high."
"This product is designed for large companies. The price would not be suitable for a small or medium size company."
"It is an expensive solution."
"Products by the leader in the field are justifiably a bit more expensive compared to other vendors."
"The solution is not expensive since one pays as he goes."
"We paid for our licensing for three years, upfront, and there are no costs in addition to the standard fees."
"Sophos is very good when it comes to pricing."
"Its price should be better. Initially, the clients have to pay for the appliance. Then, they have to pay for the software that is installed on the appliance. Depending on whether they have a one-year, two-year, or three-year license, they just have to renew the license of the software after it expires. They don't have to renew the appliance license. So, they have to pay for the appliance only once, and after that, they just renew the software license. That's all."
"The price of Sophos XG is reasonable."
"Licensing fees are on a yearly basis."
"The price of Sophos in PTR is significantly higher compared to Fortinet."
"Sophos XG is not expensive for a firewall, especially when you compare it with Check Point."
report
Use our free recommendation engine to learn which Firewalls solutions are best for your needs.
862,499 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
16%
Comms Service Provider
8%
Manufacturing Company
7%
Educational Organization
7%
Computer Software Company
18%
Performing Arts
18%
Manufacturing Company
9%
Comms Service Provider
7%
Computer Software Company
16%
Comms Service Provider
9%
Manufacturing Company
7%
Financial Services Firm
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

Which is the better NGFW: Fortinet Fortigate or Cisco Firepower?
When you compare these firewalls you can identify them with different features, advantages, practices and usage a...
What is the biggest difference between Sophos XG and FortiGate?
From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know...
What are the biggest technical differences between Sophos UTM and Fortinet FortiGate?
As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite ...
Features comparison between Palo Alto and Fortinet firewalls
In the best tradition of these questions, Feature-wise both are quite similar, but each has things it's better at, it...
What is your experience regarding pricing and costs for Palo Alto Networks K2-Series?
The pricing for the Palo Alto Networks K2-Series solution is affordable and there are no complaints about the licensing.
Which is better - Palo Alto Networks NG Firewalls or Sophos XG?
Palo Alto Networks NG Firewalls have both great features and performance. I like that Palo Alto has regular threat si...
What are the main differences in features between Sophos XG and FortiGate 80F?
Hi Arvind P , The Sophos XG firewall has a number of models right from XG86 to XG135w under the 1U Desktop Form Fact...
 

Also Known As

FortiGate 60b, FortiGate 60c, FortiGate 80c, FortiGate 50b, FortiGate 200b, FortiGate 110c, FortiGate, Fortinet Firewall
No data available
No data available
 

Overview

 

Sample Customers

Amazon Web Services, Microsoft, IBM, Cisco, Dell, HP, Oracle, Verizon, AT&T, T-Mobile, Sprint, Vodafone, Orange, BT Group, Telstra, Deutsche Telekom, Comcast, Time Warner Cable, CenturyLink, NTT Communications, Tata Communications, SoftBank, China Mobile, Singtel, Telus, Rogers Communications, Bell Canada, Telkom Indonesia, Telkom South Africa, Telmex, Telia Company, Telkom Kenya
State of North Dakota, SEGA, Alameda County Office of Education, Temple University, VERGE, CAME
Information Not Available
Find out what your peers are saying about Palo Alto Networks K2-Series vs. Sophos XG and other solutions. Updated: July 2025.
862,499 professionals have used our research since 2012.