Try our new research platform with insights from 80,000+ expert users

Sangfor NGAF vs SonicWall NSSP comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Jan 25, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Fortinet FortiGate
Sponsored
Ranking in Firewalls
1st
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
580
Ranking in other categories
Secure Web Gateways (SWG) (2nd), Intrusion Detection and Prevention Software (IDPS) (1st), Software Defined WAN (SD-WAN) Solutions (1st), WAN Edge (1st), ZTNA (1st), Unified Threat Management (UTM) (1st)
Sangfor NGAF
Ranking in Firewalls
23rd
Average Rating
8.0
Reviews Sentiment
6.5
Number of Reviews
34
Ranking in other categories
No ranking in other categories
SonicWall NSSP
Ranking in Firewalls
30th
Average Rating
8.6
Reviews Sentiment
6.8
Number of Reviews
9
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of January 2026, in the Firewalls category, the mindshare of Fortinet FortiGate is 18.8%, down from 20.7% compared to the previous year. The mindshare of Sangfor NGAF is 1.1%, down from 1.1% compared to the previous year. The mindshare of SonicWall NSSP is 0.2%, up from 0.0% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Firewalls Market Share Distribution
ProductMarket Share (%)
Fortinet FortiGate18.8%
Sangfor NGAF1.1%
SonicWall NSSP0.2%
Other79.9%
Firewalls
 

Featured Reviews

Vasu Gala - PeerSpot reviewer
Manager, Information Technology Operation/Presales at TechMonarch
A stable solution with an intuitive interface and quick customer service
I have been working with Fortinet FortiGate, WatchGuard, Sophos, and SonicWall. I'm not as comfortable with SonicWall because of their UI and limitations. I prefer Fortinet above all other options. When it comes to configuration, I am confident in my ability to handle various tasks, including creating policies such as firewall rules, web policies, and application policies. Additionally, I can configure VPNs and implement load balancing, among other tasks. Overall, I feel much more comfortable working with Fortinet. Fortinet has made significant improvements by integrating AI with firewalls for threat analysis and prevention. In the past 2-3 years, they have launched FortiSASE and SIEM, and they also provide SOC services. Both Palo Alto and Fortinet FortiGate are excellent. While Fortinet FortiGate comes at higher prices, the functionality and support justify the cost. They promptly resolve firmware issues and inform all support providers about configuration changes.
Zaid Farooqui - PeerSpot reviewer
CIO at Indus Motor Company
Enhanced threat detection with integrated security features and good support
We are using application firewalling, WAF, and SD-WAN. The capabilities are mostly within the box. For example, you will get web application firewall WAF as part and parcel of this. SD-WAN is also bundled. It integrates with their SIEM and SOAR solutions very nicely. Lastly, the pricing point is very cost-efficient as well.
SyedTaha - PeerSpot reviewer
Head of IT and Information Security at GLEEDS USA INC
Support has resolved concerns promptly and security tools have strengthened intrusion prevention and access control
The service we received from SonicWall NSSP and their distributors has been excellent. Every time I have had a concern, they have resolved it in a single call. The interface of SonicWall NSSP console is user-friendly with comprehensive features. The web filtering and access control policy are top priorities for me. It is very effective because it prevents any indecent behaviors in the network or from outside the network. Half of the task is completed by the intelligence based on the behavior. Installation was easy because our infrastructure has minimal requirements. For expanded infrastructure, support from a SonicWall NSSP technical team may be required. We have implemented it on our own.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Their reliability and their policy of pre-shipping replacements when a unit has failed."
"Security, SD-WAN, and Streetscape are valuable features."
"Has a very user-friendly interface and doesn't require any prior knowledge."
"The web controls are what I appreciate about Fortinet FortiGate. We have extensive controls over areas where we could block external-facing IPs, external URLs. We can do geo-fencing with the firewalls, which is a good feature."
"FortiGate is a rapidly growing vendor with a wide range of ready-to-use products. Their delivery time is remarkably quick, usually between two to four weeks."
"One of the nice things about FortiGate is that it can be deployed on the cloud or on-premises. You can actually do both. That's the biggest reason why I stick with this solution as opposed to something like Cisco Meraki. Another nice thing is that I can log directly into a FortiGate or get to it through their FortiCloud access products. They're pretty reliable and consistent. One of the reasons why I started using the product was their single pane of management. I can deploy their line of firewalls in conjunction with their switching and access points, and I can manage the entire network from one interface. I don't have to log into one interface for the firewall, another one for the access points, and another one for the switches. These firewalls have access point controller functionality built right into the system, so I don't even have to purchase additional devices to manage them."
"The most valuable feature is the VDOM, which allows the customer to have multiple firewalls in a single campus."
"It is easy to use. We chose this product for the possibility to have virtual domains (VDOMs). We are building another company in the group, and we would like to split the firewalling rules and policies between these two companies. Each company would be able to manage its own policies and security rules, which is an advantage of Fortinet FortiGate. We can define VDOMs, and every company can manage its own VDOM as if it has its own physical firewall, but in fact, we would be using the same physical appliance because we are also using the same internet lines. So, it allows us to reuse the existing resources without the disadvantage of having to compromise on policies and security. Each company can choose its own way of working."
"We've found the technical support to be helpful."
"The price versus value is good because the solution is less expensive than Sophos, Fortinet, or SonicWall."
"We can utilize our own network rather than paying for a private one."
"It enables us to not only detect but also prevent various types of incoming threats, allowing us to take appropriate corrective actions and exercise control over the network."
"The tool's performance is good."
"The top functionality is the reporting feature."
"While the features are not dissimilar to other brands, configuration is much more simple, which works out great for Indonesian people."
"So far, the performance and reliability of the product have supported our company's critical network traffic."
"It has been delivering results efficiently. Its configurations and updates have been easy. It is also user-friendly."
"The interface of SonicWall NSSP console is user-friendly with comprehensive features, and the web filtering and access control policy are top priorities for me as it very effectively prevents any indecent behaviors in the network or from outside the network."
"I like the filtering feature, which provides easy access. The SSL certification feature is also nice. The solution enhanced our security posture."
"The service we received from SonicWall NSSP and their distributors has been excellent; every time I have had a concern, they have resolved it in a single call."
"SonicWall NSSP is stable and scalable too."
"SonicWall has helped us deliver security solutions effectively, particularly in threat prevention and content filtering."
"The solution's pricing is good."
"The VPN functionality is really good. Overall, the whole device is very easy to manage. The software that comes with it is also good."
 

Cons

"FortiLink is the interface on the firewall that allows you to extend switch management across all of your switches in the network. The problem with it is that you can't use multiple interfaces unless you set them up in a lag. Only then you can run them. So, it forces you to use a core type of switch to propagate that management out to the rest of the switches, and then it is running the case at 200. It leaves you with 18 ports on the firewall because it is also a layer-three router that could also be used as a switch, but as soon as you do that, you can't really use them. They could do a little bit more clean up in the way the stacking interface works. Some use cases and the documentation on the FortiLink checking interface are a little outdated. I can find stuff on version 5 or more, but it is hard to find information on some of the newer firmware. The biggest thing I would like to see is some improvement in the switch management feature. I would like to be able to relegate some of the ports, which are on the firewall itself, to act as a switch to take advantage of those ports. Some of these firewalls have clarity ports on them. If I can use those, it would mean that I need to buy two less switches, which saves time. I get why they don't, but I would still like to see it because it would save a little bit of space in the server rack."
"Its reporting and pricing need improvement."
"I prefer Palo Alto over Fortinet FortiGate. Its IPS engine is not better than the Palo Alto version. The monitoring tool needs improvement, and the syslog configuration needs enhancement."
"The solution's framework needs to be frequently updated in order to have a stable solution."
"For the migration, everyone has a firewall in use and I am selling Fortinet. Typically, I am replacing another firewall. Previously, there was a tool available to convert configurations from one firewall, such as Palo Alto, to Fortinet, but this tool is no longer free. If it could be made free again, it would be very beneficial."
"FortiOS is not simple."
"Usually, we sell the bundle with the UTM or threat management piece with IPS, IDS. Other providers, such as Palo Alto, are ahead in terms of safe functionality. So, for me, delivering truly safe service is probably something that still needs to be improved."
"The main aspect of FortiGate that could be improved is load balancing. Our management team does not want to buy another appliance for only load balancing."
"The web interface needs to be improved, making it more user-friendly."
"Our experience with its customer support was quite challenging."
"It does not offer any recommendations on how to mitigate or control attacks."
"Scalability for any network device is not very easy in terms of vertical scalability."
"Lacks consistency in terms of filtering certain websites and applications."
"The interface and user experience are horrible."
"I would be happy if Sangfor developed a firewall designed specifically for home use, as well as for small businesses such as clinics and so on. A household version of the Sangfor firewall for your personal computer or laptop would be ideal, in my opinion."
"The support for YouTube or the Internet is not enough."
"The platform could benefit from an improved marketing strategy."
"The solution's stability and scalability also need improvement."
"The user interface, the GUI, could be improved."
"Its reporting functions can be improved. It has decent reporting, but you got to pay a lot more money for it. That's where it begins to fall apart. It comes with minimal zero reporting unless you buy some extra modules. With those extra modules, you can get all the data, but it takes a while to put together what you need for your customer. It is for technical people, but there is no executive summary of the reporting."
"For improvement, they should have events specifically focused on firmware or patch updates released for the firewalls."
"The EDR and XDR capabilities of SonicWall need to be improved."
"The product needs improvement for phishing emails."
"No security product is foolproof against hackers, intruders, and other such things. As a security product, they have to keep pace in terms of protection from new hackers and intruders."
 

Pricing and Cost Advice

"We pay $500 per year for the license."
"Fortinet FortiGate gives you most of the features in one license."
"On a scale of one being cheap and ten being expensive, I rate the tool's price as an eight."
"The price is relatively expensive compared to other solutions which are providing similar features."
"The pricing is reasonable."
"FortiGate's pricing falls within the mid-range when compared to other leading firewall solutions."
"It's not the cheapest, but it's value for money. Given everything we've got out of it: the DMZ port, the VPN, and the high availability, it's a pretty reasonable price."
"The price of Fortinet FortiGate is affordable. Most of our customers are on a three-year license to use the solution. All the features and support are included in the price."
"It is one of the cheapest tools in the market."
"In my opinion, the price of the tool is good in the Pakistani market. We can easily get discounts if needed."
"If one is very cheap and ten is very expensive, I rate the tool's price as three out of ten."
"Sangfor NGAF is a cheaply priced product, especially if I consider the previous product that was used in my company."
"If you know you have around 200+ computer users on your network, then the Sangfor NGAF 5200-F-I model would be the minimum recommended model for that amount of users. This model includes modules for packet filtering, deep packet inspection, malware scanning, DSCP filtration, and many other features."
"The product is very cost-effective compared to other brands or vendors."
"The price falls in the mid-range, neither exceptionally low nor high."
"We purchased one year technical support and return to factory support, and we also purchased one-year technical support services. So those were additional."
"I rate the solution's pricing a six out of ten."
"The setup costs and licensing are reasonable, and the solution provides good value for its features."
"For SonicWall NSSP high availability, active/passive, you need to buy one license, and so you get much more value for money."
"You got to buy some VPN licenses, and there might be a $40 to $50 one-time license fee per current user. There are different layers. They have several different levels of event security software and depending on the model, it seems to come out to be $1 to $2 a day. So, if you bought a three-year license, it is going to be anywhere from $900 to $1800 depending on the bundle and model that you buy."
"The pricing is cheap, and that's where, you know, the some of the organization goes for the SonicWall."
report
Use our free recommendation engine to learn which Firewalls solutions are best for your needs.
881,114 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
12%
Comms Service Provider
9%
Manufacturing Company
8%
Financial Services Firm
6%
Manufacturing Company
11%
Financial Services Firm
8%
Computer Software Company
8%
Comms Service Provider
8%
No data available
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business357
Midsize Enterprise133
Large Enterprise188
By reviewers
Company SizeCount
Small Business15
Midsize Enterprise10
Large Enterprise10
By reviewers
Company SizeCount
Small Business6
Large Enterprise3
 

Questions from the Community

Which is the better NGFW: Fortinet Fortigate or Cisco Firepower?
When you compare these firewalls you can identify them with different features, advantages, practices and usage a...
What is the biggest difference between Sophos XG and FortiGate?
From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know...
What are the biggest technical differences between Sophos UTM and Fortinet FortiGate?
As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite ...
What do you like most about Sangfor NGAF?
I think Sangfor NGAF is more valuable than Cisco products because of its simplicity and ease of management. If I comp...
What is your experience regarding pricing and costs for Sangfor NGAF?
The licensing cost is quite high compared to other available firewalls in the market.
What needs improvement with Sangfor NGAF?
The cost of licensing is very high compared to other firewalls available here. There should be improvements in hardwa...
What needs improvement with SonicWall NSSP?
For improvement, they should have events specifically focused on firmware or patch updates released for the firewalls...
What is your primary use case for SonicWall NSSP?
The solution is used to detect intrusion, web filtering, and network monitoring.
 

Also Known As

Fortinet FortiGate Next-Generation Firewall
Sangfor NGAF Firewall Platform
SonicWall Network Security Services Platform
 

Overview

 

Sample Customers

Amazon Web Services, Microsoft, IBM, Cisco, Dell, HP, Oracle, Verizon, AT&T, T-Mobile, Sprint, Vodafone, Orange, BT Group, Telstra, Deutsche Telekom, Comcast, Time Warner Cable, CenturyLink, NTT Communications, Tata Communications, SoftBank, China Mobile, Singtel, Telus, Rogers Communications, Bell Canada, Telkom Indonesia, Telkom South Africa, Telmex, Telia Company, Telkom Kenya
The Ministry of Science, Technology, and Innovation (Indonesia), Lawson, Inc. (Philippines), Universiti Sultan Zainal Abidin (Indonesia), TEK Automotive (Italy), etc.
Comlogic, Depaul, Hutt City Council
Find out what your peers are saying about Sangfor NGAF vs. SonicWall NSSP and other solutions. Updated: December 2025.
881,114 professionals have used our research since 2012.