Try our new research platform with insights from 80,000+ expert users

SonicWall Capture Client vs Trellix Active Response comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Sep 9, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

SonicWall Capture Client
Ranking in Endpoint Detection and Response (EDR)
39th
Average Rating
8.0
Reviews Sentiment
7.4
Number of Reviews
10
Ranking in other categories
Endpoint Protection Platform (EPP) (47th)
Trellix Active Response
Ranking in Endpoint Detection and Response (EDR)
46th
Average Rating
6.8
Reviews Sentiment
7.6
Number of Reviews
4
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of June 2025, in the Endpoint Detection and Response (EDR) category, the mindshare of SonicWall Capture Client is 0.6%, down from 0.7% compared to the previous year. The mindshare of Trellix Active Response is 0.2%, up from 0.1% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Endpoint Detection and Response (EDR)
 

Featured Reviews

Jasmit Singh Juneja - PeerSpot reviewer
A stable solution that is used for endpoint security and to protect computers from malware
We are using the latest version of SonicWall Capture Client. Fortinet is ahead of SonicWall. The range of appliances, equipment, availability in my country with the distributors, and the overall ecosystem of Fortinet is way better than SonicWall. My advice to others looking into using SonicWall Capture Client is to keep giving feedback to the companies regarding whatever improvements should be made. Overall, I rate SonicWall Capture Client an eight out of ten.
ED
Operational efficiencies increase with immediate threat alerts for endpoints
We use Trellix Active Response primarily for our endpoints, including desktop computers. It monitors all the tools that our users use for their day-to-day work The alerts provided by Trellix Active Response are its most valuable feature. They notify us immediately of any vulnerabilities on the…

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The most valuable features of SonicWall Capture Client are CSC (Capture Security Center), RTDMI (Real-Time Deep Memory Inspection), and the deep memory inspection feature."
"Considering other products, SonicWall Capture Client has two differentiators."
"SonicWall Capture Client's scalability is nice."
"SonicWall Capture Client has a serial number to connect to your firewall."
"SonicWall Capture Client offers a cost-effective solution that's cheaper compared to other vendors like CrowdStrike."
"The threat protection feature of SonicWall Capture Client is most valuable."
"Overall, what I love the most about SonicWall Capture Client is its management console. SonicWall Capture Client also has the intelligence to tell you which computer is online, what OS it uses, etc. I also found the rollback feature and SentinelOne integration valuable in SonicWall Capture Client. Rollback is a powerful feature of the solution because it's similar to locking your endpoint during an attack, so you won't have to pay the hackers, particularly during ransomware attacks. That feature in SonicWall Capture Client allows you to get back your endpoint or make your endpoint right again after an attack. I also like that it isn't complex to remove the engine error from the endpoint because you only have to provide the security key from SonicWall Capture Client, so the process is simple. It's not complex."
"The initial setup is straightforward."
"The alerts provided by Trellix Active Response are its most valuable feature."
"We are hoping to automate detection and response and take advantage of user behavior analytics, given that we are working from home. About half of our workers are still remote, so Active Response gives us that visibility and lets us automate a number of those events."
"It's a little lighter compared to the older version, which was mostly signature-based."
"The alerts provided by Trellix Active Response are its most valuable feature."
"The solution is scalable."
 

Cons

"XDR cannot be used unless MDR services are purchased with SonicWall."
"Technical support from SonicWall has room for improvement. While their escalation process is understandable, it can be time-consuming as all logs need to be provided multiple times across different service levels."
"An area for improvement in SonicWall Capture Client is TenantCloud support. Suppose you want to implement SonicWall Capture Client. You'll have to register it on MySonicWall. Then once your SonicWall Capture Client license expires and you don't want to renew it, you can't delete it from your MySonicWall account, so that's an area for improvement."
"SonicWall Capture Client could be made a little lighter than it currently is in terms of memory consumption."
"The vulnerability reports need to be better. Windows Defender detected some issues that SonicWall Capture Client couldn't."
"The implementation is not easy."
"The biggest issue with SonicWall Capture Client is network latency."
"SonicWall Capture Client should use less of our PC's memory, as it tends to slow down the performance."
"There are some components on the cloud that should also reside in the on-prem deployment models but don't."
"The only area for improvement is regarding operational technology devices, specifically the engineering automation systems."
"I also expected Active Response 's user interface to be much more analytical."
"While the product is good, we are currently facing support issues."
 

Pricing and Cost Advice

"The product is very expensive."
"You have to pay for the solution, and a lot of customers do not want to pay."
"Here in Indonesia, SonicWall Capture Client costs five hundred thousand rupiahs for every endpoint. If I'm correct, you only have to pay the licensing fee, and there's no additional fee. To me, the pricing for SonicWall Capture Client is four out of five."
"Our costs were somewhere around $600K in Trinidad dollars, which might be about $100K US. We have the ETP plus the EDR. Our recent renewal was 1800 licenses as opposed to the full amount. Our transaction cost was about $600K Trinidad dollars, which is somewhere around $90-100K US."
report
Use our free recommendation engine to learn which Endpoint Detection and Response (EDR) solutions are best for your needs.
859,438 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Government
11%
Computer Software Company
10%
Educational Organization
9%
Retailer
7%
Government
16%
Financial Services Firm
12%
Comms Service Provider
10%
Aerospace/Defense Firm
9%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
 

Questions from the Community

What do you like most about SonicWall Capture Client?
SonicWall Capture Client's scalability is nice.
What is your experience regarding pricing and costs for SonicWall Capture Client?
SonicWall Capture Client offers a cost-effective solution that's cheaper compared to other vendors like CrowdStrike.
What needs improvement with SonicWall Capture Client?
SonicWall Capture Client could benefit from an improved graphical user interface with more modern and minimal icons. Additionally, one of the drawbacks is that I cannot use Advanced and Premier lic...
What is your experience regarding pricing and costs for McAfee Active Response?
Based on our evaluations, Trellix Active Response's pricing was the most feasible from a cost perspective. I rate the pricing between a six and an eight. It is justified.
What needs improvement with McAfee Active Response?
The only area for improvement is regarding operational technology devices, specifically the engineering automation systems. We would like Trellix to optimize the technology for these systems simila...
What is your primary use case for McAfee Active Response?
We use Trellix Active Response primarily for our endpoints, including desktop computers. It monitors all the tools that our users use for their day-to-day work.
 

Also Known As

No data available
McAfee Active Response
 

Overview

 

Sample Customers

Luton College
Liquor Control Board of Ontario
Find out what your peers are saying about SonicWall Capture Client vs. Trellix Active Response and other solutions. Updated: June 2025.
859,438 professionals have used our research since 2012.