Try our new research platform with insights from 80,000+ expert users

Sophos Firewall vs Stormshield Network Security comparison

Sponsored
 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Fortinet FortiGate
Sponsored
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
587
Ranking in other categories
Secure Web Gateways (SWG) (2nd), Firewalls (1st), Intrusion Detection and Prevention Software (IDPS) (1st), Software Defined WAN (SD-WAN) Solutions (1st), WAN Edge (1st), ZTNA (1st), Unified Threat Management (UTM) (1st)
Sophos Firewall
Average Rating
8.2
Reviews Sentiment
6.9
Number of Reviews
303
Ranking in other categories
Firewalls (3rd)
Stormshield Network Security
Average Rating
7.8
Reviews Sentiment
6.0
Number of Reviews
18
Ranking in other categories
Unified Threat Management (UTM) (12th)
 

Featured Reviews

Vasu Gala - PeerSpot reviewer
Manager, Information Technology Operation/Presales at TechMonarch
A stable solution with an intuitive interface and quick customer service
I have been working with Fortinet FortiGate, WatchGuard, Sophos, and SonicWall. I'm not as comfortable with SonicWall because of their UI and limitations. I prefer Fortinet above all other options. When it comes to configuration, I am confident in my ability to handle various tasks, including creating policies such as firewall rules, web policies, and application policies. Additionally, I can configure VPNs and implement load balancing, among other tasks. Overall, I feel much more comfortable working with Fortinet. Fortinet has made significant improvements by integrating AI with firewalls for threat analysis and prevention. In the past 2-3 years, they have launched FortiSASE and SIEM, and they also provide SOC services. Both Palo Alto and Fortinet FortiGate are excellent. While Fortinet FortiGate comes at higher prices, the functionality and support justify the cost. They promptly resolve firmware issues and inform all support providers about configuration changes.
Nassif  Kaleny - PeerSpot reviewer
IT Manager at Bavaria Egypt S.A.E.
Dynamic web and mail filtering contribute to improved security measures
The reporting system is very poor. I cannot trace any traffic to our site if it feels some threats. It just tells me that there is something during a certain time but does not provide information about the type of threats or how to get rid of them. This needs improvement.
Zsolt Jónás - PeerSpot reviewer
System Administrator at NaxoNet
Advanced GUI and layered security have supported compliance and simplified intrusion prevention
I haven't had a task that I couldn't solve with Stormshield Network Security. The active-active high availability solution would be beneficial because currently, if you build a high availability solution with Stormshield Network Security, you have a main device and another one is a backup device. The HA can switch between them, but it would be good to have a master-master solution, not just a master-slave one. I could set a URL that I can call to update the DNS record. Currently, Stormshield Network Security devices support DynDNS, which is not a usual feature request from a server environment. I have my own solution instead of DynDNS because I don't prefer it, so I have my own service for that. However, the GUI does not support using a custom service instead of DynDNS. I had to solve it in the console on Stormshield Network Security device, but it would be much better if it was reachable on the GUI. I had to figure out a trick for the IPsec configuration. In the IPsec config, we have to provide the remote side's IP address, but it's always changing. This means that an office, for example a company that has an office but without a fixed IP address, cannot be used with IPsec VPN.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Fortinet FortiGate has several valuable features; the configuration and policy setup are easy to implement, and there are embedded features including DLP, WAF, and proxy capabilities with security profiles for various functions."
"The firewalls are valuable for threat prevention."
"SSL-VPN is very useful for us and has been very reliable."
"Fortinet FortiGate is a stable solution."
"FortiGate is flexible and easy to use."
"The solution is very easy to understand. It's not overly complex."
"The pipe filter application is an outstanding feature."
"This version is stable. I don't have any issues with this solution, in our environment, it works well."
"The most valuable feature is the intrusion prevention system."
"So far, I'm happy that they have recently added a firewall role, so I feel a little more comfortable with the security. The threat management is good."
"Setup was straightforward. One person is enough for deployment."
"I recommend Sophos XG to other customers."
"Pricing is very competitive, much cheaper compared to other brands like Palo Alto, Check Point, and Fortinet."
"I particularly like the visibility it provides into network traffic, allowing us to identify and address issues efficiently."
"We currently have multiple clients, and many users are working remotely. We need antivirus protection to guard against malware introduced from public networks. One of the most beneficial features of Sophos XG is its integration with Sophos Central. If any file is detected as malicious on any endpoint or firewall, Sophos Central immediately identifies the threat and publishes the information across all endpoints and firewalls. If a single system gets infected, the threat is communicated and addressed across the entire network, including all sites and remote users."
"Sophos XGS has enabled my processes to run smoothly and provides the main benefits of saving time, saving money, and streamlining processes."
"It's an easy, straightforward management platform to use."
"Ease of use is the best feature of the product."
"The scalability of the solution is good."
"I like how you can configure the rules. There is the task for the rules and a task for the network configuration. It also provides SMD filtering, and it can be integrated with the active directory for the users, their mission, and the VPN configuration. We are here in Sudan, and Stormshield didn't work in Sudan for more than a decade. Stormshield is a very strong firewall and very easy to configure and maintain. I am just working with the firewall solution, and we don't have any other solutions like endpoint solutions or something like that."
"Customer service is very good, because of their presales support helping me with initial setup I decided to go with NetASQ in the first place, and support after the sale has been equally good as well."
"Filters and URL filtering helped us to optimize our bandwidth."
"The solution has improved my organization because I can see what traffic is happening and I can use it to block and prevent attacks."
"Easily manageable in a variety of environments."
 

Cons

"The product keeps hanging."
"They can do more tests before they release new versions because I would like to be more assured. We had some experiences where they release something new and great, but some of the old features are disabled or they don't work well, which impacts the product satisfaction. The manufacturer should be able to prove that everything works or not only that it might work. This is applicable to most of the other services, software, and hardware companies. They all should work on this. We cannot trust every new release, such as a beta release, on the first day. We wait for some comments on the forums and from other companies that we know. We always wait a few weeks before we use the updated version. They should also extend the VPN client application, especially for Linux versions. Currently, it has an application for Linux devices, but it doesn't work the way we want to connect to the VPN. They use only the old connection, not the new one. They have VPN client applications for Windows and Mac, but they can add more useful features to better manage the devices and monitor the current health of each device. Such features would be helpful for our company."
"FortiGate's logging and reporting could be improved. I would also like to see Fortinet add a guest management portal."
"Someone without certification and experience with other firewalls might find it a bit more challenging to grasp the FortiGate format and its platform layout."
"Its performance can be better. We have had performance issues in the past, but we sometimes tend to find that it is more related to what we do in our network than anything else. It is quite a good product, and there isn't much to improve."
"Their support can be better, and there should be better policies for immediate replacement in critical situations."
"The support team for Fortinet FortiGate needs to be more customer friendly."
"Areas of improvement for Fortinet FortiGate include the need for more training and certification, especially when dealing with distributors globally, which presents challenges in product availability and delivery timelines."
"It is a very basic and entry-level firewall. It doesn't give very granular control over the traffic. It should have more granular control over the traffic. This feature should be there similar to Palo Alto and Cisco. It should have such advanced features."
"XG is at its end of life. People are moving to XGS."
"Reporting could be improved. The structure could be better because most of the reports aren't detailed."
"The firewall could be made more robust, particularly by simplifying two-factor authentication."
"It is performing well. However, the only challenges that we are facing are the effectiveness with blocking the proxy and tuneling applications, aside from proxy and similar applications. So the application filter on the product is not really performing 100%. Every now and then there are some updates that are happening on such applications, and it takes time until it gets the appropriate updates and becomes capable of capturing such applications and blocking them. A new feature I would really like to see would be some sort of an enhanced application filter with greater efficiency when it comes to the applications that can bypass firewall policies. These applications are really a nightmare. Once they are on the network and not detected, or the appliance is not really successful in capturing them and unblocking them, the bandwidth gets wasted all the time."
"It could offer a DNS Filter for blocking botnet networks."
"In Sophos, the user portal is not user-friendly."
"The vendor doesn’t publish the price on the website."
"A more user-friendly interface would be helpful."
"An application firewall like other next generation firewalls have."
"The product must improve its pricing."
"Stormshield Network Security is quite expensive."
"This is not a next-generation firewall."
"Being more cost effective. I went with a pair of Watchguard M300 recently when buying a new firewall cluster for our own use because it was way cheaper than NetASQ/Stormshield N700 while being faster, and it offers true multi-master firewall clustering if needed."
"The filtering configuration could be better. We have some difficulties with the filtering configuration and the filter extension. It's not that easy. It's not that straightforward. In the next release, I would like to see a reporting system. Stormshield doesn't have any tutorials on how to do the configuration and things like that. They just have documentation on the website. If you want to configure, for example, Cisco or Fortinet, you can find tutorials on YouTube. They show you how to configure the features, and so on. In Stormshield, there is nothing on social media or the internet on how to configure different things. The lack of documentation or the lack of material makes it difficult for others to adopt this solution."
"I don’t recommend this product at all."
 

Pricing and Cost Advice

"It's one of the more expensive brands. The 100 series costs around $4,000. They are similar in pricing to what you might get from Cisco solutions and probably other similar ones. They're not more expensive than other similar solutions, but they're certainly not cheaper either."
"Its price is normal. If I compare it with other vendors, such as Palo Alto, it's normal. Palo Alto is expensive."
"It is an inexpensive solution."
"At the time we bought them, I was satisfied with their pricing; I don't know how the new pricing will be."
"Fortinet's pricing is more straightforward than other solutions. If Fortinet doesn't stick out when you're searching for a solution, you are a glutton for punishment. You only need to know two things when purchasing a Fortinet solution: your total bandwidth and bandwidth at the site. You need to estimate the future bandwidth with other solutions if your customer plans to upgrade."
"It is a cost-effective solution that meets the user's needs."
"My experience with the pricing, setup cost, and licensing for Fortinet FortiGate is quite good. I don't have a public site, such as in Azure, where I can see the pricing. I always have to go through the distributor, and that could take some time to get the real price for each appliance."
"Fortinet FortiGate as a less expensive solution than Palo Alto."
"When comparing with Palo Alto and Cisco, Sophos is cheaper."
"Sophos XG can be considered as an averagely-priced tool in the market."
"The price of the solution is reasonable and their target market is small to medium-sized companies."
"It's approximately $6,000 for each device."
"The price of the solution is reasonable when comparing it to other solutions."
"Because we're in education, Sophos gives us a very competitive price for it."
"We pay for two licenses for the use of Sophos XG annually and it is a flat fee. We do not have everyone going through both of the Sophos XG firewalls a the same time and the Sophos XG on Microsoft Azure is only accessible from the VPN."
"When compared to other products, Sophos licensing is very affordable."
"I think the price is good."
"The price of this solution and the price of support are ok."
"The SN200 series costs between $500 USD and $600 USD per year, whereas the SN700 series costs approximately $1,000 annually."
"The pricing could be better."
"We chose Stormshield for its price, as the Azure firewall was too expensive."
"For mid-sized companies, they sell their appliances for good prices."
"We bought a three-year license, and we renew it whenever it expires. The price could be better. It's always very expensive."
report
Use our free recommendation engine to learn which Firewalls solutions are best for your needs.
884,873 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
11%
Comms Service Provider
10%
Manufacturing Company
8%
Financial Services Firm
6%
Computer Software Company
11%
Comms Service Provider
10%
Manufacturing Company
7%
Educational Organization
5%
Comms Service Provider
17%
Computer Software Company
15%
Manufacturing Company
10%
Government
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business360
Midsize Enterprise135
Large Enterprise190
By reviewers
Company SizeCount
Small Business205
Midsize Enterprise61
Large Enterprise53
By reviewers
Company SizeCount
Small Business10
Midsize Enterprise5
Large Enterprise2
 

Questions from the Community

Which is the better NGFW: Fortinet Fortigate or Cisco Firepower?
When you compare these firewalls you can identify them with different features, advantages, practices and usage a...
What is the biggest difference between Sophos XG and FortiGate?
From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know...
What are the biggest technical differences between Sophos UTM and Fortinet FortiGate?
As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite ...
Which is better - Palo Alto Networks NG Firewalls or Sophos XG?
Palo Alto Networks NG Firewalls have both great features and performance. I like that Palo Alto has regular threat si...
What are the main differences in features between Sophos XG and FortiGate 80F?
Hi Arvind P , The Sophos XG firewall has a number of models right from XG86 to XG135w under the 1U Desktop Form Fact...
What advice do you have for others considering Stormshield Network Security?
The tool is like a firewall and works well. I don't have any issue with it. I rate it an eight out of ten.
 

Also Known As

Fortinet FortiGate Next-Generation Firewall
Sophos XG, Sophos XGS
NETASQ Firewalls
 

Overview

 

Sample Customers

Amazon Web Services, Microsoft, IBM, Cisco, Dell, HP, Oracle, Verizon, AT&T, T-Mobile, Sprint, Vodafone, Orange, BT Group, Telstra, Deutsche Telekom, Comcast, Time Warner Cable, CenturyLink, NTT Communications, Tata Communications, SoftBank, China Mobile, Singtel, Telus, Rogers Communications, Bell Canada, Telkom Indonesia, Telkom South Africa, Telmex, Telia Company, Telkom Kenya
Information Not Available
ACESUR group, Ministry of Education Oman, Anios Laboratories, Zain, DLM Location
Find out what your peers are saying about Sophos Firewall vs. Stormshield Network Security and other solutions. Updated: March 2026.
884,873 professionals have used our research since 2012.