Try our new research platform with insights from 80,000+ expert users
Wajeeh Ul Hasan . - PeerSpot reviewer
Network Administrator at Shaheed Zulfiqar Ali Bhutto Institute of Science and Technology
Real User
Top 5
Integrates well, reliable, and different pricing models available
Pros and Cons
  • "The most valuable feature of Sangfor NGAF is its integration."
  • "Sangfor NGAF could improve the policies and default criteria. They could be much better."

What is our primary use case?

Sangfor NGAF is a complete firewall solution.

What is most valuable?

The most valuable feature of Sangfor NGAF is its integration.

What needs improvement?

Sangfor NGAF could improve the policies and default criteria. They could be much better.

For how long have I used the solution?

I have been using Sangfor NGAF for approximately three years.

Buyer's Guide
Sangfor NGAF
May 2025
Learn what your peers think about Sangfor NGAF. Get advice and tips from experienced pros sharing their opinions. Updated: May 2025.
857,028 professionals have used our research since 2012.

What do I think about the stability of the solution?

Sangfor NGAF is stable.

What do I think about the scalability of the solution?

The scalability of Sangfor NGAF is good.

We are using the Sangfor NGAF as our firewall, we have approximately 6,000 to 8,000 end users who are passing through. We have approximately 10 to 15 people using the Sangfor SSL VPN feature remotely from home.

How are customer service and support?

The support from Sangfor NGAF here in Pakistan is great. Whenever I have an issue the support helps me out efficiently.

I rate the support from Sangfor NGAF a five out of five.

How would you rate customer service and support?

Positive

How was the initial setup?

The initial setup of Sangfor NGAF is straightforward. Sophos and Fortinet have more difficult initial setups.

I rate the initial setup of Sangfor NGAF a five out of five.

What's my experience with pricing, setup cost, and licensing?

The license of Sangfor NGAF can be purchased at different interval lengths, such as annually or three years. They offer a range of packages to choose from, such as combo or hybrid packages. We are using the complete solution package which includes IM, NGF and SSL VPN, and WAF

We have purchased the support for three years.

What other advice do I have?

My advice to others is they should try the solution. I have experienced other solutions, such as Fortinet and I feel much better using this solution overall.

I rate Sangfor NGAF a nine out of ten.

Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
PeerSpot user
Namra Saif - PeerSpot reviewer
IT Sales Engineer at Comstar - Information Systems Associates Ltd.
Real User
Top 5
Provides dashboards that are easy and user-friendly for users to use
Pros and Cons
  • "The tool's performance is good."
  • "I feel Sangfor should follow the hierarchy and close deals via resellers instead of closing it all with their own team."

What is our primary use case?

We have a huge market in Pakistan consisting of Sangfor clients. Sangfor itself is based in Pakistan. The tool's OEM team is also in Pakistan, and they are managing the tool quite well.

What is most valuable?

The solution's most valuable features are that it is scalable, super secure, and has a few features that secure client networks.

What needs improvement?

Sangfor’s team directly deals with clients. I feel Sangfor should follow the hierarchy and close deals via resellers instead of closing it all with their own team.

For how long have I used the solution?

I have experience working with Sangfor NGAF.

What do I think about the stability of the solution?

It is a stable solution. Stability-wise, I rate the solution a nine out of ten.

How are customer service and support?

The solution's technical support is super great. The tool's team is in Pakistan, and they have it all set up and available for users. The tool's after-sales support team is available.

How was the initial setup?

The product's initial setup phase is easy to handle. The tool has its own dashboards, which we can access to pitch clients and demonstrate the whole solution in a few steps, making it quite easy and user-friendly for users.

What's my experience with pricing, setup cost, and licensing?

In my opinion, the price of the tool is good in the Pakistani market. We can easily get discounts if needed. The tool's prices are not firm or strict.

What other advice do I have?

The solution improves network performance as it is a security product.

HCI solutions are used in the Pakistani market, and it is a virtualization solution. We are presenting two solutions for the Pakistani market. One is a security tool like a firewall, and the second is HCI, a storage solution for virtualization. My company sells Sangfor tools to more than 100 clients.

The tool's performance is good.

The tool's application control feature is a built-in option.

The tool's intrusion prevention system is a feature that can be described as a built-in functionality.

I recommend the tool to others because it is a good, economical, scalable, user-friendly, and super secure product.

The tool's updates are fine.

I rate the tool a nine out of ten.

Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
PeerSpot user
Buyer's Guide
Sangfor NGAF
May 2025
Learn what your peers think about Sangfor NGAF. Get advice and tips from experienced pros sharing their opinions. Updated: May 2025.
857,028 professionals have used our research since 2012.
reviewer2237796 - PeerSpot reviewer
Infrastructure Department Head at a manufacturing company with 11-50 employees
Real User
Top 20
Robust security features with scalability challenges
Pros and Cons
  • "It enables us to not only detect but also prevent various types of incoming threats, allowing us to take appropriate corrective actions and exercise control over the network."
  • "It does not offer any recommendations on how to mitigate or control attacks."

What is our primary use case?

The system comprises three primary functionalities: defense solutions, detection solutions, and the ability to identify, block, and analyze network traffic. It enables us to not only detect but also prevent various types of incoming threats, allowing us to take appropriate corrective actions and exercise control over the network.

How has it helped my organization?

We have observed numerous threats targeting our network from both internal and external sources. While we have reports detailing these incidents, we currently lack a clear method for prioritizing internal threats.

What is most valuable?

The information provided alerts us to the presence of threats from specific sources, which is highly beneficial.

What needs improvement?

It does not offer any recommendations on how to mitigate or control attacks.

For how long have I used the solution?

I have been using it for three years.

What do I think about the stability of the solution?

We face occasional stability issues. I would rate it seven out of ten.

What do I think about the scalability of the solution?

It doesn't offer significant scalability features.

How are customer service and support?

In the event of a performance issue, such as users reporting slow access to specific websites, we conduct an internal investigation to identify the root cause. If it's determined to be a problem with the equipment, we escalate the issue to the vendor for resolution.

How would you rate customer service and support?

Neutral

What about the implementation team?

When we installed the equipment, we depended on an external consulting party to guide us through the setup and functionality for approximately two weeks. The project team, consisting of both project members and experts in the field, were actively engaged during this period.

What's my experience with pricing, setup cost, and licensing?

The pricing is reasonable. At the time of our decision to acquire the equipment, we were working with a constrained budget and it turned out to be the most suitable choice to meet our specific requirements

Which other solutions did I evaluate?

We considered FortiGate as an option but ultimately decided on Sangfor NGAF due to its more favorable pricing.

What other advice do I have?

I hope that its distributor possesses a high level of product knowledge, and the same applies to Sangfor itself as the principal company. This would enable customers to have a more seamless and enriching experience with the product, eliminating any barriers or disconnect between our team, the customers, and the software. Overall, I would rate it seven out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Network Administrator at GC University Lahore
Real User
Top 20
Great for inspecting traffic on a very granular level but the GUI lacks logic in some areas
Pros and Cons
  • "Particularly good in the DPI where we can inspect inbound and outbound traffic."
  • "The GUI needs to be improved, lacks logic in some areas."

What is our primary use case?

This solution is our firewall. I'm a network administrator.

What is most valuable?

Sangfor serves most of the basic purposes of a firewall. It's particularly good in the DPI where we can inspect the inbound and outbound traffic on a very granular level. It gives a very good predictive measure as well as the current measure of things going on in our network. When it comes to the VPNs, it has a very good throughput when remote users connect, particularly when it comes to site-to-site VPNs, where it provides a good analysis module. You can analyze inbound traffic and different policies on this. It gives us value for money overall.

What needs improvement?

I think the GUI needs to be improved, there are a lot of areas where the panes do not make sense. They have put the NAT in the policy section but at the same time the DPI is in the network pane. The placement of different options in the menu system of this firewall is not that logical and often doesn't make a lot of sense. The operational procedures are a little tricky and require some technical skills. A level one person will have problems. The compatibility needs to be improved. 

For how long have I used the solution?

I've been using this solution for three years. 

What do I think about the stability of the solution?

We have been experiencing power failures but the solution has been very stable, both from the hardware and the software perspective. We have built a lot of VPN solutions for the firewalls including Cisco, Firewall 2, and pfSense, and it has been very good with that. 

What do I think about the scalability of the solution?

We don't require a very highly scalable coefficient but I believe it's scalable. 

How are customer service and support?

The technical support is very good. They have a local vendor they have hired for the technical support and if anything cannot be resolved remotely, they come to us. They are very agile and very technically supportive.

How would you rate customer service and support?

Positive

How was the initial setup?

The initial setup was a little complex because we were previously dealing with command line scenarios and we were not very comfortable with the GUI which is a little complex. 

What's my experience with pricing, setup cost, and licensing?

Our licensing costs are around $15,000 per year which is nominal compared to other solutions. 

What other advice do I have?

Whether or not this solution is good for you depends on your network. If you have sufficient technical support, then you can go for an open-source solution. Without that and if you have the funds, then this is a good solution. If not, then most of what firewalls do these days can be handled by an open-source solution.

This is a new solution in our country where the price tag really matters. They have targeted the public sector and I'm seeing more and more people moving towards Sangfor because it's cheaper than other products, and the support is quite good. 

I rate the solution seven out of 10. 

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
FarisKhan - PeerSpot reviewer
Enterprise System Engineer at Innolytix Pakistan Pvt Ltd
Real User
Scalable security solution deployed across multiple industries and is well priced compared to competitors
Pros and Cons
  • "The level of support provided to local companies is good. They transform their application control and other settings according to that country."
  • "Sangfor need greater exposer in the market because the market is mainly saturated by Fortinet. The user experience of Fortinet is quite different compared to NGAF. If we want to switch our users from Fortinet to NGAF, we have to convince them that the user experience will be much easier once once they start to use it."

What is our primary use case?

We have this solution deployed across multiple industries including education, pharmaceutical and different textile industries. This is a good product for network security and is popular right now. Sangfor is cheaper than well-known products like Fortinet and Palo Alto Firewall NGFS.

What is most valuable?

The level of support provided to local companies is good. They transform their application control and other settings according to that country. 

What needs improvement?

Sangfor need greater exposer in the market because the market is mainly saturated by Fortinet. The user experience of Fortinet is quite different compared to NGAF. If we want to switch our users from Fortinet to NGAF, we have to convince them that the user experience will be much easier once once they start to use it. 

What do I think about the stability of the solution?

We have deployed many firewalls and have faced two or three faulty devices that we have to replace over a year because their power supply was faulty. Some customers use the device for over five years and they have worked fine but got slower with the time.

What do I think about the scalability of the solution?

This is a scalable solution. 

How are customer service and support?

I can vouch for the local support team. They are more than competitive in the market. They are always available for small and big customers. They are onsite whenever we need it and assist with any problem or deployment scenario and are willing to discuss it at any time. I would rate them a three out of five. 

Which solution did I use previously and why did I switch?

I have previously used Fortinet. Fortinet is quite a mature product and offers so many features. Sangfor lack a bit in that area. Sangfor include a local database for URLs and other applications. When using Fortinet, you cannot block a local website by default. 

How was the initial setup?

The simple deployment of a network on NGF is quite simple and their guides are quite simple as well. The do lack visual guides that are easier for some customers to follow. It's easy to configure a normal deployment scenario for networking and ET. When it comes to high level security and highly advanced features, you need to have some experience in that area to actually apply that on this firewall.

If you're experienced, it would take two or three hour maximum, depending on how many customers are using the policy and how much detailed configuration is needed. I would rate our experience with the setup an eight out of ten. 

We have faced some of the issues after deployment with URL filtering which we have logged a ticket for. Our customers are unable to access certain websites. We have diagnosed the problem but we are unable to identify the URL signature or what is blocking the IAM and preventing access to that site. 

What's my experience with pricing, setup cost, and licensing?

For over 2000 users, the cost is around 5000 to 6000 USD. If you want a web application firewall, you have to purchase an additional license for it. By default, they provide you with 10 SSL and a VPN. If you want more than 10, you have to pay more. From a pricing perspective, I would rate them a four out of five.

What other advice do I have?

They have a huge product line for large companies and we have deployed a firewall for over 5000 to 10000 users. It is suitable for all type of environments. I would advise others to spend one to two months after deployment on Sangfor to configure the many settings for security services. You have to work on it, keep looking at the logs and make changes as you go. You need this time to analyze, make future risk assessments and reconfigure the work from time to time. Only once this is done, can you consider deployment complete. 

It offers good value for money and is much cheaper compared to other firewalls. I would suggest Sangfor to those who are cost conscious. 

I would rate this solution a seven out of ten.

Which deployment model are you using for this solution?

Hybrid Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
PeerSpot user
Teamlead IT Core at SoloInsight Inc.
Reseller
Next generation firewall that is scalable and one of the best on the market
Pros and Cons
  • "Sangfor is a good solution that provides a WAF and firewall solution. Most other vendors, like Sophos and Fortinet and Cisco, only provide one solution. That's a valuable feature of Sangfor."
  • "Sangfor could improve their interface capacity on the 5100 series model and upgrade their hardware from one gig to 10 gig. This would improve the overall throughput."

What is our primary use case?

Sangfor is an on-prem firewall I use for my local infrastructure. It is used as an aggregated interface. Behind Sangfor, I have built a data center that is deployed on high availability using a model that is 5100 CV with 10 gig ports.

What is most valuable?

Sangfor is a good solution that provides a WAF and firewall solution. Most other vendors, like Sophos and Fortinet and Cisco, only provide one solution. That's a valuable feature of Sangfor.

What needs improvement?

Sangfor could improve their interface capacity on the 5100 series model and upgrade their hardware from one gig to 10 gig. This would improve the overall throughput. 

For how long have I used the solution?

I have used this solution for the last six months.

What do I think about the scalability of the solution?

This is a scalable solution. We have approximately 1,000 users.

How are customer service and support?

The technical support team are available 24/7 and if we need any assistance for Sangfor, FortiGate or Sophos, we can call their support number and they provide assistance from their L2 or L3 engineers. 

How would you rate customer service and support?

Positive

How was the initial setup?

It's very easy to set up because Sangfor provided us with export and HCI capabilities. Deployment took almost one week.

The process starts with low level design for internal teams to make a design on network requirements. This contains all current and future requirements.

What's my experience with pricing, setup cost, and licensing?

For four to five physical appliances for a licensed firewall, it costs approximately $4,000.

What other advice do I have?

We have six people managing IT operations. We have not had any issues in the first six months of using this solution. 

If you want to deploy a firewall in your infrastructure, Fortinet, Sangfor and Sophos are the best solutions to protect traffic.

I would rate this solution an eight out of ten.

Which deployment model are you using for this solution?

Hybrid Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer: Reseller
PeerSpot user
Project Manager at Novu
Real User
Top 5
Provides VPN tunneling and security at competitive pricing
Pros and Cons
  • "Sangfor's tech features and technologies are more powerful than those of the other solution providers in terms of security. They also have big solutions in terms of cybersecurity."
  • "It has an issue with the Sangfor Cloud Platform rather than the firewall. When we run a virtual machine, the window tabs display Chinese characters."

What is our primary use case?

We're using it more for VPN tunneling and security. We're integrating it with the SoundCloud platform to use it in our data center.

How has it helped my organization?

We're happily using the IP vSEC VPN. We will use some credentials to connect it to two different sites.

What is most valuable?

Sangfor's tech features and technologies are more powerful than those of the other solution providers in terms of security. They also have big solutions in terms of cybersecurity.

What needs improvement?

It has an issue with the Sangfor Cloud Platform rather than the firewall. When we run a virtual machine, the window tabs display Chinese characters. This could be a hindrance when presenting it to clients, especially since many of our clients prefer US-based products. We’re pitching Sangfor as part of our solutions, but the presence of Chinese characters might be a concern.

For how long have I used the solution?

I have been using Sangfor NGAF as a partner for two to three years.

What do I think about the stability of the solution?

We've encountered various glitches or bugs with the firewall, particularly when trying to configure redundancy. We're facing challenges with setting up two ISPs on a single, stacked firewall.

What do I think about the scalability of the solution?

We haven't encountered any issues scaling with Sangfor. It follows a more traditional approach to scaling, though we don’t yet fully understand all the scaling capabilities of Sangfor products. However, it does have the basic features needed for scaling.

How are customer service and support?

We have some contacts here locally. We do contact them for support.

How was the initial setup?

Sang four independently is easy to configure. It's very straightforward. However, we're having challenges with the interoperability matrix and other integration for other firewall brands. 

The standard configuration, with basic policies, can take a couple of hours to set up.

One guy in our company can do the configuration.

What was our ROI?

We achieved a lot of ROI since the competitive pricing is much better than the other brands.

What's my experience with pricing, setup cost, and licensing?

Price is very competitive with other brands.

What other advice do I have?

We encounter different glitches or bugs in the firewall. More likely, we're having a problem with two ISPs being cited in our firewall to have redundancy. We don't know the primary or best practice of configuring two ISPs in a single firewall.

Overall, I rate the solution an eight out of ten.

Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
PeerSpot user
Hamid Hussain - PeerSpot reviewer
Solution Architect at Megaplus
Real User
Top 10
Effective security for small and medium businesses with challenges related to scalability and integration
Pros and Cons
  • "The built-in features function as intended, providing exceptional value."
  • "Our experience with its customer support was quite challenging."

What is our primary use case?

Sangfor NGAF offers built-in Web Application Firewall capabilities, making it a valuable choice for securing WAF servers. We have implemented this feature in numerous deployments, particularly in the fields of financial management and enterprise environments.

What is most valuable?

We have established an SD-WAN infrastructure with Sangfor NGAF, which has proven to be highly beneficial. The built-in features function as intended, providing exceptional value.

What needs improvement?

It is a relatively new product in the market, so we are dealing with challenges related to security and malware detection. It will need time to assess its strengths and weaknesses thoroughly. We discovered that the SD-WAN capability is available within this product. It also includes built-in Value-Added Security Technology, which can be cost-effective, but improvements are needed, particularly in enhancing malware detection. Another area for improvement is integrating with other third-party providers' solutions for a more seamless security ecosystem.

For how long have I used the solution?

We have been working with it for two and a half years.

What do I think about the stability of the solution?

In terms of stability, there have been occasional issues, such as glitches and disruptions, leading to periods of downtime. Improvement in this area is necessary. I would rate it five out of ten.

What do I think about the scalability of the solution?

Scalability is a key aspect, and we haven't thoroughly tested its compatibility with various other products yet. I would rate it five out of ten.

How are customer service and support?

Our experience with its customer support was quite challenging. There's room for improvement in this aspect.

How was the initial setup?

The initial setup is remarkably straightforward and user-friendly.

What's my experience with pricing, setup cost, and licensing?

The price falls in the mid-range, neither exceptionally low nor high. I would rate it seven out of ten.

What other advice do I have?

Deploying Sangfor NGAF proves highly advantageous for small and medium-sized businesses. Overall, I would rate it seven out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
PeerSpot user
Buyer's Guide
Download our free Sangfor NGAF Report and get advice and tips from experienced pros sharing their opinions.
Updated: May 2025
Product Categories
Firewalls
Buyer's Guide
Download our free Sangfor NGAF Report and get advice and tips from experienced pros sharing their opinions.