Sangfor NGAF is our gateway to the ISP. We also use it to filter the website that our employees deploy to the firewall and to access to our systems through the web.
Computer Programmer III at Leyte Normal University
Real-time reports are great but the filtering could be improved
Pros and Cons
- "We can utilize our own network rather than paying for a private one."
- "Lacks consistency in terms of filtering certain websites and applications."
What is our primary use case?
How has it helped my organization?
Sangfor reports on any intrusions in real-time so you can immediately whitelist or blacklist these reported intrusions. It makes our work easier because we previously only used MikroTIK which required significant manual effort.
What is most valuable?
I really like the SSL VPN. Instead of paying for a virtual private network, we can utilize our own Internet service provider, and use our Internet connection to run access.
What needs improvement?
For some reason, Sangfor doesn't filter certain websites and applications. It should recognize them and utilize the bandwidth between applications. Also, if we try to block YouTube or Facebook videos, some users will use applications like Siphon for viewing so our bandwidth is still being utilized for non-work purposes. It might detect that somebody is using Siphon, but it cannot be blocked. It's inconsistent, sometimes one user can be blocked while another will have access.
Buyer's Guide
Sangfor NGAF
May 2025

Learn what your peers think about Sangfor NGAF. Get advice and tips from experienced pros sharing their opinions. Updated: May 2025.
857,028 professionals have used our research since 2012.
For how long have I used the solution?
I've been using this solution for four years.
What do I think about the stability of the solution?
The solution is stable and it really protects our systems and the data within our company.
What do I think about the scalability of the solution?
What we are using now doesn't have the SFP+, only the gigabit ethernet ports. We need to purchase a different model to accommodate the one with SFP+ because what we have now doesn't accommodate additional expansion slots for SFP+. We probably have 100 users who communicate with our head office from outside our region.
How are customer service and support?
We don't encounter a lot of problems but if we do, there is access to 24/7 support, whether it's chat or email support. If there's an issue we make contact.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
We did not used any network security solutions before
How was the initial setup?
The initial setup was very straightforward and deployment took less than a day. We had one in-house person responsible for deployment and we started using the solution immediately.
What about the implementation team?
I rate the implementation a nine out of ten.
What's my experience with pricing, setup cost, and licensing?
The setup is a breeze and the pricing is definitely low when compared to the competition.
Which other solutions did I evaluate?
I looked into Sophos XG.
What other advice do I have?
I rate this solution an eight out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.

Network Administrator at Lyceum of the philppines University
It's an affordable, feature-rich solution for blocking threats
Pros and Cons
- "You might try Sangfor if you are on a tight budget. The price is affordable, and Sangfor offers a lot of features. We don't have any complaints about Sangfor."
- "The reporting and log management could be improved."
What is our primary use case?
We use Sangfor NGAF for security and bandwidth management. It blocks websites and applications.
How has it helped my organization?
Sangfor NGAF blocks incoming security threats.
What needs improvement?
The reporting and log management could be improved.
For how long have I used the solution?
I have used Sangfor NGAF for four or five years.
What do I think about the stability of the solution?
I rate Sangfor 10 out of 10 for stability. We haven't had any problems so far.
What do I think about the scalability of the solution?
I rate Sangfor NGAF nine out of 10 for scalability.
How was the initial setup?
A partner helped us set Sangfor up initially. It's complicated at first but it gets easier.
What was our ROI?
I rate Sangfor NGAF nine out of 10 for ROI.
What's my experience with pricing, setup cost, and licensing?
I rate Sangfor NGAF eight out of 10 for affordability. We have an advanced security license that we renew every three years.
Which other solutions did I evaluate?
We considered other solutions but ultimately went with Sangfor NGAF because of the price and value.
What other advice do I have?
I rate Sangfor NGAF nine out of 10. You might try Sangfor if you are on a tight budget. The price is affordable, and Sangfor offers a lot of features. We don't have any complaints about Sangfor.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Buyer's Guide
Sangfor NGAF
May 2025

Learn what your peers think about Sangfor NGAF. Get advice and tips from experienced pros sharing their opinions. Updated: May 2025.
857,028 professionals have used our research since 2012.
Owner at InternetWorld Solutions Sdn Bhd
Integrates well, high performance, and responsive support
Pros and Cons
- "Sangfor NGAF works accordingly with our customers. The solution has good performance, easy to use, and integrates well with the endpoints."
What is our primary use case?
Sangfor NGAF can be used as a firewall for protecting servers, data, users, and access to the internet.
What is most valuable?
Sangfor NGAF works accordingly with our customers. The solution has good performance, easy to use, and integrates well with the endpoints.
For how long have I used the solution?
I have been using Sangfor NGAF for approximately one year.
What do I think about the stability of the solution?
We have sold a few units to our customers and we have not had an issue with the stability.
What do I think about the scalability of the solution?
We have customers in small to medium-sized companies.
We have less than 110 customers that are using this solution.
How are customer service and support?
Their technical support is good, they are responsive. They have been able to resolve all of the issues that we faced.
How was the initial setup?
The installation is easy, and the time it takes depends on the customer's environment. Doing the policies could take additional time.
What about the implementation team?
We have approximately four people that support the solution. We have experience in deploying and maintaining the solution. Though the company could offer better training to us.
What's my experience with pricing, setup cost, and licensing?
Sangfor NGAF price is reasonable and there is an annual license. However, the maintenance cost can be a bit high.
Fortinet solutions sell at a very cheap price upfront, but after that maintenance fees, which they keep increasing it can become expensive. I hope Sangfor does not follow that model.
Which other solutions did I evaluate?
I have evaluated other solutions, such as Fortinet.
What other advice do I have?
I would recommend this solution to others.
I have clients that are switching from Fortinet to Sangfor NGAF because the price of Fortinet's service is increasing. Sangfor NGAF has good integration with their endpoints which makes it a very attractive offering.
Sangfor is arranging much-needed training for resellers. There needs to be better marketing awareness not for the reseller, but for the consumer here in Malaysia. Sangfor needs to do some advertisements to attract more market awareness. Relying on resellers can be difficult when the market is very large. However, resellers do focus on their product, they also try to engage, and hire more.
I rate Sangfor NGAF an eight out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer:
Senior Presales Consultant at Megaplus
Great bandwidth management and vulnerability assessment
Pros and Cons
- "In four steps one can configure the entire firewall."
- "I believe that IAM and NGFW need to merge into a single box, instead of there being two separate box solutions."
What is our primary use case?
I believe I am using the recently updated firmware of version 4.0.
What is most valuable?
User-wise, the bandwidth management is one of the most valuable features. Also, certain features are available in the NGFW.
The solution self-diagnoses everything, which we refer to as vulnerability assessment. It automatically runs on one's network and lists the pros and cons. I consider it to be very catchy.
What needs improvement?
I believe that IAM and NGFW need to merge into a single box, instead of there being two separate box solutions.
For how long have I used the solution?
I have been working with Sangfor NGAF for around three years.
What do I think about the stability of the solution?
So far, the solution has shown itself to be very stable.
What do I think about the scalability of the solution?
The solution is scalable and I can upgrade it to 40, which I consider to be a good thing.
How are customer service and technical support?
Technical support is very good. In a single call, the support person can come on site or address ones needs remotely within minutes.
Which solution did I use previously and why did I switch?
Prior to Sangfor NGAF we worked with Fortinet.
We switched because the previous solution did not readily make available support personnel. Also, while we considered the product to be stable, we felt the support to be very slow.
How was the initial setup?
The setup was easy from the get go. In four steps one can configure the entire firewall.
Give or take, it took no more than two or three hours.
What's my experience with pricing, setup cost, and licensing?
The price is very cheap. It cannot be matched.
Which other solutions did I evaluate?
While Palo Alto claims to be pioneers in vulnerability assessment and risk management, I could not find references on the website to support this. Only Sangfor firewall has the requisite vulnerability assessment.
Moreover, Palo Alto and Sangfor are pretty much equal in terms of technology and interfaces. I was doing research to verify the vulnerability and risk assessments claims promoted on the website, as I was unable to find these.
What other advice do I have?
I am a customer and use Sangfor NGAF 5600 in my premises.
There are more than 2,000 users making use of the solution in my company.
The solution is quite safe and good. Furthermore, it is very good for different environments.
I rate Sangfor NGAF as a nine-point-five out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Group IT Director at United Medical
We don't lose data anymore because it protects us from viruses
Pros and Cons
- "It seems to be a durable, stable product."
- "They need to improve their research team and they need to study their data to analyze it and build the product."
What is our primary use case?
We mainly use this solution as a firewall. A few years ago we had some data loss due to a virus, so this solution protects us from viruses, controls the track rate and detects these kinds of malware. We are very satisfied with the solution.
How has it helped my organization?
I try to convert the benefit into a dollar value so that I can tell my clients or my management that I'm saving money. So, since we have zero issues, no malware activity, and no viruses, I have peace of mind. Before we started using this solution, we had a huge data loss and we lost millions of dollars.
If there is any activity on our servers, I get a report immediately. If anybody is trying to intrude, I am protected. So if somebody is trying to enter into our area, I get an alert. There are other standard safety measures too and it is linked to our backup, so everything is amazing. I think the value lies in not having a disaster in the healthcare industry. The cost of having a disaster here is multiplied by three if you compare it with any other industry.
Whenever there's an attack, your data is safe, and you can recover it after five hours and your patients' well-being isn't affected. I think this solution is a very good example of a proactive solution that can detect problems and immediately fix the problems or issues.
What is most valuable?
I think the most important feature is the solution's user-friendliness. It's very easy to manage and its database is amazing. It has all the features you need. When we installed the solution, we had a virus that hacked even our airline data, but thanks to the solution, we were protected. So their virus database is very strong, and they keep on updating. The normal features of any application firewall are that you can control it from anywhere and you can manage it very easy. Those things are very simple, and all NGAF providers have it. But I prefer Sangfor because it's really protecting us and it is easy to manage. It doesn't require a lot of skill sets to manage it. And their database is very strong.
What needs improvement?
We're still evaluating the program, so there is no guarantee that we will always get this kind of protection. They need to improve their research team and they need to study their data to analyze it and build the product. I think the developers should sit with their clients to understand how they can improve their product. Although it's running very smooth, they need to collect data from their clients to improve the product.
Cisco, for example, has forums where you can go and type in your question and get the answer. So the developers of Sangfor needs to get feedback from the users and adapt their product on the basis of that feedback.
For how long have I used the solution?
I've been using the solution for almost two years now on premises and private cloud.
What do I think about the stability of the solution?
It seems to be a durable, stable product. My impression about Chinese products was different before I started using this solution. I'm very impressed with their improvement and the hardware seems to be very stable.
What do I think about the scalability of the solution?
It's easily scalable. They've got different models of the software upgrade, so if you want to move your product and version, it can be scaled. We are expanding soon as we are building a new hospital in the region so we will soon need to scale up and increase the capacity and capability of the NGAF.
How are customer service and technical support?
Whenever you have a problem, you'll get an answer in 30 minutes' time, maximum. Unless it is at a very awkward time, like in the middle of the night. They have a WeChat group on the cloud, so you can communicate there an get an answer within 30 minutes. The support is really good.
Which solution did I use previously and why did I switch?
We used a normal firewall and antivirus solution - a combination of a hybrid system.
How was the initial setup?
The initial setup was very straightforward and simple. They created a WeChat group and they send the product to us, knowing the email came to us. There were about three to four sessions. The deployment was very straightforward and they shared a lot of reviews. We looked at that and everything was fine. It's a low-cost implementation. The deployment took about four to five days. You only need one staff member for deployment.
What was our ROI?
I think the ROI is very high and the turnaround is very fast.
What's my experience with pricing, setup cost, and licensing?
It costs about 8 to 10 thousand dollars per year for 500 users, standard licensing fees included.
What other advice do I have?
Sangfor NGAF is a good product. People should try it, especially those who are not using the software. These firewalls are great and everything is becoming properly defined, even the network, the computer, the firewalls, storage, and everything is just waiting to be properly defined. It's a unique combination and people should try it.
In the future, I would like to see it being controlled by an automatic, virtual orchestrator to control the firewall and all the data.
One a scale of one to ten, I rate this solution a nine.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Head - Enterprise Solutions Architect at NGXESS
Highly customizable and competitively priced
Pros and Cons
- "The most valuable features are the WAN optimization, the internet access gateway (IAG), and the central console, which allows us to implement on their firewall."
- "An area for improvement would be the number of ports defined on the box. In the next release, I would like them to develop their provisioning stage of enrolling end devices."
What is most valuable?
The most valuable features are the WAN optimization, the internet access gateway (IAG), and the central console, which allows us to implement on their firewall.
What needs improvement?
An area for improvement would be the number of ports defined on the box. In the next release, I would like them to develop their provisioning stage of enrolling end devices.
For how long have I used the solution?
I have been working with this solution for three months.
What do I think about the stability of the solution?
The stability is good.
How are customer service and support?
The technical support is good - they are very supportive and friendly and are available even on the weekends.
Which solution did I use previously and why did I switch?
Previously, I have worked with Palo Alto, Fortinet, Sophos, and Endpoint Kaspersky. I would recommend Sangfor over these due to its ability to implement user restrictions.
How was the initial setup?
The initial setup was not complex.
What's my experience with pricing, setup cost, and licensing?
Sangfor's pricing is competitive.
What other advice do I have?
This product is very user-friendly, and its Layer 7 security is very much improved. It can be customized to a very deep level. I would give this solution a score of eight out of ten.
Disclosure: My company has a business relationship with this vendor other than being a customer: partner
Product Manger at a manufacturing company with 11-50 employees
A most cost-effective solution
Pros and Cons
- "While the features are not dissimilar to other brands, configuration is much more simple, which works out great for Indonesian people."
- "The solution has too many bugs and these slow down the implementation."
What is our primary use case?
Our customers purchase Sangfor NGAF primarily out of budgetary considerations. Sangfor enables high power internet access. Indonesia has a big market, not only as concerns the firewall.
What is most valuable?
While the features are not dissimilar to other brands, configuration is much more simple, which works out great for Indonesian people.
What needs improvement?
The solution has too many bugs and these slow down the implementation. The software should be updated to account for this.
What do I think about the stability of the solution?
We have not received complaints from our customers about the solution's stability.
What do I think about the scalability of the solution?
We have not received complaints from our customers about the solution's scalability.
How are customer service and technical support?
So far, we have not had occasion to contact tech support.
What about the implementation team?
As we are a distributor, we have our own maintenance team.
What's my experience with pricing, setup cost, and licensing?
When it comes to the price of firewall solutions, Sangfor NGAF takes the cake. It is cheaper than Fortinet, Sophos, Check Point and Palo Alto.
What other advice do I have?
I would no longer offer Sangfor, as I have ceased to be its distributor. I am now a distributor for Check Point.
I rate Sangfor NGAF as an eight out of ten, owing to its bugs.
Disclosure: My company has a business relationship with this vendor other than being a customer: Distributor
Head Of Solutions at Mutex Systems
Great pricing, reliable stability, and easy to deploy
Pros and Cons
- "We've found the technical support to be helpful."
- "They need to increase the number of ports in the firewall."
What is our primary use case?
We primarily provide this solution to our clients. We are providing services at financial institutions. We provide features based on customer requirements.
What is most valuable?
The solution offers some decent features. The assessment feature, for example, is a highly rated feature in Sangfor. It has options that aren't available on other products.
It's a very reliable solution.
The deployment process is very straightforward.
The stability is excellent.
We've found the technical support to be helpful.
The pricing is very good.
All the next-generation firewalls are providing the features Sangfor is already providing. It offers a good vulnerability assessment. This feature is not available on other devices. This feature allows for access to the endpoints and gives visibility to the vulnerabilities in Sangfor.
What needs improvement?
It would be ideal if the solution offered SD-WAN capabilities. It's not as good as what is offered by Fortinet, for example.
They need to increase the number of ports in the firewall. Both Fortinet and Sophos, for example, provide many more than what Sangfor provides.
For how long have I used the solution?
I've been working with the solution since about 2018. It's been a few years at this point.
What do I think about the stability of the solution?
The solution is very stable. We haven't had any issues with any of our customers. There are no bugs or glitches. It doesn't crash or freeze. It's extremely reliable.
What do I think about the scalability of the solution?
We have about 50 different customers who have used the solution.
How are customer service and technical support?
The technical support is very good. Many products don't offer technical support in Pakistan. However, Sangfor does, which gives them an advantage. Their technical experts are right here and not in some other time zone or speaking some other language. If any customer faces any issues, they can go directly to the customer site. If a partner cannot rectify the situation, the customer has the option of going right to Sangfor. I would say that our clients have been satisfied so far.
Which solution did I use previously and why did I switch?
I've previously worked with other solutions, such as Sophos and Fortinet. They are better for enterprise-sized organizations. Sangfor is better for smaller businesses. It's much more cost-effective.
How was the initial setup?
We did not have an issue with the initial setup. The solution has a Wizard that basically walks you through the process. It's easy. It's not overly complex or difficult to execute.
What's my experience with pricing, setup cost, and licensing?
The pricing is good. It's an affordable option for smaller companies.
What other advice do I have?
We are Sangfor Gold partners.
I'd recommend this solution for the SMB market, as it is cost-effective and reliable. If a company is enterprise-sized, something like Sophos may be more suitable.
I'd rate the solution at a nine out of ten.
Disclosure: My company has a business relationship with this vendor other than being a customer: partner

Buyer's Guide
Download our free Sangfor NGAF Report and get advice and tips from experienced pros
sharing their opinions.
Updated: May 2025
Product Categories
FirewallsPopular Comparisons
Fortinet FortiGate
Netgate pfSense
OPNsense
Sophos XG
Cisco Secure Firewall
Palo Alto Networks NG Firewalls
Check Point NGFW
WatchGuard Firebox
SonicWall TZ
Juniper SRX Series Firewall
Fortinet FortiGate-VM
Sophos XGS
SonicWall NSa
Untangle NG Firewall
Fortinet FortiOS
Buyer's Guide
Download our free Sangfor NGAF Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- What do you recommend for a corporate firewall implementation?
- Comparison of Barracuda F800, SonicWall 5600 and Fortinet
- Sophos XG 210 vs Fortigate FG 100E
- Which is the best network firewall for a small retailer?
- When evaluating Firewalls, what aspect do you think is the most important to look for?
- Cyberoam or Fortinet?
- Fortinet, Palo Alto or Check Point?
- If you could go back, would you change your decision to buy that firewall and why?
- Sophos XG vs Fortigate UTM
- Can you recommend a solution to replace Cyberoam 200ing Firewall?