We performed a comparison between Check Point NGFW and Sangfor NGAF based on real PeerSpot user reviews.
Find out in this report how the two Firewalls solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI."It's great for capturing the traffic and troubleshooting it."
"Its user interface is good, and it is always working fine."
"Initial setup is easy to configure."
"This solution has helped our organization by having strong functions and a reliable firewall."
"The technical support in our region is excellent."
"Fortigate is very scalable to serve our customers' needs. We have scaled already from fifty to more than a hundred instances of Fortinet FortiGate. Around 20 staff are required for deployment and maintenance, mostly engineers."
"Fortinet FortiGate appears to be scalable."
"There is an easy process for configuring it, and it is straightforward to implement the device from scratch."
"The SmartView monitor and SmartReporter help us to monitor and report on traffic."
"The most valuable feature is that we are protected against zero-day threats."
"The most valuable features are the security blades and the ease of managing the policies, searching log for events, and correlating them."
"When applying application control, we can ensure user access to the internet in accordance with company policy and easy implementation if some users need exception access."
"The edge security posture has dramatically improved as we can now detect and prevent threats from the public internet."
"The Network Address Translation (NAT) will always be a valuable feature as it allows me to turn my private cloud to the public at the click of a button and have secure control over the accessible servers/applications."
"There is a lot of legacy traffic from other vendors that has been migrated to Check Point which has resulted in a lot of stability in our environment."
"They utilize various gateway features, including Identity as a Service (IDaaS), anti-spam, antivirus, and other security measures, effectively creating a robust defense against a wide range of potential risks."
"The most valuable features are the WAN optimization, the internet access gateway (IAG), and the central console, which allows us to implement on their firewall."
"The price versus value is good because the solution is less expensive than Sophos, Fortinet, or SonicWall."
"Sangfor NGAF's standout feature is its powerful application control, enabling precise restrictions on mobile user access to approved applications."
"While the features are not dissimilar to other brands, configuration is much more simple, which works out great for Indonesian people."
"In four steps one can configure the entire firewall."
"You might try Sangfor if you are on a tight budget. The price is affordable, and Sangfor offers a lot of features. We don't have any complaints about Sangfor."
"Sangfor NGAF works accordingly with our customers. The solution has good performance, easy to use, and integrates well with the endpoints."
"Sangfor has the best capabilities for securing connections, securing web browsers, securing servers, and general threat protection."
"It would be nice if FortiGate incorporated some built-in endpoint protection features. I would also like a built-in SOC dashboard for managing multiple Fortinet firewalls."
"Web security solutions can be improved."
"From a reporting perspective, there's room for improvement. They're providing FortiAnalyzer through which one can get some enhancements, but the visibility and reporting still need slight improvement."
"It needs to improve its ISP load balancing."
"Monitoring and reporting could be better."
"If they had better integration with security products, such as Cisco ISE or Rapid Threat Containment, then it would be an improvement."
"They are doing good, but they can improve the distributor assignment. The availability of the product and the timeline of delivery are the main things. The distribution should be swift, and the distributor should not reach out to end customers directly. They should work as a distributor. There should also be one more local distributor. Currently, there is only one distributor in Pakistan, and the rest of them are in UAE. It is difficult to work with only one distributor. Sometimes, you don't get along with the same distributor, and that's why they should have one more distributor. Their licensing should also be improved. The activation or renewal of the product should be done from the date of renewal, not from the date on which the license expired."
"FortiGate should have a better way of detecting and managing the system memory because otherwise if the memory is too low, a system restart is required."
"I would like less CPU-intensive features to be introduced to replace the existing heavy-duty processes."
"Heavy load causes a higher CPU to peek which causes us to need to reboot the device. Malicious activity database corrupts the directory or path and restoring it takes a lot of time."
"While the logs are very good and easy to understand, when you want to download these customized logs, they don't have as many features compared to competitive firewalls."
"Of the areas of improvement that I want to see in this product, without a doubt, one is the technical support. In this time of globalization, with so many cyberattacks and risks, the Check Point support staff take a long time to attend to incidents due to the high demand."
"The tool must improve its support."
"Check Point NGFW needs to run marketing events. They have also to set up a support center in India."
"The tool’s architecture could be improved a bit."
"Although there is a lot of automation and pattern that can be classified automatically, the IPS systems are sometimes a little bit complicated, and doing the fine-tuning in over 20,000 patterns is hard to do."
"It does not offer any recommendations on how to mitigate or control attacks."
"The support for YouTube or the Internet is not enough."
"There is room for improvement in dependency on certain infrastructure, like the DNS dependency on the current DNS server that the company has. It should be standalone. It should not depend on any other DNS server."
"They need to increase the number of ports in the firewall."
"Occasional issues with breaches which are dealt with expediently."
"I would be happy if Sangfor developed a firewall designed specifically for home use, as well as for small businesses such as clinics and so on. A household version of the Sangfor firewall for your personal computer or laptop would be ideal, in my opinion."
"Sangfor need greater exposer in the market because the market is mainly saturated by Fortinet. The user experience of Fortinet is quite different compared to NGAF. If we want to switch our users from Fortinet to NGAF, we have to convince them that the user experience will be much easier once once they start to use it."
"Sangfor NGAF could improve by refining its application control policies, especially in addressing challenges with certain types of applications."
Check Point NGFW is ranked 7th in Firewalls with 279 reviews while Sangfor NGAF is ranked 21st in Firewalls with 31 reviews. Check Point NGFW is rated 8.8, while Sangfor NGAF is rated 8.0. The top reviewer of Check Point NGFW writes "Good antivirus protection and URL filtering with very good user identification capabilities". On the other hand, the top reviewer of Sangfor NGAF writes "Affordable, easy to configure firewall with fast, responsive support". Check Point NGFW is most compared with Palo Alto Networks NG Firewalls, Sophos XG, Cisco Secure Firewall, Netgate pfSense and KerioControl, whereas Sangfor NGAF is most compared with Sophos XG, Palo Alto Networks NG Firewalls, Netgate pfSense, Fortinet FortiOS and Huawei NGFW. See our Check Point NGFW vs. Sangfor NGAF report.
See our list of best Firewalls vendors.
We monitor all Firewalls reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.