Palo Alto Networks PA-Series vs Sophos XGS comparison

Cancel
You must select at least 2 products to compare!
Fortinet Logo
117,316 views|85,923 comparisons
90% willing to recommend
Palo Alto Networks Logo
306 views|251 comparisons
100% willing to recommend
Sophos Logo
6,206 views|4,250 comparisons
92% willing to recommend
Comparison Buyer's Guide
Executive Summary

We performed a comparison between Palo Alto Networks PA-Series and Sophos XGS based on real PeerSpot user reviews.

Find out in this report how the two Firewalls solutions compare in terms of features, pricing, service and support, easy of deployment, and ROI.
To learn more, read our detailed Palo Alto Networks PA-Series vs. Sophos XGS Report (Updated: May 2024).
772,649 professionals have used our research since 2012.
Featured Review
Quotes From Members
We asked business professionals to review the solutions they use.
Here are some excerpts of what they said:
Pros
"The Intrusion Prevention System and the web filtering are both working well.""The solution is very user-friendly.""The secure web gateway module and the application control module are valuable. HA operations are very easy.""Our project needs to link two sides through the internet. One of these was in Cairo and the other in another city. We used FortiGate as the integrating solution between the two locations, i.e. the Fortinet 30E & 100E.""Security solution with a straightforward and quick setup. It's a stable and scalable product.""We are a visual effects company, and there have been a number of high profile security issues in our industry. This has brought us to a higher standard of security, which our clients are very keen on these days.""We use a southern institution that's audited for IT security and the reporting that automatically comes off the unit makes it much easier to meet compliance standards and makes it easier as far as the amount of time that has to be spent to compile that information. If you get your reporting set up correctly when you initially set it up, you just select the one you want and hit print. The auditing trail on it is the best feature.""The solution is stable."

More Fortinet FortiGate Pros →

"It offers application-based policy enforcement. Palo Alto Networks firewalls help us recognize protocol anomalies, contrasting with other vendors that may require policies based on port numbers. With Palo Alto Networks, the port number isn't a constraint because their devices handle protocol traffic at Layer 7, allowing for accurate identification of protocol usage and port numbers. They can identify which protocol actually uses which port.""The product's initial setup process was simple.""It is scalable. But that depends on what model you are using.""I like the tool's security and web filtering features.""The product's most valuable feature is web filtering.""The cloud-based aspect helps significantly. It integrates seamlessly with other Palo products like Prisma Cloud, offers robust VPN protection, and it's all in one convenient package.""Palo Alto blocks the new threats better than other tools.""The documentation is great."

More Palo Alto Networks PA-Series Pros →

"Easy to set up firewall product, that's also easy to manage and scale.""We are happy and satisfied with all the features.""Web filtering and intrusion detection are essential features. As system integrators, we also like the dashboard because it's easier to configure all the features.""Compared to other products, Sophos XGS is a user-friendly solution.""The product was easy for us to install.""The most valuable features of Sophos XGS for me are XGS IPS, SD-WAN, VPN setup, email protection, and integration with endpoint security.""Setup was straightforward. One person is enough for deployment.""All the features are valuable, in my opinion, but for us the most important features are the network security, application control, and web server protection. Sophos Sandstorm is another good feature off the top of my head."

More Sophos XGS Pros →

Cons
"In terms of what could be improved, the SD-WAN is quite difficult, because if you install the new box, 15 is okay, but if you change from an old configuration, if there is already configuration and a policy when you change to SD-WAN, you must change the whole policy that you see in the interface.""The user interface could be improved.""The support structure needs to be improved because every time we contact them, there is a delay in the response.""The cloud features can be improved.""Some of the features in the graphical user interface do not work, which requires that we used the command-line-interface.""They should make the rule sets more understandable for the end user. When you're trying to explain to somebody how a computer network is secured, sometimes it's difficult for an end user or customer to understand. If there was a way to make the terminology more accessible to the end user, the set up could be easier. They should translate the technical jargon to an easily relatable and understandable conversation for the end user, the customer, that would be brilliant. Particularly in an environment where the IT structure is audited regularly, there's always pressure from the auditor to up the standards and up the security and you get your USCERT's that come out and there's a warning about this and the customer will want to lock out so much and when you apply it they run into issue where they can't search the internet or print to their remote office. Of course they can't print to your remote office, they just locked it up. They should make the language more understandable for the customer. If there's a product out there that made the jargon understandable to John Q. Public, I would buy that.""The product does need better support in the cloud environment. It's not exactly cloud-native right now.""The license renewal process, annual renewal price, and the web application firewall features should be improved."

More Fortinet FortiGate Cons →

"There seem to be some issues with TAC (Technical Assistance Center) or Palo Alto support. Anytime you open a case, a level one engineer joins, and then you have to escalate it to level two or three. The support system has changed in the past few years, and that's something they need to look into.""In future releases, maybe Palo Alto can enhance and enlarge their portfolio with SIEM solutions. They already have an endpoint protection solution, SOAR solution, that's fine. But when it comes to standalone IDS/IPS solution or email security solution, for example, we don't have any product in that category for Palo Alto.""Palo Alto should integrate artificial intelligence for security purposes in the background for well-known threats and new risks coming to the market.""There are constant updates for the operating system. It is a nice thing also, but it has its own disadvantages. Continuous updates are there. The users face issues like, how often do I need to update that? Within a period of five months, I'm updating it two or three times. It gives them a feeling that they are not confident about their product and have to update it so frequently.""The SD-WAN feature of Palo Alto Networks is not good compared to FortiGate.""With Palo Alto Networks PA-Series, I find that the support team takes a long time to resolve the issues that a user may face during the use of the product.""The product must provide multiple threat detection features.""The interface is complex."

More Palo Alto Networks PA-Series Cons →

"I do not get notifications regarding ISP downtime.""The customer service response time can be improved.""Sophos XGS would benefit from further development in the SD-WAN area.""In my view, Sophos operates effectively in a reactive mode, focusing on static detection and forwarding traffic. However, Fortinet takes a more proactive approach, blocking both connection and route connections. While Sophos forwards any connection in both inbound and outbound traffic, I believe this is a positive aspect, especially in a country with various sizing considerations. This is my perspective, emphasizing the significance of Sophos XGS in software work.""What could be improved in Sophos XGS is its connectivity with Azure AD. It's best if it could work directly without using any servers locally, or in the data center, and this functionality should be made available in this product.""The solution could have a bit more functionality.""When it comes to different interfaces there is some speed issue that can be improved in Sophos XGS.""They need intelligent reporting, not just your simple, standard reports."

More Sophos XGS Cons →

Pricing and Cost Advice
  • "Fortinet has one or two license types, and the VPN numbers are only limited by the hardware chassis make."
  • "These boxes are not that expensive compared to what they can do, their functionality, and the reporting you receive. Fortinet licensing is straightforward and less confusing compared to Cisco."
  • "Go for long term pricing negotiated at the time of purchase."
  • "Work through partners for the best pricing."
  • "The value is the capability of having multiple services with one unique license, not having the limitation per user licensing schema, like other vendors."
  • "Easy to understand licensing requirements."
  • "​We saved a bundle by not needing all the past appliances from an NGFW.​"
  • "The cost is too high... They have to focus on more features with less cost for the customer. If you see the market, where it's going, there are a lot of players offering more features for less cost."
  • More Fortinet FortiGate Pricing and Cost Advice →

  • "Palo Alto’s pricing is way higher than any other solution provider."
  • "While other firewalls may come with a higher cost, when you consider the cost in relation to the services and features that Palo Alto offers, it is clear that Palo Alto is delivering excellent value."
  • "Compared to other vendors, Palo Alto Networks PA-Series is expensive."
  • "Palo Alto is more expensive than FortiGate."
  • "The pricing is a bit on the higher side."
  • "The product is expensive."
  • "We have to pay a yearly licensing fee for the solution."
  • "The tool's pricing was reasonable when we bought the product. We pay around 60,000 dollars per year."
  • More Palo Alto Networks PA-Series Pricing and Cost Advice →

  • "I live in Bolivia and the price of Sophos XGS is high. However, they have adjusted their price a little over the past while but the price could still be less expensive to be affordable."
  • "Once you pay for the Sophos XGS hardware there is no license required. There are additional costs if you want the support. We have purchased support for three years."
  • "The price of the solution is reasonable and their target market is small to medium-sized companies."
  • "Sophos XGS is priced lower than some of its competitors, such as Fortinet"
  • "The license for Sophos XGS is for three years, paid on a yearly basis. Everything is included with the license; there are no additional fees."
  • "The cost is comparable to other similar solutions."
  • "The price of Sophos XGS is less than competitors worldwide. However, in Turkey the solution is expensive."
  • "The licensing cost is in the normal range and is not very costly."
  • More Sophos XGS Pricing and Cost Advice →

    report
    Use our free recommendation engine to learn which Firewalls solutions are best for your needs.
    772,649 professionals have used our research since 2012.
    Questions from the Community
    Top Answer: When you compare these firewalls you can identify them with different features, advantages, practices and usage at… more »
    Top Answer:From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know… more »
    Top Answer:As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite… more »
    Top Answer:The reporting feature and application ID functionality within Palo Alto Networks PA-Series are incredibly valuable to… more »
    Top Answer:The licensing is great. We renew it, and it works. The pricing is fair. I rate the pricing a five out of ten.
    Top Answer:I don't have any specific suggestions for improving the Palo Alto Networks PA-Series at the moment. I find it to be a… more »
    Top Answer:The policies are the greatest feature. They allow us to configure granular control over our network traffic.
    Top Answer:The product’s pricing is average compared to other solutions.
    Top Answer:I do not get notifications regarding ISP downtime. It would be better if I could get notifications related to the… more »
    Comparisons
    Also Known As
    FortiGate 60b, FortiGate 60c, FortiGate 80c, FortiGate 50b, FortiGate 200b, FortiGate 110c, FortiGate
    Learn More
    Overview

    Fortinet FortiGate enhances network security, prevents unauthorized access, and offers robust firewall protection. Valued features include advanced threat protection, reliable performance, and a user-friendly interface. It improves efficiency, streamlines processes, and boosts collaboration, providing valuable insights for informed decision-making and growth.

    PA-Series constitute the full range of our ML-Powered Next-Generation Firewall physical appliances that are easy to deploy into your organization’s network and purposefully designed for simplicity, automation, and integration. No matter where you need protection, our PA-Series ML-Powered Next-Generation Firewalls are architected to provide consistent protection to your entire network – from your headquarters and office campus, branch offices and data center to your mobile and remote workforce.

    Sophos XGS is a comprehensive network security solution designed to protect organizations from advanced threats. It combines next-generation firewall capabilities with advanced threat protection, web filtering, and application control. 

    XGS has powerful deep learning technology and can detect and block even the most sophisticated malware and ransomware attacks. It also offers granular control over web access, allowing organizations to enforce policies and prevent access to malicious or inappropriate websites. Additionally, XGS provides application control features, enabling organizations to manage and prioritize network traffic based on specific applications or user groups. 

    With its intuitive management interface and centralized reporting, XGS offers easy deployment and monitoring of network security. 

    Sample Customers
    1. Amazon Web Services 2. Microsoft 3. IBM 4. Cisco 5. Dell 6. HP 7. Oracle 8. Verizon 9. AT&T 10. T-Mobile 11. Sprint 12. Vodafone 13. Orange 14. BT Group 15. Telstra 16. Deutsche Telekom 17. Comcast 18. Time Warner Cable 19. CenturyLink 20. NTT Communications 21. Tata Communications 22. SoftBank 23. China Mobile 24. Singtel 25. Telus 26. Rogers Communications 27. Bell Canada 28. Telkom Indonesia 29. Telkom South Africa 30. Telmex 31. Telia Company 32. Telkom Kenya
    Information Not Available
    Information Not Available
    Top Industries
    REVIEWERS
    Comms Service Provider16%
    Computer Software Company9%
    Financial Services Firm8%
    Manufacturing Company7%
    VISITORS READING REVIEWS
    Educational Organization20%
    Computer Software Company15%
    Comms Service Provider7%
    Manufacturing Company6%
    REVIEWERS
    Computer Software Company35%
    Manufacturing Company24%
    Financial Services Firm12%
    Government6%
    VISITORS READING REVIEWS
    Computer Software Company25%
    Manufacturing Company12%
    Construction Company7%
    University6%
    REVIEWERS
    Comms Service Provider20%
    Manufacturing Company10%
    Outsourcing Company7%
    Transportation Company7%
    VISITORS READING REVIEWS
    Computer Software Company17%
    Comms Service Provider8%
    Construction Company7%
    Manufacturing Company7%
    Company Size
    REVIEWERS
    Small Business48%
    Midsize Enterprise23%
    Large Enterprise30%
    VISITORS READING REVIEWS
    Small Business28%
    Midsize Enterprise32%
    Large Enterprise40%
    REVIEWERS
    Small Business41%
    Midsize Enterprise17%
    Large Enterprise41%
    VISITORS READING REVIEWS
    Small Business40%
    Midsize Enterprise22%
    Large Enterprise38%
    REVIEWERS
    Small Business69%
    Midsize Enterprise11%
    Large Enterprise20%
    VISITORS READING REVIEWS
    Small Business43%
    Midsize Enterprise18%
    Large Enterprise39%
    Buyer's Guide
    Palo Alto Networks PA-Series vs. Sophos XGS
    May 2024
    Find out what your peers are saying about Palo Alto Networks PA-Series vs. Sophos XGS and other solutions. Updated: May 2024.
    772,649 professionals have used our research since 2012.

    Palo Alto Networks PA-Series is ranked 17th in Firewalls with 28 reviews while Sophos XGS is ranked 18th in Firewalls with 62 reviews. Palo Alto Networks PA-Series is rated 8.6, while Sophos XGS is rated 7.8. The top reviewer of Palo Alto Networks PA-Series writes "Offers trained customer support, stability and ease of use ". On the other hand, the top reviewer of Sophos XGS writes "Easy to use, simple to learn, and offers great reporting". Palo Alto Networks PA-Series is most compared with OPNsense, SonicWall NSa, Sophos XG and Juniper SRX Series Firewall, whereas Sophos XGS is most compared with Sophos XG, OPNsense, Netgate pfSense, WatchGuard Firebox and Palo Alto Networks NG Firewalls. See our Palo Alto Networks PA-Series vs. Sophos XGS report.

    See our list of best Firewalls vendors.

    We monitor all Firewalls reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.