Try our new research platform with insights from 80,000+ expert users

Check Point NGFW vs Sophos XG comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Sep 16, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Customer Service

Sentiment score
7.1
Fortinet FortiGate's customer service is praised for problem-solving but criticized for inconsistent response times and language barriers.
Sentiment score
7.1
Customer service for Check Point NGFW is inconsistent, with variances in responsiveness and effectiveness across regions and support models.
Sentiment score
6.1
Sophos XG support is mixed, with varying expertise and response times, though local distributor support is valued.
The response time for a critical priority one issue was over four hours and they only responded because we threatened legal action for them violating our support contract.
They say they will respond in 24 hours, but I have received responses in a maximum of one hour, which is impressive.
The technical support from Fortinet FortiGate is 24 hours a day seven days a week, and 365 days a year.
The support team we engaged was knowledgeable and well-versed with the application.
I rate technical support from Check Point at ten out of ten.
When I can't resolve an issue technically, I consult with a senior engineer.
Sophos provides online documentation which is very user friendly.
We are also trying to keep up on how the hackers work because we are working with different associations of security worldwide.
On a scale from one to ten, I would give Sophos support a ten.
 

Room For Improvement

Sentiment score
4.6
Fortinet FortiGate needs improvements in stability, usability, integration, cost-effectiveness, and documentation for enhanced user satisfaction and performance.
Sentiment score
4.7
Check Point NGFW needs better stability, third-party integration, user interface, support, and improvements in antivirus, VPN, and licensing.
Sentiment score
4.3
Sophos XG needs an improved interface, better VPN stability, enhanced support, and more detailed security and licensing transparency.
FortiWAN supports OSPF but does not support the BGP protocol.
Fortinet VPN and DDoS capabilities are great, yet we need to provide a solution that enables CASB and integration to the cloud.
The relationship between their accounts team and my leadership team seems to be the reason for phasing out FortiGate.
Check Point would benefit from having a single console for both basic and policy configurations.
The graphical user interface (GUI) could benefit from some updates.
In the rule creation process, we need to decide on the source address, destination address, and services.
The developers should test everything after any update to ensure that bugs don't come through with the update.
There are times that I really want to know which user or which IP is causing a problem.
If they could incorporate some user profiling and present the analytics of the login user usage patterns, or a typical proper management dashboard to take a decision on the firewall rules, that would be useful.
 

Scalability Issues

Sentiment score
7.1
Fortinet FortiGate is scalable, flexible, and adaptable, though some face hardware upgrades and licensing challenges during deployment sizes.
Sentiment score
7.6
Check Point NGFW offers high scalability and hyperscaling with Maestro, suitable for cloud and on-premise enterprise environments.
Sentiment score
7.2
Sophos XG is scalable but larger organizations may need hardware upgrades; suitable for small to medium enterprises with planning.
The devices will usually fail way before reaching the capacity advertised in the data sheets, especially when you activate several of the features the device can handle.
The solution is working and it is still stable even across all of these devices and servers.
We have over 10,000 users behind it.
Scalability must be carefully planned for, considering future growth and user base increases.
It enhances performance with high availability, shifting to a secondary firewall if one fails.
In other words it doesn't have that modularity feature.
We do have plans to increase usage because we are growing our projects around the world to countries like the US, Germany, Pakistan, India, UAE (Dubai) and Egypt.
You've got to define the criteria in terms of what you're trying to protect, the number of users, the bandwidth that is going through it, the speed, etc.
 

Setup Cost

Sentiment score
7.4
Fortinet FortiGate offers competitive pricing with varied costs; affordable long-term licenses, though renewal complexity can accumulate costs.
Sentiment score
7.9
Check Point NGFW offers robust security with a complex, negotiable pricing model, often seen as costly but competitive.
Sentiment score
7.1
Sophos XG offers competitive pricing, appealing to small and medium enterprises, and is often cheaper than rivals like FortiGate.
The cost of the original deployment fell below £5,000, and licenses are priced at around £3,000.
Every time you upgrade your license, you also get insurance for the equipment.
Overall, FortiGate is affordable.
In comparison to Fortinet and other products, the pricing may be considered high.
We found the pricing reasonable, ensuring the product was not overpriced.
One way they are doing this is by having an aggressive pricing policy.
There are no additional fees on top of this.
The option to get a combo with hardware means the software portion is mostly free, and then you pay upfront for the three-year license for everything.
 

Stability Issues

Sentiment score
7.9
Fortinet FortiGate is praised for its stability and reliability, with occasional issues improved by updates and configurations.
Sentiment score
7.6
Check Point NGFW is reliable with improved stability in newer versions, though some users report occasional connectivity issues.
Sentiment score
8.0
Sophos XG is praised for its reliability and stable performance, with effective support and occasional firmware update concerns.
All of these issues were resolved in v5.2.
Stability has dramatically improved over the previous main version branch of FortiOS; 5.2.x and 5.4.x are stable enough for critical environments.
Overall, the devices have been very stable.
While the solution is generally stable, there are complications, such as requiring SmartConsole for deployment and upgrades, which can be time-consuming.
Sophos' support is very good to correct quickly, ASAP.
There isn't crashing or freezing.
It may be possible to implement a second device in a fail-over cluster and this would avoid such a problem as then if one device fails in the updating process, the other device could take over.
 

Valuable Features

Sentiment score
8.0
Fortinet FortiGate offers advanced security features, user-friendly configuration, and comprehensive management tools, valued for robust protection and flexibility.
Sentiment score
8.3
Check Point NGFW provides centralized management, robust security features, and flexible integration, ensuring comprehensive protection against diverse threats efficiently.
Sentiment score
8.2
Sophos XG delivers advanced security, scalability, and user-friendly management for medium enterprises with comprehensive network activity views.
The two most valuable features are VPN and firewalling.
WiFi network for visitors isolated from our corporate WiFi network using only one unit
Allows for firewall rules to be programmed and named in a way that makes it 'readable'
The firewall's default behavior of blocking all traffic, including a cleanup rule that blocks everything from external to internal sources, is highly valuable for protecting our network.
In the normal GA login, I can create interfaces and configure interface IPs, while in the SmartConsole, I manage the NAT quality and firewall access.
One of the most valuable features is the ability to whitelist and blacklist sources to control access to our ecosystem, ensuring secured SaaS application access.
Anti-malware: Sophos XG comes with two anti-malware engines: its own and Avira, making the UTM more effective at catching malicious code.
If my file is getting infected, I get to know from a single pane point of view.
The user interface is very user-friendly, so it's very easy for the administrator to make any policy changes.
 

Categories and Ranking

Fortinet FortiGate
Sponsored
Ranking in Firewalls
2nd
Average Rating
8.4
Reviews Sentiment
7.2
Number of Reviews
317
Ranking in other categories
Software Defined WAN (SD-WAN) Solutions (1st), WAN Edge (1st)
Check Point NGFW
Ranking in Firewalls
5th
Average Rating
8.8
Reviews Sentiment
7.3
Number of Reviews
306
Ranking in other categories
Unified Threat Management (UTM) (1st)
Sophos XG
Ranking in Firewalls
4th
Average Rating
8.2
Reviews Sentiment
7.0
Number of Reviews
198
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of December 2024, in the Firewalls category, the mindshare of Fortinet FortiGate is 20.5%, up from 17.3% compared to the previous year. The mindshare of Check Point NGFW is 3.2%, down from 3.4% compared to the previous year. The mindshare of Sophos XG is 11.7%, up from 9.1% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Firewalls
 

Featured Reviews

DineshKumar28 - PeerSpot reviewer
Effective threat prevention with responsive customer support
We are using Fortinet FortiGate as a firewall Fortinet FortiGate has been invaluable. It has helped save costs due to its various features, reliable performance, very good UI, low latency, and stability. The Threat Intel engine in Fortinet FortiGate is highly rated for its effectiveness in…
Pratik-Savla - PeerSpot reviewer
Filters internet access and controls applications
Before choosing Check Point NGFW, we used Palo Alto Networks. We switched because of issues with Palo Alto. Their customer support wasn't very responsive. Some policies weren't working right, letting things through that should've been blocked. We compared different pricing options and features before deciding on Check Point NGFW. The main differences between Palo Alto and Check Point NGFW were mostly in how they worked for us. They both offer good next-gen firewalls, but we had some problems with Palo Alto. Sometimes it wouldn't notify us quickly when something got through. Its prevention wasn't always as strong as we wanted. We felt Palo Alto's traffic inspection was only partial, not checking everything thoroughly. Check Point NGFW seemed to offer better inspection. Check Point NGFW also had better threat intel and application control. With Palo Alto, we couldn't see all our applications, only some of them. This caused shadow IT problems. Cost was also a factor in our decision.
Akshit Chhokar - PeerSpot reviewer
Offers good performance but needs to improve on the flexibility part
The product has improved the security posture. Sophos XG provides features that are almost the same as those Cisco Firepower devices provide. I would say that a couple of features in Sophos XG are the same as the ones provided by other Cisco devices, which are top-notch. The management tools or log-related solutions that are presented with Sophos are okay but not top-notch when it comes to Cisco. I rate the reporting and visibility tools in Sophos XG a six out of ten compared to Cisco. Sophos xG's integration capabilities do not apply to a limited number of security tools. Cisco provides integration capabilities with many products, while Sophos XG offers integration with a limited number of products. Cisco provides integration capability with almost any tool that is present in the world. Cisco works day and night to ensure that it provides good integration capabilities with the solutions. I recommend the tool to those who plan to use it, especially if you own a very small office where you don't need a product with too many functionalities. I rate the tool a seven out of ten.
report
Use our free recommendation engine to learn which Firewalls solutions are best for your needs.
823,795 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Educational Organization
22%
Computer Software Company
14%
Comms Service Provider
6%
Manufacturing Company
6%
Educational Organization
58%
Computer Software Company
7%
Financial Services Firm
4%
Government
3%
Computer Software Company
17%
Comms Service Provider
8%
Manufacturing Company
7%
Financial Services Firm
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

Which is the better NGFW: Fortinet Fortigate or Cisco Firepower?
When you compare these firewalls you can identify them with different features, advantages, practices and usage a...
What is the biggest difference between Sophos XG and FortiGate?
From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know...
What are the biggest technical differences between Sophos UTM and Fortinet FortiGate?
As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite ...
How does Check Point NGFW compare with Fortinet Fortigate?
I have experience on both from Disti and channel experience. Please find below my comments (nothing new as such). -Ch...
Which would you recommend - Azure Firewall or Check Point NGFW?
Azure Firewall is easy to use and provides excellent support. Valuable features include integration into the overall ...
What do you like most about Check Point NGFW?
Check Point NGFW provides essential security, featuring no-obligation access for secure connections, strong intrusion...
Which is better - Palo Alto Networks NG Firewalls or Sophos XG?
Palo Alto Networks NG Firewalls have both great features and performance. I like that Palo Alto has regular threat si...
What are the main differences in features between Sophos XG and FortiGate 80F?
Hi Arvind P , The Sophos XG firewall has a number of models right from XG86 to XG135w under the 1U Desktop Form Fact...
What Is The Biggest Difference Between Sophos UTM and Sophos XG?
The Sophos UTM is a UTM and Sophos XG is the NGFW. First, you must know about the difference between a UTM and NGFW. ...
 

Also Known As

FortiGate 60b, FortiGate 60c, FortiGate 80c, FortiGate 50b, FortiGate 200b, FortiGate 110c, FortiGate, Fortinet Firewall
Check Point NG Firewall, Check Point Next Generation Firewall
No data available
 

Overview

 

Sample Customers

Amazon Web Services, Microsoft, IBM, Cisco, Dell, HP, Oracle, Verizon, AT&T, T-Mobile, Sprint, Vodafone, Orange, BT Group, Telstra, Deutsche Telekom, Comcast, Time Warner Cable, CenturyLink, NTT Communications, Tata Communications, SoftBank, China Mobile, Singtel, Telus, Rogers Communications, Bell Canada, Telkom Indonesia, Telkom South Africa, Telmex, Telia Company, Telkom Kenya
Control Southern, Optimal Media
Information Not Available
Find out what your peers are saying about Check Point NGFW vs. Sophos XG and other solutions. Updated: December 2024.
823,795 professionals have used our research since 2012.