Check Point NGFW and Sophos XGS compete in the network security segment, each offering unique strengths. Check Point NGFW has the upper hand in threat prevention and centralized management, while Sophos XGS excels in ease of use and cost-effectiveness.
Features: Check Point NGFW is noted for robust threat prevention, centralized management, and seamless VPN integration. It provides detailed logging capabilities that are highly valued by users. Sophos XGS, on the other hand, is praised for its ease of management, synchronized security features, and effective application control, offering a straightforward interface for users.
Room for Improvement: Check Point NGFW could enhance its user interface, reduce complexity in setup, and improve feature deployment to address stability and compatibility issues. Customers also seek better integration with other tools and faster technical support. Sophos XGS users report the need for improvements in firmware stability, SD-WAN features, and reporting. It could also enhance capabilities for larger networks and third-party tool interactions.
Ease of Deployment and Customer Service: Check Point NGFW supports deployment across On-premises, Hybrid Cloud, and Private Cloud environments with varying support satisfaction levels. Users appreciate detailed documentation but report delays in resolution. Sophos XGS, deployable on On-premises, Public Cloud, and Hybrid Cloud, is commended for clear setups and responsive support, facilitating easy integration into diverse environments.
Pricing and ROI: Check Point NGFW is perceived as costly with a complex licensing model, yet its security features justify the investment for large enterprises. Sophos XGS is cost-effective with competitive pricing attractive to SMEs. While both deliver solid ROI, Sophos XGS is often highlighted as more affordable, appealing to budget-conscious organizations.
Clients are now comfortable and not wasting productive hours on IT support.
We have experienced a positive return on investment by utilizing Fortinet's products.
There's definitely an ROI. Having a centralized way of managing and applying policies across the entire organization always helps.
This is a time-saving measure because we don't need to deploy a cluster or a firewall each time; we just create a virtual system on the management server using the same appliance.
The costs have increased with Sophos XGS in the last few years, with license prices going up by 30%, doubling from $2,500 to about $5,000, which is a big challenge for us.
He explained that it required a command line configuration, as it couldn't be done through the graphical user interface.
I would rate their support for FortiGate a nine out of ten.
They offer very accurate solutions.
The support team we engaged was knowledgeable and well-versed with the application.
We have escalated issues to Check Point technical support multiple times and have received timely and very good responses.
Even challenging issues like those with VPNs have been resolved efficiently with their help.
Any issues are quickly addressed by their support team, which is not common among all OEM manufacturers.
The response time from Sophos technical support can be slow in most cases, which can be challenging.
Technical support from Sophos is always available.
They scale up really well from smaller models like the FortiGate 40 and 50 to bigger sites with the FortiGate 100 for more throughput - up to enterprise datacenters.
There are many options available, and we can choose the size of the box based on our requirements.
You can choose a cheaper model if you only have 20-30 users, but you will need to spend more money for a FortiGate solution that covers 5,000.
If specified correctly, even the smaller boxes offer high session and bandwidth rates, making the solution highly scalable, even up to telco-level requirements.
Scalability must be carefully planned for, considering future growth and user base increases.
They offer multiple solutions from SMBs to enterprise data centers, making it an easily scalable solution with no issues in scalability.
I can change what I want easily without interfering with other services or routines.
I would rate its scalability seven out of ten since modules can be added.
There are no bugs or glitches, and it doesn't crash or freeze.
Improper handling of these can lead to a memory surge, a well-known bug that can cause the entire system to freeze.
It is less stable than Palo Alto Networks and Check Point firewalls because there are lots of bugs in the latest firmware.
While the solution is generally stable, there are complications, such as requiring SmartConsole for deployment and upgrades, which can be time-consuming.
I have worked with Check Point products for 15 years and haven't found any stability or performance issues.
I have encountered stability issues primarily with VPN, which required a code upgrade.
It is rated at nine out of ten for stability and is very reliable.
Sophos XGS is stable now, and I would rate its stability as a ten out of ten.
When Sophos introduced firmware version twenty, there was a bug in DCC.
If I have put 10 GBPS of throughput on a firewall and I enable all of these features available, such as IPS or UTM functionalities, the throughput comes down to 1 GBPS.
By providing an integrated solution, users would have access to all features and functionalities within a single window, eliminating the need to navigate through multiple windows.
Investing in a solution that can accommodate such growth would be more cost-effective than repeatedly purchasing new hardware.
Other products, like FortiGate, are perceived as more intuitive because they are easier to configure from the start.
Check Point would benefit from having a single console for both basic and policy configurations.
The graphical user interface (GUI) could benefit from some updates.
It would be beneficial if Sophos XGS offered an end-to-end solution with competitive pricing.
After version 18.5, creating a NAT rule has become more complex, requiring the creation of a separate policy and an additional component.
I have experienced multiple hardware complaints, particularly during firmware updates that sometimes cause crashes.
Secure SD-WAN is free of charge.
The most expensive part is the renewal of the license subscription.
FortiGate is priced lower than Palo Alto.
In comparison to Fortinet and other products, the pricing may be considered high.
Compared to other solutions, the pricing of Check Point NGFW is high.
The perception is that Check Point NGFW is expensive, especially when all software modules are included.
The last instance I purchased was for three years, around $3,700 for SDG 125.
pricing is rated eight out of ten, indicating that it may be relatively expensive.
Sophos XGS is quite expensive, potentially a nine out of ten in terms of cost.
It's easy to monitor the end-to-end network through the firewall.
The firewall, IPS, and VPN functions are the most valuable features.
FortiGate provides solid protection against viruses, malware, and other threats.
The firewall's default behavior of blocking all traffic, including a cleanup rule that blocks everything from external to internal sources, is highly valuable for protecting our network.
The most valuable features in my experience include perimeter firewalling, cloud and mobile security, application control, URL filtering, DLP, threat prevention, intrusion protection, and safeguarding against malware, botnets, and zero-day attacks.
In the normal GA login, I can create interfaces and configure interface IPs, while in the SmartConsole, I manage the NAT quality and firewall access.
It's able to detect cloud applications like Zoom or Microsoft Teams and allows traffic shaping based on the application.
I find it much easier than others, like FortiGate, which is complicated in its installation, but Sophos XGS is really easy.
The threat detection capabilities are effective, especially against CNC and certain viruses not coming through emails.
Fortinet FortiGate offers comprehensive network security and firewall protection across multiple locations. It effectively manages data traffic and secures environments with features like VPN, intrusion prevention, and UTM controls.
Organizations rely on Fortinet FortiGate for its robust integration with advanced security policies, ensuring significant protection for enterprises, cloud environments, and educational sectors. It facilitates network segmentation, application-level security, and authentication management, securing communication within and between locations such as branches and data centers. Its efficient SD-WAN and UTM features enable streamlined data management and enhanced threat protection capabilities. Users appreciate its centralized management, facilitating seamless operations across diverse environments.
What are the key features of Fortinet FortiGate?
What benefits should users expect from Fortinet FortiGate?
Fortinet FortiGate is crucial in sectors like education, offering robust networks for secure data flow between campuses and facilitating remote learning. In enterprise environments, it allows efficient management of application traffic and security across multiple branches, while in the cloud, it seamlessly integrates with diverse platforms to enhance security infrastructure.
Check Point NGFW provides comprehensive firewall protection, managing VPNs, and securing network perimeters with advanced threat prevention techniques. It's widely used to protect businesses, data centers, and ensure secure traffic management.
Check Point NGFW offers robust security for companies, delivering security features like threat prevention, URL filtering, and intrusion prevention across both layer 3 and layer 7. It supports remote access, web filtering, application control, and safeguards against malware, botnets, and zero-day attacks. With its intuitive management console, deep packet inspection, centralized management capabilities, and sophisticated threat detection, Check Point NGFW enhances network security and productivity. The system integrates seamlessly with other technologies and provides real-time monitoring, detailed reporting, and automated policy management. Additionally, its setup is straightforward, it scales well, and offers comprehensive logging.
What are the key features?Check Point NGFW is implemented in industries like finance, healthcare, and retail, where protecting sensitive data and ensuring compliance are critical. Its advanced security features and ease of management make it suitable for large enterprises and data centers, ensuring reliable and secure network operations.
Sophos XGS is a comprehensive network security solution designed to protect organizations from advanced threats. It combines next-generation firewall capabilities with advanced threat protection, web filtering, and application control.
XGS has powerful deep learning technology and can detect and block even the most sophisticated malware and ransomware attacks. It also offers granular control over web access, allowing organizations to enforce policies and prevent access to malicious or inappropriate websites. Additionally, XGS provides application control features, enabling organizations to manage and prioritize network traffic based on specific applications or user groups.
With its intuitive management interface and centralized reporting, XGS offers easy deployment and monitoring of network security.
We monitor all Firewalls reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.