Try our new research platform with insights from 80,000+ expert users

Cisco Secure Firewall vs Sophos XGS comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Sep 16, 2024
 

Categories and Ranking

Fortinet FortiGate
Sponsored
Ranking in Firewalls
2nd
Average Rating
8.4
Reviews Sentiment
7.2
Number of Reviews
317
Ranking in other categories
Software Defined WAN (SD-WAN) Solutions (1st), WAN Edge (1st)
Cisco Secure Firewall
Ranking in Firewalls
6th
Average Rating
8.2
Reviews Sentiment
7.5
Number of Reviews
406
Ranking in other categories
Cisco Security Portfolio (4th)
Sophos XGS
Ranking in Firewalls
15th
Average Rating
8.0
Reviews Sentiment
7.0
Number of Reviews
81
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of December 2024, in the Firewalls category, the mindshare of Fortinet FortiGate is 20.5%, up from 17.3% compared to the previous year. The mindshare of Cisco Secure Firewall is 5.8%, down from 5.9% compared to the previous year. The mindshare of Sophos XGS is 1.7%, up from 0.8% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Firewalls
 

Featured Reviews

DineshKumar28 - PeerSpot reviewer
Effective threat prevention with responsive customer support
We are using Fortinet FortiGate as a firewall Fortinet FortiGate has been invaluable. It has helped save costs due to its various features, reliable performance, very good UI, low latency, and stability. The Threat Intel engine in Fortinet FortiGate is highly rated for its effectiveness in…
Daniel Going - PeerSpot reviewer
Is intuitive in terms of troubleshooting, easy to consume, and stable
Licensing is complex, and I'd like it to be simplified. This is an area for improvement. If we could create a Firepower solution that became like an SD-WAN or a SASE solution in a box, then perhaps we could exploit that on remote sites. We've already kind of got that with Meraki, but if we could pull out some of the features from ASA Firepower and make those available in SD-WAN in SASE, then it would be pretty cool.
MarounAbboud - PeerSpot reviewer
Gives us peace of mind with network security, application control, and web server protection
Having previously worked with the Astaro Security Gateway platform (now called Sophos UTM), I can attest that the configuration and dashboard for this older platform was easier to manage than that of both Sophos XG and XGS. If it were up to me, I would prefer to go back to the older SG dashboard. I am hoping that in future, the dashboard for Sophos XGS will be simpler and easier.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The features that prevent internet connections, the filtering are the most valuable because we did not have any internet protection before."
"The most valuable features of Fortinet FortiGate are it is one of the most mature firewalls in the UTM bundle."
"The features that we have found most valuable are the SSL VPN and the User Portal."
"The wireless control is helpful."
"It is a safe product."
"The flexibility and ease of configuration are the most valuable features."
"We've found the solution to be pretty stable."
"Their proxy-based inspection is responsive and secure."
"The whole firewall functionality, including firewall policies and IPS policies, is valuable. It has all kinds of functionalities. It has IPS, VPN, and other features. They are doing quite a lot of stuff with their devices."
"The most valuable features of Cisco firewalls are the IPS and IDS items. We find them very helpful. Those are the biggest things because we have some odd, custom-made products in our environment. What we've found through their IPS and IDS is that their vulnerability engines have caught things that are near-Zero-day items, inside of our network."
"ASA integrates with FirePOWER, IPS functionality, malware filtering, etc. This functionality wasn't there in the past. With its cloud architecture, Cisco can filter traffic at the engine layer. Evasive encryptions can be entered into the application, like BitTorrent or Skype. This wasn't possible to control through a traditional firewall."
"Manageability of Cisco ASA. It has a GUI interface, unlike the most of Cisco IOS. For beginners they can "sneak in" and apply the command and see the actual commands that the GUI launches. In addition, Cisco has the reputation regarding security."
"Previously, our customers had to always utilize hand-to-hand delivery. Now, they are able to move completely to a secure digital method. They use a strictly dark fiber optics connection from a central location to the endpoint."
"One of the most valuable features is the GUI front end, which is very easy to use. But I'm also a command-line guy, and being able to access the device via command-line for advanced troubleshooting is quite important."
"Stability is perfect. I haven't had any problems."
"The most important feature is its categorization because on the site and social media you are unified in the way they are there."
"It is scalable."
"The initial setup is very simple."
"It offers an easy initial implementation."
"The centralized security is very good."
"Sophos XGS that's a good firewall. If you use the endpoint, then you have what Sophos calls synchronized security. That will mean that if one of the endpoints is affected, it will be automatically set in isolation."
"It increases productivity in our company. Everything is protected."
"Sophos XGS has very good reporting capabilities and effective IPS signatures based on the latest versions."
"The policies are the greatest feature. They allow us to configure granular control over our network traffic."
 

Cons

"Its customer service could be better."
"We would like to see a better training platform implemented."
"The firmware needs improvement because there are bugs when a new release comes through. Sometimes, the configuration changes, and it's a bit harder to see where the fail is. The first time that you have the firmware, it tends to have some issues, and it's better to wait a bit to update the equipment."
"Bandwidth usage in reporting could be improved for Fortinet FortiGate."
"Fortinet could improve the windows opener or the virtual IP solutions for opening windows. The virtual IP settings need improvement as firewalls are trending in new development directions."
"Fortinet FortiGate is a firewall solution and once it's deployed, you can rest assured that your system is secure."
"Its reporting capabilities can be improved. It should have some out-of-the-box reporting capabilities and some degree of customization. The basic reporting that it currently has is not sufficient to create more usable reports. It needs some sort of out-of-the-box reporting. They try to make customers purchase FortiAnalyzer for this kind of reporting, which is an additional cost. Other firewall vendors, such as SonicWall and Sophos, provide this sort of reporting without any additional cost."
"I have to say that the initial setup was complex. The deployment took a few days to get set up. Initially, we were using an IPVanish. We switched to this tool since we thought it would be easier. But it turns out it wasn't easier to set up and run."
"Setting firewall network rules should be more straightforward with a clearer graphical representation. The rule-setting method seems old-fashioned. The firewall and network rules are separate from the Firepower and web access rules."
"It seems very clunky and slow. I would like to be able to tune it to be a more efficient product."
"Deploying configurations takes longer than it should."
"There used to be information displayed about the packets in a module called Packet Flow, but it is no longer there."
"Setting it up is not as intuitive as other more modern NGFWs."
"There is room for improvement in the stability or software quality of the product. There were a few things in the past where we had a little bit of a problem with the product, so there is room for improvement."
"The ease of use needs improvement. It is complex to operate the solution. The user interface is not friendly."
"There is no support here in Georgia. If something goes wrong, support is not always very helpful with the other firewalls or other products."
"Sophos XGS changes every two years, so we must update our knowledge. We can only test it with real requirements or problems to find scalability and reliability. We can't find these in normal testing. We can see reviews based on Gartner reports, but sometimes, we really feel problems. It can create many issues, even compatibility problems with fiber modules. Only system integrators or installers find these problems."
"A feature that could be improved in Sophos XGS is the ability to perform internal vulnerability checks."
"There is no option for right-clicking on any feature after logging into the firewall. I am unable to open a feature in a new tab. In FortiGate, I can do it; in Sophos, I cannot."
"I would like to see them in third-party evaluation reports like Gartner, Magic Quadrant, or Forrester to make it easier for us to show our customers that Sophos is a leader in the market."
"I would like to see a history of the monthly bandwidth utilization, the bandwidth consumption for a period of time."
"The configurations can be a bit complex."
"It has recently started to suddenly block and crash."
"I do not get notifications regarding ISP downtime."
 

Pricing and Cost Advice

"For medium and enterprise organizations, FortiGate is more affordable."
"It is affordable. Palo Alto is much more expensive than Fortinet."
"Pricing is good. They offer a lot of things, the most important is the support. Every time you upgrade your license, you also get insurance for the equipment. If you have any problem with equipment, they send in new equipment."
"Setup costs and pricing depends on many variables, but it's mostly affordable."
"The main reason we chose Fortinet FortiGate was that the price was better than the competition."
"It has been two years. I don't remember the actual price, but it was affordable. We buy the boxes and then use the license for three years."
"It was worth the money overall. It's good value."
"The price depends on the size of the company. From the beginning, you just want to know the internet bandwidths, speed, and the number of users to be able to offer the right product and model. They have a lot of products in FortiGate according to the size of the company, like 200D and 300D."
"Pricing varies on the model and the features we are using. It could be anywhere from $600 to $1000 to up to $7,000 per year, depending on what model and what feature sets are available to us."
"It is considered on the "high end" of the spectrum."
"The solution’s pricing could be lower."
"The licensing is a bit off because the physical firewall is cheaper than the virtual one. We only have the physical ones as they are cheaper than the virtual ones. We only use the physical firewalls because of the price difference."
"The product is expensive."
"We are in the process of renewing our three-year license, which costs approximately $24,000 USD for the thirty-six months."
"With AnyConnect, it depends on your license. It depends on the number of concurrent users you want to connect."
"The pricing seems fair. It is above average."
"Sophos XGS is a cost-effective solution."
"The licensing is reasonable. Comparing the cost of Sophos XGS with that of Fortinet or Palto Alto firewalls, for instance, it's not that expensive. However, the overall cost depends on the hardware you're using in addition to the licensing cost."
"Sophos XGS is a very expensive solution."
"There is an annual licensing fee to use Sophos XGS. It is an expensive solution."
"The price of the solution is reasonable and their target market is small to medium-sized companies."
"The licensing cost is in the normal range and is not very costly."
"XGS' price could be lower, though it's moderately priced in the market."
"We must purchase separate web server licenses, as they are not included in the regular device license. I would rate the product an eight out of ten in terms of price. It's relatively affordable."
report
Use our free recommendation engine to learn which Firewalls solutions are best for your needs.
824,053 professionals have used our research since 2012.
 

Comparison Review

it_user206346 - PeerSpot reviewer
Mar 11, 2015
Cisco ASA vs. Palo Alto Networks
Cisco ASA vs. Palo Alto: Management Goodies You often have comparisons of both firewalls concerning security components. Of course, a firewall must block attacks, scan for viruses, build VPNs, etc. However, in this post I am discussing the advantages and disadvantages from both vendors concerning…
 

Top Industries

By visitors reading reviews
Educational Organization
22%
Computer Software Company
14%
Comms Service Provider
6%
Manufacturing Company
6%
Educational Organization
35%
Computer Software Company
15%
Government
5%
Manufacturing Company
5%
Computer Software Company
18%
Manufacturing Company
8%
Comms Service Provider
7%
Educational Organization
5%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

Which is the better NGFW: Fortinet Fortigate or Cisco Firepower?
When you compare these firewalls you can identify them with different features, advantages, practices and usage a...
What is the biggest difference between Sophos XG and FortiGate?
From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know...
What are the biggest technical differences between Sophos UTM and Fortinet FortiGate?
As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite ...
Which is better - Fortinet FortiGate or Cisco ASA Firewall?
One of our favorite things about Fortinet Fortigate is that you can deploy on the cloud or on premises. Fortinet Fort...
How does Cisco's ASA firewall compare with the Firepower NGFW?
It is easy to integrate Cisco ASA with other Cisco products and also other NAC solutions. When you understand the Cis...
Which is better - Meraki MX or Cisco ASA Firewall?
Cisco Adaptive Security Appliance (ASA) software is the operating software for the Cisco ASA suite. It supports netw...
What do you like most about Sophos XGS?
The policies are the greatest feature. They allow us to configure granular control over our network traffic.
What is your experience regarding pricing and costs for Sophos XGS?
If the pricing model is more flexible or lower, it would be highly preferable, making it a more competitive option fo...
What needs improvement with Sophos XGS?
The user interface has improved significantly over the past few years, and having a more competitive price model coul...
 

Also Known As

FortiGate 60b, FortiGate 60c, FortiGate 80c, FortiGate 50b, FortiGate 200b, FortiGate 110c, FortiGate, Fortinet Firewall
Cisco ASA Firewall, Cisco Adaptive Security Appliance (ASA) Firewall, Cisco ASA NGFW, Cisco ASA, Adaptive Security Appliance, ASA, Cisco Sourcefire Firewalls, Cisco ASAv, Cisco Firepower NGFW Firewall
No data available
 

Overview

 

Sample Customers

Amazon Web Services, Microsoft, IBM, Cisco, Dell, HP, Oracle, Verizon, AT&T, T-Mobile, Sprint, Vodafone, Orange, BT Group, Telstra, Deutsche Telekom, Comcast, Time Warner Cable, CenturyLink, NTT Communications, Tata Communications, SoftBank, China Mobile, Singtel, Telus, Rogers Communications, Bell Canada, Telkom Indonesia, Telkom South Africa, Telmex, Telia Company, Telkom Kenya
There are more than one million Adaptive Security Appliances deployed globally. Top customers include First American Financial Corp., Genzyme, Frankfurt Airport, Hansgrohe SE, Rio Olympics, The French Laundry, Rackspace, and City of Tomorrow.
Information Not Available
Find out what your peers are saying about Cisco Secure Firewall vs. Sophos XGS and other solutions. Updated: December 2024.
824,053 professionals have used our research since 2012.