Try our new research platform with insights from 80,000+ expert users

Juniper vSRX vs Sangfor NGAF comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Apr 6, 2025

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Fortinet FortiGate
Sponsored
Ranking in Firewalls
2nd
Average Rating
8.4
Reviews Sentiment
7.2
Number of Reviews
328
Ranking in other categories
Software Defined WAN (SD-WAN) Solutions (1st), WAN Edge (1st)
Juniper vSRX
Ranking in Firewalls
22nd
Average Rating
7.8
Reviews Sentiment
7.1
Number of Reviews
36
Ranking in other categories
Virtualization Security (4th), Unified Threat Management (UTM) (7th)
Sangfor NGAF
Ranking in Firewalls
19th
Average Rating
8.0
Reviews Sentiment
6.5
Number of Reviews
36
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of April 2025, in the Firewalls category, the mindshare of Fortinet FortiGate is 21.1%, up from 17.7% compared to the previous year. The mindshare of Juniper vSRX is 0.2%, up from 0.2% compared to the previous year. The mindshare of Sangfor NGAF is 1.3%, up from 0.8% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Firewalls
 

Featured Reviews

EhabAli - PeerSpot reviewer
Efficient, user-friendly, and affordable
In the past, NSS Labs was utilized to test files and verify the numbers and datasheets. It would be beneficial to have an organization or testing lab that can verify the numbers in our datasheets since changes are frequently made, which can be inconvenient for review. For instance, when comparing different competitors such as Forcepoint, Palo Alto, and Check Point, the throughput or numbers in the datasheet may be lower than the actual numbers. Conversely, Fortinet typically reports very high numbers, but they cannot be replicated in the real world. Therefore, it would be advantageous for them to partner with a neutral testing organization such as NSS Labs to validate these numbers, thus providing more credibility and comfort to everyone regarding the accuracy of the datasheets. For the migration, everyone has a firewall in use and I am selling Fortinet. Typically, I am replacing another firewall. Previously, there was a tool available to convert configurations from one firewall, such as Palo Alto, to Fortinet, but this tool is no longer free. If it could be made free again, it would be very beneficial. This tool shows a lot of promise and is very good. Making it free would help many companies deliver their products in a more efficient and integrated way. It would also be more valuable to include the tool with the firewall package or license instead of having to pay extra for it. Paying extra puts more pressure on small companies to deliver the firewall and complete the configuration, especially if they have hundreds or thousands of policies. It's very painful to move through these policies line by line. The stability has room for improvement. When it comes to Secure SD-WAN, everything is fine. They are going the right way. SD-WAN is very promising. They can provide the SD-WAN solution separately, but they will not take this approach because even the smallest firewall can support the features, so there is no need to have a separate service or appliance. They are following the right steps, and there is nothing to be improved. Feature-wise, I'm really satisfied with the new release, and the features they have added. For now, it's fine.
Stratos-Margaritis - PeerSpot reviewer
The ease of installation and licensing are also significant advantages
We use the application filtering, content filtering, and intrusion prevention system (IPS) features. These features are crucial for our network security. The ease of installation and licensing are also significant advantages, as it allows us to have one license for all products, which simplifies upgrading and maintenance. Additionally, the ease of deployment is critical for us.
Zaid Farooqui - PeerSpot reviewer
Enhanced threat detection with integrated security features and good support
We are using application firewalling, WAF, and SD-WAN. The capabilities are mostly within the box. For example, you will get web application firewall WAF as part and parcel of this. SD-WAN is also bundled. It integrates with their SIEM and SOAR solutions very nicely. Lastly, the pricing point is very cost-efficient as well.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Fortinet has a very good solution for Secure SD-WAN. One very good feature is that they have robust and simple FortiOS through which they provide all solutions. That's their strength. There's not much complexity involved with the Secure SD-WAN solution of Fortinet as compared to Cisco's solution, which has a lot of flexibility but complexity also comes with that flexibility."
"SSL-VPN is very useful for us and has been very reliable."
"The most valuable feature is the ease of use."
"Web filtering and two-factor authentication are great features."
"The pricing is excellent. It's much less expensive than Cisco."
"The features that I have found most valuable are that it is good to use, and most importantly, the pricing. The customer especially likes the discount when they trade up or something like that."
"I'm looking forward to FortiGate's dashboard features, insights, application oversight, and monitoring, which could help us significantly."
"The most valuable features are simplicity, management, and that it's constantly evolving."
"The ease of installation and licensing are also significant advantages, as it allows us to have one license for all products, which simplifies upgrading and maintenance."
"The technical support services are excellent."
"The features we found most valuable are using the IDS and IPS during protection. The application filtering feature is great."
"It's much faster to deploy a power source. If you need to deploy a firewall in the cloud of software, it's much easier and much faster than deploying the office firewall in a rush."
"One of Juniper vSRX's most valuable features is its integration with safety applications. It keeps the software secure from developers without relying on third-party solutions."
"This solution works well. Their switches and firewall are good."
"Juniper is more flexible with the commit check and the commit confirmed command. The design of the forwarding and contract plan in the operating system is very important for the performance when we have very big traffic."
"The support is excellent."
"We can utilize our own network rather than paying for a private one."
"In terms of the most valuable features, the IPS report is quick and updated. Performance is also valuable."
"Sangfor NGAF's standout feature is its powerful application control, enabling precise restrictions on mobile user access to approved applications."
"In our hospital, Sangfor NGAF works well for us in terms of ensuring confidentiality and availability, which are crucial in the healthcare industry."
"The tool's performance is good."
"It seems to be a durable, stable product."
"Particularly good in the DPI where we can inspect inbound and outbound traffic."
"The top functionality is the reporting feature."
 

Cons

"The support structure needs to be improved because every time we contact them, there is a delay in the response."
"I would like to see improvements made to the dashboard and UI, as well as to the reporting."
"Performance and technical support are the main issues with this solution."
"Fortinet already improved FortiGate, but in the current market, many brands of security devices have improved together. Fortinet still needs to catch up with market standards. Fortinet is lacking in features in comparison to competitors."
"There can be more security in hybrid implementations. When a customer has a hybrid environment where some parts are in the cloud, we need a consistent security solution for such scenarios."
"Its reporting can be improved. Sometimes, I don't get proper reports."
"The user interface could be improved to make it less confusing and easier to set up."
"I need user-behavior analytics, to find threat scenarios from inside the organization, insider attacks. That would be very helpful for us. In addition, I would like next-generation features for small and medium businesses. These businesses require UTM, all in one product. Fortinet must include it."
"Right now, we are going through issues and problems where the product gets dropped with the connection or during the authentication initial phase. While it could be our problem, we would like to see more stability in this area."
"Juniper vSRX is expensive."
"The solution can be improved by allowing automatic updates for the OS devices."
"I've talked to people that say Juniper now, as a device, can be a solution for a data center, but in the past, I have not seen this as being possible."
"It should also support modern data technologies like zero-day protection and zero-trust network access."
"The biggest downside of Juniper vSRX is its pricing, which may be too high for smaller organizations. While it's a decent solution, the cost may limit its accessibility to smaller customers."
"In the next release, I would like to see improvements made to the GUI because it isn't very good."
"The GUI really needs a lot of work, and it has got worse with successive version updates."
"I feel Sangfor should follow the hierarchy and close deals via resellers instead of closing it all with their own team."
"They need to improve their research team and they need to study their data to analyze it and build the product."
"Sangfor has recently increased their prices."
"Sangfor could improve their interface capacity on the 5100 series model and upgrade their hardware from one gig to 10 gig. This would improve the overall throughput."
"They need to increase the number of ports in the firewall."
"An area for improvement would be the number of ports defined on the box. In the next release, I would like them to develop their provisioning stage of enrolling end devices."
"The solution has too many bugs and these slow down the implementation."
"The support for YouTube or the Internet is not enough."
 

Pricing and Cost Advice

"We purchased a five-year bundle package, which worked out cheaper than competing solutions."
"The cost of Fortinet FortiGate is competitive and not expensive compared to other enterprise- grade solutions. On average, the license cost per year is around seventy percent of the firewall's purchase price."
"The price of Fortinet FortiGate is better than Cisco, Check Point, and Palo Alto. In terms of pricing, it's probably a better-priced firewall solution overall."
"It is affordable. Palo Alto is much more expensive than Fortinet."
"Fortinet FortiGate's price can be reduced."
"The price of Fortinet FortiGate is affordable. Most of our customers are on a three-year license to use the solution. All the features and support are included in the price."
"The Indian market is different than the European and American markets. When you compare they need to be a bit more aggressive on pricing."
"The main reason we chose Fortinet FortiGate was that the price was better than the competition."
"The solution is inexpensive."
"The pricing is reasonable."
"It is not that costly."
"After some research, I think that the cost of Juniper is more than Check Point, Palo Alto, and Fortinet."
"We like pricing through the AWS Marketplace."
"Our experience purchasing the solution through the AWS Marketplace was good."
"The solution could have been cheaper."
"I rate the tool's pricing a five out of ten."
"For four to five physical appliances for a licensed firewall, it costs approximately $4,000."
"If you know you have around 200+ computer users on your network, then the Sangfor NGAF 5200-F-I model would be the minimum recommended model for that amount of users. This model includes modules for packet filtering, deep packet inspection, malware scanning, DSCP filtration, and many other features."
"The price falls in the mid-range, neither exceptionally low nor high."
"The license of Sangfor NGAF can be purchased at different interval lengths, such as annually or three years. They offer a range of packages to choose from, such as combo or hybrid packages. We are using the complete solution package which includes IM, NGF and SSL VPN, and WAF."
"Sangfor NGAF is a cheaply priced product, especially if I consider the previous product that was used in my company."
"Sangfor NGAF price is reasonable and there is an annual license. However, the maintenance cost can be a bit high."
"The pricing is reasonable."
"If one is very cheap and ten is very expensive, I rate the tool's price as three out of ten."
report
Use our free recommendation engine to learn which Firewalls solutions are best for your needs.
848,396 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Educational Organization
21%
Computer Software Company
14%
Comms Service Provider
7%
Manufacturing Company
6%
Educational Organization
82%
Computer Software Company
3%
Financial Services Firm
2%
Government
1%
Computer Software Company
13%
Manufacturing Company
11%
Financial Services Firm
8%
Educational Organization
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

Which is the better NGFW: Fortinet Fortigate or Cisco Firepower?
When you compare these firewalls you can identify them with different features, advantages, practices and usage a...
What is the biggest difference between Sophos XG and FortiGate?
From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know...
What are the biggest technical differences between Sophos UTM and Fortinet FortiGate?
As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite ...
What do you like most about Juniper vSRX?
One of Juniper vSRX's most valuable features is its integration with safety applications. It keeps the software secur...
What is your experience regarding pricing and costs for Juniper vSRX?
The pricing is competitive, being neither the most expensive nor the cheapest option. It falls within the medium to h...
What needs improvement with Juniper vSRX?
I would suggest improving the pricing, particularly the licensing model. Although it is currently quite reasonable, m...
What do you like most about Sangfor NGAF?
I think Sangfor NGAF is more valuable than Cisco products because of its simplicity and ease of management. If I comp...
What is your experience regarding pricing and costs for Sangfor NGAF?
The licensing cost is quite high compared to other available firewalls in the market.
What needs improvement with Sangfor NGAF?
The cost of licensing is very high compared to other firewalls available here. There should be improvements in hardwa...
 

Also Known As

FortiGate 60b, FortiGate 60c, FortiGate 80c, FortiGate 50b, FortiGate 200b, FortiGate 110c, FortiGate, Fortinet Firewall
No data available
Sangfor NGAF Firewall Platform
 

Overview

 

Sample Customers

Amazon Web Services, Microsoft, IBM, Cisco, Dell, HP, Oracle, Verizon, AT&T, T-Mobile, Sprint, Vodafone, Orange, BT Group, Telstra, Deutsche Telekom, Comcast, Time Warner Cable, CenturyLink, NTT Communications, Tata Communications, SoftBank, China Mobile, Singtel, Telus, Rogers Communications, Bell Canada, Telkom Indonesia, Telkom South Africa, Telmex, Telia Company, Telkom Kenya
Expedient Data Centers
The Ministry of Science, Technology, and Innovation (Indonesia), Lawson, Inc. (Philippines), Universiti Sultan Zainal Abidin (Indonesia), TEK Automotive (Italy), etc.
Find out what your peers are saying about Juniper vSRX vs. Sangfor NGAF and other solutions. Updated: April 2025.
848,396 professionals have used our research since 2012.