Try our new research platform with insights from 80,000+ expert users

SonicWall NSa vs WatchGuard Firebox comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Sep 16, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Fortinet FortiGate
Sponsored
Ranking in Firewalls
2nd
Average Rating
8.4
Reviews Sentiment
7.2
Number of Reviews
317
Ranking in other categories
Software Defined WAN (SD-WAN) Solutions (1st), WAN Edge (1st)
SonicWall NSa
Ranking in Firewalls
18th
Average Rating
7.8
Reviews Sentiment
7.3
Number of Reviews
86
Ranking in other categories
No ranking in other categories
WatchGuard Firebox
Ranking in Firewalls
13th
Average Rating
8.4
Reviews Sentiment
7.5
Number of Reviews
86
Ranking in other categories
Unified Threat Management (UTM) (4th)
 

Featured Reviews

EhabAli - PeerSpot reviewer
Efficient, user-friendly, and affordable
In the past, NSS Labs was utilized to test files and verify the numbers and datasheets. It would be beneficial to have an organization or testing lab that can verify the numbers in our datasheets since changes are frequently made, which can be inconvenient for review. For instance, when comparing different competitors such as Forcepoint, Palo Alto, and Check Point, the throughput or numbers in the datasheet may be lower than the actual numbers. Conversely, Fortinet typically reports very high numbers, but they cannot be replicated in the real world. Therefore, it would be advantageous for them to partner with a neutral testing organization such as NSS Labs to validate these numbers, thus providing more credibility and comfort to everyone regarding the accuracy of the datasheets. For the migration, everyone has a firewall in use and I am selling Fortinet. Typically, I am replacing another firewall. Previously, there was a tool available to convert configurations from one firewall, such as Palo Alto, to Fortinet, but this tool is no longer free. If it could be made free again, it would be very beneficial. This tool shows a lot of promise and is very good. Making it free would help many companies deliver their products in a more efficient and integrated way. It would also be more valuable to include the tool with the firewall package or license instead of having to pay extra for it. Paying extra puts more pressure on small companies to deliver the firewall and complete the configuration, especially if they have hundreds or thousands of policies. It's very painful to move through these policies line by line. The stability has room for improvement. When it comes to Secure SD-WAN, everything is fine. They are going the right way. SD-WAN is very promising. They can provide the SD-WAN solution separately, but they will not take this approach because even the smallest firewall can support the features, so there is no need to have a separate service or appliance. They are following the right steps, and there is nothing to be improved. Feature-wise, I'm really satisfied with the new release, and the features they have added. For now, it's fine.
MohammedMateen - PeerSpot reviewer
Easy to scale advanced threat protection solution with knowledgeable technical support, but has occasional bugs
An area for improvement in SonicWall NSa is that sometimes, we experience bugs when upgrading, so we have to contact their technical support to fix issues. It would be much easier if this improvement was in place: if the one-time password which is built-in, was provided as an OTP for the administrator logging into the console, so that we'll have a quicker awareness of it, rather than needing to check emails for it. Having a Telegram or WhatsApp bot integrated with the device, for example, will be very helpful for us, so we can instantly take action, without us needing to log into and check our emails, meaning we'll be able to put things right faster. This may not be possible in SonicWall NSa, but I'm also looking for any kind of controller or device for the Windows server or client, e.g. Windows 11 and Windows 10 from SonicWall NSa itself, so that a security domain or the gateway of the organization would be able to identify the latest update for a product, whether that product is installed or not. This feature would be very helpful, and it's what I'd like to see in the next release.
Ronald Lewis - PeerSpot reviewer
Useful VPNs, effective web filtering, and cost effective
The VPN aspect of the WatchGuard Firebox is an area that could potentially benefit from improvement. We encountered difficulties while attempting to integrate Windows 11 laptops into the system, which resulted in unreliable connections. After some research, we discovered that this was primarily due to compatibility issues with Windows 11 and required a patch. However, it was still a challenge as it seemed that even when we tried to keep the laptops on Windows 10, they still exhibited the same issues as Windows 11 machines. Despite WatchGuard attributing the problem to Microsoft, we were eventually able to find a solution and all the machines are now functioning seamlessly. The solution comes with a web interface that facilitates configurations, but it doesn't have the same level of functionality as the installed client or system manager. The web UI could be further improved. In a future release, the detection of ransomware would be helpful. Ransomware is our biggest fear.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Fortinet FortiGate is easy to use. Anyone can easily maintain it."
"The most valuable features are the possibility of having one fabric for switching on security."
"The most useful functionality of Fortinet FortiGate is the user interface, multiple engines, and their cloud with the latest integrations. Additionally, the Security Fabric tool is very good."
"I have found Fortinet FortiGate to be scalable."
"Advanced routing (RIP, OSPF, BGP, PBR). It gives you a seamless and simple integration into a large network."
"FortiGate firewalls are easy to manage through a user-friendly web interface. They also have advanced features like DDoS and DLP. However, I wouldn't recommend enabling all of these features on one device because it can cause performance issues."
"Fortigate's most valuable feature is that it doesn't need a push policy when writing rules."
"Customers are more inclined towards FortiGate because of application control, web filtering, and anti-spam features. The support from the FortiGate team is good, and price-wise, it is affordable."
"We have utilized all the features. The most valuable are the URL filtering by category, DMZ zoning, load balancing and site-to-site VPN."
"The most valuable aspect of the solution is its ability to work like any other firewall."
"We can do the hosting and security all under one box. The UTM is a good feature."
"The most valuable features of this solution are the GUI pre-filtering and the ATP (advanced threat protection)."
"For me, the most valuable feature of SonicWall NSa is the UTM."
"SonicWall's sales support is much better than other vendors'."
"Content filtering reduces the load on the available bandwidth and restricts employees from using distracting websites on the job, which leads to more productive hours."
"Easy to setup and implement"
"The most valuable feature is the GUI, especially the real-time bandwidth usage report. Also, its integration with WiFi access points is nice."
"Their support is excellent, and the stability is very good."
"It's hard to pick one feature over another. But if I had to pick one, the UTM would be the most valuable because of the notification. I get notified via email if there is any type of threat detection or alert, telling me something is wrong."
"The client is easy to use and stable"
"WatchGuard Firebox is easy to configure and has a nice user interface."
"WatchGuard has a very easy VPN and branch office VPN setup, so we use those pretty extensively."
"What I found most valuable in WatchGuard Firebox is that it's a functional platform that works, and each of its features works well. The solution also has good reporting and dashboard capabilities. I also find the overall performance of WatchGuard Firebox great."
"The security that is used for defending from the attacks is very good."
 

Cons

"I don't like that anything more than very basic reporting is not included."
"Bandwidth usage in reporting could be improved for Fortinet FortiGate."
"We sometimes have issues with FortiGate's routing table in the latest firmware update. We had to downgrade the device because our customers complained about bugs."
"Technical support needs to be improved."
"The customization could be improved. Cisco, for example, is much better at this. They need to work to be at least as good as they are."
"The anti-malware engine could use an upgrade."
"Though the tool's GUI is user-friendly, it can be considered as an area with certain shortcomings where improvements are required."
"Fortinet doesn't provide multiple virtual firewalls which would facilitate end users and customers."
"The reporting feature could be better because most of the companies want to have the analytics included, which is something that you have to buy separately."
"A room for improvement in SonicWall NSa is the log server because it could be more user-friendly compared to Fortinet and Palo Alto Networks. My company has many rule sets up for review, so sometimes, my team needs to use Excel for filtering, but the UI cannot support the Excel function."
"The scalability is something that should be improved."
"They are not ready for managed security services. Their Cloud GMS product is weak, barely out of beta (buggy)."
"We have security as a service, and they make recommendations about adding to the denylist and other things. That part could be more accessible and more user-friendly. I'd like to see SonicWall add a user-friendly interface where our internal team can drag and drop everything."
"The cost could be lower. There could also be more flexibility for smaller companies."
"When it comes to security I think all of the features are currently open to improvement."
"The filter settings are confusing and overly complicated. The user interface can be improved."
"Some of the configuration options are somewhat confusing."
"The only problem I have with Firebox is the grouping issue. When implementing a rule using a group of IPs, it is not possible to do that directly."
"Make WatchGuard Firebox capable of integrating with third-party vendors like FireMon, Splunk, Tenable, etc."
"I would like to see the devices made more flexible by adding modules to increase the ports that we can use."
"A 12-hour power outage... got our batteries."
"I think one area for improvement in this solution would be enhancing communication with tools like Active Directory. This would make the tool easier to integrate and effective for users."
"One area for improvement is the limitation in the product portfolio compared to competitors like Fortinet, which offers a broader portfolio including Authentication, VPNs, FortiMail, Sandbox, and Email Security."
"The software in it could be a bit more friendly for an amateur user. I look at it and don't understand what half the stuff is. Looking at the interface, it is all mumbo-jumbo to me. It's not a simple interface. You have to be an IT guy to understand it. It is not for your average person to use, then walk away from it. It is much more entailed."
 

Pricing and Cost Advice

"The price of Fortinet FortiGate is reasonable."
"It was probably about $2,500 per firewall. It was all included. It included support, services, threat management software, and 24/7 FortiCare on it. Cisco products are more expensive."
"FortiGate's pricing falls within the mid-range when compared to other leading firewall solutions."
"Fortinet FortiGate is reasonably priced."
"The pricing depends on the FortiGate model we are using, ranging from $3,000 to $20,000 US dollars."
"The price for the device and software is high. However, the solution is of good quality and has a lot of features."
"I had to pay for the license for the firewall, but it is guaranteed to have updates. I expect a good service for it. It was about €1000 for a year, and there was no additional cost."
"It's a very full-featured and it's priced well solution."
"There are different pricing models for SonicWall NSa."
"There is a license required for this solution and you can purchase a one, two, or three year term. Typically businesses choose the one year subscription and then later choose the three year licensing option if they are satisfied."
"NSa is not expensive, not high. It's at a moderate or medium level."
"SonicWall NSa has two types of license. The advanced license is a bit expensive when compared to the comprehensive license, but when you compare the advanced license to the licensing cost of other brands or competitors, it is expensive."
"Licensing fees are paid on a yearly basis, and we are happy with the pricing."
"Its price is okay."
"The solution is cheaper than others."
"The price is reasonable."
"The pricing of WatchGuard is probably a little higher than the SonicWall, but it makes up for it in dependability. It's worth it to me, especially since it's not much higher. For just a little bit higher price you get the dependability of the firewall with the WatchGuard brand."
"There is an additional cost for support on top of licensing. When I bought my new unit, I received additional time added to my support."
"Each one, for the primary unit, was $8,600 and the High Availability unit was $2,000. That's with three years of subscription and support and the Total Security Suite."
"I haven't seen the pricing since 2017, but it was competitive. SonicWall, Barracuda, and WatchGuard were all about the same price when we did our last pricing."
"I buy a three-year renewal on the main device, which is usually around $3,000 to $4,000. They usually upgrade the device when I do it. You get a big discount when you do three years."
"WatchGuard had a very competitive price. It was only 10 to 20 percent more than a single instance device but with that extra cost it provided a second load balancing device... unlike other brands whose method of hardware and software licensing would have doubled our cost."
"The pricing was in line with everyone else; maybe slightly higher."
"WatchGuard Firebox has good quality, but it is expensive."
report
Use our free recommendation engine to learn which Firewalls solutions are best for your needs.
831,683 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Educational Organization
22%
Computer Software Company
14%
Comms Service Provider
6%
Manufacturing Company
6%
Computer Software Company
15%
Manufacturing Company
7%
Educational Organization
6%
Government
6%
Computer Software Company
17%
Comms Service Provider
10%
Hospitality Company
6%
Retailer
5%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

Which is the better NGFW: Fortinet Fortigate or Cisco Firepower?
When you compare these firewalls you can identify them with different features, advantages, practices and usage a...
What is the biggest difference between Sophos XG and FortiGate?
From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know...
What are the biggest technical differences between Sophos UTM and Fortinet FortiGate?
As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite ...
What do you like most about SonicWall NSa?
The product blocks access when I visit unrecognized websites.
What is your experience regarding pricing and costs for SonicWall NSa?
SonicWall is much cheaper compared to Fortinet, particularly regarding renewal and licensing costs.
What needs improvement with SonicWall NSa?
I would like more free VPN licenses. It would be beneficial if they could enhance the analytics part. It needs to be ...
What is your primary use case for WatchGuard Firebox?
We are providing our services to all WatchGuard customers in the region.
What is your primary use case for WatchGuard Firebox?
We just use it as a secondary WiFi device. We're a small office and we needed to set up a WiFi device for a few of ou...
What is your primary use case for WatchGuard Firebox?
We're a hospital and we use it for developing our incoming and outgoing policies, and we also use it for VPN.
 

Also Known As

FortiGate 60b, FortiGate 60c, FortiGate 80c, FortiGate 50b, FortiGate 200b, FortiGate 110c, FortiGate, Fortinet Firewall
NSA 250M, NSA 2600, NSA 3600, NSA 4600, NSA 5600, Dell SonicWALL NSA
No data available
 

Overview

 

Sample Customers

Amazon Web Services, Microsoft, IBM, Cisco, Dell, HP, Oracle, Verizon, AT&T, T-Mobile, Sprint, Vodafone, Orange, BT Group, Telstra, Deutsche Telekom, Comcast, Time Warner Cable, CenturyLink, NTT Communications, Tata Communications, SoftBank, China Mobile, Singtel, Telus, Rogers Communications, Bell Canada, Telkom Indonesia, Telkom South Africa, Telmex, Telia Company, Telkom Kenya
Orange County Rescue Mission, First Source, Michaels & Taylor, Green Clinic Health System, Aspire Chiltern Skills and Enterprise Centre, UnitedStack, Faith Lutheran College Redlands, Celtic Manor Resort, Star Kay White, Air Works, Unimat Life, NHS Yorkshire and Humber Commissioning Support (YHCS), Hutt City Council, Mato Grosso do Sul, Nspyre
Ellips, Diecutstickers.com, Clarke Energy, NCR, Wrest Park, Homeslice Pizza, Fortessa Tableware Solutions, The Phoenix Residence
Find out what your peers are saying about SonicWall NSa vs. WatchGuard Firebox and other solutions. Updated: January 2025.
831,683 professionals have used our research since 2012.