No more typing reviews! Try our Samantha, our new voice AI agent.

Citrix SD-WAN [EOL] vs Forcepoint Next Generation Firewall comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Oct 12, 2025

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Citrix SD-WAN [EOL]
Average Rating
8.2
Reviews Sentiment
7.4
Number of Reviews
22
Ranking in other categories
No ranking in other categories
Forcepoint Next Generation ...
Average Rating
7.6
Reviews Sentiment
6.5
Number of Reviews
52
Ranking in other categories
Firewalls (18th), Software Defined WAN (SD-WAN) Solutions (8th), WAN Edge (7th)
 

Featured Reviews

Rohit Ghorpade - PeerSpot reviewer
Cloud Network Engineer at a insurance company with 5,001-10,000 employees
A scalable solution for MCN controller but lacks technical supports, upgrades
There are a few things that can be improved, are domain-based routing and the slowness of virtual parts, and it may be due to the wrong configuration, which we have been unable to find out. Previously, we faced some issues with the slowness part. Apart from that, feature like end gateway level antivirus. We are currently using a NetFlow proxy to establish a virtual position for the NetFlow. Our current environment has many use cases, but we are not using them on the Citrix SD-WAN. When I navigate the NCL part, it involves configuration. I want to highlight this disadvantage. Sometimes, when we push the configuration, it tries to push it to all branch locations. This process takes a lot of time, nearly 30 minutes, to push a single change from the NCL. Overall, I don't think Citrix meets our use cases what we have. This is based on my feedback after using it for the past year and working on this Citrix SD-WAN. However, from my experience, it is the worst solution I have seen. There's no domain-based routing, which is horrible. That's why we are moving to other products. We have checked our use case requirements with Fortinet, Palo Alto, and they meet them. I will consider the PoC or another OEM. There are many things in the area you need to be prompt, like the automation part. If any link or device goes down, alerting notification, etc. We need to perform and highlight so many things to your management. This should be improved.
Ajit Pratap Kundan - PeerSpot reviewer
Pre Sales Lead Government & Defense at Accops Systems Pvt Ltd
Unified security management has improved traffic control and simplified remote workforce access
Forcepoint Next Generation Firewall does help in vulnerability identification and response by providing a single unified console through which I am able to monitor and manage infrastructure. The URL filtering capability of Forcepoint Next Generation Firewall helps in blocking malicious sites. We have to take care of both known threats and unknown threats. The firewall takes care of known threats, and we protect ourselves from unknown threats such as malicious code and malware that we cannot create firewall rules for. With these routing capabilities and policies, only whitelisted things get processed or passed. The biggest advantages of Forcepoint Next Generation Firewall, especially as a partner, service provider, and integrator, are that it is very easy to integrate these APIs with our solution, and most of the features I am getting in the clientless mode. Even with the client mode, it is easy to integrate with our client, allowing the customer to get a single client to address all the features of the firewall as well as the GTNA perspective. The flexibility of deployment, especially for the government and defense sectors, is that they want an on-premises solution, while the rest of the PSUs or enterprise segment are comfortable with the cloud offering, which is the SaaS offering and the way to go in the future.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Citrix SD-WAN helps us in re-routing certain traffic, for example, local internet breakouts for Office 365, and it also helps us to be more agile when we are opening new offices or when we are moving locations."
"The reliability of connectivity is most valuable."
"We tried to use it, and it worked well."
"The most valuable feature is security, as it gives me the port bindings that cannot be accomplished using other solutions."
"The other banks, bank branches, require good connectivity, which is very important for a branch to have, and they managed to have an SLA of almost 100%."
"It's been three years we have deployed this product and I have not had any downtime or any issues with the product."
"The stability is the main feature of Citrix SD-WAN. You can also upgrade the data packages or have less transmission."
"The main advantage of Citrix SD-WAN is that it enables fast communication between our branches and data centers. And, with its cloud management features, it also makes the process of adding new branches into our company network much easier."
"I have found that Forcepoint Next Generation Firewall is easy to use, highly secure, and the main VPN tunnel is created automatically which is a benefit."
"The Forcepoint Next Generation Firewall is a scalable product."
"Forcepoint's stability is satisfactory, for the most part."
"Forcepoint is a very big company with a very good product line, and it fulfills most of the needs of the customers, especially enterprise customers in the financial sector."
"I like the IPS; IPS is the master feature and I depend on the firewall and sandbox."
"With Forcepoint, this process is simplified compared to others like Fortinet."
"The feature that we like the most about Forcepoint is that we know the technology and have confidence in it. We can have several functionalities to simplify operations and management. We can combine functionalities like log ownership to review the number of devices in the infrastructure."
"It is a scalable product; I know a customer who has deployed more than 4,000 firewalls in a single deployment."
 

Cons

"Given that Citrix SD-WAN solved all our problems by providing us with everything we needed to unify communications with our branches and data centers, I cannot suggest anything further in terms of improvements."
"The price is the only thing that could be improved. Citrix is not a cheap solution."
"Citrix SD-WAN does not have the SD-WAN with one optimization in a single license. Other competitors have this option and it should be added to this solution."
"The price could be improved, it's an expensive solution."
"Customer Service: Not great - the first line support for this product is pretty much nil."
"The reports need to be improved. We need to have them customized but they don't have that right now."
"Citrix SD-WAN's knowledge base has a few missing things, so you may need to seek help from support."
"The only improvement for Citrix SD-WAN would be to lower its cost."
"Making this solution easier to use would be an improvement. The implementation could be made easier."
"Forcepoint Next Generation Firewall should make some improvements because there is some instability with their software. Sometimes it could lag or become over-utilized, you need to clear some caches and do some restarts, and sometimes some traffic is being blocked and the reason is not entirely clear."
"They need to increase the local support here. There are also some bugs or fixes on which they need to work. They very well know about these bugs. In terms of licensing, I would like them to either increase the number of features in a single license or make licensing more flexible."
"You do need knowledge of the solution in order to set the product up properly."
"The optimization is not really ready. If you want very good optimization, you have to add it to the network."
"It's a complicated firewall. Until you come to know the firewall inducers, most people don't like the firewall because the components for the firewall are a little bit complex. User-friendliness is a little bit tough. It needs to be user-friendly when creating policies, and pushing policies. Committing takes more time compared to Palo Alto."
"My team is looking for more throughput and better integration with our security framework."
"If I want to allow access to Facebook, yet not allow the user to access videos, then I am not able to do it with this product."
 

Pricing and Cost Advice

"The price of the subscription should be cheaper."
"I'm not quite sure of the price ranges. Roughly, the hidden devices can scale up to $20K for one appliance. However, the branch CPs are USD $1,000 to $2,500."
"It depends on the scale. In our case, it would have been better if we had known about the life cycling steps, but otherwise, it is worth the money."
"It's a little bit on the high side compared to the other products."
"As NetScaler is now, I find it quite pricey."
"The license was a one-time purchase. It's expensive."
"Citrix SD-WAN is quite an affordable product."
"The price is relatively expensive."
"The big advantage of this solution is that we can select the right model for our requirements, which is not too expensive."
"I consider Forcepoint Next Generation Firewall's price to be good."
"The pricing of the solution is normally competitive with other products."
"The cost is fair, but it could be improved."
"Forcepoint Next Generation Firewall is reasonable, it is priced the same as other firewalls."
"It requires a yearly subscription."
"We have found the price could be reduced. It is a little expensive."
"There is a license required to use this solution and we can purchase it for one, two, three, or five years."
report
Use our free recommendation engine to learn which Software Defined WAN (SD-WAN) Solutions solutions are best for your needs.
893,244 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Construction Company
12%
Manufacturing Company
9%
Marketing Services Firm
8%
Computer Software Company
8%
Construction Company
10%
Manufacturing Company
9%
Financial Services Firm
9%
Computer Software Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business7
Midsize Enterprise5
Large Enterprise10
By reviewers
Company SizeCount
Small Business29
Midsize Enterprise11
Large Enterprise12
 

Questions from the Community

What needs improvement with Citrix SD-WAN?
The solution's licensing model could be improved. Citrix SD-WAN is a good product from a technical point of view. However, when you compare its licensing with the prices of competitors, you will se...
What advice do you have for others considering Citrix SD-WAN?
If a customer already has Citrix NetScaler and is not looking to change anything in their existing environment, we proceed with Citrix SD-WAN. However, if a customer is looking for a change because...
What is your experience regarding pricing and costs for Forcepoint Next Generation Firewall?
In terms of price, I would say Forcepoint Next Generation Firewall is not expensive. It is very much comparable to other vendors, and pricing is not a problem, especially for the Asian market, with...
What needs improvement with Forcepoint Next Generation Firewall?
The negative side of Forcepoint Next Generation Firewall is that the ZTNA part is missing. For that, we have to integrate a third-party component with Forcepoint Next Generation Firewall to complet...
 

Also Known As

Citrix CloudBridge, WOC, NetScaler SD-WAN
Forcepoint NGFW, Stonesoft Next Generation Firewall, McAfee Network Security Platform, Intel Security Network Security Platform
 

Overview

 

Sample Customers

AIDS Healthcare Foundation, Cornerstone Home Lending Inc., Dallara, ecVision, Essar, Eurofred, Groupe Promutuel, HMSHost Corporation, Royal Caribbean Cruise Lines Ltd, Royal Caribbean International
California Department of Corrections and Rehabilitation (CDCR)
Find out what your peers are saying about Fortinet, Cisco, Palo Alto Networks and others in Software Defined WAN (SD-WAN) Solutions. Updated: April 2026.
893,244 professionals have used our research since 2012.