No more typing reviews! Try our Samantha, our new voice AI agent.

Citrix SD-WAN [EOL] vs Forcepoint Next Generation Firewall comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Oct 12, 2025

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Citrix SD-WAN [EOL]
Average Rating
8.2
Reviews Sentiment
7.4
Number of Reviews
22
Ranking in other categories
No ranking in other categories
Forcepoint Next Generation ...
Average Rating
7.6
Reviews Sentiment
6.5
Number of Reviews
52
Ranking in other categories
Firewalls (25th), Software Defined WAN (SD-WAN) Solutions (10th), WAN Edge (11th)
 

Featured Reviews

Rohit Ghorpade - PeerSpot reviewer
Cloud Network Engineer at a insurance company with 5,001-10,000 employees
A scalable solution for MCN controller but lacks technical supports, upgrades
There are a few things that can be improved, are domain-based routing and the slowness of virtual parts, and it may be due to the wrong configuration, which we have been unable to find out. Previously, we faced some issues with the slowness part. Apart from that, feature like end gateway level antivirus. We are currently using a NetFlow proxy to establish a virtual position for the NetFlow. Our current environment has many use cases, but we are not using them on the Citrix SD-WAN. When I navigate the NCL part, it involves configuration. I want to highlight this disadvantage. Sometimes, when we push the configuration, it tries to push it to all branch locations. This process takes a lot of time, nearly 30 minutes, to push a single change from the NCL. Overall, I don't think Citrix meets our use cases what we have. This is based on my feedback after using it for the past year and working on this Citrix SD-WAN. However, from my experience, it is the worst solution I have seen. There's no domain-based routing, which is horrible. That's why we are moving to other products. We have checked our use case requirements with Fortinet, Palo Alto, and they meet them. I will consider the PoC or another OEM. There are many things in the area you need to be prompt, like the automation part. If any link or device goes down, alerting notification, etc. We need to perform and highlight so many things to your management. This should be improved.
Ajit Pratap Kundan - PeerSpot reviewer
Manager Solution Consulting at Accops Systems Pvt Ltd
Unified security management has improved traffic control and simplified remote workforce access
Forcepoint Next Generation Firewall does help in vulnerability identification and response by providing a single unified console through which I am able to monitor and manage infrastructure. The URL filtering capability of Forcepoint Next Generation Firewall helps in blocking malicious sites. We have to take care of both known threats and unknown threats. The firewall takes care of known threats, and we protect ourselves from unknown threats such as malicious code and malware that we cannot create firewall rules for. With these routing capabilities and policies, only whitelisted things get processed or passed. The biggest advantages of Forcepoint Next Generation Firewall, especially as a partner, service provider, and integrator, are that it is very easy to integrate these APIs with our solution, and most of the features I am getting in the clientless mode. Even with the client mode, it is easy to integrate with our client, allowing the customer to get a single client to address all the features of the firewall as well as the GTNA perspective. The flexibility of deployment, especially for the government and defense sectors, is that they want an on-premises solution, while the rest of the PSUs or enterprise segment are comfortable with the cloud offering, which is the SaaS offering and the way to go in the future.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"They have a zero downtime failover mechanism, where, when there's a link failure or a link weakness, or bad link conditions, they provide the ability to fail back seamlessly."
"The zero-touch deployment is most valuable for us."
"The SD-WAN solution as it is already is quite feature-rich and the upgrade process is very simple."
"The main advantage of Citrix SD-WAN is that it enables fast communication between our branches and data centers. And, with its cloud management features, it also makes the process of adding new branches into our company network much easier."
"The most valuable feature of Citrix SD-WAN is customization. You are able to customize the solution to your needs."
"It allows you to combine two asymmetrical connections."
"The hands-on customer support and load balancing that come with this solution are above all others on the market."
"The most valuable feature is its reliability."
"The people we deal with is a local partner in Cambodia and we can get good support from them."
"Aside from the expensive training, I honestly can't think of another issue."
"It is a scalable product. I know a customer who has deployed more than 4,000 firewalls in a single deployment."
"The URL filtering is the most valuable aspect of the product."
"I found the initial setup process to be very simple and straightforward."
"Technical support has been quite helpful in the past."
"Forcepoint Next Generation Firewall's IPS feature has four operational modes, including IPS, Layer 2 and Layer 3 Firewalls, and the IPS mode offers many controls, profiles, and signatures for inspecting traffic while allowing for applying firewall rules followed by IPS engine inspection so that many decisions including blocking and controlling traffic actions are possible."
"The central security management center and the content management center are very good."
 

Cons

"The communication around the life cycle would have been really helpful. The main issue we have had is related to the life cycle because some of the things that we are using were discontinued. They were discontinued within a year after we had purchased it, which is a bit painful. If we had known that, we would've made some other decisions."
"The solution's licensing model could be improved."
"Citrix SD-WAN does not have the SD-WAN with one optimization in a single license. Other competitors have this option and it should be added to this solution."
"There are a few things that can be improved, are domain-based routing and the slowness of virtual parts, and it may be due to the wrong configuration, which we have been unable to find out."
"The reports need to be improved. We need to have them customized but they don't have that right now. I would like for them to have better system predictions. We don't have that right now. My system may be working fine right now but after making some changes, that can change."
"I am happy with this product. If anything, its price can be reduced. It is a bit expensive."
"Enhancements are needed to improve the stability."
"Customer Service: Not great - the first line support for this product is pretty much nil."
"The solution needs to add an antivirus profile and anti-spyware profile, not just policies and VPN."
"They should provide more details on potential cyber threats."
"Its interface is complex when compared with a firewall like FortiGate. Forcepoint Next Generation Firewall needs a management console, whereas FortiGate doesn't need any console. When you have a few devices, a console is not really necessary. It's good to have a private console only when you have a lot of devices."
"Forcepoint Next Generation Firewall should make some improvements because there is some instability with their software. Sometimes it could lag or become over-utilized, you need to clear some caches and do some restarts, and sometimes some traffic is being blocked and the reason is not entirely clear."
"It is really hard to work with their customer support. For example, unlike Fortinet where you can escalate an issue and quickly get responses from the development team, Forcepoint's process seems slow and challenging."
"They should have a GUI on the product itself, not a separate management tool to be used on the management server or on a server to be used to manage the file. It should be all in one device. The device should be controlled through its own GUI. They also have to improve the learning center and the documents as the documents don't really help."
"My experience with this Forcepoint Next Generation Firewall wasn't very pleasant due to its complexity. For example, the firewall loses some features when working in a cluster, which is a huge challenge. It caused me several weeks to solve an issue to make the VPN work, even after opening several cases with support. Also, the debug, which should provide essential knowledge about everything going on, the flow of traffic, and how the engine works, wasn't very informative in identifying the issue."
"I would like to see more sizing in the next release, and the roadmap should be clear."
 

Pricing and Cost Advice

"The price is relatively expensive."
"The license was a one-time purchase. It's expensive."
"It is a bit expensive. A cheaper product would be good, but everybody likes things to be cheaper. We bought the devices up front, and then we pay for the annual support."
"I'm not quite sure of the price ranges. Roughly, the hidden devices can scale up to $20K for one appliance. However, the branch CPs are USD $1,000 to $2,500."
"Citrix SD-WAN is quite an affordable product."
"The price of the subscription should be cheaper."
"As NetScaler is now, I find it quite pricey."
"It's a little bit on the high side compared to the other products."
"The big advantage of this solution is that we can select the right model for our requirements, which is not too expensive."
"The solution is expensive."
"Next Generation Firewall is moderately priced."
"Everything in Forcepoint comes with an individual license, which is kind of a problem. In our last meeting, they said that it may change at the beginning of 2021, and they will try to merge some licenses together. Customers will get more features than what they got previously. We will wait and see."
"We have found the price could be reduced. It is a little expensive."
"We have just a subscription for the cloud, and this license is great. The license is so good."
"There is a need to make payments towards the licensing charges attached to the product. The product is not expensive."
"The training that they offer to their end-customers. It's quite expensive, I believe it costs roughly $11,000"
report
Use our free recommendation engine to learn which Software Defined WAN (SD-WAN) Solutions solutions are best for your needs.
908,834 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Construction Company
18%
Outsourcing Company
12%
Financial Services Firm
10%
Manufacturing Company
7%
Construction Company
13%
Financial Services Firm
10%
Manufacturing Company
8%
Outsourcing Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business7
Midsize Enterprise5
Large Enterprise10
By reviewers
Company SizeCount
Small Business29
Midsize Enterprise11
Large Enterprise14
 

Questions from the Community

What needs improvement with Citrix SD-WAN?
The solution's licensing model could be improved. Citrix SD-WAN is a good product from a technical point of view. However, when you compare its licensing with the prices of competitors, you will se...
What advice do you have for others considering Citrix SD-WAN?
If a customer already has Citrix NetScaler and is not looking to change anything in their existing environment, we proceed with Citrix SD-WAN. However, if a customer is looking for a change because...
What is your experience regarding pricing and costs for Forcepoint Next Generation Firewall?
In terms of price, I would say Forcepoint Next Generation Firewall is not expensive. It is very much comparable to other vendors, and pricing is not a problem, especially for the Asian market, with...
What needs improvement with Forcepoint Next Generation Firewall?
The negative side of Forcepoint Next Generation Firewall is that the ZTNA part is missing. For that, we have to integrate a third-party component with Forcepoint Next Generation Firewall to complet...
What is your primary use case for Forcepoint Next Generation Firewall?
The major use cases for Forcepoint Next Generation Firewall are in government turnkey projects where we require a lot of traffic coming from the public domain. That is why we are putting these fire...
 

Also Known As

Citrix CloudBridge, WOC, NetScaler SD-WAN
Forcepoint NGFW, Stonesoft Next Generation Firewall, McAfee Network Security Platform, Intel Security Network Security Platform
 

Overview

 

Sample Customers

AIDS Healthcare Foundation, Cornerstone Home Lending Inc., Dallara, ecVision, Essar, Eurofred, Groupe Promutuel, HMSHost Corporation, Royal Caribbean Cruise Lines Ltd, Royal Caribbean International
California Department of Corrections and Rehabilitation (CDCR)
Find out what your peers are saying about Fortinet, Cisco, Check Point Software Technologies and others in Software Defined WAN (SD-WAN) Solutions. Updated: July 2026.
908,834 professionals have used our research since 2012.