No more typing reviews! Try our Samantha, our new voice AI agent.

Cloudflare One vs VMware VeloCloud SD-WAN comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Apr 5, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

iboss
Sponsored
Ranking in Secure Access Service Edge (SASE)
8th
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
22
Ranking in other categories
Secure Web Gateways (SWG) (5th), Internet Security (3rd), Web Content Filtering (1st), Cloud Access Security Brokers (CASB) (7th), ZTNA as a Service (8th)
Cloudflare One
Ranking in Secure Access Service Edge (SASE)
10th
Average Rating
8.6
Reviews Sentiment
6.5
Number of Reviews
23
Ranking in other categories
Email Security (20th), Secure Web Gateways (SWG) (12th), Data Loss Prevention (DLP) (21st), Cloud Access Security Brokers (CASB) (13th), Distributed Denial-of-Service (DDoS) Protection (8th), Software Defined WAN (SD-WAN) Solutions (12th), Access Management (11th), Bot Management (3rd), ZTNA as a Service (9th), ZTNA (4th), Remote Browser Isolation (RBI) (3rd)
VMware VeloCloud SD-WAN
Ranking in Secure Access Service Edge (SASE)
12th
Average Rating
8.2
Reviews Sentiment
6.6
Number of Reviews
55
Ranking in other categories
Software Defined WAN (SD-WAN) Solutions (6th), WAN Edge (5th)
 

Featured Reviews

Ashok Ananthula - PeerSpot reviewer
Senior Consultant Proxy Engineering at a financial services firm with 10,001+ employees
Cloud gateway has strengthened remote web security and now needs better Mac and ISP support
The problem our organization had is that iboss failed for the Mac devices. It is not able to give a successful agent for the Mac agents. That is where in 2025, we had to migrate to the Palo Alto-based platform. If your use case is for just Windows laptops,you can consider this platform as an option One issue is the data center resiliency part. In India especially, they are not tied up with the Tier 1 ISPs like Tata or Airtel; they were having Tier 2 ISPs and encountered many issues reaching few major sites that my organization depends on, and they were having problems that they could not fix quickly. They also lack a mechanism to route that traffic within their data center; rather, they ask customers to make a pac file change to route it to Singapore explicitly. It would be better if they route from their backend , i mean even if I send it to India DC, they should be able to route it internally to make that work; however, they fail to do that and ask the customer to route it in the pac file. Another suggestion is that in China, they do not have the proper setup; they used to have numerous problems with slowness and lack of premium circuits in China as well. That leads to multiple sites working slowly with latency-related issues. So the main issue is the ISP-related problems that need to be solved.
CV
Network Architect at IP Dimension
Cloud security has improved remote access and has reduced costs for smaller client sites
I have used Cloudflare One's Identity-Aware Proxy, and it is quite straightforward from what I have seen so far. The app registration on the Azure side integrates fully into Cloudflare, and I am very satisfied with that part because it is easy to set up. The integration of Cloudflare One's Secure Web Gateway and Zero Trust Network Access works without any issues. That part is pretty automatic, and if you complete the rest of the setup, it comes together by itself with no issues from my side. What makes it nice is that we can actually start replacing on-site firewalls at this stage for the smaller clients because it does not matter if they go to a coffee shop or work from home; they are still secured by the same connection. The hops get shorter and you get better latency. We have done testing to see if it is better. One thing that we did notice with our proof of concept with our current client is that they have people connecting from the UK. When they used their previous VPN solution, uploading CAD drawings and other files to the server took a long time. They mentioned that it is much quicker on Cloudflare One's solution. I definitely believe that is part of the improved performance, and I am satisfied with that as well. What is nice about Cloudflare One is that it makes the setup easier and also easier to train technicians to maintain it. Compared to legacy systems, we do not need to get fancy firewalls in place that are costly. That is definitely also a cost-saver with Cloudflare One.
Mohammed Gawas - PeerSpot reviewer
Senior Network Engineer at evolved systems
Enhancements in deployment and monitoring simplify network implementation experience
We are dealing with VMware products including VMware VeloCloud, Cisco Catalyst, and Fortinet FortiGate as a system integrator, handling customer requests.We utilize VeloCloud's centralized orchestration for traffic prioritization. The impact of VMware VeloCloud SD-WAN's Dynamic Multi-Path Optimization on network application performance has been significant. We have tested this feature multiple times, and it was really powerful for steering traffic and packet regeneration, resulting in better flow. We have leveraged the automatic link resiliency feature in VeloCloud SD-WAN, conducting a VoIP test scenario that involved disconnecting link A and seamlessly shifting traffic to link B without any packet loss. However, we have not sold any CPE for VeloCloud in the last one and a half years due to the impact of Broadcom's acquisition. The significance of VeloCloud SD-WAN's deployment flexibility in an organization's network strategy is critical now, as every organization needs to reduce costs and undergo digitalization. SD-WAN provides security and quality of service without needing costly links such as MPLS, and using this CPE from VMware meets the SLA the customer needs. I evaluate VeloCloud's comprehensive visibility into network traffic as enhancing the network security posture. It provides detailed information such as user IP addresses, MAC addresses, and operating systems, giving us visibility for everything related to which customer, end user, application, and link are involved. On a scale of one to ten, I rate VMware VeloCloud SD-WAN a nine.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Technical support is pretty sharp and very responsive."
"iboss is easy to use despite its complexity. Multiple engineers manage it, but it's significantly more straightforward to administer than traditional VPNs and web proxies."
"First of all, the security policies are essential. I do not have to rely solely on Active Directory for our users."
"This product is solid, fairly easy to use, and reliable."
"Content filtering is the most useful feature of iboss."
"We chose iboss for both zero trust and proxy (SWG) because their SWG was superior."
"The solution has massively improved our security posture, giving us full visibility into what our staff does online."
"Valuable features: Within the filter: Controls (Web categories, applications, and Allow/Block list) and Network (local Subnets). Within the reporter: Logs (Event Log) and Reports."
"The tool also offers good scalability, and the dashboard, along with real-time analytics, is very good."
"It's a perfect solution from my perspective; it's easy to understand and easy to configure."
"It will take the blow rather than our applications should an attack occur."
"The capabilities of the software are strong enough for me to do what it's supposed to do. For me, we don't need to do a lot of configuration on our site. We just enable it and monitor it."
"Cloudflare DDoS mitigates DDoS attacks."
"Enables me to work from two locations."
"I'm very satisfied with the environment and the dashboard."
"It's the endpoint exposition. We don't need to expose our VPN server to the internet and need a zero-test solution. I can apply some conditional access to the endpoint that's connecting to our network to check their security policies or the security condition of their workstation. Once the workstation is trying to connect to my internal network, then I would like to check the discrete condition of these endpoints that are trying to access my internal network. We created some conditional access. We have CrowdStrike, to check if the CrowdStrike is installed, to check if it's updated, and to check for Windows updates. We created some conditional policies to check it."
"I like VMware SD-WAN's automation and zero-touch provisioning. Its main advantage is simplicity. Anyone can use this gateway."
"VeloCloud provides very good performance, support, portal configuration, and service integration — I think that it's perfect."
"If one circuit crashes, we are able to switch to a second circuit without any disruption in connection."
"The product is consistent and is one of the best despite the competition."
"The biggest feature is called D.M.P.O., or Dynamic Multipath Optimization, which is one of the technologies that they use to deliver or ensure data integrity."
"When we upgrade to one of the edges, it goes very smoothly."
"The installation is a straightforward process, and you don't need very many people on your tech team."
"SD-WAN is cloud-based and you can manage multiple sites within one single pane of glass."
 

Cons

"The reporting feature needs improvement."
"The area I would like to see improvement in is the ability with in the reporter to navigate directly to the content the user is traversing. It is kind of there, but it's not perfect. Quite frequently, I receive links that lead me to pages with error messages."
"SSL decryption: We had issues with learners using apps instead of using web browsers. This type of encryption is tough for any appliance in a BYOD environment."
"Their on-premise hardware's network interface is capped at one gigabit, which is sort of a problem. If you stand a filter up where all traffic flows through that, according to them, in order to go above a gigabit, you have to have multiple devices, which in today's IT seems a little bit silly. They could easily put in an SFP port into their device that could accommodate 10 gigs or at least offer a box."
"It is stable, but due to growth, it can sometimes be less stable than wanted."
"Our biggest problem with their service was it did not recognize the device and filtering did not always work correctly."
"File integrity monitoring would be very advantageous as an additional feature."
"Fold that in with the risk intelligence they're getting from all of the different subscriptions they are a part of. Now, these security companies subscribe to things like emerging threats, databases, etc. You can fold all this intelligence to decide what's happening on an endpoint. I would love to see them start moving into that space. That would compete directly with Microsoft. Maybe that's why they haven't. Having that ability native within the solution would be great. The other area in which I would love to see improvement is more detailed descriptions of why they block websites."
"The tool should provide on-premise versions. Currently, all versions are cloud-based."
"The free plan has limitations. For example, I can only set up three rules, and the application firewall is unavailable."
"Operating and tuning the product is difficult."
"When there are any dynamic changes in complex applications, the tool takes a lot of time, making its analytics-related area a major matter of concern where improvements are needed."
"Cloudflare One is not very powerful, but for what we require, it is basic and sufficient."
"The onboarding process can be improved a little bit."
"Feedback could be enhanced. While I work efficiently with Clover as a partner in Mexico City, sometimes the information and requests are easier to manage with more concrete solutions."
"The pricing is an area that can be improved. Pricing, as far as I recall, was the source of our problems."
"Its integration with the security systems would be a nice implementation. They can also consider using a management platform for both network and security operations. This would be a great improvement."
"The licensing model of VMware SD-WAN could be improved, it is not always that competitive."
"Currently, I don't see any such good documentation compared to their competitors, like Cisco, etc."
"There might be potential enhancements in better integration with other platforms, increased stability, and heightened security."
"I would like to see more features added to increase visibility."
"The reporting feature needs improvement. Unlike the comprehensive reports we receive from Palo Alto for our firewalls, VMware VeloCloud SD-WAN doesn't offer detailed reports that effectively convey the solution's benefits to management."
"Some of the service providers that use VeloCloud as their SD-WAN should be enabled to have better global visibility."
"The scalability is giving us problems at the moment. We want to put this as, for example, a primary MPLS, with internet secondary, and cellular tertiary, the LTE device doesn't even failover between them, however."
 

Pricing and Cost Advice

"It is probably in line with other solutions, but I do not deal with the financial side."
"The overall pricing for iboss is very competitive and transparent."
"It is expensive compared to one of its competitors."
"We had the cost of purchasing a new appliance along with the implementation and licensing costs. However, the following year, the cost of just licensing was similar to what was paid the previous year for a new appliance along with the implementation and licensing costs."
"It is not expensive, and it is also not cheap. iboss is priced right in the sweet spot for the number of features it offers."
"We have not priced the solution recently, but they were competitive with other vendors in the past."
"The pricing is somewhere in the middle. I would rate the pricing a seven out of ten."
"My company has to make yearly payments towards the licensing costs attached to the solution. There are no hidden charges apart from the licensing costs of the solution."
"The pricing of the solution is cheap. The licensing cost is also very low. I rate the cost and pricing a three out of ten."
"The price tag is no longer $200,000, but rather $300,000 to $400,000. It's twice."
"The solution's pricing lacks transparency."
"Cloudflare Zero Trust Platform's pricing is good."
"The solution is not that expensive."
"The prices are slightly expensive."
"The price is reasonable for this solution, but the only challenge for us is that the Rand currency fluctuates to the dollar and provides some complexities. The price might go up just because the Rand has actually lost value."
"The cost of VMware SD-WAN is high, but I think you can still get better pricing if your volume is high."
"We make monthly payments toward the licensing costs of the solution."
"The price of VMware SD-WAN is less expensive than some solutions, such as Cisco."
"Price would be a challenge for customers, because it is expensive."
"There is only a standard fee for the solution."
"The price of this solution should be lower."
"VMware SD-WAN provides competitive pricing."
report
Use our free recommendation engine to learn which Software Defined WAN (SD-WAN) Solutions solutions are best for your needs.
900,747 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
11%
Manufacturing Company
10%
Computer Software Company
8%
Construction Company
7%
Construction Company
19%
Comms Service Provider
10%
Financial Services Firm
9%
Manufacturing Company
8%
Manufacturing Company
10%
Financial Services Firm
10%
Construction Company
10%
Retailer
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business7
Midsize Enterprise7
Large Enterprise8
By reviewers
Company SizeCount
Small Business10
Midsize Enterprise1
Large Enterprise12
By reviewers
Company SizeCount
Small Business24
Midsize Enterprise14
Large Enterprise20
 

Questions from the Community

What needs improvement with iboss?
The problem our organization had is that iboss failed for the Mac devices. It is not able to give a successful agent ...
What is your primary use case for iboss?
We used iBoss mainly for Internet Access by having an Agent on Windows laptops Primarily because when we try to use i...
What is your experience regarding pricing and costs for iboss?
I am not involved in pricing, but as per the information I have, during that time, the Blue Coat proxies we were usin...
What needs improvement with Cloudflare Zero Trust Platform?
In my opinion, Cloudflare One can be improved mainly through compatibility, as the integration should be much simpler...
What is your primary use case for Cloudflare Zero Trust Platform?
Cloudflare One's primary use case for my organization is to protect servers and to provide remote access with the VPN...
What are the biggest differences between Fortinet Fortigate and VMware SD-WAN?
One of our favorite things about Fortinet Fortigate is that you can deploy on the cloud or on premises. It is a very ...
What is your experience regarding pricing and costs for VMware SD-WAN?
When it comes to setup cost and licensing cost for VMware, it is on the expensive side relative to the market. We are...
What needs improvement with VMware SD-WAN?
The improvement needed for VMware VeloCloud SD-WAN is in the security area. The security part is the main issue for u...
 

Also Known As

iBoss Cloud Platform
Cloudflare Area 1 Email Security, Cloudflare Bot Management, Cloudflare Gateway, Cloudflare Zero Trust Platform, Cloudflare DDoS, Cloudflare SASE & SSE Platform
VMware SD-WAN, VeloCloud
 

Overview

 

Sample Customers

More than 4,000 global enterprises trust the iboss Cloud Platform to support their modern workforces, including a large number of Fortune 50 companies.
23andMe
Redmond, Coca Cola, Roka Bioscience, MetTel, Deutsche Telekom, Rockford Construction,  The Bay Club, tru Independence, Triton Management Services, DevCon, AXPM
Find out what your peers are saying about Cloudflare One vs. VMware VeloCloud SD-WAN and other solutions. Updated: June 2026.
900,747 professionals have used our research since 2012.