Try our new research platform with insights from 80,000+ expert users

Netgate pfSense vs SonicWall NSv comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Sep 16, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Fortinet FortiGate
Sponsored
Ranking in Firewalls
2nd
Average Rating
8.4
Reviews Sentiment
7.2
Number of Reviews
318
Ranking in other categories
Software Defined WAN (SD-WAN) Solutions (1st), WAN Edge (1st)
Netgate pfSense
Ranking in Firewalls
1st
Average Rating
8.6
Reviews Sentiment
7.2
Number of Reviews
215
Ranking in other categories
No ranking in other categories
SonicWall NSv
Ranking in Firewalls
30th
Average Rating
8.2
Reviews Sentiment
6.4
Number of Reviews
9
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of April 2025, in the Firewalls category, the mindshare of Fortinet FortiGate is 21.1%, up from 17.7% compared to the previous year. The mindshare of Netgate pfSense is 14.4%, down from 22.1% compared to the previous year. The mindshare of SonicWall NSv is 0.1%, down from 0.2% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Firewalls
 

Featured Reviews

EhabAli - PeerSpot reviewer
Efficient, user-friendly, and affordable
In the past, NSS Labs was utilized to test files and verify the numbers and datasheets. It would be beneficial to have an organization or testing lab that can verify the numbers in our datasheets since changes are frequently made, which can be inconvenient for review. For instance, when comparing different competitors such as Forcepoint, Palo Alto, and Check Point, the throughput or numbers in the datasheet may be lower than the actual numbers. Conversely, Fortinet typically reports very high numbers, but they cannot be replicated in the real world. Therefore, it would be advantageous for them to partner with a neutral testing organization such as NSS Labs to validate these numbers, thus providing more credibility and comfort to everyone regarding the accuracy of the datasheets. For the migration, everyone has a firewall in use and I am selling Fortinet. Typically, I am replacing another firewall. Previously, there was a tool available to convert configurations from one firewall, such as Palo Alto, to Fortinet, but this tool is no longer free. If it could be made free again, it would be very beneficial. This tool shows a lot of promise and is very good. Making it free would help many companies deliver their products in a more efficient and integrated way. It would also be more valuable to include the tool with the firewall package or license instead of having to pay extra for it. Paying extra puts more pressure on small companies to deliver the firewall and complete the configuration, especially if they have hundreds or thousands of policies. It's very painful to move through these policies line by line. The stability has room for improvement. When it comes to Secure SD-WAN, everything is fine. They are going the right way. SD-WAN is very promising. They can provide the SD-WAN solution separately, but they will not take this approach because even the smallest firewall can support the features, so there is no need to have a separate service or appliance. They are following the right steps, and there is nothing to be improved. Feature-wise, I'm really satisfied with the new release, and the features they have added. For now, it's fine.
Vincent Hamm - PeerSpot reviewer
I appreciate the depth of what the solution can do and the simplicity of the initial setup
We do a lot of managed services and are currently trying to get people off of L2TP VPN. Apparently, we can download a mobile config file from a configured NetGate device, and we're primarily Apple. We've experimented with it on a device that's not a production device, and we can't seem to get the phase one IPSec set correctly so that the Apple config will accept it. We've tried looking at the documentation but haven't found anything. While it's not the highest priority, it is rather frustrating. We'd like to do this, and the feature is right there, but we can't get it configured. We certainly don't want to try it on a production machine because it will break the current VPN. I would like to download the Apple mobile config so that I can tell it to configure my VPN connection to do that. We have some cross-platform things. So there's also a Windows VPN. You can download a script or a PowerShell, put it on a Windows machine, and it can connect to the VPN. It would be nice if I could say I want Mac only, Windows only, or both. I wish it could configure the IPSec phase one and phase two, or at least give me solid instructions on how to configure that. It doesn't supply out-of-the-box visibility to drive decisions. You get 75 log lines, so if you're trying to troubleshoot something, you have to look at one log and then another. It integrates with SysLog systems, but our customers are not at the level where they want to pay for some third-party SysLog system. Usually, we can get things taken care of fairly quickly. I would like to have the ability to control all my devices from one place. With Ubiquiti, you can get a controller that allows you to control all of your Wi-Fi devices, switches, and routers. From one area, you can switch to that customer and see what's happening in their environment. That's not part of pfSense. I understand why it's not because pfSense is open source and community supported. That's something that someone in the community needs to pick up and run with. It's not something the pfSense can easily implement. If they could, that'd be great.
Sumesh Panikkar - PeerSpot reviewer
Provides effective threat prevention and helps improve security
We face some challenges when we upgrade the solution. If I use NSv 400, I can't upgrade to the next generation. We cannot upgrade the VM to the next generation. We have to rebuild a new VM and copy the configurations. We cannot upgrade straightaway. The solution must allow us to upgrade the same machine to a newer version without many changes.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"We use the FortiGate Sandbox to detect zero-day vulnerabilities, such as anomalies or malware, that are unknown and have not yet been discovered."
"The security fabric is excellent."
"I like Fortinet's cloud management. It allows me to manage all my devices in different branches for three cloud accounts. Even though I use on-prem devices, I can manage everything on the cloud."
"This solution has solid UTM features combined with a nice GUI."
"We use a southern institution that's audited for IT security and the reporting that automatically comes off the unit makes it much easier to meet compliance standards and makes it easier as far as the amount of time that has to be spent to compile that information. If you get your reporting set up correctly when you initially set it up, you just select the one you want and hit print. The auditing trail on it is the best feature."
"The initial setup of Fortinet FortiGate was straightforward."
"It's super reliable. I don't think I've ever had a reliability issue with it."
"The initial setup is straightforward."
"pfSense makes everything easier compared to Cisco or Fortinet."
"Technical support is perfect, excellent."
"It has a good web cache. I used to use a DHCP server and DNS server. For my company, I use pfSense as a load balancing application."
"Its features rival many of the high cost solutions out there."
"I like that there's a community edition that I can install on my own virtual machines or hardware. I can test things without messing with them in production, which is incredibly useful. If you have a Juniper or Cisco, you can typically only afford one. You're forced to make changes in production and hope they don't break anything because there's no easy way to have a testing environment. The free version of pfSense offers load balancing or failover WAN, which is also helpful. Most commercial firewalls don't have that in the cheapest iteration of the hardware."
"The solution's most valuable features are its ease of use and versatility."
"I like pfBlocker and the ability to install more packages from the pfSense console."
"The initial setup is straightforward."
"One of the standout features of SonicWall is its simplicity in creating and managing rules."
"The customization of firewall rules provides great value to our customers as it allows them to lock things up in the way that they desire. When it is used for internal access, with a VPN in place for remote workers, the firewalling services provided by Azure, such as the default services that can be turned on, are applied. However, the use of a software-based virtual firewall gives us greater flexibility in introducing security controls for customers who are publishing applications that are publicly accessible from the public cloud. This virtual firewall provides an additional layer of security and more extensive security control options to ensure the protection of our customers' valuable information and assets."
"The product helps improve our security."
"I would rate the overall product a nine out of ten."
"For my small NFB banking services, when they are expanding their branches, I could incorporate a little bit easier."
"SonicWall excelled in threat management, evident in how users handled it effectively."
"We purchased the AGSS Bundle (Advanced Gateway Security Suite) for the security services, such as antivirus, intrusion prevention system, and anti-spyware botnet GUI."
"Out of ten, I would rate the solution at an eight."
 

Cons

"I use the FortiGate 60D model and realized the 300Mbps bandwidth limitation. Because it is a product that offers many services, I think it could have greater bandwidth capacity."
"The main aspect of FortiGate that could be improved is load balancing. Our management team does not want to buy another appliance for only load balancing."
"One area for improvement is the performance on bandwidth demands for smaller devices, as well as better web filtering."
"In the next release, maybe the documentation on how to use this solution could be improved."
"The web-cache feature which was previously on the FortiGate device, but was deleted with the recent upgrade should be returned. It was a very valuable feature for us."
"Its reporting can be improved. Sometimes, I don't get proper reports."
"The monitor and the visibility, in this proxy, is very weak."
"You do need some IT knowledge in order to effectively work with the solution."
"The Netgate forums and community don’t provide extensive discussions and topics related to every pfSense service."
"If we had, for example, ten pfSense routers deployed, it would be nice to have one console where you could see all ten devices, update the, and keep them all central. A management portal would be very nice."
"My only suggestion is that Netgate pfSense implement more graphical monitoring. While there are accounts with add-ons for graphical monitoring of data networking, IPS, IDS, and firewall-level events, having more graphical representations like blocks would make the tool more capable. Although it has commercial support and a good GUI, it can still be challenging for someone without firewalls, command lines, and networking knowledge."
"The solution could always work at being more secure. It's a good idea to continue to work on security features and capabilities in order to ensure they can keep clients safe."
"The learning curve is a little long."
"Layer 7 advanced firewall features are not included in the solution."
"​Improve analysis of logs and dashboards (control panel) with improved alert functionality."
"Perhaps the documentation is not clear and because it is supported in the community there is no basic documentation."
"SonicWall NSV's SSL VPN could increase its number of users to 100-plus users."
"We face some challenges when we upgrade the solution."
"There are limitations to bandwidth management."
"An area that could be improved is the export and import settings functionality."
"The price is a significant factor."
"I would like to see the reporting opened up and have several more opportunities for automatic reports."
"The engine provided initially was quite heavy, creating a trade-off between software and hardware-based threat management."
"The price is a significant factor. Mostly in India, the customer service has many hurdles to get real support."
 

Pricing and Cost Advice

"We just pay a flat monthly fee to the vendor for the support."
"It is cost-effective, and provides a good value for your money. The pricing, and license renewal, is very reasonable for us."
"The price is highly competitive when compared to other brands that offer similar functionality."
"Fortinet has more device options that are affordable for small businesses than Palo Alto, and its enterprise-level models are also cheaper. Palo Alto also has a separate license for VPN connections and SD-WAN, but FortiGate offers these features standard."
"The price of Fortinet FortiGate is the lowest in the market."
"The pricing is flexible."
"We have the full version of Fortinet FortiGate and we are on a three-year contract with a commitment of five years."
"Fortinet FortiGate gives you most of the features in one license."
"Their pricing is quite reasonable."
"It is an open source firewall."
"I am using the community version of the solution which is free."
"For what they charge for it, which is maybe $100 a year, it's still good. If you wanted to build your own router, pfSense is more than worth $100 a year to have all that flexibility and maybe your own piece of custom hardware that you want to run it on."
"I use the free version."
"pfSense is excellent for a low total cost of ownership. pfSense pricing is extremely competitive, and it delivers exactly what is advertised."
"The product is cheap."
"Looking at what it does, I think that it is fairly priced."
"The solution’s pricing is less compared to other products."
"We are currently using the trial version."
"SonicWall NSV is not very costly."
"The solution's pricing is good for the technology it offers."
"Our initial purchase, which included a three-year term of support, was about $25,000 USD."
"The tool is moderately priced."
report
Use our free recommendation engine to learn which Firewalls solutions are best for your needs.
845,406 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Educational Organization
22%
Computer Software Company
14%
Comms Service Provider
7%
Manufacturing Company
6%
Computer Software Company
15%
Comms Service Provider
11%
Educational Organization
7%
Government
7%
Computer Software Company
23%
Real Estate/Law Firm
7%
Government
7%
Legal Firm
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

Which is the better NGFW: Fortinet Fortigate or Cisco Firepower?
When you compare these firewalls you can identify them with different features, advantages, practices and usage a...
What is the biggest difference between Sophos XG and FortiGate?
From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know...
What are the biggest technical differences between Sophos UTM and Fortinet FortiGate?
As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite ...
Help me find the best open source router
You don't really specify what type of router you are looking for but if you are talking about a gateway router I reco...
How do I choose between Fortinet FortiGate and pfSense?
Fortinet’s Fortigate is a firewall solution we use and are very much satisfied with its performance. We find Fortigat...
What is the difference between PfSense and OPNsense?
Two of the most common and well recognized firewalls, PfSense and OPNsense both support site-to-site IPsec VPN and cl...
What do you like most about SonicWall NSV?
The product helps improve our security.
What is your experience regarding pricing and costs for SonicWall NSV?
The tool is moderately priced. We need to purchase an additional license for NSM. We can manage all the firewalls thr...
What needs improvement with SonicWall NSV?
The price is a significant factor. Mostly in India, the customer service has many hurdles to get real support. If I w...
 

Also Known As

FortiGate 60b, FortiGate 60c, FortiGate 80c, FortiGate 50b, FortiGate 200b, FortiGate 110c, FortiGate, Fortinet Firewall
No data available
SonicWall Network Security Virtual
 

Overview

 

Sample Customers

Amazon Web Services, Microsoft, IBM, Cisco, Dell, HP, Oracle, Verizon, AT&T, T-Mobile, Sprint, Vodafone, Orange, BT Group, Telstra, Deutsche Telekom, Comcast, Time Warner Cable, CenturyLink, NTT Communications, Tata Communications, SoftBank, China Mobile, Singtel, Telus, Rogers Communications, Bell Canada, Telkom Indonesia, Telkom South Africa, Telmex, Telia Company, Telkom Kenya
Nerds On Site Inc., RKC Development Inc., Expertech, Fisher's Technology, Ncisive, Consulting, CPURX, Vaughn's Computer House Calls, Imeretech LLC, Digital Crisis, Carolina Digital Phone, Technigogo Technology Services, The Simple Solution, SwiftecITInc, Rocky Mountain Tech Team, Free Range Geeks, Alaska Computer Geeks, Lark Information Technology, Renaissance Systems Inc., Cutting Edge Computers, Caretech LLC, GoVanguard, Network Touch Ltd, P.C. Solutions.Net, Vision Voice and Data Systems LLC, Montgomery Technologies, Techforce, Concero Networks, ASONInc, CPS Electronics and Consulting, Darkwire.net LLC, IT Specialists, MBS-Net Inc., VOICE1 LLC, Advantage Networking Inc., Powerhouse Systems, Doxa Multimedia Inc., Pro Computer Service, Virtual IT Services, A&J Computers Inc., Envision IT LLC, CommunicaONE Inc., Bone Computer Inc., Amax Engineering Corporation, QPG Ltd. Co., IT 101 Inc., Perfect Cloud Solutions, Applied Technology Group Inc., The Digital Sun Group LLC, Firespring
Comlogic, Depaul, Hutt City Council
Find out what your peers are saying about Netgate pfSense vs. SonicWall NSv and other solutions. Updated: March 2025.
845,406 professionals have used our research since 2012.