No more typing reviews! Try our Samantha, our new voice AI agent.

Sangfor NGAF vs WatchGuard Firebox comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Feb 15, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Fortinet FortiGate
Sponsored
Ranking in Firewalls
1st
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
592
Ranking in other categories
Secure Web Gateways (SWG) (2nd), Intrusion Detection and Prevention Software (IDPS) (1st), Software Defined WAN (SD-WAN) Solutions (1st), WAN Edge (1st), ZTNA (1st), Unified Threat Management (UTM) (1st)
Sangfor NGAF
Ranking in Firewalls
21st
Average Rating
8.0
Reviews Sentiment
6.5
Number of Reviews
34
Ranking in other categories
No ranking in other categories
WatchGuard Firebox
Ranking in Firewalls
9th
Average Rating
8.4
Reviews Sentiment
6.8
Number of Reviews
139
Ranking in other categories
Data Loss Prevention (DLP) (11th), Intrusion Detection and Prevention Software (IDPS) (4th), Anti-Malware Tools (6th), Endpoint Detection and Response (EDR) (13th), Application Control (3rd), Unified Threat Management (UTM) (3rd)
 

Mindshare comparison

As of June 2026, in the Firewalls category, the mindshare of Fortinet FortiGate is 15.1%, down from 21.7% compared to the previous year. The mindshare of Sangfor NGAF is 1.1%, down from 1.3% compared to the previous year. The mindshare of WatchGuard Firebox is 2.1%, down from 3.0% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Firewalls Mindshare Distribution
ProductMindshare (%)
Fortinet FortiGate15.1%
WatchGuard Firebox2.1%
Sangfor NGAF1.1%
Other81.7%
Firewalls
 

Featured Reviews

Mageshwaran S - PeerSpot reviewer
Solution Architect at airtel
Enables customers to manage security effortlessly with intuitive features and easy integration
In terms of improvements for Fortinet FortiGate, they could offer evaluation licenses, as compared to Meraki, which provides a 90-day evaluation. In Fortinet FortiGate, they do not provide standard evaluation licenses; instead, we need to request them from the OEM through the account manager for POCs. If we want to conduct a demo, we need to work with real hardware. In comparison to Cisco, we have DCloud, which helps with providing demos to customers, but in Meraki, I need to reach out to them, book a lab, and they need to provide all the hardware. I need remote access and L3 engineers to program it; only then can I offer a real-time demo to the customer.
Zaid Farooqui - PeerSpot reviewer
CIO at Indus Motor Company
Enhanced threat detection with integrated security features and good support
We are using application firewalling, WAF, and SD-WAN. The capabilities are mostly within the box. For example, you will get web application firewall WAF as part and parcel of this. SD-WAN is also bundled. It integrates with their SIEM and SOAR solutions very nicely. Lastly, the pricing point is very cost-efficient as well.
Abhishek Saini - PeerSpot reviewer
Professional Services Engineer at Next7 IT
Centralized security management has improved VPN reliability and simplified daily operations
WatchGuard Firebox is a strong and reliable platform overall, but there are a few areas where improvements could make the experience even better. One area is the user interface and navigation in some management tools. While the platform is powerful, certain configurations and troubleshooting workflows can feel less intuitive compared to some newer cloud-native firewall platforms. Another point is reporting and log analysis. Although the logging features are very useful, deeper analytics and more customizable reporting dashboards would make security monitoring much more effective. Firmware upgrades and policy synchronization can sometimes require careful planning to avoid security interruptions. Overall, the core security and VPN functionality are very solid, but improving usability, reporting, and automation would make the platform even stronger. One area that could be improved is the learning curve for new administrators. While experienced engineers can work with the platform effectively, some advanced networking and security configurations can be a bit complex for junior technicians. More guided configuration workflows, smarter recommendations, and simplified troubleshooting tools would make onboarding easier. Another improvement would be more flexible reporting customization for executive-level and client-facing reports.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"I never encountered any stability issues; it is a very stable product."
"We’ve gone from only selling Fortinet FortiGate as an accessory to creating an entire department in our business dedicated to selling Fortinet products in the span of three years."
"I think FortiGate is more reliable, consistent, and easy to learn."
"The features that I have found most valuable are the SD-WAN and their IP4 policy."
"The solution has helped our organization secure our network and connect remote sites."
"Fortinet has a product that can cater to any area of the security market."
"Overall Fortinet FortiGate is a good solution."
"The most valuable features of Fortinet FortiGate are it is one of the most mature firewalls in the UTM bundle."
"The capabilities are mostly within the box."
"We are Sangfor Gold partners and I'd recommend this solution for the SMB market, as it is cost-effective and reliable."
"The level of support provided to local companies is good. They transform their application control and other settings according to that country."
"Particularly good in the DPI where we can inspect inbound and outbound traffic."
"The support from Sangfor NGAF here in Pakistan is great."
"Sangfor's tech features and technologies are more powerful than those of the other solution providers in terms of security. They also have big solutions in terms of cybersecurity."
"We use Sangfor NGAF primarily for security, which has helped save our files from being encrypted by ransomware."
"It enables us to not only detect but also prevent various types of incoming threats, allowing us to take appropriate corrective actions and exercise control over the network."
"The way it saves me time is that there is no maintenance; once we set it up, there's nothing else for us to do on a regular basis."
"WatchGuard does what it says it does; definitely use it if you want to block applications."
"The tool provides automated responses."
"WatchGuard has been mostly cost-effective compared to other firewall systems that are out there, given the power that it has and the ease."
"It saves us a lot of money over MPLS connections, about $125,000 per year."
"We have witnessed an ROI as it has helped with security measures."
"HostWatch makes it so I can see, in real-time, activity in the event that there is something weird happening on the network. This simplifies my job."
"In my experience, WatchGuard Firebox offers a good balance between security, performance, and operational simplicity."
 

Cons

"One drawback of Fortinet FortiGate is that they provide two types of models: one with a hard disk and another without. The model without a hard disk has very low ROM where you can store very few logs, after which you need to upload it to the cloud or purchase a firewall with SSD. That's the only drawback."
"There is a lot of improvement needed with SSL-VPN."
"This product needs to have an analysis feature, rather than having the analysis done through the integration of a different product."
"The UI could be improved."
"They can add automation for monitoring and policy optimization on the firewall. I think using AI to do some optimization on the policies would be beneficial, such as providing alerts about policies that haven't been used for a long time or identifying overlapping policies."
"In terms of pricing, the solution is a bit expensive, but I think it was a better option than Checkpoint, which is why I replaced it."
"It's my understanding that more of the current generation features could be brought in. There could be more integration with EDRs, for example."
"The people we are working with are not able to configure MFA. They are having some technical issues. Fortinet needs to ensure that its partners are well-trained."
"The solution has too many bugs and these slow down the implementation."
"The GUI needs to be improved, lacks logic in some areas."
"Sangfor could improve by providing better real-time reporting, as the current reports don't offer the level of detail we need, especially for runtime insights."
"They need to improve their research team and they need to study their data to analyze it and build the product."
"They need to increase the number of ports in the firewall."
"The firewall system needs gradual improvements because there are more threats and challenges in the world every day."
"Sangfor NGAF could improve the policies and default criteria. They could be much better."
"Sangfor NGAF could improve by refining its application control policies, especially in addressing challenges with certain types of applications."
"The solution needs to improve its accessibility."
"One area for improvement could be making the interface even more user-friendly."
"The software in it could be a bit more friendly for an amateur user. I look at it and don't understand what half the stuff is. Looking at the interface, it is all mumbo-jumbo to me. It's not a simple interface. You have to be an IT guy to understand it. It is not for your average person to use, then walk away from it. It is much more entailed."
"I would like to see more simplified management of the firewall... It's a complicated system to use."
"Regarding technical support, they could use more engineers. There is less support from engineers and they give you less time."
"What could use some significant improvement in WatchGuard Firebox would be its interface and policy management."
"The control software is currently only available for Windows, which can be a little annoying for Linux users."
"The documentation for the System Manager/Dimension configuration, could be a little bit clearer... The use case where you have multiple sites with multiple firewalls, and one site that has the System Manager server and the Dimension server, wasn't really well defined. It took me a little bit of digging to get that to actually work."
 

Pricing and Cost Advice

"The price could be lower."
"It is a cost-effective solution that meets the user's needs."
"Fortinet is the least expensive solution."
"It is a good product from a price perspective versus functionality."
"The pricing of the solution is very competitive."
"The support subscription for the solution is annual. You are paying for support and there are two levels of support, professional and advanced."
"I pay €1,200 per year for the license along with Fortinet's 81E firewall appliance. I would rate this pricing as 3/5 stars, and I believe the price is reasonably similar to its competitors in the market, being somewhere in the middle."
"As far as I'm aware, in our case, it's just a yearly pricing arrangement with no additional licensing costs."
"The product is very cost-effective compared to other brands or vendors."
"The price is unmatcheable."
"We purchased one year technical support and return to factory support, and we also purchased one-year technical support services. So those were additional."
"Sangfor NGAF is a cheaply priced product, especially if I consider the previous product that was used in my company."
"In my opinion, the price of the tool is good in the Pakistani market. We can easily get discounts if needed."
"It is one of the cheapest tools in the market."
"The solution has a TCO that is 32% to 50% less than Sophos, Fortinet, and SonicWall."
"For four to five physical appliances for a licensed firewall, it costs approximately $4,000."
"WatchGuard offers competitive pricing with attractive margins, benefiting both the company and its partners."
"Their price point worked, which is the reason why we stayed with WatchGuard."
"It's fair pricing, but it could always be reduced."
"The price is very good."
"I find the solution to be very affordable."
"WatchGuard Data Loss Prevention's pricing is expensive. I rate it a seven out of ten."
"WatchGuard Firebox has good quality, but it is expensive."
"The primary reason that we went with Firebox was its cost. It is very economical and it provided us with all the security functions that we were looking for at the time. And the throughput was more than what we required, so it was a very cost-effective device to deploy on our network."
report
Use our free recommendation engine to learn which Firewalls solutions are best for your needs.
900,747 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Comms Service Provider
10%
Computer Software Company
10%
Manufacturing Company
9%
Financial Services Firm
7%
Financial Services Firm
11%
Manufacturing Company
10%
Comms Service Provider
9%
Construction Company
7%
Comms Service Provider
11%
Manufacturing Company
8%
Computer Software Company
8%
Construction Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business370
Midsize Enterprise138
Large Enterprise195
By reviewers
Company SizeCount
Small Business15
Midsize Enterprise10
Large Enterprise10
By reviewers
Company SizeCount
Small Business101
Midsize Enterprise30
Large Enterprise16
 

Questions from the Community

Which is the better NGFW: Fortinet Fortigate or Cisco Firepower?
When you compare these firewalls you can identify them with different features, advantages, practices and usage a...
What is the biggest difference between Sophos XG and FortiGate?
From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know...
What are the biggest technical differences between Sophos UTM and Fortinet FortiGate?
As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite ...
What is your experience regarding pricing and costs for Sangfor NGAF?
The licensing cost is quite high compared to other available firewalls in the market.
What needs improvement with Sangfor NGAF?
The cost of licensing is very high compared to other firewalls available here. There should be improvements in hardwa...
What is your primary use case for Sangfor NGAF?
We are hosting applications over the platform, including websites and NAT traffic from our side. Because it's deploye...
What is your primary use case for WatchGuard Firebox?
We are providing our services to all WatchGuard customers in the region.
What is your primary use case for WatchGuard Firebox?
We just use it as a secondary WiFi device. We're a small office and we needed to set up a WiFi device for a few of ou...
What is your primary use case for WatchGuard Firebox?
We're a hospital and we use it for developing our incoming and outgoing policies, and we also use it for VPN.
 

Also Known As

Fortinet FortiGate Next-Generation Firewall
Sangfor NGAF Firewall Platform
WatchGuard Threat Detection and Response, WatchGuard Application Control, WatchGuard Data Loss Prevention, WatchGuard Gateway AntiVirus, WatchGuard Intrusion Prevention Service
 

Overview

 

Sample Customers

Amazon Web Services, Microsoft, IBM, Cisco, Dell, HP, Oracle, Verizon, AT&T, T-Mobile, Sprint, Vodafone, Orange, BT Group, Telstra, Deutsche Telekom, Comcast, Time Warner Cable, CenturyLink, NTT Communications, Tata Communications, SoftBank, China Mobile, Singtel, Telus, Rogers Communications, Bell Canada, Telkom Indonesia, Telkom South Africa, Telmex, Telia Company, Telkom Kenya
The Ministry of Science, Technology, and Innovation (Indonesia), Lawson, Inc. (Philippines), Universiti Sultan Zainal Abidin (Indonesia), TEK Automotive (Italy), etc.
Ellips, Diecutstickers.com, Clarke Energy, NCR, Wrest Park, Homeslice Pizza, Fortessa Tableware Solutions, The Phoenix Residence
Find out what your peers are saying about Sangfor NGAF vs. WatchGuard Firebox and other solutions. Updated: June 2026.
900,747 professionals have used our research since 2012.