We just raised a $30M Series A: Read our story

Compare SonicWall NSa vs. WatchGuard Firebox

Cancel
You must select at least 2 products to compare!
Featured Review
Find out what your peers are saying about SonicWall NSa vs. WatchGuard Firebox and other solutions. Updated: March 2020.
552,136 professionals have used our research since 2012.
Quotes From Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:

Pros
"Firepower has been used for quite a few enterprise clients. Most of our clients are Fortune 500 and Firepower is used to improve their end to end firewall functionality.""The most valuable features of this solution are the integrations and IPS throughput.""We have not had to deal with stability issues.""I have integrated it for incidence response. If there is a security event, the Cisco firewall will automatically block the traffic, which is valuable.""Its Snort 3 IPS has better flexibility as far as being able to write rules. This gives me better granularity.""A good intrusion prevention system and filtering.""The customer service/technical support is very good with this solution.""I have access to the web version of Cisco Talos to see the reputation of IP addresses. I find this very helpful. It provides important information for my company to obtain the reputation of IP addresses. The information in Talos is quite complete."

More Cisco Firepower NGFW Firewall Pros »

"It is able to fulfill my requirements. It protects our network environment. It has control over IPS, signatures, and it can also manage bandwidth and mapping. It is also stable and has good support.""The basic firewall rules of the solution are great.""They offer good antivirus solutions.""The technical support is very good.""This product is user-friendly and easy to configure.""The functionality is the same whether it is on hardware or a virtual appliance. The interface is the same. It's nice that it's standardized.""Compared to Cisco, SonicWall NSa is much easier to configure.""The most valuable features of this solution are the GUI pre-filtering and the ATP (advanced threat protection)."

More SonicWall NSa Pros »

"The solution has increased productivity with our outside salespeople being able to connect into their computers and use those remotely.""The ports that I have assigned appear to be unattainable to outside 'mal-actors,' unless they have an address registered on the internet that this thing is expecting. That's a layer of security.""It's hard to pick one feature over another. But if I had to pick one, the UTM would be the most valuable because of the notification. I get notified via email if there is any type of threat detection or alert, telling me something is wrong.""It also provides us with layered security. It has onboard virus scanning features that allow it to scan before something gets to the host. It will also stop a person from going to a site that is known to be bad.""The set up of the VPN is pretty straightforward. Being able to build VPNs on the fly for certain users, if need be, is also valuable.""Regarding the reporting, I was in the Dimension server earlier today. It's very powerful. I like it. And the management features are easy to use. I like the fact that I can open up the System Manager client or I can just do it through the web if I'm making a quick change.""The main reason we went with it was the security protocols. They were more robust on this device.""Because we bought two firewalls... we need a central place to manage the policies and deploy them to both devices. It's good that it provides a system management console that is able to manipulate and manage policies in one place and deploy them to different locations."

More WatchGuard Firebox Pros »

Cons
"The Firepower FTD code is missing some old ASA firewalls codes. It's a small thing. But Firepower software isn't missing things that are essential, anymore.""The configuration in Firepower Management Center is very slow. Deployment takes two to three minutes. You spend a lot of time on modifications. Whereas, in FortiGate, you press a button, and it takes one second.""Implementations require the use of a console. It would help if the console was embedded.""We cannot have virtual domains, which we can create with FortiGate. This is something they should add in the future. Additionally, there is a connection limit and the FMC could improve.""One feature I would like to see, that Firepower doesn't have, is email security. Perhaps in the future, Cisco will integrate Cisco Umbrella with Firepower. I don't see why we should have to pay for two separate products when both could be integrated in one box.""The price and SD-WAN capabilities are the areas that need improvement.""The intelligence has room for improvement. There are some hackers that we haven't seen before and its ability to detect those types of attacks needs to be improved.""It's mainly the UI and the management parts that need improvement. The most impactful feature when you're using it is the user interface and the user experience."

More Cisco Firepower NGFW Firewall Cons »

"SonicWall does not support DynDNS, yet this is an important feature for smaller companies that do not have a static IP address.""The pricing for this product in India is high and the fees should be reduced.""They should consider upgrading the capabilities within the GUI.""It doesn't require much improvement. The only improvement area is that cloud reporting, assessment reporting, and other reporting features should be available with the subscription. They should provide reporting features with the subscription base, which is currently not there. We bought the reporting tool, but there are some complications. They have made some changes to the application, and now the reporting management is completely on the cloud.""We also need to increase the throughput because the other devices are slower. The throughput will become slow. Since we're using VoIP, it tends to affect the voice quality. Even if you're using a quality service, it tends to decrease.""The reporting feature could be better because most of the companies want to have the analytics included, which is something that you have to buy separately.""It only has a single power interface, which has limitations in terms of high availability.""The product likely isn't a good fit for a large organization."

More SonicWall NSa Cons »

"The solution is lacking a professional website, they should be updated more often.""I would like to see the devices made more flexible by adding modules to increase the ports that we can use.""If they could make the traffic monitoring easier that would be great. I don't use it that frequently, but I would like to see some improvements in the ease of use of that component, so it makes more sense. I know it's a technical component so there's going to be some difficulty trying to make that easier.""The UI is not as user-friendly as the model that I had used before, which was from Check Point. The design of the Firebox UI is restricted and needs an experienced network guy to understand the format and settings.""Once you start getting into proxy actions and setting up: "Okay, cool. Once this rule gets triggered, what actions have to happen?" I do know a few people who use WatchGuard and they still have to get assistance when they look at that. So I would file that as a con for WatchGuard. Proxy actions can be a little bit complicated.""Sometimes I would like to copy a rule set from one box to another box in a direct way. This is a feature that is not present at the moment in WatchGuard.""There is a slight learning curve.""I would like to have a little more control over access points and the ability to see the bandwidth that is passing through a specific access point. We are not able to see that. We can see what traffic is passing through the Firebox itself, but we can't identify if it is coming from a particular access point or not."

More WatchGuard Firebox Cons »

Pricing and Cost Advice
"Its price is in the middle range. Both Firepower and FortiGate are not cheap. Palo Alto and Check Point are the cheapest ones. I don't remember any costs in addition to the standard licensing fees.""For me, personally, as an individual, Cisco Firepower NGFW Firewall is expensive.""This solution is expensive and other solutions, such as FortiGate, are cheaper.""Cisco is not for a small mom-and-pop shop because of the cost, but if you're in a regulated industry where a breach could cost you a million dollars, it's a bargain.""Pricing is the same as other competitors. It is comparable. The licensing has gotten better. It has been easier with Smart Licensing.""The solution was chosen because of its price compared to other similar solutions.""Its pricing is good and competitive. There is a maintenance cost. It includes SecureX that makes it cost-effective as compared to the other solutions where you have to pay for XDR and SOAR capabilities.""I am happy with the product in general, including the pricing."

More Cisco Firepower NGFW Firewall Pricing and Cost Advice »

"The price is reasonable for what it does.""The CPUs are not able to compete with a similar price point to the Fortinet, WatchGuard, or Palo Alto product.""SonicWall still is only a dollar or Euro per gigabit. This means, of the IPsec, it's the cheapest solution.""It would be better if it has a better price, but its price is okay considering the benefits that you receive.""They do have the option to purchase yearly, or two years, and three years renewal.""While I don't know the exact amount off the top of my head, I would estimate the licensing package was about $15,000 to $20,000 a year.""If you want to connect more than five concurrent users by VPN then you have to pay an additional fee.""You need their analyzer to properly generate reports. This is an expensive, licensed feature, with a complex application or appliance back-end."

More SonicWall NSa Pricing and Cost Advice »

"They have an annual subscription license. Initially, we had opted for three years. After that, we went for another three years, and after that, we have been doing it yearly. They also have a license for five years.""The pricing of WatchGuard is probably a little higher than the SonicWall, but it makes up for it in dependability. It's worth it to me, especially since it's not much higher. For just a little bit higher price you get the dependability of the firewall with the WatchGuard brand.""WatchGuard had a very competitive price. It was only 10 to 20 percent more than a single instance device but with that extra cost it provided a second load balancing device... unlike other brands whose method of hardware and software licensing would have doubled our cost.""I usually tell people that it's really affordable as well, particularly compared to Cisco.""They license it. When we buy it, we buy it with a three-year license. That's the most cost-effective way to do it. So, if you're going to buy it, then buy it with the three-year licensing.""The primary reason that we went with Firebox was its cost. It is very economical and it provided us with all the security functions that we were looking for at the time. And the throughput was more than what we required, so it was a very cost-effective device to deploy on our network.""The pricing was in line with everyone else; maybe slightly higher.""I find the solution to be very affordable."

More WatchGuard Firebox Pricing and Cost Advice »

report
Use our free recommendation engine to learn which Firewalls solutions are best for your needs.
552,136 professionals have used our research since 2012.
Questions from the Community
Top Answer:  When you compare these firewalls you can identify them with different features, advantages, practices and… more »
Top Answer:  The Cisco Firepower NGFW Firewall is a very powerful and very complex piece of anti-viral software. When one considers… more »
Top Answer: It is easy to integrate Cisco ASA with other Cisco products and also other NAC solutions. When you understand the Cisco… more »
Top Answer: The antivirus and items of that nature were quite helpful to have.
Top Answer: Our organization would pay for a license every two to three years.
Top Answer: Sometimes I found the GUI and some of the features a little bit hard to navigate, as opposed to Fortigate, which is much… more »
Top Answer: We are providing our services to all WatchGuard customers in the region. 
Top Answer: We just use it as a secondary WiFi device. We're a small office and we needed to set up a WiFi device for a few of our… more »
Top Answer: We're a hospital and we use it for developing our incoming and outgoing policies, and we also use it for VPN.
Comparisons
Also Known As
Cisco Firepower NGFW, Cisco Firepower Next-Generation Firewall, FirePOWER, Cisco NGFWv
NSA 250M, NSA 2600, NSA 3600, NSA 4600, NSA 5600, Dell SonicWALL NSA
Learn More
Overview

Cisco NGFW firewalls deliver advanced threat defense capabilities to meet diverse needs, from
small/branch offices to high performance data centers and service providers. Available in a wide
range of models, Cisco NGFW can be deployed as a physical or virtual appliance. Advanced threat
defense capabilities include Next-generation IPS (NGIPS), Security Intelligence (SI), Advanced
Malware Protection (AMP), URL filtering, Application Visibility and Control (AVC), and flexible VPN
features. Inspect encrypted traffic and enjoy automated risk ranking and impact flags to reduce event
volume so you can quickly prioritize threats. Cisco NGFW firewalls are also available with clustering
for increased performance, high availability configurations, and more.
Cisco Firepower NGFWv is the virtualized version of Cisco's Firepower NGFW firewall. Widely
deployed in leading private and public clouds, Cisco NGFWv automatically scales up/down to meet
the needs of dynamic cloud environments and high availability provides resilience. Also, Cisco NGFWv
can deliver micro-segmentation to protect east-west network traffic.
Cisco firewalls provide consistent security policies, enforcement, and protection across all your
environments. Unified management for Cisco ASA and FTD/NGFW physical and virtual firewalls is
delivered by Cisco Defense Orchestrator (CDO), with cloud logging also available. And with Cisco
SecureX included with every Cisco firewall, you gain a cloud-native platform experience that enables
greater simplicity, visibility, and efficiency.
Learn more about Cisco’s firewall solutions, including virtual appliances for public and private cloud.

Achieve a deeper level of security with the SonicWALL Network Security Appliance (NSA) Series of next-generation firewalls. NSA Series appliances integrate automated and dynamic security capabilities into a single platform, combining the patented, SonicWALL Reassembly Free Deep Packet Inspection (RFDPI) firewall engine with a powerful, massively scalable, multi-core architecture. Now you can block even the most sophisticated threats with an intrusion prevention system (IPS) featuring advanced anti-evasion capabilities, SSL decryption and inspection, and network-based malware protection that leverages the power of the cloud.

WatchGuard's approach to network security focuses on bringing best-in-class, enterprise-grade security to any organization, regardless of size or technical expertise. Ideal for SMBs and distributed enterprise organizations, our award-winning Unified Threat Management (UTM) appliances are designed from the ground up to focus on ease of deployment, use, and ongoing management, in addition to providing the strongest security possible.

Offer
Learn more about Cisco Firepower NGFW Firewall
Learn more about SonicWall NSa
Learn more about WatchGuard Firebox
Sample Customers
Rackspace, The French Laundry, Downer Group, Lewisville School District, Shawnee Mission School District, Lower Austria Firefighters Administration, Oxford Hospital, SugarCreek, Westfield
Orange County Rescue Mission, First Source, Michaels & Taylor, Green Clinic Health System, Aspire Chiltern Skills and Enterprise Centre, UnitedStack, Faith Lutheran College Redlands, Celtic Manor Resort, Star Kay White, Air Works, Unimat Life, NHS Yorkshire and Humber Commissioning Support (YHCS), Hutt City Council, Mato Grosso do Sul, Nspyre
Ellips, Diecutstickers.com, Clarke Energy, NCR, Wrest Park, Homeslice Pizza, Fortessa Tableware Solutions, The Phoenix Residence
Top Industries
REVIEWERS
Comms Service Provider22%
Financial Services Firm16%
Manufacturing Company8%
Non Profit8%
VISITORS READING REVIEWS
Comms Service Provider32%
Computer Software Company21%
Government7%
Manufacturing Company4%
REVIEWERS
Manufacturing Company19%
Educational Organization15%
Healthcare Company12%
Marketing Services Firm8%
VISITORS READING REVIEWS
Comms Service Provider27%
Computer Software Company20%
Government6%
Educational Organization5%
REVIEWERS
Manufacturing Company18%
Construction Company15%
Healthcare Company9%
University6%
VISITORS READING REVIEWS
Comms Service Provider34%
Computer Software Company17%
Government6%
Wholesaler/Distributor4%
Company Size
REVIEWERS
Small Business43%
Midsize Enterprise28%
Large Enterprise29%
VISITORS READING REVIEWS
Small Business21%
Midsize Enterprise13%
Large Enterprise66%
REVIEWERS
Small Business66%
Midsize Enterprise15%
Large Enterprise19%
REVIEWERS
Small Business67%
Midsize Enterprise21%
Large Enterprise13%
VISITORS READING REVIEWS
Small Business87%
Midsize Enterprise3%
Large Enterprise10%
Find out what your peers are saying about SonicWall NSa vs. WatchGuard Firebox and other solutions. Updated: March 2020.
552,136 professionals have used our research since 2012.

SonicWall NSa is ranked 15th in Firewalls with 35 reviews while WatchGuard Firebox is ranked 3rd in Unified Threat Management (UTM) with 26 reviews. SonicWall NSa is rated 7.6, while WatchGuard Firebox is rated 8.6. The top reviewer of SonicWall NSa writes "A rugged solution capable of defeating advanced threats". On the other hand, the top reviewer of WatchGuard Firebox writes "Competent, basic front-end; the ports that I have assigned appear to be unattainable to outsiders". SonicWall NSa is most compared with Meraki MX, Fortinet FortiGate, SonicWall TZ, Cisco ASA Firewall and Zyxel Unified Security Gateway, whereas WatchGuard Firebox is most compared with Fortinet FortiGate, Sophos XG, pfSense, Cisco ASA Firewall and Azure Firewall. See our SonicWall NSa vs. WatchGuard Firebox report.

We monitor all Firewalls reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.