Netify have released our 2024 SD-WAN comparison blog article

The Best 2024 UK, US & Global SD-WAN Vendors & Providers

Compare the best UK, US & Global SD-WAN vendors & managed providers with our mind map buyers checklist, real-time comparison tool, list of solutions, and feature matrix table.

This article provides a comprehensive hands-on review for 10 of the best SD-WAN vendor solutions and evaluates their best use cases. Due to each vendor offering different benefits, IT decision makers should consider the key offerings from each vendor and compare these with their networking requirements. To assist with this, we tested each solution, noting the benefits and criticisms of each SD-WAN vendor.

About the authors: This article was written by Robert Sturt and Harry Yelland. Read more about Robert's writing on Techtarget and Forbes. Harry has a 1st in Computer Science and is an up and coming Cybersecurity consultant at Netify.

How Netify tested each SD-WAN vendor and service provider

SD-WAN testing process
How we tested each SD-WAN solution
Initial Setup and ConfigurationEach SD-WAN setup process was assessed by following vendor guidelines and, where available, using Zero Touch Provisioning. Ease of use was particularly considered with these tests.
Performance SimulationEach SD-WAN network was stress-tested with heavy traffic introduced to determine how the network coped and if it could prevent critical traffic from experiencing degradation. Voice over IP (VoIP) and high-bandwidth content such as online video streaming was used to conduct this. Performance (latency, jitter and packet loss) and efficiency were considered for these tests.
Metrics and Telemetry MonitoringThroughout testing we used each SD-WAN solutions monitoring capabilities. We used these to determine network efficiency, whilst noting the ease of use, granularity and visibility of monitoring traffic.
Security ManagementBy introducing known controlled threats, such as malware, to the network, we could monitor the SD-WAN security response and its effectiveness. This was assessed by considering the response and the amount of control over security the SD-WAN provided.
Other Key OfferingsFeatures such as Artificial Intelligence integrations, Cloud Onramp and SASE integrations were used to assess the extendibility of SD-WAN solutions.

Table of contents

  1. SD-WAN Comparison Quick Review Scores
  2. Cisco Systems SD-WAN
  3. Aryaka SD-WAN
  4. Fortinet SD-WAN
  5. Meraki SD-WAN
  6. Cato SD-WAN
  7. VeloCloud SD-WAN
  8. Masergy (Comcast) SD-WAN
  9. Versa SD-WAN
  10. Palo Alto SD-WAN
  11. Barracuda SD-WAN
  12. SD-WAN Feature Comparison Matrix
  13. Compare SD-WAN Vendors and Providers in Real-time
Comparison

The SD-WAN Quick Review List 1-5

Want to cut straight to the best SD-WAN vendors and providers for UK, US and Global businesses. We understand – IT decision makers are busy and your time is precious. You'll find a roundup of our top choices here. You can also jump to a more in-depth review for each product, along with our real-time, instant comparison tool to build your shortlist now.

Cisco Systems SD-WAN Netify Review

Aryaka SD-WAN Netify Review

Fortinet SD-WAN Netify Review

Cisco Meraki SD-WAN Netify Review

Cato SD-WAN Netify Review

Awards
  •   Best Value
  •   Editor's Choice
Overall Score7470747980
Star Rating
Pros
  • Cloud Integration
  • Comprehensive Cybersecurity
  • WAN Optimisation
  • App Path Analytics
  • Simple Configuration
  • Efficient QoS Configuration
  • Private Backbone
  • Simple Deployment
  • Agility
  • Comprehensive Cybersecurity
  • Threat Prevention
  • Strong firewall
  • Efficient QoS Configuration
  • Simple Deployment
  • Simple Configuration
  • Cloud Integration
  • Strong Zero Touch
  • Private Backbone
  • Threat Prevention
  • Comprehensive Cybersecurity
  • WAN Optimisation
  • Simple Configuration
Cons
  • Complexity
  • Hardware Dependency
  • Premium Solution
  • Premium Solution
  • Cannot support complex needs
  • Feature Limitations
  • Complexity
  • Learning Curve
  • Vendor lock-in
  • Hardware Dependency
  • Cannot support complex needs
  • Feature Limitations
  • Vendor lock-in
  • Vendor lock-in
  • Cannot support complex needs
  • Premium Solution
  • Feature Limitations
Best for Use CaseBest for complex needs with global SD-WAN sitesFully Managed, Global SD-WANBest for SD-WAN requiring hardened securityMultiple Branch-Offices, CCTV, SensorsGlobal Co-Managed SD-WAN and SASE
SD-WAN Features8.08.06.08.07.0
SD-WAN Application Routing9.07.08.07.07.0
SD-WAN Reporting6.08.08.07.08.0
SD-WAN Portal7.08.06.08.010.0
SD-WAN Cost6.06.08.09.06.0
SD-WAN SASE Integration7.05.08.08.010.0
Cloud Capability9.07.08.08.08.0
Features
  • Application-Aware Routing
  • Cloud OnRamp
  • WAN Optimisation
  • Cloud Vendor Integration
  • Identity Based Firewall
  • App Path Insights
  • Application-Aware Routing
  • Unified SASE
  • WAN Optimisation
  • Multicloud Support
  • Simple Management
  • Global PoP Network
  • Application-Aware Routing
  • Zero Touch Provisioning
  • Unified SASE
  • Application Control
  • Automation
  • Identity Based Firewall
  • App Path Insights
  • Zero Touch Provisioning
  • CCTV Support
  • Sensor Integration
  • SASE Integration
  • Application Control
  • Application-Aware Routing
  • Global PoP Network
  • Zero Touch Provisioning
  • Unified SASE
  • SASE Integration
  • Templated Configuration
  • Enhanced Monitoring
Comparison

The SD-WAN Quick Review List 6-10

VMware SD-WAN Netify Review

Masergy SD-WAN Netify Review

Versa SD-WAN Netify Review

Palo Alto SD-WAN Netify Review

Barracuda SD-WAN Netify Review

Awards
  •   Top Pick
Overall Score7671718077
Star Rating
Pros
  • Scalable
  • Simple Deployment
  • Multi-cloud
  • Integrated Security
  • Public Gateways
  • Efficient QoS Configuration
  • Proactive Network Optimisation
  • AI Assistance
  • Cloud Integration
  • Simple Deployment
  • Comprehensive Cybersecurity
  • Proactive Network Optimisation
  • Scalable
  • Comprehensive Cybersecurity
  • WAN Optimisation
  • Comprehensive Cybersecurity
  • AI Assistance
  • Proactive Network Optimisation
  • Automation
  • WAN Optimisation
  • Efficient QoS Configuration
  • Simple Deployment
  • Simple Configuration
  • Proactive Network Optimisation
  • Cloud Integration
  • Multi-cloud
  • Strong firewall
Cons
  • Scaling Issues
  • Feature Limitations
  • Complexity
  • Premium Solution
  • Complexity
  • Premium Solution
  • Cannot support complex needs
  • Complexity
  • Vendor lock-in
  • Learning Curve
  • Complexity
  • Learning Curve
  • Cannot support complex needs
  • Feature Limitations
Best for Use CaseComplex Routing with AnalyticsGlobal Fully Managed Service Provider SD-WANService Provider Delivered SD-WAN and SASESpecific SASE Security RequirementsMicrosoft Azure Cloud-Focused SD-WAN
SD-WAN Features8.08.08.09.08.0
SD-WAN Application Routing9.08.07.09.07.0
SD-WAN Reporting8.07.08.09.08.0
SD-WAN Portal7.05.06.05.06.0
SD-WAN Cost6.06.06.07.08.0
SD-WAN SASE Integration8.08.08.09.08.0
Cloud Capability9.08.07.08.09.0
Features
  • Application-Aware Routing
  • App Path Insights
  • Global PoP Network
  • Cloud Vendor Integration
  • Multicloud Support
  • Application Control
  • Zero Touch Provisioning
  • AIOps
  • Multicloud Support
  • Fully Managed Services
  • Global PoP Network
  • Zero Touch Provisioning
  • Multicloud Support
  • SASE Integration
  • App Path Insights
  • Application-Aware Routing
  • Unified SASE
  • Zero Touch Provisioning
  • Strong Cloud Management
  • Zero Touch Provisioning
  • Azure Cloud-Native
  • Strong Cloud Management
  • App Path Insights

Download the IT Manager's SD-WAN Buyers Checklist & Playbook

For this article, we have created an at-a-glance checklist to help IT decision makers understand the areas which they must consider when comparing SD-WAN solutions.

Submit your details to receive a link to our SD-WAN buyers checklist, an at-a-glance Mind Map which details all of the areas you need to consider. Please check your junk folder if you do not receive an email within a few minutes.

Download the checklist

List of the best SD-WAN vendors

Who are the best SD-WAN vendors in 2024?

In 2024, Meraki emerges as the best choice across SD-WAN Vendors, catering to the requirements of Medium and Large Enterprises. Meraki has been chosen based on Cloud integration, SASE security options, branch-office Wifi capability and support for remote workers.

Detailed Top 10 SD-WAN Vendors Summary

Cisco SD-WAN
  1. Cisco SD-WAN: Best vendor for complex services

Cisco is recognised as a leader within the Gartner SD-WAN magic quadrant for their capability and vision with the SD-WAN market. According to Gartner's analysis, Cisco supports approximately 46,000 enterprise customers with SD-WAN solutions on a global scale. These customers represent a diverse range of sizes and industries.

Key Features and Differentiators: Cisco SD-WAN is known for its capability across Application Aware Routing (AAR), Cloud OnRamp and SD-WAN monitoring. 

How we tested Cisco Systems SD-WAN

Cisco SD-WAN Cloud OnRamp Test.png

Cisco SD-WAN AAR is a feature which optimises traffic based on applications and their overall importance. Cisco AAR configuration involved specifying the performance metric limitations by providing jitter and latency.

To test if VoIP degraded, I applied traffic to the network causing a breach in the jitter and latency thresholds.

Cisco SD-WAN identified this issue and promptly re-routed the network traffic onto our secondary broadband circuit as per the configuration. This meant that the Application Aware Routing was an effective method for managing heavy traffic for enhancing critical application experience.

Secondly, I tested Cisco SD-WAN Cloud OnRamp, a way to seamlessly integrate connections between branch offices and cloud services.

I connected a branch office network to Amazon Web Services (AWS) cloud using OnRamp. Following configuration, I was able to monitor the stability and performance of the network via analytics and noted a significant performance improvement for the time taken to access our cloud-hosted applications.

In a real-world deployment this would significantly improve the stability of the network and provide users with a better experience within the network. I also noted that, given the ease of integrating cloud providers through a few menus, it means the cloud OnRamp functionality should significantly reduce overhead when introducing a multi-cloud integration to the network and reduce workload for network administrators.

Finally, I evaluated the analytics that Cisco SD-WAN provides to gain deep insights into the network.

Cisco analytics gave me a wide range of options such as drilling down into individual traffic flows, monitoring fluctuations in application performance and observe changes in bandwidth usage across the network.

I focused primarily on the ability of Cisco SD-WAN to make forecasts based on predictive analytics. This functionality suggested potential issues within the network before there was even the chance for the issues to cause any negative impacts on the network and gave me a proactive approach for implementing network optimisations in order to better use the network resources.

Benefits and Drawbacks

My testing of Cisco SD-WAN demonstrated the effectiveness of the AAR routing, Cloud OnRamp and analytical capabilities, providing network optimisations and simplifying deployment for a comprehensive SD-WAN solution.

Whilst the detail of functions such as traffic monitoring is very granular and allows a large amount of control, this did add some complexity that would be harder to work with for less SD-WAN knowledgeable network administrators.

Should you add Cisco SD-WAN to your shortlist?

In my opinion, Cisco SD-WAN offers a great solution for complex services, such as large-scale enterprises, where an extra level of control/data reporting is required but would be hesitant to recommend it to small businesses where there isn’t quite the same need for granular control.

Evaluating Factor

Cisco SD-WAN

Gartner status:

Leader

Best for:

Complex Services

Reasons not to shortlist:

Lacks ease of use for network administrators that don’t have advanced SD-WAN knowledge

Stand-out features:

Application Aware Routing, Cloud OnRamp, Granular Control, Advanced Analytics, AIOps

Cisco Systems SD WAN & SASE Cybersecurity Solutions

70Overall Score
SD-WAN Features9.0
SD-WAN Application Routing8.0
SD-WAN Reporting8.0
SD-WAN Portal5.0
SD-WAN Cost8.0
SD-WAN SASE Integration8.0
Cloud Capability9.0

Features:  Application-Aware RoutingCloud OnRamp

Pros
  • Cloud Integration
  • Proactive Network Optimisation
  • Comprehensive Cybersecurity
  • Multi-cloud
Cons
  • Complexity
  • Premium Solution
  • Learning Curve

Global, Complex Requirements

Aryaka SD-WAN
  1. Aryaka SD-WAN: Best vendor for global managed SD-WAN

Aryaka is well-known for its convergence of SD-WAN and SASE solutions, providing a unified platform for network management. 

Key Features and Differentiators: Aryaka SD-WAN is known for its unified SD-WAN and SASE integration, ease of use, application routing and alert response. With this in mind, I conducted hands-on testing for these features to not only understand the setup but the overall functionality of Aryaka’s SD-WAN solution, in order to determine best fit use cases.

How we tested Aryaka SD-WAN

MyAryaka SD-WAN Reporting-1.jpg

A core feature of Aryaka SD-WAN is its ability to identify applications, classify their priority and then route application traffic based on these classifications.

The logs demonstrated that Aryaka quickly prioritised critical (VoIP) traffic as could be seen from the data showing high levels of performance.

Next, I tested the customer portal within MyAryaka, the unified management dashboard. From various tests, such as adjusting the network configuring and viewing monitoring tools, the dashboard interface was very user-friendly and responsive.

This pane gave effective network management tools backed with actionable insights to improve network performance and health. The dashboard allowed me to make changes such as customised alert settings, tailored to specific network events.  

The control was very useful for understanding network usage and potential issues within the network and allows for proactive network management.

Finally, I evaluated Aryaka’s integration of Secure Access Secure Edge (SASE) as part of their unified management system. This showcased the enhanced security options available such as its deep packet inspection engine and next generation virtual firewall.

These features offer an improvement over traditional WAN security and, when applying the deep packet inspection to the network, there was negligible effect on critical communications suggesting that the improvements in security did not result in a compromise of network performance.

Benefits and Drawbacks

After conducting hands-on testing of the Aryaka SD-WAN solution, I was able to confirm its ability for application-aware routing and traffic prioritisation, which enhanced performance of critical applications (VoIP) when under heavy load.

The alert responses to heavy traffic were a useful addition and gives obvious real-world use cases where administrators can quickly see issues on the network in realtime.

By providing a unified platform for managing SD-WAN and SASE implementations, Aryaka reduces the complexity of management which improves the ease of use for network administrators. Although Aryaka provides ease of management via the MyAryaka unified pane, it did appear to lack features such as extensive control over the system which can be found in other vendor solutions.

Should you add Aryaka SD-WAN to your shortlist?

In my opinion, Aryaka SD-WAN is best for fully managed global SD-WAN networks where granular control isn’t a necessity but ease of use and SASE integrations are prioritised by IT decision makers.

Evaluating Factor

Aryaka

Gartner status:

Unranked

Best for:

Global managed SD-WAN

Reasons not to shortlist:

Lacks extensive control functionality

Stand-out features:

Ease of use, Unified SD-WAN and SASE integration, Application routing, alert response

Aryaka SD-WAN Netify Review

70Overall Score
SD-WAN Features8.0
SD-WAN Application Routing7.0
SD-WAN Reporting8.0
SD-WAN Portal8.0
SD-WAN Cost6.0
SD-WAN SASE Integration5.0
Cloud Capability7.0

Features:  Application-Aware RoutingUnified SASEWAN OptimisationMulticloud SupportSimple ManagementGlobal PoP Network

Pros
  • Simple Configuration
  • Efficient QoS Configuration
  • Private Backbone
  • Simple Deployment
  • Agility
Cons
  • Premium Solution
  • Cannot support complex needs
  • Feature Limitations

Fully Managed, Global SD-WAN

Score
  1. Fortinet SD-WAN: Best for highly secure branch office and remote user requirements

Fortinet is a Gartner SD-WAN Magic Quadrant leader, recognised for their security and end-to-end SASE capabilities. Security has driven Fortinet to create their own ASIC (Application-Specific Integrated Circuit), which ensures hardened security architecture in respect of hardware and allows the devices to perform better as the circuits are optimised to the Fortinet overlay software. Fortinet supports approximately 31,000 global SD-WAN enterprise customers across various industries. 

Key Features and Differentiators: Fortinet SD-WAN primary offering is its extensive security capabilities alongside it’s Zero Touch provisioning (ZTP) capability and application-aware real-time network routing.

Due to these factors being key, I decided to focus my hands-on testing on them, whilst also evaluating the solutions ease-of-use via Fortinet Manager.

How we tested Fortinet SD-WAN

Fortinet SD-WAN Setup and Onboarding.jpg

The Fortinet SD-WAN solution can be managed via Fortinet Manager, a centralised user interface that integrates both management and analytics monitoring into a single pane.

The Zero Touch Provisioning tool automates deployment by using available templates and policy packages. The blueprint saved setup time by allowing me to quickly integrate configuration settings and security policies from another branch office SD-WAN controller.

This process came complete with a step-by-step wizard, offering additional tooltips along the way, which should guide even the most novice network administrators through the process of setting up WAN and LAN configurations.

Through FortiAnalyzer, I was presented with a holistic view of the network’s health and usage. To test the ability of Fortinet SD-WAN to provide insights into network issues, I applied heavy load to the network in the hopes of causing the system to recognise the degradation in performance.

Upon adding load, Fortinet provided me with actionable suggestions to improve network performance, showing inefficiencies within the network.

The security measures provided by and leveraged from FortiGuard labs’ threat intelligence appeared to be rather expansive. Fortinet provides many components for managing high-level security and, through my testing, I confirmed that Fortinet SD-WAN maintains consistency of security features across dispersed environments (on-premises and remote connections).

FortiGuard included malware detection and so, by injecting malware into our network setup, we were able to quickly cause Fortinet to realise this threat and flag the issue. This seamless integration provided us the ability to rapidly respond to threats and thus ensure the security of the overall system.

Finally, I tested Fortinet SD-WANs application steering capabilities. This automatically routes traffic via paths based on real-time telemetry data and link health.

I found that Fortinet SD-WAN offered both active and passive measurement systems and this helped fulfil performance SLAs consistently, ensuring reliability of network resources whilst improving network performance.

This feature also enabled using the best quality/lowest cost links for steering, which could be useful for business that wish to tailor to specific needs and conditions, balancing network performance with link cost for optimal cost-benefit efficiency.

Benefits and Drawbacks

In conclusion, Fortinet SD-WAN did offer improved performance via its application steering capabilities with a vast array of security components for a very reliable and secure solution and the ability to use Zero Touch Provisioning make the solution easily scalable.

Unfortunately, it did not appear to be the most intuitive solution for complex use cases and therefore I would not recommend Fortinet for systems with complicated requirements.

Should you add Fortinet SD-WAN to your shortlist?

Fortinet SD-WAN is best for highly secure branch offices and remote user requirements. Fortinet is often viewed as relatively low cost but, highly secure with a base set of SD-WAN and SASE security strengths. Fortinet is not as user friendly when compared to Cato, Meraki and Aryaka.

Evaluating Factor

Fortinet

Gartner status:

Leader

Best for:

Highly secure branch offices and remote user requirements.

Reasons not to shortlist:

Can be more complex to manage than traditional WAN systems.

May require organisations to upgrade existing infrastructure to support Fortinet SD-WAN.

Stand-out features:

Zero-Touch Provisioning, Unified Manager, ASIC-Accelerated Security

Fortinet SD-WAN Netify Review

74Overall Score
SD-WAN Features6.0
SD-WAN Application Routing8.0
SD-WAN Reporting8.0
SD-WAN Portal6.0
SD-WAN Cost8.0
SD-WAN SASE Integration8.0
Cloud Capability8.0

Features:  Application-Aware RoutingZero Touch ProvisioningUnified SASEApplication ControlAutomationIdentity Based FirewallApp Path Insights

Pros
  • Comprehensive Cybersecurity
  • Threat Prevention
  • Strong firewall
  • Efficient QoS Configuration
Cons
  • Complexity
  • Learning Curve
  • Vendor lock-in
  • Hardware Dependency

Best for SD-WAN requiring hardened security

Meraki SD-WAN
  1. Meraki SD-WAN: Best for orgnisations requiring an easy to manage solution

Meraki is viewed as the best solution for healthcare and retail. In part, this is due to their strong Wifi, CCTV (Smart Cameras), and sensor capability which fits with the needs of these sectors. However, most business can leverage Meraki benefits, which include ease of configuration, strong partner support and the ability to integrate CCTV and sensors.

Key Features and Differentiators: Cisco Meraki is praised for its ease of management, high reliability and built-in security capabilities and so, with these features in mind, I decided to focus my hands-on testing on these factors.

How we tested Meraki SD-WAN

Meraki Site to Site VPN.jpg

I started testing by using Meraki’s cloud registration tool in order to make use of Zero-Touch provisioning features. This allowed me to automatically setup a branch site with minimal manual configuration in a very user-friendly manner.

Once deployed, within the Meraki dashboard, I changed settings for security features and traffic shaping rules but noted options for features such as VLAN configuration too. Within traffic shaping I could change the Quality of Service (QoS) settings to prioritise critical applications.

In order to test these new configurations, I decided to strain the network by utilising multiple instances of VoIP alongside less critical applications such as online film streaming.

Meraki responded to the video streaming and gave priority to VoIP to ensure clear voice communications were still possible.

Following this, I wanted to test the application steering functionality of Meraki. Meraki’s SD-WAN automatically routes traffic based on real-time telemetry and network link health.

For this, I continued to run VoIP applications and monitored Meraki seamlessly switch the applications between network links, which provided stable performance throughout calls.

Finally, as security is a key element provided by Meraki, I explored the integrated security features bundled into the SD-WAN solution. These features included content filtering, intrusion detection and advanced malware protection.

To test the advanced malware, I introduced a piece on malware into the network, which was quickly detected by Meraki, indicating the system’s ability to assist network administrators with rapid responses to ongoing threats.

Benefits and Drawbacks

In conclusion, Cisco Meraki SD-WAN appears to be adept at not only managing network performance demands during high volumes of traffic but also offer an easy-to-use interface platform on top of various security features. It should also be noted that, although I was not able to test it, Cisco Meraki SD-WAN offers more niche capabilities such as CCTV and sensor support, which is not often supported by other vendors.

Whilst Cisco Meraki was incredibly easy to setup and configure, it should be noted that the solution lacked the granularity needed for highly complex network criteria and thus should not be used in use cases where greater control is required.

Should you add Meraki SD-WAN to your shortlist?

I would therefore recommend Cisco Meraki to sectors such as healthcare and retail, where reliability, security and ease of use are prioritised but the need for granular control isn’t quite so present.

Evaluating Factor

Meraki

Gartner status:

Leader

Best for:

Healthcare and Retail.

Easy Management

Reasons not to shortlist:

Lack of granular control

Stand-out features:

CCTV support, sensors, cloud services, remote users and WiFi capabilities

 

Cisco Meraki SD-WAN Netify Review

79Overall Score
SD-WAN Features8.0
SD-WAN Application Routing7.0
SD-WAN Reporting7.0
SD-WAN Portal8.0
SD-WAN Cost9.0
SD-WAN SASE Integration8.0
Cloud Capability8.0

Features:  Zero Touch ProvisioningCCTV SupportSensor IntegrationSASE IntegrationApplication Control

Pros
  • Simple Deployment
  • Simple Configuration
  • Cloud Integration
  • Strong Zero Touch
Cons
  • Cannot support complex needs
  • Feature Limitations
  • Vendor lock-in

Multiple Branch-Offices, CCTV, Sensors

Cato SD-WAN
  1. Cato SD-WAN: Best for global co-managed SD-WAN and SASE requirements

Cato Networks SD-WAN is largely recognised within the SD-WAN market for their global network of Points of Presence (PoPs) and convergence of security services with SD-WAN into a unified platform.

Key Features and Differentiators: Cato is known for their focus on Global  SASE Cybersecurity, Private IP Backbone and simple to use management interface.

How we tested Cato SD-WAN

Cato Netorks VPN Setup.jpg

In this hands-on review, I evaluate the capabilities that Cato SD-WAN offers, focusing primarily on how well Cato handles heavy loads of traffic with critical applications, how easy the system is to manage and the overall security functionality provided by Cato SD-WAN.

I began by deploying a new branch office via the Cato Management Application. This management application unifies all of Cato SD-WAN functionality and, as a cloud-native application, this improves management accessibility.

By entering a physical address, Cato SD-WAN can determine the nearest Point of Presence to me in order to establish the best performance when utilising the Cato global backbone.

To enable Quality of Service (QoS) functionality, I entered bandwidth and for security implementations I selected firewall, anti-malware and an intrusion prevention system in order to later test Cato’s security functionality. With the whole setup process taking mere minutes, I was impressed by Cato’s speed to setup and the well-presented interface provided to me with a very easy-to-use experience.

To test how Cato SD-WAN handled critical applications amongst heavy traffic, I decided to evaluate Voice over IP (VoIP) call quality degradation when adding other traffic such as video streaming and file downloads to the network.

By accessing the network analytics (via the Cato Management Application), the data showed that the VoIP was being prioritised with minimal jitter, latency and packet loss being experienced.

Whilst a latency of over 150ms would typically result in performance degradation, I noticed only an increase of 40ms to 105m, which caused no perceptible drop in performance and therefore indicates the ability of Cato SD-WAN to utilise application-aware routing based on real-time network telemetry.

By reviewing the Cato SD-WAN traffic policies, the response to network congestion could be seen as the traffic policies had changed to reflect the traffic, therefore ensuring critical applications (VoIP in this instance) were provided with enough bandwidth.

The ability to adapt to dynamic network traffic patterns suggests that Cato is very capable in use cases where network traffic patterns are unpredictable and trends change frequently.

Finally, I wanted to evaluate the security implementations of the Cato SD-WAN solution. As per my deployment, the system included integrated Next-Generation-Firewall (NGFW), anti-malware and an Intrusion Prevention System (IPS). These security systems were all managed within the Cato Management Application.

To test the security, I introduced a piece of malware into the system and monitored the response of Cato SD-WAN. The anti-malware security acted quickly, flagging the threat and allowing for a rapid response to deal with issue.

Benefits and Drawbacks

In conclusion Cato is capable of handling heavy network traffic whilst still prioritising critical applications and integrating security measures to protect the network.

It should be noted that Cato’s global private backbone, which minimises the number of hops and optimises routes that data has to travel through, appeared to help reduce latency and packet loss when using VoIP over large geographical distances. However, if your business is not located close to a Cato PoP, this could be a drawback to your business.

Whilst Cato does lack flexibility for more advanced features such as multi-casting support and more in-depth reporting functionalities, the ease of use experienced is a huge benefit for use cases where there isn’t such high complexity of requirements.

Should you add Cato SD-WAN to your shortlist?

Cato is recommended for businesses that require global co-managed services with complete SASE capability, and simple setup with fast deployment.

Evaluating Factor

Cato

Gartner status:

Unranked

Best for:

Global co-managed services

Reasons not to shortlist:

Lacks some features other vendors offer

Cato SD-WAN Netify Review

Cato SD-WAN Netify Review
  •   Editor's Choice

Read Full Company Review

80Overall Score
SD-WAN Features7.0
SD-WAN Application Routing7.0
SD-WAN Reporting8.0
SD-WAN Portal10.0
SD-WAN Cost6.0
SD-WAN SASE Integration10.0
Cloud Capability8.0

Features:  Application-Aware RoutingGlobal PoP NetworkZero Touch ProvisioningUnified SASESASE IntegrationTemplated ConfigurationEnhanced Monitoring

Pros
  • Private Backbone
  • Threat Prevention
  • Comprehensive Cybersecurity
  • WAN Optimisation
  • Simple Configuration
Cons
  • Vendor lock-in
  • Cannot support complex needs
  • Premium Solution
  • Feature Limitations

Global Co-Managed SD-WAN and SASE

VMware SD-WAN
  1. VMware SD-WAN: Best for global application performance

VMware SD-WAN is known for its simplified branch office networking and cloud-delivered architecture.

Key Features and Differentiators: VMware is recognised their their capabilities across Zero Touch Provisioning which is good for rapidly growing the network to cope with a dispersed workforce.

How we tested VMware SD-WAN

VMware Reporting Overview.jpg

To test the Zero Touch Provisioning of VMware SD-WAN, I first logged into the orchestrator via the central management portal. This allowed me to create a new edge site and configure basic IP, LAN, VLAN and DHCP settings.

I also enabled the High Availability setting, designed to enhance network reliability by using 2 edge devices in an Active/Standby configuration.

This provides the network with redundancy and would allow for continuous communications to the edge site regardless of a device failure. I could then assign profiles and policies to the new edge devices, specifying network and security settings to ensure optimal performance.

After completing the software portion of the Zero Touch Provisioning, I physically deployed the edge devices. The edge devices remotely downloaded all required orchestrator data, pulling LAN and WAN settings, applying security policies and establishing the High Availability communications.

Following deployment, I wanted to test the ability of VMware SD-WAN to monitor the network, its performance and the status of the edge devices. The orchestrator provides not only central configuration capabilities, but also offers various settings and monitoring tools.

One of these is the network overview page which enables monitoring of real-time network statistics, deployment status and the health of both primary and secondary edge devices. VMware therefore provides visibility of the network through a centralised location.

To test the ability of VMware SD-WAN to maintain reliable performance, I decided to monitor the performance of Voice over IP (VoIP) applications whilst adding a heavy volume of traffic (online video streaming, large file downloads) to the network.

Using the Quality of Experience (QoE) tab within the orchestrator, I was able to view network metrics in real-time. This page indicated that the best traffic link was being used and that no packet loss or jitter was being experienced, which was reflected by the VoIP call having clear sound and no noticeable degradation.

The application steering routed traffic types through different network links based on their health and latency statistics. VMware SD-WAN was capable of identifying critical applications on the network, as shown by the maintained performance level of VoIP applications and indicates that WMware SD-WAN can adapt to the change of network demands in real-time.

For security, VMware integrates a firewall, encrypted VPN tunnels and a layer of security when switching between primary and secondary edge devices.

One of the key components of security for organisations is a firewall, which blocks the access to specific applications and IPs based on rules and therefore I decided to test the effectiveness of the firewall functionality.

The VMware SD-WAN firewall, managed by the orchestrator, allows for firewall rules to control IP and port authorisation or blocking. To test the firewall, I blocked all external SSH applications (port 22) and, upon trying to access a networked system from an external device, the SD-WAN network logs showed that this access was blocked.

Benefits and Drawbacks

In conclusion VMware SD-WAN offered network optimisations through Zero Touch Provisioning, traffic management, intelligent routing and added security features.

These features allow for VMware SD-WAN networks to be deployed at scale without extensive overhead, whilst the introduction of failover with multiple SD-WAN edge devices helps benefit the reliability of the network.

VMware is not designed for simple business requirements, the solution is focussed at the large Enterprise business market.

Should you add VMware SD-WAN to your shortlist?

VMware SD-WAN is best for global Enterprise businesses with diverse application performance requirements. If you are an existing customer of VMware, you should add their solution to your SD-WAN vendor shortlist.

Evaluating Factor

VMware

Gartner status:

Leader

Best for:

Global application performance

Reasons not to shortlist:

Lack of documentation and support.

Stand-out features:

Zero-Touch Provisioning, High Availability configurations, Dynamic Multi-Path Optimisation, Integrated Security Features.

 

VMware SD-WAN Netify Review

76Overall Score
SD-WAN Features8.0
SD-WAN Application Routing9.0
SD-WAN Reporting8.0
SD-WAN Portal7.0
SD-WAN Cost6.0
SD-WAN SASE Integration8.0
Cloud Capability9.0

Features:  Application-Aware RoutingApp Path InsightsGlobal PoP NetworkCloud Vendor IntegrationMulticloud SupportApplication Control

Pros
  • Scalable
  • Simple Deployment
  • Multi-cloud
  • Integrated Security
  • Public Gateways
  • Efficient QoS Configuration
Cons
  • Scaling Issues
  • Feature Limitations
  • Complexity
  • Premium Solution

Complex Routing with Analytics

Masergy SD-WAN
  1. Masergy SD-WAN: Best global SD-WAN provider offering managed services

Masergy (now part of Comcast Business) is well-known within the SD-WAN market for their Artificial Intelligence for IT Operations (AIOps), which was the first AI-integrated network optimisation tool for SD-WAN solutions.

Key Features and Differentiators: Masergy SD-WAN also provides implementation of cloud services, network optimisation, security integrations and singular unified control panel for managing the network.

How we tested Masergy SD-WAN

Masergy SD-WAN Changing Bandwidth.jpg

I began my evaluation by considering the deployment of Masergy SD-WAN. The web-based interface, Masergy Intelligent Service Control Portal, provides an overall view of the network and Zero Touch provisioning for deployment.

The web interface walks through the essential configurations necessary for setting up the network, covering basic information such as site information and connection details.

After completing the wizard, the SD-WAN device could be deployed to site, automatically downloading the pre-configured settings from Masergy cloud. This minimised manual configuration and therefore improves the ability of Masergy SD-WAN to rapidly scale network size.

As network performance is a crucial factor for assessing SD-WAN solutions, I evaluated how Masergy SD-WAN handled crucial applications when under heavy volumes of traffic.

To do this, I navigated to the Quality of Service (QoS) settings within the Masergy Intelligent Service Control Panel. I then created a new rule, setting the application to Voice over Internet Protocol (VoIP) from the application list and the priority to high.

Following this I began introducing heavy traffic from video streaming services and file downloads to test if the VoIP call degraded. The ‘Analytics’ tab showed that the network policies had caused VoIP to be prioritised, with the data showing that there was no increase in latency or jitter.

The call continued to be crystal clear, indicating the ability for Masergy SD-WAN to effectively prevent degradation through prioritisation of crucial applications.

Due to Masergy AIOps being a core feature of the SD-WAN solution, I decided to test the AIOps virtual engineer. To do this I set up monitoring of all network security events such as intrusion attempts, unusual access patterns and traffic anomalies. I then attempted to access unauthorised areas within the network, simulating an intrusion attempt and monitored the results within the AIOps dashboard.

This quickly alerted me to the intrusion attempts and generated incident reports to let me know what had occurred in greater detail, showing that the attempt was from an unusual location. The AIOps virtual assistant also locked the user account I had tried to access, preventing any changes in tactic for breaching the network via this method.

Benefits and Drawbacks

In conclusion Masergy SD-WAN offers a reliable networking solution, with performance optimisations to handle heavy traffic, Zero Touch Provisioning for scalability, security integrations to protect data and an Artificial Intelligence virtual assistant to aid in network improvements and maintenance. Drawbacks revolve around loss of control due to service provider involvement, and a high price point.

Recommendation

Masergy is best for Global financial Enterprise businesses considering outsourcing their end to end SD-WAN.

Evaluating Factor

Masergy

Gartner status:

Unranked

Best for:

Global managed services.

Reasons not to shortlist:

Masergy may come at a higher price-point than other SD-WAN vendors.

Stand-out features:

AIOps, Real-Time Bandwidth modification, Zero Touch Provisioning, High Performance Global Network.

Masergy SD-WAN Netify Review

71Overall Score
SD-WAN Features8.0
SD-WAN Application Routing8.0
SD-WAN Reporting7.0
SD-WAN Portal5.0
SD-WAN Cost6.0
SD-WAN SASE Integration8.0
Cloud Capability8.0

Features:  Zero Touch ProvisioningAIOpsMulticloud SupportFully Managed ServicesGlobal PoP Network

Pros
  • Proactive Network Optimisation
  • AI Assistance
  • Cloud Integration
  • Simple Deployment
  • Comprehensive Cybersecurity
Cons
  • Complexity
  • Premium Solution
  • Cannot support complex needs

Global Fully Managed Service Provider SD-WAN

Versa SD-WAN
  1. Versa SD-WAN: Best for Service Provider delivered SD-WAN and SASE

Versa are well-known within the SD-WAN market for their extensive security implementations with advanced networking capabilities.

Key Features and Differentiators: Security is offered by Versa through a single converged software layer, which makes Versa SD-WAN an excellent option for large-scale dynamic enterprise environments.

How we tested Versa SD-WAN

Versa SASE NGFW Setup.jpg

In this hands-on review, I looked to evaluate the capabilities of Versa SD-WAN and the best use case for the solution.

Initially I installed the Versa Operating System (VOS) for their SD-WAN solution, which contains Versa’s unified software stack, such as security and routing integrations.

VOS could be installed on any generic x86 networking appliance, which highlights that Versa SD-WAN is not tied to vendor hardware and allows greater flexibility and cost-efficiency for organisations by allowing existing hardware to be leveraged.

After installation, in order to test the solution, I needed to deploy some branch offices. To do this I logged into Versa Director, the centralised management platform and under the ‘Organisations’ tab selected the option to create a new branch, entering branch name, location and selected a pre-configured template.

This template included predefined settings for routing, security policies and Quality of Service (QoS) settings. As Versa SD-WAN supports Zero Touch Provisioning (ZTP), I entered the IP, model and serial numbers of branch devices and then started the automated setup and deployment process of these devices by connecting them to the internet. This reduced the amount of manual work required and overall complexity of scaling the network.

To test how Versa SD-WAN handled traffic prioritisation, I navigated to the ‘Application Steering’ section of the Versa Director interface and defined VoIP applications to have high priority.

After this I applied heavy traffic volumes to the network in order to gauge how Versa SD-WAN handled the influx of traffic and if this caused the VoIP application traffic to degrade through latency, jitter and packet loss.

Whilst streaming online videos and starting large file downloads, I monitored VoIP traffic through the analytics page of Versa Director. The monitoring view showed QoS metrics indicating that the latency, jitter and packet loss all remained within acceptable thresholds and this was reflected by the VoIP call sounding clear with no noticeable latency. This indicates the ability of Versa SD-WAN to adapt to network conditions and prioritise applications to fulfil QoS requirements.

Versa SD-WAN also integrates several security features into its solution, including Next-Generation Firewall (NGFW), anti-malware and Distributed Denial-of-Service (DDOS) protection. In order to test the effectiveness of Versa SD-WAN security, I introduced malware into the network to see how Versa SD-WAN responded.

Versa SD-WAN automatically detected the malware and I received an immediate alert on the Versa Director dashboard informing me of the detected malware.

The alert included details about the nature of the malware, its source and potentially affected network segments.

Versa SD-WAN also automatically applied traffic isolation measures, quarantining the infected segment, preventing the malware from affecting other areas of the network. This highlights that

Versa SD-WAN is very capable at detecting and nullifying potential threats on the network, therefore increasing the security of the network and, via the notification and automated response system, reduces the workload on network administrators to ensure network security.

Benefits and Drawbacks

In conclusion, my testing of Versa SD-WAN demonstrated the effectiveness of the Zero Touch Provisioning, application prioritisation and steering and overall security capabilities, providing network optimisations and simplifying deployment for a comprehensive SD-WAN solution.

Whilst the Zero Touch Provisioning does reduce the complexity of deployment, it should be noted that the user interface wasn’t the most intuitive and this made the solution complex to navigate and would likely affect the user experience for network administrators.

Should you add Versa SD-WAN to your shortlist?

In my opinion, the best use case for Versa SD-WAN is for a Service Provider delivered SD-WAN with end-to-end SASE capability.

Evaluating Factor

Versa

Gartner status:

Leader

Best for:

Service Provider delivered SD-WAN and SASE

Reasons not to shortlist:

Complex to navigate

Stand-out features:

Unified SD-WAN and security software stack, Zero-Touch Provisioning, and high scalability.

 

Versa SD-WAN Netify Review

71Overall Score
SD-WAN Features8.0
SD-WAN Application Routing7.0
SD-WAN Reporting8.0
SD-WAN Portal6.0
SD-WAN Cost6.0
SD-WAN SASE Integration8.0
Cloud Capability7.0

Features:  Zero Touch ProvisioningMulticloud SupportSASE IntegrationApp Path Insights

Pros
  • Proactive Network Optimisation
  • Scalable
  • Comprehensive Cybersecurity
  • WAN Optimisation
Cons
  • Complexity
  • Vendor lock-in
  • Learning Curve

Service Provider Delivered SD-WAN and SASE

Palo Alto Prisma SD-WAN
  1. Palo Alto SD-WAN: Best companies with specific SASE security requirements

Palo Alto Prisma SD-WAN is a Leader within the Gartner SD-WAN magic quadrant.

Key Features and Differentiators: Well-known for offering a unified SASE, advanced security and SD-WAN solution, Palo Alto Prisma provides an innovative way of managing networks, enabling security of complex enterprise and large-scale networks.

How we tested Palo Alto SD-WAN

Palo Alto Prisma SD-WAN Link Health.jpg

Palo Alto SD-WAN merges all of their SD-WAN management into Prisma Access, a central management interface for configuring network devices, performance settings and security capabilities.

In order to setup the network, I navigated to “deploy new device” and entered the device information such as location and model number. I then connected the physical SD-WAN devices to the internet and, upon powering up, each device automatically established a secure internet connect to Prisma Access cloud.

This access initiated the Zero Touch Provisioning (ZTP) process, where the device identifies itself with the Prisma Access management platform using its pre-registered details and automatically downloads the configuration settings specified within Prisma Access.

This process reduced the complex and time required to deploy the SD-WAN devices as the configuration was entirely automated and reduced the need for manual work, increasing the scalability of the overall network infrastructure.

Following deployment, I decided to test how Palo Alto Prisma SD-WAN handled traffic prioritisation for crucial business applications. As Prisma SD-WAN features an Artificial Intelligence (AI) feature for traffic management and so whilst setting up the Quality of Service (QoS) policies, I decided to enable AI insights in order for Prisma SD-WAN to make traffic management suggestions based on network load.

To test the capability of Prisma SD-WAN AI at managing network performance, I wanted to see how heavy volumes of traffic affected the quality of crucial applications such as Voice over Internet Protocol (VoIP).

After starting a call over VoIP, I then began streaming internet videos and downloading large files to increase network traffic load. Prisma SD-WAN AI noticed the increase in traffic in real-time and made suggestions via the dashboard to change routing decisions for VoIP applications.

These changes prevented the traffic from causing quality degradation in VoIP applications, minimising any increase in latency, jitter and packet loss. It should be noted that Prisma SD-WAN allows QoS policies to be manually created (and not just AI generated), whilst Forward Error Correction (FEC) and packet duplication functionality did also reduce the quantity of packets lost.

To evaluate Prisma SD-WAN real-time security functionalities, I navigated to the AI operations panel and activated predictive analytics and automated anomaly detection.

These integrations, combined with Next Generation Firewall (NGFW) and deep packet inspection allow Prisma’s artificial intelligence to detect threats across the network. I decided to test this by introducing a piece of malware into the network whilst monitoring Prisma Access.

The AI detected the malware and alerted me via the dashboard, giving me details such as the malware type, source and the potential threat that it posed to the network. Prisma SD-WAN also provided me with a recommended action plan for dealing with the threat, which provides the capability to rapidly respond to any network threats that may occur.

Benefits and Drawbacks

In conclusion, Palo Alto Prisma SD-WAN provides a comprehensive solution for Zero Touch Provisioning, routing critical applications, giving deep visibility into network operations and artificial intelligence-backed security capabilities.

It should be noted that Prisma SD-WAN does provide a potentially overwhelming amount of features and configuration options which may not be easy to manage for smaller teams with less dedicated knowledge of Prisma SD-WAN.

Should you add Palo Alto SD-WAN to your shortlist?

I would recommend Prisma SD-WAN for large enterprises with complex security and network performance requirements.

Evaluating Factor

Palo Alto

Gartner status:

Leader

Best for:

Large enterprises with complex security and network performance requirements.

Reasons not to shortlist:

Potentially overwhelming for smaller organisations or those with simpler network needs.

Stand-out features:

Advanced security, AI, Application Aware routing.

 

Palo Alto SD-WAN Netify Review

80Overall Score
SD-WAN Features9.0
SD-WAN Application Routing9.0
SD-WAN Reporting9.0
SD-WAN Portal5.0
SD-WAN Cost7.0
SD-WAN SASE Integration9.0
Cloud Capability8.0

Features:  Application-Aware RoutingUnified SASEZero Touch ProvisioningStrong Cloud Management

Pros
  • Comprehensive Cybersecurity
  • AI Assistance
  • Proactive Network Optimisation
  • Automation
  • WAN Optimisation
  • Efficient QoS Configuration
Cons
  • Complexity
  • Learning Curve

Specific SASE Security Requirements

Barracuda SD-WAN
  1. Barracuda SD-WAN: Best for companies with a focus on Microsoft Azure

Barracuda SD-WAN, CloudGen WAN, is widely recognised within the SD-WAN market for their native integration with Microsoft’s Cloud solution Azure.

Key Features and Differentiators: Azure integration facilitates seamless operation and optimisation of network traffic between on-premises networks and Azure cloud services. Barracuda SD-WAN also offers integrations for CloudGen firewall and SecureEdge products, offering enhance security for the network. In this hands-on review, I evaluate the deployment, performance optimisations and security of Barracuda SD-WAN.

How we tested Barracuda SD-WAN

Barracuda SD-WAN MS Azure Cloud Setup.jpg

To begin deploying Barracuda SD-WAN, I accessed Barracuda Cloud control, the online portal for managing the network and set the configuration profiles using pre-defined templates. This allowed me to utilise the Zero Touch Provisioning (ZTP) capabilities of Barracuda SD-WAN as I could then plug in branch office hubs, which automatically communicated with Barracuda Cloud Control to download the latest firmware and configuration profiles.

The hubs could then be configured and managed remotely through the cloud control service for any further changes. This reduced the complexity of the deployment process by minimising the need for manual configuration (eliminating human error) and enabled the network infrastructure to be scalable.

Once deployed, I decided to test how Barracuda SD-WAN handled traffic prioritisation and whether performance degraded once high volumes of traffic were introduced. To do this, I monitored the performance of Voice over Internet Protocol (VoIP) application traffic.

Within the network settings I created a new Quality of Service (QoS) rule specifically for prioritising VoIP traffic and entered the application-signature, setting priority to high. After applying this QoS rule, I tested the network under heavy load by streaming online videos and starting large file downloads to create network traffic.

I then navigated to the Barracuda SD-WAN network traffic monitoring tool which shows both real-time and historical data about traffic flows, bandwidth usage and packet prioritisation. This indicated that the VoIP traffic was being prioritised and adequate bandwidth was being allocated to ensure that the latency, jitter and packet loss was minimised.

The clarity of the call didn’t decrease and this supported the statistics to show that Barracuda SD-WAN was capable of prioritising crucial applications, such as VoIP.

The Barracuda SD-WAN cloud control offers a unified platform for not only QoS and monitoring but also provides control over network security. Barracuda SD-WAN, with CloudGen Firewall, implements cloud-based threat intelligence, Intrusion Detection and Prevention Systems (IDPS), URL filtering and anti-malware functionality.

To test the security response capability of Barracuda SD-WAN, I introduced malware into the network in order to see how Barracuda SD-WAN dealt with the threat.

This caused the real-time threat detection from Barracuda firewall to identify the malware, immediately quarantining the software and alerting me through the control dashboard about the threat, its origin and the recommended actions to take to fully remove the threat.

This shows that Barracuda SD-WAN is capable of ensuring network security whilst also reducing the workload for network administrators by providing them with threat notifications in real-time and allowing for a rapid response.

Benefits and Drawbacks

In conclusion, Barracuda SD-WAN is capable of Zero Touch Provisioning, managing critical application (such as VoIP) prioritisation, implementing security measures and providing a seamless integration with Microsoft Azure cloud.

It should be noted that, although Barracuda SD-WAN improves integrations with Azure, this focus means that Barracuda SD-WAN limits usage of other cloud providers and therefore reduces applicability for leveraging multi-cloud network architectures.

Should you add Barracuda SD-WAN to your shortlist?

It is recommended that Barracuda SD-WAN is used for Azure-focused enterprises, or businesses looking for an outsourced managed SD-WAN solution.

Evaluating Factor

Barracuda

Gartner status:

Niche player

Best for:

Azure-focused enterprises

Reasons not to shortlist:

Limitations for non-Azure cloud integrations

Stand-out features:

Zero Touch Provisioning, CloudGen, Firewall Integration, Azure-cloud integration

 

Barracuda SD-WAN Netify Review

77Overall Score
SD-WAN Features8.0
SD-WAN Application Routing7.0
SD-WAN Reporting8.0
SD-WAN Portal6.0
SD-WAN Cost8.0
SD-WAN SASE Integration8.0
Cloud Capability9.0

Features:  Zero Touch ProvisioningAzure Cloud-NativeStrong Cloud ManagementApp Path Insights

Pros
  • Simple Deployment
  • Simple Configuration
  • Proactive Network Optimisation
  • Cloud Integration
  • Multi-cloud
  • Strong firewall
Cons
  • Cannot support complex needs
  • Feature Limitations

Microsoft Azure Cloud-Focused SD-WAN

Compare vendors using our matrix

SD-WAN Quick Comparison Matrix

Vendor comparison 1-5

Aspect
  1. Cisco SD-WAN (Viptela)
  1. Aryaka SD-WAN
  1. Fortinet SD-WAN
  1. Meraki SD-WAN
  1. Cato Networks SD-WAN
SASE IntegrationIntegrates with Cisco Umbrella for cloud-delivered security services.Unified SASE services with managed firewall, secure web gateway, and secure remote access.FortiSASE offers networking and security functionalities in a unified platform.Seamless integration with Cisco's SASE technologies for a unified network and security platform.SD-WAN capabilities integrated with WAN backbone and cloud-based security services.
SD-WAN ArchitectureAbstracted architecture with control and forwarding plane separation across network resources. Includes Cisco vEdge and XE SD-WAN routers.FlexCore global Layer 2/3 backbone network, offering tiered performance and availability.Scalable, redundant design with multiple transport options including MPLS and broadband.Cloud-based management with hub-and-spoke topology, utilising Meraki MX appliances.Cloud-native software stack minimising edge-compute requirements, global private backbone.
Technology ManagementManaged via Cisco vManage for centralised control, supporting REST and NETCONF communication.MyAryaka portal for intuitive, intent-based forwarding rules and policy definition.Centralised management console for streamlined configuration and management.Cisco Meraki dashboard for granular control over SD-WAN infrastructure in a cloud-native environment.Cloud-based application for single-pane-of-glass management of networking and security infrastructure.
Core NetworkGlobal scale operation with cloud-based network connectivity management, flexible architecture.Secure PoPs with integrated WAN acceleration and optimisation, sub-30ms latency to major business areas.Security-driven network approach, designed for cloud-first and hybrid workforces.Engineered for cloud-first enterprises, blending SD-WAN functionality with security features.Global private backbone designed to replace MPLS, optimising cloud application access.
DifferentiatorsAdvanced routing capabilities, global support network, integration with Cisco's security portfolio.Global FlexCore network, sophisticated end-to-end application and network optimisation technology.Specialised hardware for performance optimisation, self-healing capabilities, application identification.Cloud-centric management, user-friendly dashboard, integration with Cisco's security portfolio.Integrated SD-WAN and security solution with a global backbone, cloud-based security services.

Vendor comparison 6-10

Aspect
  1. VMware SD-WAN
  1. Masergy (Comcast) SD-WAN
  1. Versa Secure SD-WAN
  1. Palo Alto Networks SD-WAN
  1. Barracuda Secure SD-WAN
SASE IntegrationVMware SASE integration for cloud-native network security and connectivity.Aligns with Gartner’s SASE model, offering tiered security options including next-gen cloud firewalls.Versa SASE integration for continuous security across multiple access points.Centralised management of network security policies, traffic segmentation, and built-in encryption.Integrates next-generation firewall capabilities for comprehensive threat protection.
SD-WAN ArchitectureCloud-native architecture supporting edge computing, AI integration for simplified operations.Flexibility in network connectivity with options for public, private, and 5G wireless access.Single software platform offering multi-layered security and multi-cloud connectivity.Cloud and virtual machine setups on universal customer premises equipment.Combines advanced VPN routing, balancing, and shaping features for optimised performance.
Technology ManagementCloud-native platform with AI for IT operations (AIOps) capabilities for proactive network management.Masergy’s management portal offers a single-pane-of-glass view into network and cloud application delivery.AI/ML integration for a self-managing, self-healing, and predictive networking solution.Assists with planning of SD-WAN configuration, including branch and hub communications.Zero-touch deployment for SecureEdge site devices, requiring no local expertise for setup.
Core NetworkPart of VMware SASE offering, with expanded PoPs for better cloud connectivity.Direct connections to the cloud with 100% service availability SLA, secure access to cloud applications.Carrier-class, flexible, agile, and innovative approach in the NFV market.Improved reliability, better performance, and enhanced security for IoT integration.Ensures fast, always-on access to business-critical applications on-premises and in the cloud.
DifferentiatorsCloud-native design, expansive global PoP network, enhanced performance for voice and video applications.24/7 monitoring, software-defined network for enhanced reliability, AI-powered analytics.Flexibility to scale network resources, multi-tenancy, unified network management.Prisma Access integration for a unified security posture, AI/ML-driven operations for predictive analytics.CloudGen WAN integration for optimised cloud application performance, automated threat protection.
Step 2: Use our free tool to generate your own SD-WAN Vendors and Providers Shortlist

Get started, let us know where you require SD-WAN?

Start by telling us about where your SD-WAN services will be located?
Africa
Asia
Australia
Canada
Europe
Israel
Middle East
New Zealand
North America
South Africa
South America
UK
United Arab Emirates
Step 1 of 9
Next

What are your key SD WAN and Cybersecurity requirementsPlease add the features which are most of interest. E.g. Global private backbone is a good option for International traffic between metro locations.

Which SD WAN & Cybersecurity features are most important to your business?

We've listed the most popular SD WAN & Cybersecurity features which are requested by the majority of IT decision makers.

Consider your features based on what you already know. Global private backbone services are often considered by companies that currently use MPLS. In contrast, public gateways offer the ability to leverage multiple Internet providers to achieve the best possible global performance. If you're a national business, there is no need to select private or global as the benefits are not required.

WAN optimisation
(Accelerate data, improving application performance)
Global private backbone
(The SD-WAN version of MPLS)
Global public backbone
(Consider for larger multinationals)
Support for 4G/5G
(Support for cellular services)
Broadband
(Select where Broadband is the primary product)
Network virtualisation
(Client or cloud hosted focused organisations)
WAN edge hardware
(Traditional edge approach, not virtualised)
Featured on Gartner
(Only display Gartner Quadrant vendors)
Granular QoS
(Select where apps are numerous)
Detailed reporting
(Important for governance)
Network segmentation
(Isolating network areas for enhanced security)
Application-aware routing
(Optimising paths for specific application traffic)
Micro segmentation
(Divide network into small segments)
Comprehensive WiFi
(Select where WiFi is key to the business)
Complex services
(For large, complex business needs)
Back
Step 2 of 9
Next

What are your business' cybersecurity requirements

Which Cybersecurity features do you need to compare?Select your required security features. If you are currently using a security vendor or do not have a need to compare security, please skip this step using the option below.
SASE (Secure Access Service Edge) and SSE (Secure Service Edge) are Gartner security frameworks which are inherently important to the Enterprise when comparing capability. Select the options which are most of interest to find vendors and service providers which are leading the market across these important security features.
MDR
(Continuous monitoring, real-time threat mitigation)
XDR
(Broader than MDR, integrates across security layers)
CASB
(For companies with major cloud usage)
SWG
(Secures web access, monitors online activity)
ZTNA
(Zero Trust approach, granular access control)
SIEM
(Centralised security data analysis and reporting)
Endpoint protection
(Secures devices, prevents malware, data breaches)
IoT security
(Protects connected devices, prevents cyber attacks)
PAM
(Manages privileged access, enhances security controls)
Email security
(Safeguards email, blocks threats, prevents phishing)
FWaaS
(Cloud-based firewall, scalable network protection)
Skip this step if no security is required
Back
Step 3 of 9
Next

What are your Managed services requirements

Do you require managed, co-managed or DIY services?Opting for a fully managed service will consolidate all elements of the solution into one monthly as-a-service invoice. Co-managed allows a degree of flexibility meaning the business can retain control of the service with involvement from vendor or service provider support team when required. Selecting DIY means the business will deploy, manage and support the solution in-house via their own team.
Fully Managed
Co-Managed
DIY
Back
Step 4 of 9
Next

What are your business' procurement preferences

What is your preferred method of procuring Networking solutions?How you acquire your SD WAN or Cybersecurity solutions is a key consideration. Did you know that most vendors do not deliver services directly to businesses? The majority of solutions are made available via distribution companies and partners. When procuring services, choices include obtaining solutions from a service provider (e.g. Verizon, BT, AT&T) or purchasing from a vendor directly (the majority will recommend a partner).
Traditional service provider
Directly from vendor
Back
Step 5 of 9
Next
What cloud vendors do you require integration with your solution

Which cloud solutions does your business need to integrate with?

Why are we asking?
The majority of businesses now require access to public cloud infrastructure. Netify logic understands which vendors and service providers are matched to Azure, AWS and Google Cloud.
AWS
Microsoft Azure
Google Cloud
Back
Step 6 of 9
Next
What are your budgetary requirements

How important is cost to your business?

Why are we asking?

Netify has researched the price points across vendors and service providers. In some instances, a key driver may be to save costs as a primary goal.

Select your interest in cost as a primary objectiveLowest value of 1 represents no interest in saving cost, 10 indicates cost as a primary driver.
12345
Back
Step 7 of 9
Next
Which sector best represents your business vertical?

Please select the industry that your business operates within

Why are we asking?
The Netify research database has data which records provider experience across your business sector. For example, certain vendors and providers point to their specific industry expertise, citing delivery or support.
Advertising
Automotive
Chemicals
Construction
Critical Infrastructure
Defence
Education
Energy
Financial Services
Government
Healthcare
High Technology
Hospitality
ICS/SCADA Control Systems
Industrial
Insurance
Legal Services
Logistics
Manufacturing
Marketing
Media
Mining
Non-Governmental Organisations
Nonprofit
Pharmaceutical
Professional Services
Public Sector
Retail
Security
Sport
Technology
Transportation
Utilities
Other
Please describe your industry:
Back
Step 8 of 9
Next
What is the required scale of the deployment

Please state your required quantity of branch-office sites and remote users

Why are we asking?

The number of sites and users will factor into your shortlist. For example, a larger Enterprise business will typically engage with different vendors and providers vs SME businesses.

Please enter the number of branch-sites required
Please enter the number of remote users required
Back
Step 9 of 9
Next

You're Almost Done!

Please review the information below and complete the form to finish the assessment.

You are 1 step away from displaying your top 3 match results:

  1. We need your details, but why? The Netify platform adds value to our users (you) and partners (SD-WAN & SASE vendors). The intent is to match your requirements with the best-fit top 3 SD-WAN solutions. To do this, we introduce you to each of the 3 vendors by requesting their latest sales PDF on your behalf. The vendor will also offer a walk-through of their capability over Microsoft Teams. You are not obliged to continue the contact with any of the vendors.

Once you submit your details, each of the 3 vendors will reach out to you within 48 hours. Your results will be displayed once you have completed your details.

* Required field

Please Complete the Following:

Back
Results

Here are your best-match introductions

Based on your selections, here are the companies that match your needs. Please check your mail over the next 24 hours - you will receive an introductory email from the vendors or providers listed below.

Results

Contact Us to Find a Solution

Unfortunately our system couldn't find an exact match but that doesn't mean there isn't a solution for you!

This assessment compares companies in our marketplace with everything you selected but the best way to find a solution is to connect with a Netify agent. We'll work directly with you to find a company which can fulfill your needs.

Here Are Your Results

You Have Options

Based on your selections, here are the companies that match your needs. If you have questions, request to talk to a Netify employee using the button below.

Connect with us and we'll help you compare the market to find the perfect solution.

  • Netify solves the challenge of SASE Cybersecurity & SD Wan selection across 100+ vendors and managed service providers
  • We work across verticals including Manufacturing, Financial Services, Retail and Healthcare
  • Our research and agency services are 100% free

Get a Zoom walkthrough of Netify

Join us for 30 minutes on Zoom, we'll walk you through how we can help your business with SD WAN and SASE Cybersecurity for free.

Netify is the first marketplace with a focus on SD WAN & SASE Cybersecurity. We employ researchers to list Gartner leaders, niche players and startups across WAN and security. The Netify advisory is available for free to help make sense of the decision making process by offering vendor briefings and tools to help your business find the right solution fit.

Contact Us

Here Are Your Results

Contact Us to Find a Solution

Unfortunately our system couldn't find an exact match but that doesn't mean there isn't a solution for you!

This assessment compares companies in our marketplace with everything you selected but the best way to find a solution is to connect with a Netify agent. We'll work directly with you to find a company which can fulfill your needs.

  • Netify solves the challenge of SASE Cybersecurity & SD Wan selection across 100+ vendors and managed service providers
  • We work across verticals including Manufacturing, Financial Services, Retail and Healthcare
  • Our research and agency services are 100% free

Companies Matching Your Selection:

Companies Matching Your Selection:

Additional Companies We Recommend:

Additional Companies We Recommend:

Please provide the following information.

Fill out the form below and an expert will reach out to you within the next business day to develop a plan for your business.

Frequently Asked Questions
Who is the market leader in SD-WAN?
Is SD-WAN still relevant?
What are two major weaknesses of SD-WAN?
What are SD-WAN trends in 2024?
Is SD-WAN the future?
What is next generation SD-WAN?
Are you a vendor, service provider or partner? Get your business listed on the Netify marketplace.

List Your Business