Sangfor Secure SD-WAN
As businesses grow, managing WAN across multiple sites becomes increasingly complex and costly with traditional solutions like MPLS. SD-WAN addresses these challenges by decoupling control functions from physical networks, simplifying management and reducing costs. Sangfor Secure SD-WAN builds on this foundation by providing safe, efficient, and reliable connectivity between locations. The Athena NGFW device acts as the edge gatekeeper, allowing only authorized traffic and protecting data confidentiality, integrity, and availability.
Challenges at Network Edges
Resilience | Security | Management |
---|---|---|
Link failover leads to business interruption; | Gaming and streaming media while at work; | Onsite deployment and troubleshooting |
What Solution Do You Need
Resilience | Security | Management |
---|---|---|
Automatic link failover; | Application/URL filtering & Bandwidth | Lower link and management costs; |
Sangfor Secure SD-WAN High-Level Architecture

Solution Components



Athena NGFW
Athena NGFW
Advanced Next-Generation Firewall that integrates with Athena EPP to share threat intelligence and enable one-click endpoint scans and threat mitigation.



Central Manager
Central Manager
Centralized management platform providing unified network and security monitoring, device and security policy management, report generation, and more.
Secure SD-WAN Key Values
The Secure SD-WAN solution not only ensures safe connections but also enhances network security with features like IPS, Application Control, URL Filtering, APT Prevention, and Malware Inspection. The SOC Lite module continuously monitors for potential attacks and vulnerabilities, ensuring comprehensive protection against various threats.
Athena NGFW’s SOFAST engine sends redundant packets based on bandwidth availability and application needs to minimize packet loss and uses the FEC algorithm to rebuild lost packets. This reduces packet loss at the application level, ensuring an optimal access experience.
Integrating Athena NGFW with Athena EPP allows for the correlation of network and endpoint data, thereby improving the detection of security threats and attacks. Verified incidents can easily be mitigated with one click on the Athena NGFW console.
Centralized policy and report management simplifies the process of setting and overseeing network rules and generates easy-to-understand reports about network performance and security incidents, ensuring consistent and effective security measures across the network.
Seamlessly integrates with hybrid WAN architectures, allowing businesses to leverage multiple network connections, including MPLS, broadband, and LTE, to create a resilient and cost-effective network infrastructure.
The solution offers a cost-effective alternative to traditional WAN solutions by optimizing bandwidth usage and reducing reliance on expensive MPLS links. By consolidating network and security functions into a single platform, organizations can achieve significant cost savings while improving network performance and security.
Frequently Asked Questions
Sangfor Secure SD-WAN integrates advanced networking and security features in one solution, making it more comprehensive than traditional SD-WAN. Below is a detailed comparison:
Features | Sangfor Secure SD-WAN | Traditional SD-WAN |
1. Offerings | ||
Central Management | YES | YES |
CPE | Sangfor Network Secure Firewall | SD-WAN devices or Routers |
SaaS Access | Sangfor Access Secure | NO |
2. SD-WAN & Orchestration | ||
SD-WAN Path Selection Based on SLA (Latency, Jitter, Packet Loss, Application) | YES | YES |
SD-WAN Path Failover | YES | YES |
Link Load Balancing | YES | YES |
Zero-Touch Deployment | YES | YES |
Centralized Policy Management | YES | YES |
Centralized Traffic Visbility & Reporting | YES | YES |
Centralized Config Backup & Restore | YES | YES |
3. Security Capabilities | ||
Application Control & URL Filtering | YES | PARTIAL |
Bandwidth Management | YES | YES |
Intrusion Prevention System | YES | NO |
APT, Malware Inspection | YES | NO |
Security Operation & Response | YES | NO |
Endpoint Security Integration | YES | NO |
Security Service Team/MDR | YES | NO |
4. WAN Optimization | ||
FEC or Packet Dulplication for Noisy Channels | YES | NO |
Deduplication, Caching | NO | NO |
SaaS Application Optimization | YES | NO |