fitgap

ProxySG and Advanced Secure Gateway (ASG)

Features
Ease of use
Ease of management
Quality of support
Affordability
Market presence
Take the quiz to check if ProxySG and Advanced Secure Gateway (ASG) and its alternatives fit your requirements.
Pricing from
Contact the product provider
Free Trial unavailable
Free version unavailable
User corporate size
Small
Medium
Large
User industry
  1. Manufacturing
  2. Professional services (engineering, legal, consulting, etc.)
  3. Transportation and logistics

What is ProxySG and Advanced Secure Gateway (ASG)

ProxySG and Advanced Secure Gateway (ASG) are secure web gateway products that provide web proxying, URL filtering, malware inspection, and policy enforcement for user web traffic. They are typically deployed by security and network teams to control and monitor outbound web access for on-premises users, branch locations, and managed endpoints. The products are commonly implemented as physical or virtual appliances and integrate with enterprise identity sources and logging/SIEM tools. They are positioned for organizations that need granular web access controls and inspection with an appliance-based architecture.

pros

Granular proxy policy controls

The products support detailed policy enforcement for web access, including user/group-based rules and fine-grained controls over web protocols and destinations. This fits environments that require explicit proxy behavior and deterministic routing of traffic. Security teams can apply consistent controls across sites when traffic is forwarded through the gateway. The architecture aligns with organizations that already standardize on proxy-based egress controls.

Multiple deployment form factors

ProxySG/ASG are commonly available as appliance and virtualized deployments, which can suit data center and branch scenarios. This helps organizations that need local enforcement points due to latency, regulatory constraints, or network design. It also supports phased migrations where some locations remain on-premises while others move to cloud-delivered controls. The approach can be useful when cloud-only enforcement is not feasible for all traffic.

Enterprise integration and logging

The gateways typically integrate with enterprise identity systems for user-aware policy and with centralized logging/monitoring workflows. This supports audit and incident response use cases where web activity needs to be correlated with user identity. Integration with existing security operations tooling can reduce the need to replace downstream monitoring processes. It also helps with compliance reporting for controlled web access.

cons

Appliance-centric operational overhead

An appliance/virtual appliance model can require capacity planning, patching, and lifecycle management across multiple locations. Scaling for traffic growth may involve hardware refreshes or additional instances rather than elastic scaling. This can increase operational burden compared with cloud-native secure web gateway services. It may also complicate rapid global expansion if new sites need local infrastructure.

Less aligned to SSE/SASE

Organizations moving toward cloud-delivered security stacks often prefer unified, globally distributed enforcement with integrated ZTNA, CASB, and DLP capabilities. A gateway that is primarily proxy/appliance-based may require additional products or architectural work to reach a comparable consolidated model. This can lead to more complex policy management across web, cloud app access, and private app access. Buyers evaluating modern cloud edge security platforms may see a higher integration effort.

Migration and modernization effort

Enterprises with long-standing proxy deployments may have complex PAC files, explicit proxy configurations, and legacy policy constructs. Modernizing these designs for roaming users and direct-to-internet access can require significant re-architecture and endpoint changes. Maintaining consistent inspection for encrypted traffic can also increase complexity due to certificate management and privacy constraints. These factors can extend deployment timelines in large environments.

Plan & Pricing

Plan Price Key features & notes
ProxySG (Edge SWG) Not publicly listed — contact Broadcom sales/authorized partners Appliance and virtual secure web gateway (Edge SWG). Licensing and subscriptions described in Broadcom product/support pages; pricing is quote-based.
Advanced Secure Gateway (ASG) Not publicly listed — contact Broadcom sales/authorized partners High-performance secure gateway / reverse proxy (ASG). Sold and licensed via Broadcom channels; software/firmware and SKU details available on Broadcom support.

Seller details

Broadcom Inc.
Palo Alto, California, USA
1961
Public
https://www.broadcom.com/
https://x.com/Broadcom
https://www.linkedin.com/company/broadcom/

Tools by Broadcom Inc.

VMware Integrated OpenStack
Layer7 API Management
Layer7 API Gateway
Layer7 API Developer Portal
Clarity Design System
Automic Automation
Automic Automation
Tanzu
Photon OS
VMware NSX
CA Endevor
Panvalet
Broadcom Service Virtualization
CA RFID Asset Management
Clarity
VMware Cloud Foundation
VMware Cloud Director
VMware Cloud on AWS
VMware vSphere Foundation
DX Unified Infrastructure Management

Best ProxySG and Advanced Secure Gateway (ASG) alternatives

Netskope One Platform
Cisco Umbrella
Zscaler Internet Access
Prisma Access Browser
See all alternatives

Popular categories

All categories