Fortinet FortiGate IPS vs Splunk User Behavior Analytics comparison

 

Comparison Buyer's Guide

Executive Summary
 

Categories and Ranking

Fortinet FortiGate IPS
Ranking in Intrusion Detection and Prevention Software (IDPS)
4th
Average Rating
8.4
Number of Reviews
54
Ranking in other categories
No ranking in other categories
Splunk User Behavior Analytics
Ranking in Intrusion Detection and Prevention Software (IDPS)
12th
Average Rating
8.2
Number of Reviews
18
Ranking in other categories
User Entity Behavior Analytics (UEBA) (2nd)
 

Mindshare comparison

As of June 2024, in the Intrusion Detection and Prevention Software (IDPS) category, the mindshare of Fortinet FortiGate IPS is 7.1%, down from 7.4% compared to the previous year. The mindshare of Splunk User Behavior Analytics is 1.1%, down from 2.8% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Intrusion Detection and Prevention Software (IDPS)
Unique Categories:
No other categories found
User Entity Behavior Analytics (UEBA)
13.1%
 

Featured Reviews

Sachin Vinay - PeerSpot reviewer
Aug 23, 2022
Has a good set of UTM features, great bandwidth shaping mechanism, and efficient algorithms
We sometimes have issues when carrying out inspections because the system slows down and our clients complain about it. The only other drawback is that we have to manually insert certificates for our clients. Most social networking sites have dependencies and to completely block them requires a deep inspection profile. For protection, we need to put the certificates in for all of our clients. It's a major drawback not having it embedded in the system. I would very much like to see Forticlient's new TNA technology included with the original license for Fortigate. It currently requires an additional license which is quite costly for us as a middle-size organization. We could include it with VPN for our clients.
NS
Aug 18, 2019
Easy to configure and easy to use solution that integrates with many applications and scripts
Actually, the most valuable aspect of Splunk is the data. You do not need to use your databases to perform all things from on all the servers we have. Splunk has three big things it can do with data: it can show it hot, warm and cold. The hot of it allows you to see the data as soon as things happen — maybe to the second. We have the warm, the warm will segment the data up to the hot up to three months ago. The cold will store all of the archives of all the data after the six months. After that, you can't make comparisons any further. In the future, we make Splunk in the SOC (Security Operations Center). In the SOC now, we use one feature, it's called the alert system. So in the future, we want to make it so we can send all the data and we can build its security and its management. It will be published in all the places as it is now. We need to do this so we can build more data centers from all the past and existing data crunch.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The feature that I find most valuable is its protection of the websites."
"The product is scalable."
"FortiGate IPS is really easy to use. I don't have any problems with this."
"The solution can scale."
"Before using this solution, we had so many problems accessing our resources because we don't have a lot of internet bandwidth. And by using application control and traffic shaping, we were able to manage user to quickly access services that are important. This tool has aided to the simplicity of our day-to-day management."
"FortiGate protects and secures our clients' networks. The security is solid, and it performs well. I think they use some artificial intelligence, so I think it's excellent equipment."
"Has a very user-friendly interface and doesn't require any prior knowledge."
"The GUI is the most valuable feature."
"It's easily scalable."
"Splunk is more user-friendly than some competing solutions we tried."
"The solution appears to be stable, although we haven't used it heavily."
"It's straightforward in terms of configuration and troubleshooting and log management and monitoring as well. These are the edge points in addition to it being a modular solution where you can capitalize on your current licenses with extra licensing models, which can match the customer's business requirement and it can help the customer to design or to actually plan for their own roadmap."
"We are really pleased with Splunk and its features. It would be practically impossible to function without it. To provide a general overview of the system, it's important to note that the standard log files are currently around 250 gigabytes per day. It would be impossible to manually walk through these logs by hand, which is why automation is essential."
"The solution's most valuable feature is Splunk queries, which allow us to query the logs and analyze the attack vectors."
"The solution is fast, flexible, and easy to use."
"Because of some of the visualizations that we utilize, we are able to understand strange, unusual traffic on our networks."
 

Cons

"The price of the solution could be cheaper."
"Right now, it's not really scalable, but it's okay for us. However, looking ahead to three years from now, we might have a problem with scalability. We foresee a little risk down the road. The stability is okay for now."
"The web filtering categories could improve in Fortinet FortiGate IPS. There are too many websites under the category of Unknown and the other categories are not featuring all the necessary sites."
"The solution has limited scalability."
"To stay ahead of the competition Fortinet FortiGate IPS needs to think about how to adjust pricing."
"It would be better if they had a dashboard where we could see what attacks were happening. It would be good to see who's trying to get into our network."
"IPs are not handled well and the process is unnecessarily complicated."
"The solution could maybe use more integration with artificial intelligence to be more proactive."
"They should work to add more built-in correlation searches and more use cases based on worldwide customer experiences. They need more ready-made use cases."
"I'm not aware of any lacking features."
"In the future I would like to see simplified statistics and analytical threats."
"It would be good if the solution had an analytics tool that allowed us to analyze the data without writing specific queries."
"I would like improved downward integration with other tools such as McAfee and other GCP solutions."
"It could be easier to scale the solution if you are using it on-premise, not in the cloud."
"The price of Splunk UBA is too high."
"The initial setup was complex because some of the configurations that we required needed customization."
 

Pricing and Cost Advice

"We pay for the license of Fortinet FortiGate IPS annually. There are not any extra costs."
"The pricing is reasonable."
"It's a year based license."
"The pricing is based on a licensing model for each IPS in your environment."
"The licensing costs are very competitive."
"The solution could be better priced."
"The pricing for FortiGate IPS is competitive with other products in the category."
"We are currently evaluating a Palo Alto solution, and the pricing could be a reason for going for Palo Alto."
"There are additional costs associated with the integrator."
"I am not aware of the price, but it is expensive."
"The licensing costs is around 10,000 dollars."
"I hope we can increase the free license to be more than 5 gig a day. This would help people who want to introduce a POC or a demo license for the solution."
"Pricing varies based on the packages you choose and the volume of your usage."
"My biggest complaint is the way they do pricing... You can never know the pricing for next year. Every single time you adjust to something new, the price goes up. It's impossible to truly budget for it. It goes up constantly."
report
Use our free recommendation engine to learn which Intrusion Detection and Prevention Software (IDPS) solutions are best for your needs.
787,817 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
23%
Financial Services Firm
9%
Manufacturing Company
8%
Comms Service Provider
6%
Computer Software Company
15%
Financial Services Firm
14%
Government
10%
Manufacturing Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about Fortinet FortiGate IPS?
The most significant aspect of IPS is self-explanatory as it primarily focuses on intrusion prevention, which is crucial for Fortinet's internal outbreak prevention efforts and ensuring compliance ...
What needs improvement with Fortinet FortiGate IPS?
There is room for improvement in being proactive about identifying and integrating new signatures.
What do you like most about Splunk User Behavior Analytics?
The solution's most valuable feature is Splunk queries, which allow us to query the logs and analyze the attack vectors.
What is your experience regarding pricing and costs for Splunk User Behavior Analytics?
I am not aware of the price, but it is expensive. A rough estimate would be around 150 gigabytes, given the huge amount of data. At the moment there are no additional costs for maintenance.
What needs improvement with Splunk User Behavior Analytics?
Sometimes, we need to write explicit queries. It would be good if the solution had an analytics tool that allowed us to analyze the data without writing specific queries. The solution's user interf...
 

Also Known As

FortiGate IPS
Caspida, Splunk UBA
 

Learn More

Video not available
 

Overview

 

Sample Customers

Riverside Healthcare, Salt Lake City, Dell SecureWorks, Credit Bank Zagreb
8 Securities, AAA Western, AdvancedMD, Amaya, Cerner Corporation, CJ O Shopping, CloudShare, Crossroads Foundation, 7-Eleven Indonesia
Find out what your peers are saying about Fortinet FortiGate IPS vs. Splunk User Behavior Analytics and other solutions. Updated: May 2024.
787,817 professionals have used our research since 2012.