Try our new research platform with insights from 80,000+ expert users

Fortinet FortiDB [EOL] vs Rapid7 Metasploit comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Fortinet FortiDB [EOL]
Average Rating
8.2
Number of Reviews
7
Ranking in other categories
No ranking in other categories
Rapid7 Metasploit
Average Rating
8.0
Reviews Sentiment
6.1
Number of Reviews
22
Ranking in other categories
Vulnerability Management (23rd)
 

Featured Reviews

HW
Sr. Security Network Engineer at Children's Cancer Hospital - Egypt 57357
For zero-day attacks, the signature is updated well
The technical support is very helpful. When we open ticket with them, they call us immediately. Their tickets don't circulate to another team because they solve it. They can follow up with us and provide feedback. This is totally helpful. There are a lot of implementations in Egypt. They could increase their offices there.
reviewer1247523 - PeerSpot reviewer
Head of Sales Services Department at a comms service provider with 51-200 employees
Extensive exploit database and seamless integration enhance penetration testing capabilities
The automated approach in the audits or in the hacking testing with Rapid7 Metasploit could be improved because even the same attack you provide today will go in different ways another day. I prefer when the auditor or pen-tester provides the attack in a non-automated mode. For some, it might be a valuable option, but I'm not sure it's valuable for us, as after the attack has been provided, we should release a report detailing how it transpired and what the customer should improve to block this way of attack. If the attack was provided in an automated mode, you cannot receive sufficient information that helps with this final report for the customer. While you can check the vulnerability, and the system will tell you there is no vulnerability, usually, a human can change one, two, or three parameters and using the same technique and the same scripts can break the system. Rapid7 Metasploit could be improved in areas concerning the experience with finding particular scripts pre-installed in the solution. Customers, administrators, and pen-testers spend considerable time trying to locate the specific component they need by the name of the technique or the name of the attack, so any improvements in making it easier to find those predefined components by name or timeframe would be beneficial. Search filters could be a correct improvement.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The most valuable features of this solution are the security aspects."
"It is extremely stable, and can expand as per our needs due to its stability."
"The solution is very good at preventing intrusions. You can definitely rely on this solution to cover your security."
"The biggest thing, for us lately, has been their cloud tools. They're like Intercept X from Sophos, where they'll test for ransomware. Fortinet has the same sort of set up with their cloud devices. So your firewall picks up something suspicious, it sends it up to the cloud for analysis. We also have their in-house antivirus. Having different antivirus checkpoints throughout the network is a good thing as well."
"The dashboard is very simple. It has an easy to use interface."
"We use it to protect files and to prevent users from browsing them while they are being used."
"The most valuable feature for us is the support for testing Linux-based web server components."
"It contains almost all the available exploits and payloads."
"The tool's most useful feature for penetration testing is its automation capabilities. With the professional edition, you can upload the results from Nessus in the Rapid7 Metasploit solution portal."
"All of the features are great."
"The solution is open source and has many small targetted penetration tests that have been written by many people that are useful. You can choose different subjects for the test, such as Oracle databases or Apache servers."
"Rapid7 Metasploit is a useful product."
"When I compare Metasploit with Nessus, I find that Metasploit is faster and it does not burden the system as much."
"The greatest advantage of Rapid7 Metasploit is that it is the only system that can directly exploit vulnerabilities on the Metasploit platform."
 

Cons

"They need to improve the web filter to make it more user-friendly."
"I'm an old-school guy. I really don't like web GUI interfaces. They're always slow and laggy and their design is restricted, whereas a binary deployment for an admin tool is always faster, easier, more flexible. I would like that kind of functionality from Fortinet."
"Some use case analyses could be improved."
"The pricing of this solution is a little bit on the high side and can be improved."
"I would like better APIs and integration with other products, like Python and SQL."
"We had some issues trying to fix some critical bugs, such as the SSL encryption."
"Metasploit cannot be installed on a machine with an antivirus."
"The solution should improve the responsiveness of its live technical support."
"Better automation capabilities would be an improvement."
"If your company's patch is not up to date, but you have other detection or defense solutions such as endpoint detection and response and antivirus software, the product exploit may not work effectively. This is because its exploit database update process is slow and not real-time. For zero-day vulnerabilities or new security threats, relying on Rapid7 Metasploit alone may not be effective."
"The reporting feature needs improvement."
"I would like to see more capabilities, more functions, and more features. More types of attack vectors."
"It is necessary to add some training materials and a tutorial for beginners."
"The reporting feature needs improvement. The time taken to fetch reports based on the number of events can be extensive, unlike Tenable, which is more user-friendly and faster."
 

Pricing and Cost Advice

"It is not costly."
"It's relatively inexpensive in comparison to everything else that has the same functionality. If you're looking at SonicWall or if you're looking at WatchGuard, their prices are about a third higher with relatively the same functionality."
"In the licensing model, the licenses are a little bit expensive."
"It is not expensive."
"The cost needs to be reduced."
"It is expensive. Our license expired, and our company is not thinking to renew because of our budget."
"On a scale of one to ten, where one is cheap and ten is expensive, I rate the product's pricing a six. So it's fairly priced."
"I use the open-source version of this product. Pricing is not relevant."
"It is a reasonably priced solution. I would rate it from five out of ten."
"I have used the free version of Rapid7 Metasploit."
"The cost is approximately $15 per device."
"Rapid7 Metasploit is an open-source solution."
"The pricing structure involves a one-time purchase cost of approximately twenty thousand dollars or euros for all customers."
report
Use our free recommendation engine to learn which Vulnerability Management solutions are best for your needs.
881,733 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
No data available
Computer Software Company
12%
Manufacturing Company
10%
Comms Service Provider
8%
Financial Services Firm
7%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business3
Midsize Enterprise1
Large Enterprise4
By reviewers
Company SizeCount
Small Business9
Midsize Enterprise4
Large Enterprise11
 

Questions from the Community

Ask a question
Earn 20 points
What do you like most about Rapid7 Metasploit?
I use Rapid7 Metasploit for payload generation and Post-Exploitation.
What is your experience regarding pricing and costs for Rapid7 Metasploit?
The pricing of Rapid7 Metasploit is quite affordable. It has a free version that many customers start with, and after that, they usually purchase the commercial part of the solution due to its deep...
What needs improvement with Rapid7 Metasploit?
The automated approach in the audits or in the hacking testing with Rapid7 Metasploit could be improved because even the same attack you provide today will go in different ways another day. I prefe...
 

Also Known As

FortiDB, FortiGuard Database Security
Metasploit
 

Overview

 

Sample Customers

Chunghwa Telecom
City of Corpus Christi, Diebold, Lumenate, Nebraska Public Power District, Prairie North Regional Health, Apptio, Automation Direct, Bob's Stores, Cardinal Innovations Healthcare Solutions, Carnegie Mellon University
Find out what your peers are saying about Wiz, Tenable, Qualys and others in Vulnerability Management. Updated: January 2026.
881,733 professionals have used our research since 2012.