

Find out what your peers are saying about Microsoft, Cisco, Okta and others in Authentication Systems.
One Identity Active Roles provides excellent reporting and auditing functionality, allowing administrators to track permissions, actions, and responsibilities effectively.
Automation has really reduced the time spent on user provisioning, access management, or access changes by around 40 to 60 percent, which has significantly improved team productivity.
User onboarding time reduced by around seventy to eighty percent, from thirty to forty-five minutes to under ten minutes.
Their resolution time is timely, and they provide solutions efficiently.
I am satisfied with their service.
They are ready to provide support at any time.
The support team is knowledgeable about the product and AD environments.
Everything is good, and I can give One Identity technical support a rating of ten.
There is a need to scale more effectively to accommodate a larger number of users and bulk users.
Regarding Fortinet FortiToken's scalability, we can purchase licenses according to our needs.
I would rate scalability for Fortinet FortiToken as nine and a half or ten.
One Identity Active Roles works well in hybrid environments, handling both on-premises and cloud identities from a single platform.
It is commonly used in medium to large organizations managing complex Microsoft Active Directory and hybrid identity environments.
The platform can scale without needing a complete redesign.
I would rate stability for Fortinet FortiToken as the best solution.
FortiToken is stable, but there are some restrictions when it comes to supporting two-factor authentication in multi-factor environments.
Overall, One Identity Active Roles has proven to be a stable, reliable, and well-suited solution for managing Active Directory at scale.
Overall, I consider One Identity Active Roles to be a stable solution, suitable for enterprise-grade environments.
Consistently performing for daily operations like automation and user management without major downtime reported.
Any Fortinet FortiToken cannot be removed; if a box expires or loses support, it cannot be removed, and customers must purchase it from scratch.
This would allow for broader distribution among a larger number of system admins and software engineers, which is currently not feasible with the existing hardware-only approach.
If I can receive it on email, it would be more flexible.
I also want One Identity Active Roles to improve in their policy configuration area, which requires advanced expertise, and in the area of reporting, I want the reporting to be more basic, visible, and have the ability to export and customize options.
The current REST API feels like an afterthought, and my developers want the ability to operate through CI/CD pipelines instead of logging into the GUI.
Improving documentation and providing more guided implementation resources would help organizations accelerate deployment and reduce dependency on external support.
Discounts are often provided to close deals, making it a cost-effective solution.
The pricing for FortiToken is not low; I regard it as medium-priced.
It is quite expensive, costing more than 50 euros per identity.
I think our total was in the seven-figure range for a couple of years of service.
The initial investment includes licensing, infrastructure setup, and implementation effort, with licensing typically based on the number of managed users or accounts, which can increase costs in large environments.
The main use case of FortiToken is that it is a hardware-based solution, providing secure two-factor authentication for administrators.
Fortinet FortiToken provides very important security benefits because it is used to manage FortiGate from outside, exclusively with Fortinet FortiToken.
It is very user-friendly and easily integrates with various firewalls, making it convenient to use within diverse environments.
It's improved our security posture. It has limited access to our crown jewels, where all our identities lie within Active Directory.
It helps in removing custom Active Directory delegation, which enhances security by eliminating unnecessary privileges, addressing identity-based breaches by reducing the number of Active Directory delegations.
Dynamic groups are also one of the best features, eliminating the need to add or manage members manually.
| Product | Mindshare (%) |
|---|---|
| Fortinet FortiToken | 2.7% |
| Microsoft Entra ID | 6.5% |
| Okta Platform | 4.8% |
| Other | 86.0% |
| Product | Mindshare (%) |
|---|---|
| One Identity Active Roles | 11.9% |
| Netwrix Auditor | 10.6% |
| ManageEngine ADManager Plus | 10.1% |
| Other | 67.4% |


| Company Size | Count |
|---|---|
| Small Business | 18 |
| Midsize Enterprise | 5 |
| Large Enterprise | 9 |
| Company Size | Count |
|---|---|
| Small Business | 41 |
| Midsize Enterprise | 15 |
| Large Enterprise | 29 |
Fortinet FortiToken enhances security with two-factor authentication and mobile app integration, facilitating easy implementation and cost-effective perpetual licenses, integrating well with FortiAuthenticator to streamline VPN security.
FortiToken provides robust security through push-button authentication and time-based OTPs, making it an effective tool for managing both hard and soft tokens. It ensures server access security and VPN security with seamless integration to Fortinet platforms like FortiGate. Though improvements in integration with other solutions and enhanced reporting are noted, FortiToken remains a critical asset for organizations seeking simplified management of authentication processes. Migrating existing systems may pose challenges, and improvements in mobile app support and synchronization could enhance user experience.
What are the crucial features of Fortinet FortiToken?Fortinet FortiToken is particularly popular in sectors requiring high-security protocols, such as finance and healthcare. Companies use FortiToken to implement multi-factor authentication for VPN access in demanding environments, ensuring secure access to resources. This enhances remote work security and internal user operations by providing an additional layer of authentication.
One Identity Active Roles enhances Active Directory management by automating essential tasks and improving security through efficient delegation and role-based access control.
One Identity Active Roles offers advanced features for managing Active Directory environments, aiding in automating user provisioning, group management, and de-provisioning. It integrates seamlessly with Microsoft environments and provides centralized management for both on-premises and cloud identities. By improving operational efficiency and reducing manual errors, it enforces robust governance across organizations. Active Roles includes auditing and reporting tools that strengthen compliance and security monitoring. Companies find the setup could be simplified with better documentation, more customization options in reporting, and expanded cloud integration, particularly with Azure. Improved workflows and deeper native connectors are needed for seamless automation. Price adjustments and user-friendly analytics with intuitive dashboards are recommended for better usability.
What are the key features of One Identity Active Roles?Many industries deploy One Identity Active Roles for automating user lifecycle management, especially in Active Directory environments. It significantly eases operations by automating onboarding for new hires, managing role changes, and modifying access. The platform efficiently handles tasks like password resets and compliance audits while empowering teams to securely manage user access without requiring full administrative rights.
We monitor all Authentication Systems reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.