We use the solution to provide firewall, cybersecurity, VPN access, and SD-WAN connectivity worldwide.
Technical Consultant at Spark New Zealand
An easy-to-configure product with a reasonably good graphical user interface
Pros and Cons
- "The product is easy to configure."
- "The web process often has a memory leak."
What is our primary use case?
What is most valuable?
The GUI is reasonably good. The product is easy to configure.
What needs improvement?
The product runs out of memory. The web process often has a memory leak. The support cost could be improved.
For how long have I used the solution?
I have been using the solution for ten years.
Buyer's Guide
FortiGate Next Generation Firewall (NGFW)
June 2025

Learn what your peers think about FortiGate Next Generation Firewall (NGFW). Get advice and tips from experienced pros sharing their opinions. Updated: June 2025.
856,873 professionals have used our research since 2012.
What do I think about the stability of the solution?
The solution’s stability is good. I rate stability a nine out of ten.
What do I think about the scalability of the solution?
The scalability is good. I rate the scalability a ten out of ten. Some customers have 20 users, while others have about 5000 users.
How are customer service and support?
Support is good. It's a bit scripted. It takes a while to get to somebody who knows what they're talking about. It'd be nice to talk to someone technical upfront. Sometimes we have to go through a service desk and go through a whole lot of quick repetitive questions before we get to talk to someone knowledgeable.
How was the initial setup?
I've been working with the product for ten years. I find the initial setup quite simple.
What about the implementation team?
I'm currently deploying 50 units around the country. It'll take me about ten minutes each to configure the solution. Once the product is set up, we need about one or two people to maintain it.
What's my experience with pricing, setup cost, and licensing?
The solution’s price has gone up recently, but it's still good value for money compared to the other firewalls we use. Especially for smaller ones, it is good value for money. Our customers pay for licenses annually or once every two to five years. If we have an older version, the support costs get quite high. I rate the support cost a six out of ten.
What other advice do I have?
I work with lots of firewalls. I deploy the product on FortiManager. It'll take me about a day to configure FortiManager. We have lots of customers. I would recommend the solution to others. Overall, I rate the product a nine out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner

IT manager at a university with 5,001-10,000 employees
With a good design in place, the tool also offers SNAT and DNAT functionalities to its users
Pros and Cons
- "FortiGate Next Generation Firewall's design is good...I am very impressed with the product's stability."
- "The solution's GUI is not very appealing."
What is most valuable?
FortiGate Next Generation Firewall's design is good. Technically, I haven't used many of its features. The primary purpose we use the solution in our organization is for its SNAT and DNAT functionalities. The solution is also used for its vulnerability patching mechanism.
What needs improvement?
The solution's GUI is not very appealing. When using a tool from another vendor, we found the GUI of that tool to be quite appealing. FortiGate Next Generation Firewall uses a very old type of GUI, which is not very appealing. The GUI can be improved.
For how long have I used the solution?
I have been using FortiGate Next Generation Firewall (NGFW) for six months. My company is just a customer of the product.
What do I think about the stability of the solution?
I am very impressed with the product's stability. Stability-wise, I rate the solution an eight and a half out of ten.
What do I think about the scalability of the solution?
Scalability-wise, I rate the solution a six out of ten.
My company has 2,000 users of the product.
How are customer service and support?
I didn't need any support. The support is good. I wouldn't say the support is bad. I rate the support a seven and a half out of ten.
How would you rate customer service and support?
Neutral
How was the initial setup?
My company seeks the help of vendors to do the initial setup of the product. After that, we just work on policies, SNAT, DNAT, and virtual IPs.
The setup phase was neither difficult nor easy. I rate the setup phase as three or four out of ten on a scale where one is difficult, and ten is easy.
The solution is deployed on-premises.
The solution's deployment took two to three weeks.
Two people were required for the deployment of the product.
What about the implementation team?
The solution's vendor executed the setup phase.
What's my experience with pricing, setup cost, and licensing?
The solution's pricing is quite high when compared to other vendors. I rate the pricing an eight and a half on a scale of one to ten, where one is low, and ten is high.
What other advice do I have?
I highly recommend the solution to those planning to use it.
Overall, I rate the solution a nine out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Buyer's Guide
FortiGate Next Generation Firewall (NGFW)
June 2025

Learn what your peers think about FortiGate Next Generation Firewall (NGFW). Get advice and tips from experienced pros sharing their opinions. Updated: June 2025.
856,873 professionals have used our research since 2012.
Technical Head at Quoinx Technologies private Limited
A tool that is easy to use and implement, which can be useful for routing and reporting purposes
Pros and Cons
- "Routing and reporting are two areas where the product has an added advantage compared to any other product."
- "Vulnerabilities owing to viruses in the OS need to be reduced in FortiGate Next Generation Firewall from an improvement perspective."
What is our primary use case?
The use cases of the solution depend on what the customer wants from the tool. If a customer is looking for a core firewall, I provide them with FortiGate Next Generation Firewall (NGFW). Suppose a customer is looking for a tool from a patch connectivity perspective with multiple branches and wants those branches to be connected to the data center. In that case, we can suggest FortiGate Next Generation Firewall's features to them.
What is most valuable?
Routing and reporting are two areas where the product has an added advantage compared to any other product.
What needs improvement?
Vulnerabilities owing to viruses in the OS need to be reduced in FortiGate Next Generation Firewall from an improvement perspective.
Some vulnerabilities get added to the system every two months, which may be code execution or backend and backdoor issues.
In the future, the product should be able to tackle vulnerabilities. Research and development to increase the product's security capabilities is needed.
For how long have I used the solution?
I have been using FortiGate Next Generation Firewall for a year now. My company has a partnership with Fortinet.
What do I think about the stability of the solution?
From a stability perspective considering OS and if the vulnerabilities are present, I rate the stability a seven out of ten since it creates a lot of issues in general.
What do I think about the scalability of the solution?
We suggest FortiGate Next Generation Firewall to small and medium businesses.
When it comes to enterprise-level businesses, and considering the need for two-layer security, consider a perimeter firewall, while I can suggest FortiGate only at a level of a core firewall. Suppose an enterprise customer has multiple branches and more branch networks. In that case, they need SD-WAN connectivity with security, for which I suggest they go for FortiGate's SD-WAN feature.
In general, it will not be enough for enterprise companies to have only Next Generation Firewall alone.
How are customer service and support?
I am not familiar with the technical support team because my support team works with them. The solution's technical support is good. We do not face many issues when dealing with the solution's technical support team.
Which solution did I use previously and why did I switch?
Previously, we were using Check Point in our company.
Compared to Check Point, FortiGate Next Generation Firewall needs to look at how to improve the way it deals with the vulnerabilities which are not there at Check Point and the security effectiveness provided by Check Point.
How was the initial setup?
It is easy to use and implement since anyone can do its configuration part, but there is some requirement for someone with proper technical skills to implement it properly. I can implement anything in any way, but that doesn't mean I can implement any product properly. The implementation requires certain technical expertise.
The implementation of the solution can take two days.
One person is required for the implementation phase.
What's my experience with pricing, setup cost, and licensing?
The solution's pricing is competitive.
What other advice do I have?
The usefulness of the product is an aspect that depends on the customers using the tool. We cannot even compare two products and say one is good for the customer and the other is bad. If a customer asks me to be an architect for their data center, I would say that for a perimeter firewall, they need to go for Check Point. Coming to a core firewall, if a customer says that they need two layers of security and two different vendors, it should be Check Point on the perimeter level. At the core level, a customer can go for Fortinet. Certain customers prefer the SD-WAN feature from Fortinet if they have branch firewalls and want an SD-WAN feature too. FortiGate has an added advantage because they have an SD-WAN feature with security that we can provide to their branch devices.
I don't have any suggestions for those planning to use the solution since we are pretty new to the solution, and we need to devote time to be able to comment on the solution.
I rate the overall product an eight out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
Information Technology Infrastructure Manager at SVP
Easy to set up but needs better pricing and more helpful support
Pros and Cons
- "The setup is easy."
- "Technical support is not helpful."
What is our primary use case?
The solution is primarily used as a border firewall as well as for internal LAN segregation, internal IPv4 policy management, a VPN for end users, and IPSec tunnels.
How has it helped my organization?
Before we implemented this solution, we had only one firewall and old Linux IP tables with no graphical user interface.
What is most valuable?
There is no one feature that stands out as most valuable compared to another. All features are correct and no extra items are needed.
What needs improvement?
The price of licensing could be better. The security of the FortiOS needs improvement, and features are available only in CLI. They could be available also in GUI.
Features like forward traffic capture or NAC in the VPN should take into consideration both Linux devices and Apple devices.
For how long have I used the solution?
I've used the solution for more than ten years.
What do I think about the scalability of the solution?
The scalability is okay.
How are customer service and support?
Technical support is not helpful.
How would you rate customer service and support?
Neutral
Which solution did I use previously and why did I switch?
We previously worked with Check Point, Palo Alto, Cisco, Watchguard, and PFsense.
How was the initial setup?
The setup is easy. Support is not helpful.
What about the implementation team?
We handled the initial setup in-house.
What was our ROI?
The solution is very expensive.
What's my experience with pricing, setup cost, and licensing?
The price of licensing is too high.
Which other solutions did I evaluate?
We did not previously evaluate other options before choosing this solution.
What other advice do I have?
Other Fortinet products are not the best, and Fortinet should take care as this will influence brand reputation.
Which deployment model are you using for this solution?
Hybrid Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Corporate Marketing Executive at a tech services company with 1-10 employees
Reliable with enhanced threat detection with effective content filtering
Pros and Cons
- "FortiGate's threat detection capability is excellent."
- "I would like to see improvements in some of the hard drive features on FortiGate so that we can generate reporting within a single box."
What is our primary use case?
We are using the FortiGate Next Generation Firewall, and we are also providing this solution to our customers.
How has it helped my organization?
Customer is investing in this solution. We have observed a reduction in order value costs, approximately one lakh rupees per order, which contributes to reducing overall security costs.
What is most valuable?
In our territory, the most usable features include WAP content filtering, which is more utilized than IDS, sandbox license, and multiple internet connectivity. These are the primary features we are offering as a solution.
FortiGate's threat detection capability is excellent. Compared to other solutions, FortiGuard Lab has a very high capacity to detect malware and malicious content.
What needs improvement?
I would like to see improvements in some of the hard drive features on FortiGate so that we can generate reporting within a single box.
For how long have I used the solution?
We have been working with FortiGate Next Generation Firewall for the last ten years.
What do I think about the stability of the solution?
It's reliable and works well within our needs.
What do I think about the scalability of the solution?
FortiGate is scalable. That said, you must change the hardware to scale in capacity.
How are customer service and support?
Technical support has improved over the last two or three years, as Fortinet now operates 24/7 support.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
We have also worked with SonicWall. Compared to SonicWall, FortiGate allows us to make a DNS server, which SonicWall cannot do. SonicWall offers the advantage of providing a free reporting solution.
What's my experience with pricing, setup cost, and licensing?
The price is very aggressive in India as India is a rapidly growing market, the original equipment manufacturer offers competitive pricing.
Which other solutions did I evaluate?
We have evaluated other solutions like SonicWall and Sophos.
What other advice do I have?
For very small companies, with five to ten users and where cost is a concern, I would not recommend going with FortiGate.
If only cost is a concern, then it would not be recommended. It is a little bit expensive - the entry-level model is the FZ FortiGate. At the same time, Sophos XZ 86 is an entry-level model, which is more suitable for very small networks.
I'd rate the solution eight out of ten.
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
Last updated: Oct 27, 2024
Flag as inappropriatePrincipal Consultant at Sapienze Tech FZE
Impressive in fending off various threats
Pros and Cons
- "The most valuable aspects of FortiGate NGFW are its top-notch reputation in peer reviews, user-friendly interface, and excellent support."
- "I see room to explore its integration with Secure Service Automation for a more comprehensive security view."
What is our primary use case?
We use FortiGate NGFW to secure our network gateways. These devices, functioning as UTM solutions, were impressive in fending off various threats. FortiGate excelled with its anti-spam, antivirus, and firewall features at the network level. Beyond security, it is seamlessly integrated with networking tools like Zendesk.
What is most valuable?
The most valuable aspects of FortiGate NGFW are its top-notch reputation in peer reviews, user-friendly interface, and excellent support. It stood out during external penetration tests, proving its effectiveness compared to our previous firewall. The seamless integration with other tools and thorough testing set FortiGate apart. Replacing our old firewall with Fortinet was a game-changer, especially as it helped us improve our performance in subsequent penetration tests.
What needs improvement?
FortiGate has been solid for us, but I see room to explore its integration with Secure Service Automation for a more comprehensive security view. The initial migration had some challenges, but they were manageable. Now, my focus is on automating responses to alerts, especially during nighttime attacks. I want to investigate how FortiGate can connect with other solutions, like SIEM, to enhance our security measures while offline.
For how long have I used the solution?
I have been using FortiGate NGFW for a year.
What do I think about the stability of the solution?
It is quite stable.
What do I think about the scalability of the solution?
FortiGate is scalable, and we currently use it for approximately 300 internal users, with additional offshore teams connecting via VPN. The total user count, including the offshore teams from different countries and continents, is around 400 to 500 people.
How are customer service and support?
We contacted Fortinet's technical support during a firmware upgrade issue. They guided the upgrade process, and their support was capable and helpful. I would rate them as a ten out of ten.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
In comparing FortiGate with other solutions like Cyberoam, I have found Fortinet to excel in various aspects. For instance, its intrusion detection capabilities stand out, providing instant alerts compared to some firewalls that take up to 24 hours. While I can't quantify percentages, Fortinet's performance, especially in areas like responsiveness, has been notably better in my experience.
How was the initial setup?
Setting up FortiGate NGFW was straightforward, with some considerations during the migration process. Migrating from an old firewall required meticulous rule review and manual configuration. Ensuring adherence to best practices and testing in a beta environment were crucial steps. We also coordinated with our ISP to clear the ARP cache for a smooth transition. Despite a minor misconfiguration leading to an issue, we swiftly addressed it over a weekend with minimal impact. Regular backups and failover tests added an extra layer of assurance. A team of three people deployed it. The deployment and migration from the old firewall to FortiGate took approximately one month. To ensure a smooth transition for our 24/7 operations, we invested extra time for thorough testing and rule validation.
What's my experience with pricing, setup cost, and licensing?
The pricing and licensing costs for FortiGate are quite reasonable, especially for an SMB like ours. While solutions like Check Point and Palo Alto are excellent, Fortinet's affordability played a significant role in our decision-making process.
Which other solutions did I evaluate?
FortiGate for SMBs impressively covers most features, and in my experience with Cisco, Symantec, SonicWall, and others, FortiGate stands out. It has exceeded my expectations. While I haven't explored Check Point due to budget constraints, FortiGate's pricing makes it a top choice. Palo Alto and Check Point are excellent but would likely have been my preference if pricing aligned. Overall, FortiGate has been a standout performer in terms of features and value.
What other advice do I have?
For those starting with FortiGate NGFW, my advice is to thoroughly explore its features. I recently recommended it to a healthcare entity due to its effectiveness and user-friendly interface. The fact that they already had Fortinet in another enterprise speaks volumes about its reliability and performance. Overall, I would rate it as an eight out of ten.
Disclosure: My company has a business relationship with this vendor other than being a customer: Implementer
Manager Operations Technology at EJCLME Inc.
A reliable tool for connectivity with strong WiFi ports and SD-WAN
What is our primary use case?
I’ve worked with network and security information since 1999. My use cases for FortiGate are in the telecom environment. In my experience, we have used Fortinet to connect sites. I’m working with an SMB in São Paulo, and we work with small equipment. I have a project to define a model from the end products, and to do that I’m working with a local network to deploy our services. After defining this product, I wire the product through my team so they can make configurations. Sometimes, I work directly with configuration, with third level support.
What is most valuable?
FortiGate’s connectivity and the SD-WAN is perfect. Likewise, the WiFi ports from Fortinet are very strong.
What needs improvement?
FortiGate's connectivity for small businesses is not as strong as it can be. If Fortinet includes more information and marketing to small businesses, their presence will be improved.
For how long have I used the solution?
I have 15 years of experience with Fortinet.
What do I think about the stability of the solution?
The solution is very stable and doesn’t have any problems.
How are customer service and support?
They are very good and they are quick at solving problems. I have had no problems with them.
How would you rate customer service and support?
Positive
What about the implementation team?
I work with a distributor in Brazil, and their people have a lot of experience with the technology and they are good to work with.
What's my experience with pricing, setup cost, and licensing?
The cost depends on the equipment required. The cost is okay.
Which other solutions did I evaluate?
Compared with Sophos, for example, Fortinet is similar but simpler to access and the licenses are easier and start using the solution. Sophos’ technology is very similar, but Fortinet has a stronger name and better technology for our technicians.
What other advice do I have?
In Brazil, there is no doubt that Fortinet is the leader when it comes to security solutions. Fortinet works better in a scenario with more of one presented from the same customer. There are many options from other brands for the same customer. When users need one solution to stay securely connected to many sites, Fortinet works well. 40% of all purchases are Fortinet, while another 30% are Sophos and another 30% are Cisco.
I rate FortiGate NGFW a nine out of ten.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Infrastructure Manager at a retailer with 501-1,000 employees
Enhanced security compared to traditional firewalls, providing protection against various types of attacks
Pros and Cons
- "The FortiGate Next-Generation Firewall is always updating. For example, if there is a big attack, they fix it in their firmware. They release new firmware with the necessary patches to address the vulnerabilities."
- "I would like to have SD-WAN as a part of the Next Generation Firewall. It would enhance high availability."
What is our primary use case?
There are many features that we can use. We can see all the logs. Additionally, we can connect with other devices like the FortiManager. We also have a new feature.
We mainly use the Next Generation Firewall for enhancing security. It has powerful capabilities compared to traditional firewalls, especially when dealing with current threats like those in Azure. The Next Generation Firewall can handle more effectively.
What is most valuable?
The FortiGate Next-Generation Firewall is always updating. For example, if there is a big attack, they fix it in their firmware. They release new firmware with the necessary patches to address the vulnerabilities.
Mainly, we are more secure than with the traditional firewall. The Next Generation Firewall helps a lot in defending against various types of attacks.
What needs improvement?
In terms of solutions, for now, we don't have any SD-WAN. Yeah. We are planning to implement SD-WAN due to some failures we experienced last year. For our high availability design, this would be beneficial.
So I would like to have SD-WAN as a part of the Next Generation Firewall. It would enhance high availability.
For how long have I used the solution?
I work with the FortiGate Next-Generation Firewall. We started using FortiGate about five to six years ago. We have been using various versions and migrated to newer ones over time.
What do I think about the stability of the solution?
It's stable, quite stable. We also have it set up as a firewall with high availability. We were also talking about SD-WAN for our future plans for our stores, mainly for the internal lines, because this SD-WAN technology is something we would like to implement.
What do I think about the scalability of the solution?
It is a scalable solution. We can connect it to any network or with other brands, not only Fortinet. For instance, we can configure it with Cisco or any other brand for connectivity.
In our company, it protects around 500 endpoints.
How are customer service and support?
Customer service and support have different levels of support—level one, level two, level three—based on the severity of the issue. They can also provide scheduled delivery. We usually never face any significant problems with their support.
I am satisfied with the support. They have good knowledge.
How was the initial setup?
The first setup process was easy to do. It was not difficult at all.
What about the implementation team?
We set it up ourselves. We created policies, firewall rules, IPsec VPN configurations, and everything was handled by our team.
The deployment took around five days, and the process was quite easy. The setup was straightforward. If we encountered any issues, we could contact Fortinet support. They were helpful and provided support through the hotline in urgent issues.
Maintenance is quite easy. I did it myself. It's user-friendly. We can use the GUI, or we can use the command line, but the GUI is more user-friendly. So it's good.
What's my experience with pricing, setup cost, and licensing?
The price is not very expensive compared to Cisco or Palo Alto. Like Palo Alto, which is the most expensive product.
Which other solutions did I evaluate?
We have always been using Fortinet. It has been quite stable for us.
What other advice do I have?
I would recommend it to other users. Overall, I would rate the solution a nine out of ten. It is a good solution.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.

Buyer's Guide
Download our free FortiGate Next Generation Firewall (NGFW) Report and get advice and tips from experienced pros
sharing their opinions.
Updated: June 2025
Popular Comparisons
Fortinet FortiGate
Netgate pfSense
WatchGuard Firebox
Juniper SRX Series Firewall
Fortinet FortiGate-VM
Zyxel Unified Security Gateway
Palo Alto Networks PA-Series
Google Cloud Platform Cloud Identity-Aware Proxy
Hillstone A-Series
Buyer's Guide
Download our free FortiGate Next Generation Firewall (NGFW) Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- What do you recommend for a corporate firewall implementation?
- Comparison of Barracuda F800, SonicWall 5600 and Fortinet
- Sophos XG 210 vs Fortigate FG 100E
- Which is the best network firewall for a small retailer?
- When evaluating Firewalls, what aspect do you think is the most important to look for?
- Cyberoam or Fortinet?
- Fortinet, Palo Alto or Check Point?
- If you could go back, would you change your decision to buy that firewall and why?
- Sophos XG vs Fortigate UTM
- Can you recommend a solution to replace Cyberoam 200ing Firewall?