This solution is mainly used for reporting. We collect data from the FortiGate and analyze it with this appliance.
We have a physical device that is deployed on-premises.
This solution is mainly used for reporting. We collect data from the FortiGate and analyze it with this appliance.
We have a physical device that is deployed on-premises.
Using this solution has allowed us to identify which applications are consuming the most bandwidth. We can also see the times at which bandwidth is most utilized. This has allowed us to manage our bandwidth and blend better.
The most valuable feature of this solution is reporting. We use this functionality every day, and obtain reports on things like how many people are using the VPN, which websites are being accessed, and whether hackers are trying to penetrate into our network.
Every time there is a firmware upgrade the interface changes, and you'll have to maneuver that interface to see how to use it.
When somebody is new to the system they find it difficult to perform certain operations, like backups, and to see where the reports are. A more user-friendly interface would be an improvement.
I would like to see support for analyzing the wireless site, without going through the controller. For example, I would like to see a report on the full data including the APs that were up or down, and whether something has been upgraded.
FortiAnalyzer is a good product that is stable. It is used on a daily basis.
My understanding from the literature is that you can connect up to two FortiGate devices, or firewalls. Right now I have two 900D firewalls connected in the same network.
We have approximately twenty-five hundred users, including students and staff. There are six people who manage this solution. At this time, the current solution is enough and we do not need to increase its usage.
Technical support for this solution is powerful and good.
We have a support contract and Fortinet handles the maintenance of this solution. If we face any problem we can just contact them and they will help. For example, last month we were not able to get a report from the FortiGate, and they managed to help us by formatting the disk on FortiAnalyzer. Now, we are able to get the report that we want.
We did not have another analyzer solution prior to this one.
I struggled a little bit with the initial setup because it was a new concept to me. I looked at some videos on YouTube, as well as the Fortinet website.
We had another company perform the actual deployment for us, but we had to provide input to guide them on how to set it up for us. They were very professional and very good.
We started with the 800C, then, later on, we moved to the 900D. The same company handled both deployments and they did a great job.
The deployment took less than a week. There was fine-tuning that had to be done on a regular basis until we got the reports that we wanted from it.
Our licensing fees are on a yearly basis. We have several products including Fortinet Wireless, FortiGate Firewalls, and FortiAnalyzer, which are bundled together and cost approximately $50,000 USD annually. We don't pay anything else in addition to the standard licensing fees.
A company implemented a POC for us, and after that, we found that this could be a good product for our purposes.
FortiAnalyzer is a good product, and anybody who implements this solution will get good results from it. The support from Fortinet is awesome.
I would rate this solution an eight out of ten.
It receives logs from the FortiGate 5000 Series (about 12 FortiGate blades), and it was configured for keep logs for about 1,050 days. The logs are divided by archive (raw logs) and analytics (logs indexed in a database).
The use case is primarily for getting graphical data to make quick decisions.
FAZ has improved the organization because it stores events in the past so we can correlate incidents using another monitor tools; the problem is that it can´t recognize logs from FortiController blades, not even specifying it as a syslog device so this is a big lack. Devices from another brand are compatible only as syslog devices if they support.
It supports SQL for logging and reporting. Log data is inserted into the SQL database for log view and report generation.
Another feature is the custom reports, where you can obtain a chart builder from a log view: traffic, event, or security log.
It is very important that FAZ can support FortiController as the architecture designed for the network. FortiController should be registered in FAZ at least for event logs.
No issues at all. It is a reliable product.
The problems come when you are using different OS versions between FortiGate and FortiAnalyzer.
No scalability issues. You should know how many logs per second or minute are generated in your network to avoid issues with scalability.
The technical support with Fortinet has risen considerably. Now, they respond in three to four hours instead of two days.
We did not use a previous solution.
The FAZ includes a wizard, which is very simple to follow during the initial setup.
We implemented it in-house. We have had some experience implementing FAZ.
I do not have this value yet.
The cost and pricing should be in accordance with the calculation of log storage capacity for a time period required for historical analysis.
We did not look at any other options, because Fortinet was elected for use by the end user.
My only experience is with a very important customer, the most recognized in Latin America.
This product is only used for logs and reporting.
It gives us reporting features, which are helpful in the case of troubleshooting and audit purposes.
It has detailed reporting, e.g., user-wise reporting, threat analysis, etc. It also gives you live logs, which can be really helpful during troubleshooting.
It should have customized reports as well. While it currently has them, you need to write a script which is not straightforward.
No issues.
No issues.
I would rate it as a two out of 10. The technical support takes at least two days to reply on any ticket post raised on their website.
We did not have a previous solution.
Initial setup is straightforward, and it has an easy setup.
It depends upon the company.
We evaluated SonicWall and Cisco.
It generate reports from a specific date or interval.
Yes. The combination between FortiAnalyzer and FortiGate 5000 Series with millions of concurrent sessions is high-risk because it can interrupt the operation of the network.
The FortiAnalyzer is not scalable.
Tech support is very poor and slow.
Straightforward.
The hardware cost and services contract are fair.
Buy it for networks that have the FortiGate platform as a security gateway or for enterprises with employees who are on the road a lot.
The product is really helpful in examining the logs of multiple firewalls on a single GUI.
Log View is the most valuable part for us, as we can view logs from different Fortigates on a single GUI.
Another important feature is real-time logs, they help a lot in troubleshooting.
I think some improvement is required in real-time log monitoring, as sometimes it gets stuck or displays results after a delay.
No issues yet.
No issues after installing the 1000E.
Good.
We used view local logs before this.
It's straightforward, just add in different FortiGuards the IP address of FortiAnalyzer.
It's worth spending on FortiAnalyzer if you have multiple firewalls in your network.
The key functions for us are the next-gen firewall and network analytics. To ensure the best protection, we need to constantly analyze the situation in the network, as well as internal and external threats, as well as actual AV protection. The Fortinet products and FortiGuard services give us all of this.
Our company uses a virtual infrastructure. Implementing this product supplements the protection of our infrastructure.
The current version of the product is easy to use. Based on my experience, I can't recommend any areas of improvement. It's important, however, to know what you want prior to implementation. Otherwise, it may not meet your future needs based on the initial configurations.
We've used it for about four months.
During installation, we had no problems with deployment.
We have had no problems with stability.
We have had no problems with scalability.
The level of local customer service was very good. Per our request, tested the product. We got all answers to our questions from technical support. I rate both of them highly.
We used Wallix AdminBastion together with it.
The initial setup was straightforward.
A successful implementation for this product depends on how clearly the customer understands what they have and what they need in the future. In most cases, the customer turns out to be unsatisfied when it's unclear that they knew what they wanted prior to implementation. My main recommendation is to implement it together with the vendor, writing down the tasks, solutions, and the expected result before you begin.
I think Fortinet has a balanced offering of prices and licenses.
Fortinet's strategy is based on the dividing the product line depending on functionality. This allows customers to choose only the necessary feature set for them.
The Fortinet product line is wide – you can choose from SOHO to Enterprise, and from hardware to virtual solution. The presence of a free client (Win/Android/OS X) provides protection for client workstations. Each customer will be able to find the most suitable solution for them.
The balanced policy product line and licensing allows customers to choose only the necessary feature set for them. Also you can easily migrate from other vendors using single tools for conversion. Another tool helps you plan the placement of Wi-Fi points in the building. Also, it's very important that equipment has international and national certification such as PCI, DSS, etc. Presentation of products for SDN (Software-defined Networks including SDDC - Software-defined Data Center) confirms the company's leading position in the market.
Before using FortiAnalyzer, people would surf wherever and we could not monitor or see which computer in the company goes where. Everyone had the same IP. Now, using the analyzer, I am able to see each IP separately, including user name and other stats. One time the police called and told me someone from the company was breaking the law and I was able to monitor the specific computer.
They should learn from CheckPoint how to design UX for admins.
No issues encountered.
It's very stable.
I've not used them yet.
Technical Support:I've not used them yet.
We previously used a previous solution.
It was straightforward.
We did it in-house.
It's a great ROI for the price.
Only get it if you need it.
Fortinet FortiAnalyzer is primarily utilized to generate quarterly reports showcasing blocked attacks and vulnerabilities. It employs features like WAV porting triggers and DNS triggers to effectively demonstrate to the client the security of their environment.
Fortinet FortiAnalyzer assists in showcasing the value of Fortinet and facilitates the upselling of additional Fortinet products to our customers.
The most valuable feature is the capability to create a customized dashboard. We can subsequently input our EMS, FortiClient, and FortiGate data into it and generate reports.
The integration between specific tenants and FortiAnalyzer can be simplified when utilizing a multi-tenant EMS for our FortiClient.
I have been using Fortinet FortiAnalyzer for three months.
Fortinet FortiAnalyzer is stable.
Fortinet FortiAnalyzer is scalable.
I utilized the technical support services once, and I received a prompt response.
The initial setup is straightforward. The deployment was an easy and smooth process. The deployment took one day and I did it myself.
I would rate Fortinet FortiAnalyzer a nine out of ten.
Fortinet FortiAnalyzer does not require maintenance after the initial report setup. We simply have to remove and add FortiGate as needed for each report.
Before utilizing Fortinet FortiAnalyzer, individuals should determine the type of reporting they require. Additionally, they ought to be acquainted with FortiGate before endeavoring to use FortiAnalyzer.
I think Fortinet has a balanced offering of prices and licenses.
%50 %50