PeerSpot user
Solutions Consultant at a manufacturing company with 11-50 employees
Real User
Top 5
Easy to deploy, stable, and scalable
Pros and Cons
  • "The most valuable feature of the solution is reporting."
  • "The solution can improve the incident response function to provide more detailed information on where the incident is originating."

What is our primary use case?

The customer purchased a Fortinet Firewall in order to run it as a decentralized block and collect amazing security logs from their internet usage or other data from the box. The benefit of having an on-premise firewall is that they don't have to worry about any subscription, and the storage space it consumes is minimal due to the internal hard drive of the FortiAnalyzer. Furthermore, the firewall does not consume a lot of traffic from the internet due to it being on-premise.

What is most valuable?

The most valuable feature of the solution is reporting. The report that accompanies the solution includes the top 10 usages, threats to be aware of, and any highlights. Additionally, the API can be connected to other systems to receive more notifications.

What needs improvement?

The solution can improve the incident response function to provide more detailed information on where the incident is originating.

For how long have I used the solution?

I have been using the solution for three months.

Buyer's Guide
Fortinet FortiAnalyzer
May 2024
Learn what your peers think about Fortinet FortiAnalyzer. Get advice and tips from experienced pros sharing their opinions. Updated: May 2024.
769,599 professionals have used our research since 2012.

What do I think about the stability of the solution?

The solution is stable and we have never experienced downtime.

What do I think about the scalability of the solution?

I give the scalability of the solution an eight out of ten.

This solution is suitable for enterprise customers with a large number of devices and logs. Fortinet FortiAnalyzer enables the compilation of log files over a period of time, such as 90 days in Thailand. This is especially useful for gathering and analyzing data.

How was the initial setup?

The initial setup is simple. Fortinet FortiAnalyzer is an out-of-the-box solution, so we can start customizing as soon as we finish the installation.

What's my experience with pricing, setup cost, and licensing?

I give the cost a seven out of ten. I believe that Fortinet is a cost-effective brand, making it a competitive option in terms of pricing.

Which other solutions did I evaluate?

An alternative solution is SolarWinds, which analyzes server performance, and could be a competitor's CM solution or a managed service that sends data from sensors on the site to their facility. The primary distinguishing feature of SolarWinds is its form factor. SolarWinds must be installed on a server and requires server resources. In the past, a large amount of OS and other resources were necessary, but the form factor has remained the same.

What other advice do I have?

I give the solution an eight out of ten.

Due to the high cost, Fortinet FortiAnalyzer is not feasible to use for certain office or branch office environments. A possible compromise could be to use a combination of two solutions: for banks, the file-based solution may be beneficial, but for on-premises locations, it could be worthwhile to make use of the existing value and use it to centrally control and manage the data.

I recommend utilizing the FortiAnalyzer if our log volume is sufficient and we have a FortiGate.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
PeerSpot user
Section Head, Enterprise Solutions & SI Management at HGC Global Communications Limited
Real User
Top 20
Good performance, reliable, but interface could improve
Pros and Cons
  • "The most valuable feature of Fortinet FortiAnalyzer is its performance."
  • "Fortinet FortiAnalyzer could improve the user interface, and the experience of users receiving the reports and tracking could be better."

What is our primary use case?

We are using Fortinet FortiAnalyzer for the managing surface for our customers. We are a service provider and we are focusing on providing a service to our customers.

What is most valuable?

The most valuable feature of Fortinet FortiAnalyzer is its performance.

What needs improvement?

Fortinet FortiAnalyzer could improve the user interface, and the experience of users receiving the reports and tracking could be better.

For how long have I used the solution?

I have been using Fortinet FortiAnalyzer for approximately three years.

What do I think about the stability of the solution?

Fortinet FortiAnalyzer is stable.

How are customer service and support?

The support from Fortinet FortiAnalyzer is good.

How was the initial setup?

The initial setup of Fortinet FortiAnalyzer is fine. There is a lot of browsing and a lot of hierarchy that you need to have a particularly good understanding of in order to track the right things that you want to select.

What's my experience with pricing, setup cost, and licensing?

There is a license needed to use this solution.

What other advice do I have?

My advice to others is they have to assess well what kind of specific function or what kind of solution they are looking for.

I recommend this solution to others, but it depends on their usage.

I rate Fortinet FortiAnalyzer a seven out of ten.

Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
PeerSpot user
Buyer's Guide
Fortinet FortiAnalyzer
May 2024
Learn what your peers think about Fortinet FortiAnalyzer. Get advice and tips from experienced pros sharing their opinions. Updated: May 2024.
769,599 professionals have used our research since 2012.
Flavio Romera - PeerSpot reviewer
Development and Innovation Manager at NSB
Real User
Top 20
Good UI and customization with everything under one umbrella
Pros and Cons
  • "The product can scale."
  • "The pricing could be better."

What is our primary use case?

We are using it only for integration and getting information from FortiAnalyzer to use and analyze important events.

What is most valuable?

The stability is good.

They are able to integrate everything under one umbrella, which is nice. 

The UI and customization are good right now.

The product can scale. 

What needs improvement?

The pricing could be better. 

We'd like integration with more providers.

The initial setup can be difficult. 

For how long have I used the solution?

We've used the solution for about a year. 

What do I think about the stability of the solution?

The stability of the product is good and it has been reliable. There are no bugs or glitches and it doesn't crash or freeze. 

What do I think about the scalability of the solution?

The product can scale. It's simple to expand as necessary. 

How are customer service and support?

I've never had to contact technical support. I cannot speak to how helpful or responsive they would be.

Which solution did I use previously and why did I switch?

We are using all the solutions from Fortinet, and FortiAnalyzer. We are planning to use FortiSIEM and FortiWeb.

How was the initial setup?

It's not too easy to set up. It can be a bit difficult. They could make it a little bit easier. 

You only need two people (engineers) to handle deployment and maintenance. 

What other advice do I have?

We are partners for Fortinet. So we are planning to use the FortiEDR, and then we're going to expand.

We only use FortiAnalyzer for internal purposes.

Our company is using the most up-to-date solution. 

I'd advise potential users to look for a partner who knows how to handle the product and use their knowledge to give you quick training for your own people. The learning curve is not that easy.

I'd rate the solution eight out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
PeerSpot user
PeerSpot user
Senior System Administrator at Citystars Properties
Real User
Top 20
Helpful dashboards, reliable, and simple deployment
Pros and Cons
  • "The most valuable features of Fortinet FortiAnalyzer are the dashboards and supporting services."
  • "Fortinet FortiAnalyzer could improve by having better integration with other vendors."

What is our primary use case?

I am using Fortinet FortiAnalyzer for tracing anything that happens in the network.

What is most valuable?

The most valuable features of Fortinet FortiAnalyzer are the dashboards and supporting services.

What needs improvement?

Fortinet FortiAnalyzer could improve by having better integration with other vendors.

For how long have I used the solution?

I have been using Fortinet FortiAnalyzer for approximately five years.

What do I think about the stability of the solution?

Fortinet FortiAnalyzer is highly stable.

What do I think about the scalability of the solution?

Fortinet FortiAnalyzer is scalable.

We have five managers that are using the solutions.

How are customer service and support?

The support was great for Fortinet FortiAnalyzer.

I rate the support from Fortinet FortiAnalyzer a four out of five.

How was the initial setup?

The initial setup of Fortinet FortiAnalyzer was simple. The full deployment took approximately two or three hours.

What about the implementation team?

We used a local partner of Fortinet that was assisting us with the deployment. We had a two-person team for the deployment.

What other advice do I have?

I rate Fortinet FortiAnalyzer an eight out of ten.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Baherathan Kathirgamanathan - PeerSpot reviewer
Assistant Manager - Cloud Planning and Development at a comms service provider with 1,001-5,000 employees
Real User
Top 10
Very good log analysis and reporting with a straightforward deployment
Pros and Cons
  • "The log analysis and reporting are both quite good."
  • "The solution lacks business intelligence features. It's much too basic."

What is our primary use case?

We're a service provider. Our clients use the solution for log management.

We are using physical and virtual end ware. We have a physical and logical virtual environment for using this platform, which we provide to our customers.

What is most valuable?

We are utilizing the previous site end dividers and the IPS, IDS DDoS features. 

The log analysis and reporting are both quite good. 

What needs improvement?

The solution doesn't have online analysis. We can't analyze certain parts of the logs. For example, we can't analyze current logs.

It would be helpful if we could use the system we use to monitor everything to also check the live traffic or live logs.

The solution lacks business intelligence features. It's much too basic.

For how long have I used the solution?

I've been using the solution for two or three years.

What do I think about the stability of the solution?

The solution is stable. We've never faced issues.

What do I think about the scalability of the solution?

The solution does not scale easily. It's a hardware solution. We have FortiAnalyzer hardware, and since it has a hardware agent on the storage ware, it requires Forti capacity for analyzing purposes. There's only a finite amount of space in the hardware itself. It isn't infinite.

How are customer service and technical support?

We've dealt with technical support in the past and we've been very satisfied at the level of support we've received so far.

How was the initial setup?

The initial setup varies from company to company. Some are straightforward, some are complex.

Deployment is a simple task. FortiAnalyzer comes with the hardware version and a virtual agent. We just deploy and integrate it with the other Fortinet products.

Which other solutions did I evaluate?

There is a lot of competition for Fortinet in this area, including USM and Palo Alto.

What other advice do I have?

We are Fortinet partners.

For those organizations that need to use a product for reporting or some analysis of logs, this is a good solution. 

I'd rate the solution seven out of ten. The features are basic, and there's not too much business intelligence behind them. If it offered more of that, I'd rate it higher.

Which deployment model are you using for this solution?

Public Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
PeerSpot user
Information security officer at a financial services firm with 1-10 employees
Real User
Top 20
Good value for money, works well with other Fortinet solutions, and has helpful support
Pros and Cons
  • "The log events are quite useful for us."
  • "We'd like to see more embedded features."

What is our primary use case?

The solution is used for grabbing logs. It is designed for log aggregation of all Fortigate firewalls and to give visibility of traffic and usage. 

What is most valuable?

The log events are quite useful for us. The events aggregation from various Fortigate products makes it very helpful.

Technical support is helpful.

The stability is excellent.

This is a highly scalable product.

The setup is straightforward. 

What needs improvement?

We'd like to see more embedded features.

We'd like to see more SIEM capabilities. I'd love to see this merged with FortiSIEM for example. 

For how long have I used the solution?

I've been using the solution for around 20 years. 

What do I think about the stability of the solution?

The stability is great. I'd rate it ten out of ten for reliability. We rarely have any issues. 

What do I think about the scalability of the solution?

You pay compared to the volume of logs you collect. It is very scalable. It's highly expandable. On a scale from one to ten, I'd rate the scalability ten out of ten. 

We have less than five network engineers using the product. 

How are customer service and support?

I've dealt with support in the past and found them helpful and responsive. 

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

We use a variety of Fortigate products.

We did not use a different vendor previously. There is no other real option. We did try to use the free version of Splunk. We moved to Fortianalyzer as it works better in Fortinet products. Splunk is harder to fit into other Fortinet products. 

How was the initial setup?

The installation process only takes a couple of hours. It is easy to install. 

The maintenance is very minimal. One person can handle maintenance tasks. 

What about the implementation team?

We do use specialized consultants occasionally. However, I have been able to do it by myself as well in the past.

What's my experience with pricing, setup cost, and licensing?

I cannot speak of the exact price. Someone else manages the contract. However, you do get good value for your money. It's not overly expensive. 

As it is on-premises, you do need some on-prem resources. You need a traditional hypervisor and need the ability to host the solution on your premises. 

What other advice do I have?

We're customers and end-users. 

We are using the latest version of the solution typically. 

I'd recommend the solution to other users. 

I would rate the solution ten out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Mohamed Gohary - PeerSpot reviewer
Project Manager at a tech services company with 51-200 employees
Real User
Enriches visibility for security solutions
Pros and Cons
  • "FortiAnalyzer's best feature is centralized log analysis. It's based on SQL database, so I can fully customize my report, chart-wise and log-wise, and can create as many reports as I want without any limit."
  • "FortiAnalyzer's price could be lower."

What is our primary use case?

I mainly use FortiAnalyzer to centralize logs from multiple devices and generate local reports. It can work in two operation modes: as a collector only or an analyzer.

How has it helped my organization?

FortiAnalyzer has enriched the visibility for all our security solutions.

What is most valuable?

FortiAnalyzer's best feature is centralized log analysis. It's based on SQL database, so I can fully customize my report, chart-wise and log-wise, and can create as many reports as I want without any limit. It also has an important feature called Indicators of Compromise, an artificial intelligence feature that detects and alerts you when there is a breach in your entity. 

For how long have I used the solution?

I've been using FortiAnalyzer for ten years.

What do I think about the stability of the solution?

FortiAnalyzer is a very mature and stable product.

What do I think about the scalability of the solution?

FortiAnalyzer is scalable. When my organization expands in any way, I can implement a FortiAnalyzer as a collector only, it will collect the log, and I can send this to the main analyzer. If I use the virtual alert mode, this is a stackable license, so I can expand the log size or the internal hard-disc log size by purchasing a license. There is also a workaround solution, to automatically upload the old log file to shared storage and delete the old one, which gives more space in the hard drive.

How are customer service and support?

FortiAnalyzer's technical support is helpful.

How would you rate customer service and support?

Positive

How was the initial setup?

FortiAnalyzer is straightforward to implement and integrate, but a little experience is needed to generate a technical level.

What was our ROI?

We get good ROI from FortiAnalyzer.

What's my experience with pricing, setup cost, and licensing?

FortiAnalyzer's price could be lower, but it is cheaper than competitors like Palo Alto, Forcepoint, or Sophos. The basic license is available on a yearly basis, but some other licenses can be for three, six, or nine months as required. There are no hidden costs associated with this product.

What other advice do I have?

Don't just depend on the basic reports, you can get much more out of FortiAnalyzer if you know how to create customized reports from the SQL queries. I would give FortiAnalyzer a rating of eight out of ten.

Which deployment model are you using for this solution?

Hybrid Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer: partner
PeerSpot user
Vice President of Innovation and Customer Solutions at a tech services company with 201-500 employees
Real User
Useful reports, scalable, and priced well
Pros and Cons
  • "The solution does what it is supposed to. I want it to do reports for Fortinet and it does it well."
  • "The FortiAnalyzer is not good at managing multi-version environments. If all your FortiGate are at different versions in the field, that's difficult. The one thing we didn't like is the fact you have to have 100% of your environment at the same release, which is not pleasant, to have it fully functional. You can have a different release, but to have it fully functional 100% of your environment has to be the same release."

What is our primary use case?

We're a managed service provider and we use Fortinet FortiAnalyzer to generate reports for our customers. We manage our customer's Fortinet environment and FortiAnalyzer allows us to send a monthly report or on-demand report to our customers.

What is most valuable?

The solution does what it is supposed to. I want it to do reports for Fortinet and it does it well.

What needs improvement?

The FortiAnalyzer is not good at managing multi-version environments. If all your FortiGate are at different versions in the field, that's difficult. The one thing we didn't like is the fact you have to have 100% of your environment at the same release, which is not pleasant, to have it fully functional. You can have a different release, but to have it fully functional 100% of your environment has to be the same release.

In a future release, if they could turn they could turn Fortinet FortiAnalyzer into a multi-vendor supporting tool it would be awesome. However, I do not think this will happen.

For how long have I used the solution?

I used Fortinet FortiAnalyzer for approximately two years.

What do I think about the scalability of the solution?

Fortinet FortiAnalyzer is scalable.

Fortinet FortiAnalyzer is easy to scale. We have approximately 50-100 employees using this solution.

Which solution did I use previously and why did I switch?

We have other log analyzers, but we have found with Fortinet FortiAnalyzerwhen you have a Fortinet environment, it's fully integrated. This was what we were looking for, we were not looking for multi-vendor solutions, we were looking for the best log analysis tool for Fortinet.

How was the initial setup?

The solution is easy to set up.

What's my experience with pricing, setup cost, and licensing?

We found the price of Fortinet FortiAnalyzer to be reasonable.

What other advice do I have?

I would advise those wanting to use Fortinet FortiAnalyzer to use an MSP, to use a managed service provider, they can call us.

I rate Fortinet FortiAnalyzer an eight out of ten.

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Microsoft Azure
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
PeerSpot user
Buyer's Guide
Download our free Fortinet FortiAnalyzer Report and get advice and tips from experienced pros sharing their opinions.
Updated: May 2024
Product Categories
Log Management
Buyer's Guide
Download our free Fortinet FortiAnalyzer Report and get advice and tips from experienced pros sharing their opinions.