We use this solution to actively pick up and report on all activities and connectivity going through the FortiGate firewall.
We use this solution to actively pick up and report on all activities and connectivity going through the FortiGate firewall.
We like the fact that we can run minute-by-minute reporting form this solution.
We also appreciate that the interface of this solution is very good, and doesn't require a lot of configuration, updating, or maintenance.
We would like to see some improvement on the upgrade process around this solution. There are sometimes communication issues when a new version of the firewall is implemented, and it fails to report back to this product.
We would also like to be able to pull off incident reports and display them graphically using this solution.
We have been using this solution for about three years now.
The stability of this solution is okay. There is some room for improvement, and so we would rate the stability as an eight out of ten.
We have found this to be a fairly scalable solution.
The initial setup of this solution is very easy, and takes around three hours to complete the implementation.
We carried out the implementation using in-house resources.
The renewals for this solution are carried out yearly.
We would rate this solution a seven out of ten.
It's a lock storage correlation device. You can connect locks from different devices. Not just from Fortinet, but you can send locks from other devices to FortiAnalyzer. Basically, it is a centralized repository.
Fortinet FortiAnalyzer has a lock correlation feature. It simplifies the troubleshooting process for its customers. So now, instead of logging into every firewall, they can log into Fortinet FortiAnalyzer and check the locks. They can also check whether there are any issues with the network.
This is a difficult question for me to answer. I want the tool to have a sophisticated and customizable dashboard similar to the one in the SIEM solution. However, I'm not sure if that is in the pipeline. Basically, I would say that it's not a pure SIEM solution where your customer can have a layer on a view of dashboards or advanced dashboards.
I work with Fortinet and Palo Alto. I am also a partner of Fortinet. Even though I have been working with Fortinet for more than five or six years now, Fortinet EDR is something very new for me and us in general. We have been working on firewalls, FortiAnalyzer, FortiManager, FortiMail, FortiADC, and FortiWeb. EDR, SDMA, and ZTNA are new to us. Speaking about Fortinet FortiAnalyzer, I have been working on it for more than six years now.
The stability of Fortinet FortiAnalyzer is okay. Although some customers have encountered issues, others have had a pretty okay experience and are doing pretty well with the solution.
I would say that more than ten of our clients are working on this solution. I would say that it is kind of scalable since it comes in different form factors. Owing to the different form factors and sizing of the solution, you can add and get increased capacity. This can help a person to add more firewalls and devices.
I would say that Fortinet's tech support is really good.
Neutral
I can say that the setup is a mixture of both options. I wouldn't say it is difficult. I would rather say that the setup process is okay or moderate. Also, the straightforwardness and complexity of the setup process will depend on your environment.
The deployment of Fortinet FortiAnalyzer is not complex, but integrating it with firewalls can take some time, depending on the number of firewalls. So, the deployment of the entire solution can take approximately one week to complete.
I'm not familiar with the cost point, because I am more of a technical person and I do not do pre-sales or sales.
I downloaded reports for CrowdStrike Falcon and FortiEDR from peerspot.com to see how they are in terms of performance.
Based on current trends, people are shifting towards FortiGate devices for their attractive value proposition and exceptional performance. FortiGate is the go-to choice for firewalls. And for us, along with FortiGate, I'll even go with FortiManager and FortiAnalyzer. I rate this solution a seven out of ten.
The customer purchased a Fortinet Firewall in order to run it as a decentralized block and collect amazing security logs from their internet usage or other data from the box. The benefit of having an on-premise firewall is that they don't have to worry about any subscription, and the storage space it consumes is minimal due to the internal hard drive of the FortiAnalyzer. Furthermore, the firewall does not consume a lot of traffic from the internet due to it being on-premise.
The most valuable feature of the solution is reporting. The report that accompanies the solution includes the top 10 usages, threats to be aware of, and any highlights. Additionally, the API can be connected to other systems to receive more notifications.
The solution can improve the incident response function to provide more detailed information on where the incident is originating.
I have been using the solution for three months.
The solution is stable and we have never experienced downtime.
I give the scalability of the solution an eight out of ten.
This solution is suitable for enterprise customers with a large number of devices and logs. Fortinet FortiAnalyzer enables the compilation of log files over a period of time, such as 90 days in Thailand. This is especially useful for gathering and analyzing data.
The initial setup is simple. Fortinet FortiAnalyzer is an out-of-the-box solution, so we can start customizing as soon as we finish the installation.
I give the cost a seven out of ten. I believe that Fortinet is a cost-effective brand, making it a competitive option in terms of pricing.
An alternative solution is SolarWinds, which analyzes server performance, and could be a competitor's CM solution or a managed service that sends data from sensors on the site to their facility. The primary distinguishing feature of SolarWinds is its form factor. SolarWinds must be installed on a server and requires server resources. In the past, a large amount of OS and other resources were necessary, but the form factor has remained the same.
I give the solution an eight out of ten.
Due to the high cost, Fortinet FortiAnalyzer is not feasible to use for certain office or branch office environments. A possible compromise could be to use a combination of two solutions: for banks, the file-based solution may be beneficial, but for on-premises locations, it could be worthwhile to make use of the existing value and use it to centrally control and manage the data.
I recommend utilizing the FortiAnalyzer if our log volume is sufficient and we have a FortiGate.
FortiAnalyzer is a log analytics tool. Our company has around 600 to 700 people.
FortiAnalyzer helps us discover what's happening on the network.
They could always improve the interface and the user experience.
I have used FortiAnalyzer for four or five years.
I rate FortiAnalyzer eight out of 10 for stability.
Scalability is irrelevant to me because we have a small setup. One analyzer is enough for me.
Setting up FortiAnalyzer isn't complex and takes two or three hours. They have a prebuilt OVA we can deploy using Ansible. Next, we configure FortiGate to send the logs to the FortiAnalyzer. You can also download premade reports on the portal.
You pay an annual license based on the volume of logs per day.
I rate FortiAnalyzer seven out of 10.
Most importantly, it is for the administration of Forti fabric devices and reporting of Forti fabric, and being able to generate reports. It's for logging. All 40 fabric devices are able to send logs to FortiAnalyzer. Basically, the use cases are for administration, reporting, and logging.
Logging is the best feature.
I like how everything is integrated with the FortiGate devices, FortiAuthenticator, and other fabric devices. You're able to see all the login details for the administration of FortiGate. It offers great user connectivity using that Fortinet embodiment of the user. It gives you all those login information details.
It's easy to set up.
The solution is stable.
It can scale well.
It's very user-friendly.
The fact that it only works with FortiGate devices is quite unfair. We would like to do the reporting, logging, and administration of all the public devices and all the IoT devices. We wish to add the switches, and routers from different vendors, so it's not a vendor-specific diagnostic solution.
I've been using the solution for four years now.
The product is 100% stable. I haven't found any issues with FortiAnalyzer. It's reliable.
Depending on the licenses you procure, the number of devices, and the storage space that you have, to be able to attain those logs and reports, the solution can scale.
Support is great. Usually, when you call on them, they are right on time, and they'll be able to assign an engineer for remote session support.
Positive
Setting the solution up is pretty easy. It's just a matter of integrating with the Fortinet public devices. FortiGate will start sending logs and then reports to FortiAnalyzer.
Once it is set up, the solution is easy to maintain.
I'm not sure about the exact licensing costs.
I'm working with the latest version of the solution.
We've done on-premises and cloud deployments.
Usually, clients who don't have SIEM or Nag solutions find FortiAnalyzer quite effective as it's going to give them identification of the user activity reports on different IO devices and the usage of devices. It gives you visibility of your entire infrastructure.
I'd recommend the solution. It's very user-friendly.
I'd rate the solution eight out of ten.
We are using Fortinet FortiAnalyzer for the managing surface for our customers. We are a service provider and we are focusing on providing a service to our customers.
The most valuable feature of Fortinet FortiAnalyzer is its performance.
Fortinet FortiAnalyzer could improve the user interface, and the experience of users receiving the reports and tracking could be better.
I have been using Fortinet FortiAnalyzer for approximately three years.
Fortinet FortiAnalyzer is stable.
The support from Fortinet FortiAnalyzer is good.
The initial setup of Fortinet FortiAnalyzer is fine. There is a lot of browsing and a lot of hierarchy that you need to have a particularly good understanding of in order to track the right things that you want to select.
There is a license needed to use this solution.
My advice to others is they have to assess well what kind of specific function or what kind of solution they are looking for.
I recommend this solution to others, but it depends on their usage.
I rate Fortinet FortiAnalyzer a seven out of ten.
Our customers are working with this product in their companies.
I haven't really played around with it so much. Basically, we're just doing log reviews, and that's it.
The initial setup is easy.
It's a very stable product.
We can scale the product as well.
Support has been good in general.
It offers pretty good documentation.
I like the interface they offer.
I'm a reseller and integrator.
I can't really tell if anything is missing. Maybe we'll find something in the future, however, I'm not sure at the moment.
Their pricing model is not the best and needs work.
It would be nice if there were more third-party integration capabilities.
I've been using the solution for six months. It hasn't been that long.
Like all Fortinet products, it is pretty stable. There are no bugs or glitches. It doesn't crash or freeze.
The solution is scalable and expandable. It's not an issue at all.
We have three people working on it in our organization.
Technical support is fairly good. I haven't really needed to call support just yet.
Our company is a Fortinet supplier. We don't deal with other solutions.
It's an easy initial setup. The implementation is not overly complex. The deployment is pretty fast and only takes two or three hours.
I'm not a fan of the licensing system in general. I don't like their pricing model.
I'd rate the solution nine out of ten.
We have multiple firewalls linked through a VPN. There is traffic from several branches and multiple points of failure, so you need to analyze this traffic to know what's coming in and going out. When you have more chains, there are more points of failure that can be exploited.
I use FortiAnalyzer on-premise and on the cloud. I update the solution at least once a year. I always update the firewall to the latest edition, so I can have three months or four months to test it in the VM. I use even more products and also AWS and Azure Cloud. About 9 percent of my company is responsible for security and networking. Everybody's on my team works with FortiAnalyzer.
Our department has three security architects and four network engineers. They are beginning to place assistant administrators on the network.
FortiAnanalyzer ensures you have an accurate view of all your devices, so you don't need to check each one. The analyzer creates a central point of management and control, giving you insight into what is going on.
So you want to move through that traffic that's coming in as the lock the analyzer will like to analyze the traffic in real-time so you can know what is going on. Yeah, so you customize it to be able to analyze what you want it to be able to analyze.
One of the most valuable features is the ability to analyze data in real-time using AR features to pull data from the industrial DB. You can know what is going on and see in milliseconds where the network is underperforming.
FortiAnalyzer also has good storage capacity for storing the logs. The notification capabilities are excellent, too. It sends alerts so always know what is going on. For example, if you're on a break and something goes wrong, it lets you know so can immediately go back and fix it. You don't need to be constantly sitting in front of it.
The UI could use some improvement. It can be tough for a beginner to navigate because you don't know what to do even if you read the guide. I've talked to some users who said that they couldn't figure out what to do even after looking at the documentation.
They need to update guide so it's more aligned with what the UI shows. The guide has lots of stuff in it, there sometimes you still don't get it. It takes too long for a new version of the documentation to come out. It still works, but the problem is that the UI is completely different, so it's challenging to find things.
I have used FortiAnalyzer for the last three and a half years.
FortiAnalyzer is stable at the time of release. You don't have problems when you install it. There aren't configuration breaks that you have to go fix. When you update, the transition is smooth.
FortiAnalyzer is scalable.
I have contacted Fortinet support once or twice, but not for FortiAnalyzer. Some of my clients had a problem with FortiGate and the traffic-shaping policy. The traffic-shaping policy in the later version of FortiGate doesn't work like it used to.
Fortinet's technical support was dependable, helpful, and knowledgeable about the product. They were prompt and responsive, so it was good. I rate Fortinet support 10 out of 10.
I was using Cisco ASA before FortiAnalyzer. I started using SonicWall six years ago, and five years I discovered FortiGate. I find FortiAnalyzer easier to use than the other products.
Setting up FortiAnalyzer is a bit complex for a beginner because you have a shallow understanding of what it is. Configuring the advanced features is somewhat challenging, but the basic setup isn't that tough.
Setting up FortiAnalyzer takes around five to 10 minutes. I rate my setup experience 10 out of 10. After deployment, there isn't too much maintenance. It's just the usual updates. That's it.
I do the setup in-house. If I'm setting FortiAnalyzer for a client, I will typically walk them through step by step with the team, so they know how to set it up and what everything does.
I rate FortiAnalyzer six out of 10 for affordability. FortiAnalyzer pricing isn't steady. It changes each quarter or year. That's one of the main problems in West Abaco because most businesses here are small or medium-sized enterprises. It makes budgeting complicated. You always want to pay the same price on the subscription.
At the same time, I think Fortinet pricing is reasonable compared to all the others. The value you get from Fortinet is better because it beats other vendors in terms of performance, functionality, and efficiency. New firewalls like Alexa are trying to compete in pricing, and people are looking into it to see, but Fortinet is good for now. However, they need to work on keeping the price consistent.
I rate FortiAnalyzer nine out of 10. My advice to anyone implementing FortiAnalyzer is to read about a product. If you do your homework, it's easier to set up. The next thing is to understand your environment, especially if you have multiple links over your network that leave you more vulnerable to attacks.
The more links you have, the more exposed you are to attacks. It is possible that one link can be vulnerable, and you won't take notice.FortiAnalyzer is the best choice.
The clients using this solution have wifi for their guests and for their own users. They want to know which user has used their wifi to access the internet, and probably use this knowledge for a kind of security management purpose.
The solution is quite easy to deploy. For the user, they don't need to have a lot of technical know-how. It is easy to generate the report for review by the management.
The solution is stable and reliable.
We have not faced any scalability issues.
The solution should be more price competitive.
I've used the solution for one or two years. I used it on a recent project.
However, the first time I used this product was in 2006 for our own infrastructure. We are not using it in our infrastructure anymore.
The solution is stable. There are no bugs or glitches. It doesn't crash or freeze. The performance is reliable.
In terms of scalability, it really depends. For our customer, the SME customer, not that many people need it. If you talk about scalability around analysis, related to the hub and space, the hub disk size, and the capacity of the box, for the on-prem model, we need to choose it with some buffer. We can't foresee any scalability issue for that customer.
We only have one client on the solution.
While I haven't directly dealt with technical support, I have not heard any complaints from my colleagues that may have. I would say that the support has been satisfactory for the moment.
The initial setup is pretty straightforward. That said, I didn't handle it directly. We had an internal team that did the implementation.
Most of the time, one engineer is sufficient for a small deployment, just two AP, one firewall, and one analyzer.
The implementation work was done by my engineers. We did not need any outside assistance from any integrators or consultants.
I can't remember if they have a new license for software maintenance. They have maintenance that is charged annually. Unlike a firewall, they have a UTM license you need to pay annually and then only an annual maintenance cost for the hardware, for FortiAnalyzer.
I'm not sure what the exact price is at the moment. However, my understanding is the pricing could be better.
I would recommend the solution to others. We have been happy with its overall capabilities. I'd rate the solution at an eight out of ten.
We're a managed service provider and we use Fortinet FortiAnalyzer to generate reports for our customers. We manage our customer's Fortinet environment and FortiAnalyzer allows us to send a monthly report or on-demand report to our customers.
The solution does what it is supposed to. I want it to do reports for Fortinet and it does it well.
The FortiAnalyzer is not good at managing multi-version environments. If all your FortiGate are at different versions in the field, that's difficult. The one thing we didn't like is the fact you have to have 100% of your environment at the same release, which is not pleasant, to have it fully functional. You can have a different release, but to have it fully functional 100% of your environment has to be the same release.
In a future release, if they could turn they could turn Fortinet FortiAnalyzer into a multi-vendor supporting tool it would be awesome. However, I do not think this will happen.
I used Fortinet FortiAnalyzer for approximately two years.
Fortinet FortiAnalyzer is scalable.
Fortinet FortiAnalyzer is easy to scale. We have approximately 50-100 employees using this solution.
We have other log analyzers, but we have found with Fortinet FortiAnalyzerwhen you have a Fortinet environment, it's fully integrated. This was what we were looking for, we were not looking for multi-vendor solutions, we were looking for the best log analysis tool for Fortinet.
The solution is easy to set up.
We found the price of Fortinet FortiAnalyzer to be reasonable.
I would advise those wanting to use Fortinet FortiAnalyzer to use an MSP, to use a managed service provider, they can call us.
I rate Fortinet FortiAnalyzer an eight out of ten.
