No more typing reviews! Try our Samantha, our new voice AI agent.
it_user589359 - PeerSpot reviewer
Senior Consultant at a tech company with 1,001-5,000 employees
MSP
Jan 31, 2017
It has its own hardware and software token for two-factor authentication. Some of the settings are difficult to access.
Pros and Cons
  • "FortiCare can provide prompt replies."
  • "The GUI is not fancy enough and some of the settings are difficult to access."

What is most valuable?

One of the most valuable features is the simple FSSO (Fortinet Single Sign-On) configuration that helps to manage user-based security rules.

It is a cool security product. It's easy to use, implement and maintain, but there is room for improvement.

How has it helped my organization?

When we came across access management, we required several technical features to help manage user access to critical systems and remote access. That’s why we always go for a SSO two-factor authentication server. FortiAuthenticator is a bundle of these features. It has its own hardware and software token for two-factor authentication. It supports single sign-on and seamless integration with user-based web filtering, without any prior authentication. It can act as a Radius server to support other systems for Radius authentication. One of the common practices is using FortiAuthenticator with Dot1.X network access control.

What needs improvement?

The GUI is not fancy enough and some of the settings are difficult to access.

Part of the configuration has to be done by CLI, which is not friendly for security administrators.

Integration with other firewalls may not be as good as expected.

For how long have I used the solution?

I have used it for two years, mostly implementation for clients.

Buyer's Guide
Fortinet FortiAuthenticator
June 2026
Learn what your peers think about Fortinet FortiAuthenticator. Get advice and tips from experienced pros sharing their opinions. Updated: June 2026.
902,495 professionals have used our research since 2012.

What do I think about the stability of the solution?

No stability issues so far, as long as the number of users is not too large.

What do I think about the scalability of the solution?

No issues for scalability: It is easy to add new resources as we deploy virtual machines.

How are customer service and support?

FortiCare can provide prompt replies. They have basic knowledge on every single product in the Fortinet family. They have a standard protocol to response to support cases which is great. They are willing to accept RMA for technical difficulties that cannot be solved in a short period of time.

Which solution did I use previously and why did I switch?

I have tried Cisco ISE as a NAC solution. Cisco ISE is the "Terminator" of NAC solutions, which has numerous features to prevent unauthorized access. However, its integration with FortiGate firewall is not great. When I use the SSLVPN service from FortiGate, it fails to authenticate with two-factor authentication. For this, using FortiAnthenticator would be a good choice for its genuine integration.

What about the implementation team?

It is quite straightforward to set up the FortiAuthenticator. We mainly deploy as a virtual machine. An OVF file is provided by Fortinet and you just simply compile the file in the VMware environment. Upon simple configuration, such as IP address and default gateway, you can access the web GUI and do any configuration, as you like.

What's my experience with pricing, setup cost, and licensing?

Licensing is straightforward, as Fortinet provides stackable licenses for FortiAuthenicator. Count the number of users and select sufficient licenses. Pricing is acceptable; much cheaper than Cisco ISE.

Which other solutions did I evaluate?

I have tried Cisco ISE. For state-of-the-art features, I would recommend Cisco ISE because of its brilliant features. But I would recommend FortiAuthenticator, if you are currently using FortiGate firewall and you seek a well-suited, complimentary NAC solution.

What other advice do I have?

The need for a NAC solution depends on your infrastructure. If you are a Fortinet user, FortiAuthenticator would be a nice choice to enhance security on VPN and web access. However, there are many other choices, such as ForeScout, which is vendor-neutral, to support different systems from different vendors.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
PeerSpot user
Senior IT Support Engineer at a marketing services firm with 501-1,000 employees
Real User
Jan 25, 2017
Provides two-factor authentication and integration with our other FortiGates.
Pros and Cons
  • "If you want a more efficient way to manage two-factor authentication for your users, or implement the unit as a cluster member role, the FortiAuthenticator can be incorporated very well into your environment."
  • "We had some stability issues. Our first LBS unit wouldn't work properly the first time and that wasted a lot of time."

What is most valuable?

The valuable features are:

  • Two-factor authentication
  • User ID with our LDAP service
  • Integration with our other FortiGates

How has it helped my organization?

By using one of our units as a load-balancing slave, we were able to roll out location-based VPNs that created quicker connections to local servers for our end users. Furthermore, incorporating a LBS unit has provided preventative measures and ensured that our remote users can still connect if a failure occurs on our master authentication unit.

What needs improvement?

It was initially difficult to sync our high availability, load-balancing slave (LBS) to our master unit. There were some initial issues connecting it and syncing with our master FortiAuthenticator unit. After reaching out to Fortinet support, it turned out that the unit needed a software update.

I would like to see the following:

  • Creating an easier implementation of software patches.
  • Designing the admin profiles to sync across, instead of having to recreate them. (I see how this could be problematic with security measures.)

For how long have I used the solution?

We've been using our master unit for about a year and our LBS for about six months.

What do I think about the stability of the solution?

We had some stability issues. Our first LBS unit wouldn't work properly the first time and that wasted a lot of time. Eventually, it died and we had to RMA the unit.

What do I think about the scalability of the solution?

We didn't have any issues with scalability.

How are customer service and technical support?

The technical support we received from Fortinet was responsive. When we experienced problems, they were able to fix our issues.

Which solution did I use previously and why did I switch?

Before implementing our FortiAuthenticators, we used our main FortiGate as a way to push out two-factor codes to our users. After a while, this option was not working. As we continued to grow, we needed something more substantial and manageable.

How was the initial setup?

The initial setup was somewhat difficult in syncing our LDAP service to our main FortiGate.

Which other solutions did I evaluate?

Before using the FortiAuthenticator, we pushed out tokens via our main FortiGate.

What other advice do I have?

If you want a more efficient way to manage two-factor authentication for your users, or implement the unit as a cluster member role, the FortiAuthenticator can be incorporated very well into your environment.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Buyer's Guide
Fortinet FortiAuthenticator
June 2026
Learn what your peers think about Fortinet FortiAuthenticator. Get advice and tips from experienced pros sharing their opinions. Updated: June 2026.
902,495 professionals have used our research since 2012.
reviewer1810833 - PeerSpot reviewer
CEO at a tech services company with 1-10 employees
Real User
Top 5Leaderboard
Nov 22, 2023
A user friendly solution that covers a variety of use cases

What is our primary use case?

We connect FortiAuthenticator to different servers' active directories and use it for value authentication and VPN client authentication.

We use FortiAuthenticator for server login, terminal servers, Windows servers, and Linux servers. We have configured the solution for SSL VPN authentication with a Fortinet token.

What is most valuable?

The UI is user-friendly.

For how long have I used the solution?

I've used the solution for three or four years.

What do I think about the stability of the solution?

Fortinet FortiAuthenticator is highly stable.

What do I think about the scalability of the solution?

I rate Fortinet FortiAuthenticator's scalability a ten out of ten. Our clients are typically medium or enterprise-sized. Small customers typically don't use FortiAuthenticator.

How are customer service and support?

We haven't raised tickets for FortiAuthenticator, but Fortinet's support is very good. We found a block in FortiGate, and I had to open a ticket in FortiMail, but the public documentation is very helpful.

How would you rate customer service and support?

Positive

How was the initial setup?

The initial setup is easy. Only the Fortinet Access Control is difficult. The network access control solution is a difficult topic as well. It's not that the product is difficult. It's the environment, connecting to the switches, the firewalls, the zones, and the difficult appliances. FortiAuthenticator is easy to use and install.

However, I know FortiAuthenticator, so the initial setup was easy when I saw this product. The initial setup for all of the Fortinet products is typically easy.

The deployment time depends on the difficulty of the destination environment. Our last installation took four days. After that, we created the system's documentation, which took one day.

What other advice do I have?

I rate Fortinet FortiAuthenticator a nine out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer. Integrator
PeerSpot user
reviewer2325093 - PeerSpot reviewer
Network Security Engineer at a computer software company with 51-200 employees
Real User
Jan 8, 2024
Stable cloud solution with impressive authentication capabilities

What is our primary use case?

As a customer I’m currently testing the solution.

What is most valuable?

The solution's most valuable feature is its authentication capabilities.

What needs improvement?

You don't get a free version to automate alerts and access all features. For additional features, you will need to buy or sync it with other solutions.

For how long have I used the solution?

I have been using the solution for approximately two to three years. I’m currently using version 6.4.6.

What do I think about the stability of the solution?

The solution is stable.

What do I think about the scalability of the solution?

The product is scalable as it operates on the cloud.

How are customer service and support?

The technical support is good.

How would you rate customer service and support?

Positive

How was the initial setup?

The initial setup is straightforward. I deployed the product to test it.

What's my experience with pricing, setup cost, and licensing?

The product is affordable.

What other advice do I have?

It’s a good product for small and large enterprises. Overall, I rate it a nine out of ten.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Buyer's Guide
Download our free Fortinet FortiAuthenticator Report and get advice and tips from experienced pros sharing their opinions.
Updated: June 2026
Buyer's Guide
Download our free Fortinet FortiAuthenticator Report and get advice and tips from experienced pros sharing their opinions.