Try our new research platform with insights from 80,000+ expert users
it_user589359 - PeerSpot reviewer
Senior Consultant at a tech company with 1,001-5,000 employees
MSP
It has its own hardware and software token for two-factor authentication. Some of the settings are difficult to access.

What is most valuable?

One of the most valuable features is the simple FSSO (Fortinet Single Sign-On) configuration that helps to manage user-based security rules.

It is a cool security product. It's easy to use, implement and maintain, but there is room for improvement.

How has it helped my organization?

When we came across access management, we required several technical features to help manage user access to critical systems and remote access. That’s why we always go for a SSO two-factor authentication server. FortiAuthenticator is a bundle of these features. It has its own hardware and software token for two-factor authentication. It supports single sign-on and seamless integration with user-based web filtering, without any prior authentication. It can act as a Radius server to support other systems for Radius authentication. One of the common practices is using FortiAuthenticator with Dot1.X network access control.

What needs improvement?

The GUI is not fancy enough and some of the settings are difficult to access.

Part of the configuration has to be done by CLI, which is not friendly for security administrators.

Integration with other firewalls may not be as good as expected.

For how long have I used the solution?

I have used it for two years, mostly implementation for clients.

Buyer's Guide
Fortinet FortiAuthenticator
September 2025
Learn what your peers think about Fortinet FortiAuthenticator. Get advice and tips from experienced pros sharing their opinions. Updated: September 2025.
867,370 professionals have used our research since 2012.

What do I think about the stability of the solution?

No stability issues so far, as long as the number of users is not too large.

What do I think about the scalability of the solution?

No issues for scalability: It is easy to add new resources as we deploy virtual machines.

How are customer service and support?

FortiCare can provide prompt replies. They have basic knowledge on every single product in the Fortinet family. They have a standard protocol to response to support cases which is great. They are willing to accept RMA for technical difficulties that cannot be solved in a short period of time.

Which solution did I use previously and why did I switch?

I have tried Cisco ISE as a NAC solution. Cisco ISE is the "Terminator" of NAC solutions, which has numerous features to prevent unauthorized access. However, its integration with FortiGate firewall is not great. When I use the SSLVPN service from FortiGate, it fails to authenticate with two-factor authentication. For this, using FortiAnthenticator would be a good choice for its genuine integration.

What about the implementation team?

It is quite straightforward to set up the FortiAuthenticator. We mainly deploy as a virtual machine. An OVF file is provided by Fortinet and you just simply compile the file in the VMware environment. Upon simple configuration, such as IP address and default gateway, you can access the web GUI and do any configuration, as you like.

What's my experience with pricing, setup cost, and licensing?

Licensing is straightforward, as Fortinet provides stackable licenses for FortiAuthenicator. Count the number of users and select sufficient licenses. Pricing is acceptable; much cheaper than Cisco ISE.

Which other solutions did I evaluate?

I have tried Cisco ISE. For state-of-the-art features, I would recommend Cisco ISE because of its brilliant features. But I would recommend FortiAuthenticator, if you are currently using FortiGate firewall and you seek a well-suited, complimentary NAC solution.

What other advice do I have?

The need for a NAC solution depends on your infrastructure. If you are a Fortinet user, FortiAuthenticator would be a nice choice to enhance security on VPN and web access. However, there are many other choices, such as ForeScout, which is vendor-neutral, to support different systems from different vendors.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
PeerSpot user
Senior IT Support Engineer at a marketing services firm with 501-1,000 employees
Real User
Provides two-factor authentication and integration with our other FortiGates.

What is most valuable?

The valuable features are:

  • Two-factor authentication
  • User ID with our LDAP service
  • Integration with our other FortiGates

How has it helped my organization?

By using one of our units as a load-balancing slave, we were able to roll out location-based VPNs that created quicker connections to local servers for our end users. Furthermore, incorporating a LBS unit has provided preventative measures and ensured that our remote users can still connect if a failure occurs on our master authentication unit.

What needs improvement?

It was initially difficult to sync our high availability, load-balancing slave (LBS) to our master unit. There were some initial issues connecting it and syncing with our master FortiAuthenticator unit. After reaching out to Fortinet support, it turned out that the unit needed a software update.

I would like to see the following:

  • Creating an easier implementation of software patches.
  • Designing the admin profiles to sync across, instead of having to recreate them. (I see how this could be problematic with security measures.)

For how long have I used the solution?

We've been using our master unit for about a year and our LBS for about six months.

What do I think about the stability of the solution?

We had some stability issues. Our first LBS unit wouldn't work properly the first time and that wasted a lot of time. Eventually, it died and we had to RMA the unit.

What do I think about the scalability of the solution?

We didn't have any issues with scalability.

How are customer service and technical support?

The technical support we received from Fortinet was responsive. When we experienced problems, they were able to fix our issues.

Which solution did I use previously and why did I switch?

Before implementing our FortiAuthenticators, we used our main FortiGate as a way to push out two-factor codes to our users. After a while, this option was not working. As we continued to grow, we needed something more substantial and manageable.

How was the initial setup?

The initial setup was somewhat difficult in syncing our LDAP service to our main FortiGate.

Which other solutions did I evaluate?

Before using the FortiAuthenticator, we pushed out tokens via our main FortiGate.

What other advice do I have?

If you want a more efficient way to manage two-factor authentication for your users, or implement the unit as a cluster member role, the FortiAuthenticator can be incorporated very well into your environment.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Buyer's Guide
Fortinet FortiAuthenticator
September 2025
Learn what your peers think about Fortinet FortiAuthenticator. Get advice and tips from experienced pros sharing their opinions. Updated: September 2025.
867,370 professionals have used our research since 2012.
Business Development Manager at a retailer with 1-10 employees
Real User
Top 20
Enhance d and secure access with strong authentication
Pros and Cons
  • "The response from Fortinet is very fast."
  • "FortiAuthenticator should integrate with other applications."

What is our primary use case?

We are currently using FortiAuthenticator for VPN access.

How has it helped my organization?

For security access, it is good.

What is most valuable?

The Fortinet security area is authenticated; they use it to access that is the main purpose.

What needs improvement?

FortiAuthenticator should integrate with other applications. I currently use Google Authenticator and Office Authenticator, and it would be better if FortiAuthenticator could be added to other applications.

For how long have I used the solution?

As a user, I have been working with FortiAuthenticator for about three years now.

What do I think about the stability of the solution?

The solution is stable, and I would rate it ten out of ten.

How are customer service and support?

The response from Fortinet is very fast. We use them for integration with the Mitel solution, and they are supportive and helpful.

How would you rate customer service and support?

Positive

How was the initial setup?

My colleague did the setup, and I didn't feel that he struggled much. It seemed straightforward and not too difficult.

What's my experience with pricing, setup cost, and licensing?

The pricing is about three on a scale where ten is low. Pricing should be more flexible.

What other advice do I have?

I recommend it to other users who are using FortiGate to go for Fortinet.

I'd rate the solution ten out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Özden-Aydın - PeerSpot reviewer
Technology Consultant at Netwiser
Real User
Top 5Leaderboard
Has push notifications and supports easy user management
Pros and Cons
  • "The tool's most valuable features are push notifications and integration with the FortiGate firewall. Push notifications provide an instant acceptance mechanism. When customers try to access SSL VPN, the solution sends a push notification to their mobile phone, and they can easily approve the access. The integration with FortiGate firewall is very easy if our customers use FortiGate for their firewall."
  • "I think the tool could provide this solution on the cloud. It's currently an on-premises solution. A cloud-based version could make setup, installation, and management easier. With on-premises, you must pay capital expenses (CapEx) upfront. However, if the solution was cloud-based, it would be operational expenses (OpEx), which is often easier to manage. You can pay monthly instead of paying the total cost at once. In my opinion, OpEx is more easily manageable than CapEx."

What is our primary use case?

Our customers use Fortinet FortiAuthenticator for SSL VPN security. Our customers are from various industries including retail, finance, and manufacturing.

What is most valuable?

The tool's most valuable features are push notifications and integration with the FortiGate firewall. Push notifications provide an instant acceptance mechanism. When customers try to access SSL VPN, the solution sends a push notification to their mobile phone, and they can easily approve the access. The integration with FortiGate firewall is very easy if our customers use FortiGate for their firewall.

It also supports easy user management. You can easily manage user accounts and groups.In terms of benefits, the tool provides both cost savings and efficiency, but efficiency is more important for our customers. The main point of this solution is security, which is the most important thing. After that, maybe you can say time management - you can easily manage your access and permissions. Cost savings come third.

What needs improvement?

I think the tool could provide this solution on the cloud. It's currently an on-premises solution. A cloud-based version could make setup, installation, and management easier. With on-premises, you must pay capital expenses (CapEx) upfront. However, if the solution was cloud-based, it would be operational expenses (OpEx), which is often easier to manage. You can pay monthly instead of paying the total cost at once. In my opinion, OpEx is more easily manageable than CapEx.

For how long have I used the solution?

I have been using the product for five years. 

Disclosure: My company has a business relationship with this vendor other than being a customer.
PeerSpot user
reviewer1810833 - PeerSpot reviewer
CEO at a tech services company with 1-10 employees
Real User
Top 5Leaderboard
A user friendly solution that covers a variety of use cases

What is our primary use case?

We connect FortiAuthenticator to different servers' active directories and use it for value authentication and VPN client authentication.

We use FortiAuthenticator for server login, terminal servers, Windows servers, and Linux servers. We have configured the solution for SSL VPN authentication with a Fortinet token.

What is most valuable?

The UI is user-friendly.

For how long have I used the solution?

I've used the solution for three or four years.

What do I think about the stability of the solution?

Fortinet FortiAuthenticator is highly stable.

What do I think about the scalability of the solution?

I rate Fortinet FortiAuthenticator's scalability a ten out of ten. Our clients are typically medium or enterprise-sized. Small customers typically don't use FortiAuthenticator.

How are customer service and support?

We haven't raised tickets for FortiAuthenticator, but Fortinet's support is very good. We found a block in FortiGate, and I had to open a ticket in FortiMail, but the public documentation is very helpful.

How would you rate customer service and support?

Positive

How was the initial setup?

The initial setup is easy. Only the Fortinet Access Control is difficult. The network access control solution is a difficult topic as well. It's not that the product is difficult. It's the environment, connecting to the switches, the firewalls, the zones, and the difficult appliances. FortiAuthenticator is easy to use and install.

However, I know FortiAuthenticator, so the initial setup was easy when I saw this product. The initial setup for all of the Fortinet products is typically easy.

The deployment time depends on the difficulty of the destination environment. Our last installation took four days. After that, we created the system's documentation, which took one day.

What other advice do I have?

I rate Fortinet FortiAuthenticator a nine out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer. Integrator
PeerSpot user
reviewer2325093 - PeerSpot reviewer
Network Security Engineer at a computer software company with 51-200 employees
Real User
Top 20
Stable cloud solution with impressive authentication capabilities

What is our primary use case?

As a customer I’m currently testing the solution.

What is most valuable?

The solution's most valuable feature is its authentication capabilities.

What needs improvement?

You don't get a free version to automate alerts and access all features. For additional features, you will need to buy or sync it with other solutions.

For how long have I used the solution?

I have been using the solution for approximately two to three years. I’m currently using version 6.4.6.

What do I think about the stability of the solution?

The solution is stable.

What do I think about the scalability of the solution?

The product is scalable as it operates on the cloud.

How are customer service and support?

The technical support is good.

How would you rate customer service and support?

Positive

How was the initial setup?

The initial setup is straightforward. I deployed the product to test it.

What's my experience with pricing, setup cost, and licensing?

The product is affordable.

What other advice do I have?

It’s a good product for small and large enterprises. Overall, I rate it a nine out of ten.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Buyer's Guide
Download our free Fortinet FortiAuthenticator Report and get advice and tips from experienced pros sharing their opinions.
Updated: September 2025
Buyer's Guide
Download our free Fortinet FortiAuthenticator Report and get advice and tips from experienced pros sharing their opinions.