Senior System & Security Administrator at a legal firm with 51-200 employees
Real User
Offers side-to-Side VPN Support for Secure Networking
Pros and Cons
  • "Our project needs to link two sides through the internet. One of these was in Cairo and the other in another city. We used FortiGate as the integrating solution between the two locations, i.e. the Fortinet 30E & 100E."
  • "Fortinet needs more memory to save the log files. We need it to save the logs on the hardware and not in the cloud. I know this feature is available in FortiCloud, but if we need this log locally, it is not available."

What is our primary use case?

We use Fortinet FortiGate 100E for a VPN. We also use the solution for word filtering. These are our primary business requirements.

How has it helped my organization?

We were not fully operational previously. Our project needs to link two sides through the internet. One of these was in Cairo and the other in another city. 

In Egypt, to make this possible, we built connections for everything between the two sides through the internet using the VPN side-to-side with Fortinet. 

We used FortiGate as the integrating solution between the two locations, i.e. the Fortinet 30E & 100E.

What is most valuable?

The main feature that Fortinet FortiGate has that is very useful for me, is that I can connect two sides of the network to each other with Fortinet. 

I can make two VPNs run side-to-side. VPN is very simple and so easy with FortiGate.

What needs improvement?

Fortinet needs more memory to save the log files (like in the 101E, the old product). We need it to save the logs on the hardware and not in the cloud. 

I know this feature is available in FortiCloud, but if we need to log locally, it is not available. Also, the log only records a little time and needs to be longer.

Buyer's Guide
Fortinet FortiGate
April 2024
Learn what your peers think about Fortinet FortiGate. Get advice and tips from experienced pros sharing their opinions. Updated: April 2024.
768,246 professionals have used our research since 2012.

For how long have I used the solution?

One to three years.

What do I think about the stability of the solution?

Fortinet FortiGate offers good stability. I have been using it for around two years.

What do I think about the scalability of the solution?

FortiGate is a very scalable tool. They have an app to manage the access points, switches, and other solutions. 

For our project, now we're over a hundred users at the headquarters. The other branch supports about 20 persons.

How are customer service and support?

Fortinet tech support is very helpful. I have not faced any trouble with their technical support. 

Which solution did I use previously and why did I switch?

The other product I was previously using was ForgeRock but did not have the experience of integrating it with Fortinet FortiGate.

How was the initial setup?

For the Fortinet installation, our initial setup was for word filtering. It was very easy and did not take a lot of time. The deployment took about three days. 

FortiGate is very easy. The entire solution setup processes took about three days. I can make many of the rules for most users as we need it configured easily.

What about the implementation team?

I am the integrator for Fortinet FortiGate solutions at our company.

What's my experience with pricing, setup cost, and licensing?

The licensing price for the Fortinet products is approximately a thousand of dollars per year for the FortiGate 100E and $200 per year for the FortiGate 50E. 

I don't use additional licensing, just the yearly subscription.

Which other solutions did I evaluate?

We did not evaluate any other options for this purchase.

What other advice do I have?

If anyone asks me for my experience with Fortinet solutions, I would recommend FortiGate, especially if they need to use it for security. 

I would recommend the FortiGate series for integration with any hardware or software product. I am very satisfied with Fortinet. I would rate it a 9 out of 10 overall.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Assistant Manager - Network & Security at a financial services firm with 5,001-10,000 employees
Real User
Simple initial setup, mature features, and responsive support
Pros and Cons
  • "The most valuable features of Fortinet FortiGate are it is one of the most mature firewalls in the UTM bundle."
  • "Fortinet FortiGate could improve by adding enhancements to FortiMail, FortiSOAR, and FortiDeceptor."

What is our primary use case?

Fortinet FortiGate is used to secure internet gateways.

What is most valuable?

The most valuable features of Fortinet FortiGate are it is one of the most mature firewalls in the UTM bundle.

What needs improvement?

Fortinet FortiGate could improve by adding enhancements to FortiMail, FortiSOAR, and FortiDeceptor. 

For how long have I used the solution?

I have been using Fortinet FortiGate for approximately seven years.

What do I think about the stability of the solution?

Fortinet FortiGate is a stable solutions. Other solutions, such as Palo Alto, Cisco, and Forcepoint are less stable.

What do I think about the scalability of the solution?

For scalability, you must define your needs before implementing Fortinet FortiGate. You must know specifications, such as throughput, the number of sessions, and the SSL. Overall it is not scalable.

How are customer service and support?

We had some simple questions for the support and they were able to respond within a few hours. I was satisfied.

I rate the support from Fortinet FortiGate a four out of five.

How was the initial setup?

The initial setup is extremely simple. Customers that have never used it can manage it with ease after a few days.

What's my experience with pricing, setup cost, and licensing?

Fortinet FortiGate gives you most of the features in one license.

The activation of the license and support could improve. When I order Fortinet products, I have one year to activate my license and support. If this year passed without activating this license and support, I will lose it. If I ordered three years, I will lose all of the years. I must reorder them again, which is not reasonable.  For example, if I have to activate my license in six months but didn't activate it during the six months, they should activate automatically. They should not remove the license. They should activate automatically after the grace period.

What other advice do I have?

I rate Fortinet FortiGate an eight out of ten.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Buyer's Guide
Fortinet FortiGate
April 2024
Learn what your peers think about Fortinet FortiGate. Get advice and tips from experienced pros sharing their opinions. Updated: April 2024.
768,246 professionals have used our research since 2012.
Executive at a computer software company with 10,001+ employees
Real User
Easy to use with a nice console but needs to offer container security
Pros and Cons
  • "The solution is very user-friendly."
  • "I'm not sure if it's something that they already have or are developing something, however, we need some dedicated features for container security."

What is our primary use case?

We mainly use the solution as a firewall. 

What is most valuable?

The solution is very user-friendly.

The collection of the integration of multiple nodes makes everything very easy. The fact that you can push, directly, one element, and you can leverage the distribution of the policy very well has been great. 

Honestly, the console is done very well. It's easy to use.

From a strategic point of view, I've seen, in recent years, a big challenge from Fortinet to recover some kinds of space with respect to the other two biggest players, Check Point and Palo Alto. That has happened much more since the beginning of the next generation file. I found Fortinet recovered much market space in the last year.

What needs improvement?

I'm not sure if it's something that they already have or are developing something, however, we need some dedicated features for container security. Other vendors have developed some kind of specific product to protection. Containers now are very common, especially in the cloud. It's an area that needs to be addressed.

For how long have I used the solution?

I've worked with the product for three or four years, more or less. 

What do I think about the stability of the solution?

The stability has been great. There are no bugs or glitches. It doesn't crash or freeze. It's reliable. 

What do I think about the scalability of the solution?

We have more than 10,000 people o the solution. The scalability capabilities are enough. We haven't had a problem at all. 

How are customer service and support?

It would be hard to rate technical support due to the fact that, up until now, we've never had to deal with them.

That said, from talking with colleagues, my understanding is that they are good, and they offer standard levels of support in line with other competitors. 

Which solution did I use previously and why did I switch?

We've also used Palo Alto and Check Point.

How was the initial setup?

The initial setup is straightforward, however, we have knowledgeable teams. We also use Fortinet to check the configurations and make sure everything is supported during implementation. 

It's pretty standard to deploy. We're also familiar with Palo Alto and Check Point and there is not much of a difference between the three.

What about the implementation team?

We managed, with my team, the setup. We also engaged with Fortinet in terms of professional services in order to check the installation and offer some support.

That said, we have many people on our team certified with the biggest firewalls and security infrastructure vendors.

What's my experience with pricing, setup cost, and licensing?

It's very difficult to discuss pricing as we have generally, in terms of pricing, at the end of the day, we have leveraged deals the existing contracts the client had in place. The client uses various technology vendors. I can't say that one is cheaper than the other. It's all in the same ballpark when you are speaking about comparable products.

What other advice do I have?

We are partners with many vendors, including Fortinet.

Likely our engineers would know what version of the solution we are on. I don't follow those details. 

I'd rate the solution at a seven out of ten. It's stable, easy to set up, and easy to use. However, I have yet to see all of the features in play.

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Senior Network Architect at Combat Networks
Real User
Highly affordable and comprehensive
Pros and Cons
  • "It's inexpensive compared to some of the other technology out there."
  • "They sometimes hide some features and if you want to enable them, you have to go in the CLI, enable the feature and configure it through the CLI. Customers, typically, like everything to be done by the GUI."

What is our primary use case?

Our clients' main use case for Fortinet FortiGate is for the firewall on the outside perimeter to the internet. Some of them have started using it for SD-WAN.

What is most valuable?

We are software integrators. 

Our clients like the packaging because it's an appliance. It has specific chip sets to accelerate different features in the product.

Additionally, it's inexpensive compared to some of the other technology out there.

What needs improvement?

In terms of what can be improved, they do have certain features that you can only configure through a CLI and there's no GUI interface for it. That's a pain. But it's nice that the user can do everything one way or the other.

They sometimes hide some features and if you want to enable them, you have to go in the CLI, enable the feature and configure it through the CLI. Customers, typically, like everything to be done by the GUI.

For how long have I used the solution?

I have been using Fortinet FortiGate for at least the last 12 months.

What do I think about the stability of the solution?

Fortinet FortiGate is pretty stable.

It is hard to judge this year because of everybody working from home. Everybody is using up a lot of bandwidth so I'm not sure if that is a cause for some of the instability with the Forti client. The only place we've seen instability would be updating Forti client with their software called EMS.

So pushing out the client with EMS, like a client update to remote users, has proven a pain in the butt. But that could be because the end users' VPNs are maybe a little bit unstable just because of the high bandwidth demands. It is hard to determine. Maybe it is because some of these users are in remote areas, or non-urban or smaller towns, as opposed to being in an urban area where bandwidth is a little better.

We never jump ahead and say, "Oh, yes. 6.5 just came up. Let's jump on that." We'll probably just wait six months and see what goes on first. And I guess that's probably what a lot of people do because it's protecting your intellectual property and everything which that company owns.

I'm not saying that there's no instability. People will generally just wait and not jump out unless they're testing in the lab. They're not going to jump out and put the first revision that comes out on their firewalls.

What do I think about the scalability of the solution?

In terms of scalability, it scales very well.

They have different models for different sizes. Obviously, if you buy too small and you have to upgrade, then it's a box swap. Some other vendors can just add another unit and you cluster them together. In their case it's more of just switching the box out for more performance boxes if you go too low.

How are customer service and technical support?

Their technical support is very good.

Every time we've had to open up a case or get their help, if we surpass that person's ability, it gets escalated right away. So it's very good. It usually gets resolved within a day or two.

How was the initial setup?

The initial setup is fairly straightforward.

What was our ROI?

In terms of ROI, they're inexpensive. Because they're inexpensive, they're just everywhere, in the Federal Government, schools, everywhere where budgets are fairly tight. And it is a very good product. It's a product that's built that if you need to you can add a different box and remove that feature from your main FortiGate and just run it on a different box.

So if you need to expand, you can always do it that way too.

They have good integration if you have multiple firewalls and it allows you to be able to push out policies to all of them at the same time.

What's my experience with pricing, setup cost, and licensing?

Fortinet FortiGate's pricing is pretty hard to beat.

What other advice do I have?

On a scale of one to ten, I would give Fortinet FortiGate a 10 out of 10.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Integrator
PeerSpot user
Solution Architect at a tech services company with 51-200 employees
Reseller
Easy to configure and manage, supports link load balancing, and it has superior throughput
Pros and Cons
  • "The most important feature, normally for small business customers, is link load balancing."
  • "If they had better integration with security products, such as Cisco ISE or Rapid Threat Containment, then it would be an improvement."

What is our primary use case?

We are a system integrator and Fortigate is one of the firewalls that we implement for our clients. I am a solution architect.

Our primary use for this firewall is the IPS.

What is most valuable?

One of the things I like best is the ease of configuration.

Management-wise, it is very good.

The most important feature, normally for small business customers, is link load balancing.

The firewall throughput is very good. Most of the customers in this region use FortiGate for their data center firewalls, and the main reason is because of its high throughput.

What needs improvement?

Fortinet is good in terms of security and threat prevention, but they are not leading. For example, the signature database can be improved.

If they had better integration with security products, such as Cisco ISE or Rapid Threat Containment, then it would be an improvement. Customers that have ISE implemented are able to provide inputs based on malicious traffic, and then ISE will automatically block it.

For how long have I used the solution?

We have been working with Fortinet FortiGate for the past two years.

What do I think about the stability of the solution?

Stability-wise, they are good at the job of a data center firewall. For a perimeter firewall, it is for smaller customers, preferably.

What do I think about the scalability of the solution?

The scalability depends on the design and how it was done. You have to think about the next five years. We get lots of new updates on the older versions and if the product is still in support then the new features will be included.

How are customer service and technical support?

The responsiveness of the support depends on the level of support that you have. If you have premium support then you will get immediate access to them. Otherwise, you have to wait for some time, perhaps an hour, before they get back to you.

On the technical details, there are different levels of access. Once you have engineer access then most of the cases are going to get resolved, or otherwise, they will go to their development team.

Which solution did I use previously and why did I switch?

In addition to FortiGate, we are using Cisco SFR.

How was the initial setup?

The initial setup is straightforward. We have field configuration guides that we follow and you don't need to have much in-depth knowledge to set it up initially. However, performing the fine-tuning requires that you have proper training on the device.

Deploying the firewall for a new customer will be completed within two to three days, or perhaps a week at the most.

What's my experience with pricing, setup cost, and licensing?

Compared to vendors like Cisco and Palo Alto, FortiGate is the cheapest. However, they only have a small segment of the market. Fortinet is trying to appeal to small and medium-sized customers, and I think that their prices should be a little lower for this segment.

On the high-end devices, it is fine. However, the problem is that their subscription price is very high. If you purchase a one-year subscription with the hardware and then you want to renew for the second year, it is very costly. Your whole price ends up being very high.

Which other solutions did I evaluate?

As a system integrator, we sell a lot of similar solutions from a variety of vendors. We have found that the Fortinet firewall has a much better throughput than that of the other vendors.

If a large customer is looking for a perimeter firewall then we suggest another vendor, such as Check Point or Palo Alto.

What other advice do I have?

FortiGate is a product that we recommend and we have migrated many customers from other vendors. FortiGate is a better option, although small customers don't care much about security. They only care about basic security. There are only a very few who are really concerned about it and most of them don't have a proper IT group in their company. 

I would rate this solution an eight out of ten.

Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
PeerSpot user
Security Solutions Architect at Verizon Communications
Real User
Good VPN and DDoS capabilities with a low total cost of ownership
Pros and Cons
  • "Virtual Domains (VDOMs) are a feature that we found valuable."
  • "To the best of my knowledge, Fortinet does not have a CASB solution and Fortinet does not have a Zero trust solution."

What is our primary use case?

We are currently using manual router failover that can be configured on the Fortinet security appliance’s second network interface to provide network edge redundancy if the primary managed router fails. If the edge router fails, traffic can be moved to the security appliance with a simple cable swap.

We are looking for a fully redundant solution with automatic failover between both Fortinet Security appliances. I am currently looking at battle card information between Fortinet and Zscaler. I have to do a competitive analysis.

How has it helped my organization?

The low cost of ownership was a benefit with all of the features we wanted.    

Preconfigured images have been developed for quick deployment. However, if we need a custom policy or have to include an existing policy then that can be accommodated as well. 

What is most valuable?

Virtual Domains (VDOMs) are a feature that we found valuable.

We found the Firewall, VPN, Application Control, IPS, Fortiguard Web filtering, anti-botnet, FortiGuard, Anti Spam Wireless LAN controller, WAN optimization, vulnerability assessment, and endpoint control all to be valuable.

Fortinet certifications include NSS Labs for NGFW, firewall, IPS, SSL, antivirus, and antispam.

Fortinet provides a consolidated security platform for the market place and certifications with NSS labs prove their security assurance.

What needs improvement?

To the best of my knowledge, Fortinet does not have a CASB solution and Fortinet does not have a Zero trust solution. Fortinet claims to do everything Zscaler is capable of and I'm looking for a comparison between the supported features.

Fortinet VPN and DDoS capabilities are great, yet we need to provide a solution that enables CASB and integration to the cloud.

For how long have I used the solution?

We have been using FortiGate for three years.

How was the initial setup?

Fortinet is very easy to service and set up.

What's my experience with pricing, setup cost, and licensing?

Fortinet is the least expensive solution.

Which other solutions did I evaluate?

We are comparing the features of Zscaler vs. Fortinet. We are trying to determine what features Zscaler has over Fortinet and vice versa.

What other advice do I have?

Fortinet was initially scoped as 25 rules for small, 50 for medium, and 100 for large. We need to incorporate more rules but there would be additional professional services or staging services. We are looking to incorporate the cloud access with the Fortinet UTM solution.

Disclosure: My company has a business relationship with this vendor other than being a customer: Verizon is a reseller of both Zscaler and Fortinet.
PeerSpot user
it_user236517 - PeerSpot reviewer
Senior NetOps Engineer at a tech services company with 51-200 employees
Consultant
Security has been increased but the licensing fees could be lower.

What is most valuable?

  • GUI
  • Flexibility
  • Easy to configure
  • UTM

How has it helped my organization?

  • Option to control application = increased productivity
  • Data leak prevention = increased security
  • Anti-virus & IPS = increased security

What needs improvement?

I'm happy with the product, however the licensing fees could be lower.

For how long have I used the solution?

I've used it for six years.

What do I think about the stability of the solution?

No issues encountered.

What do I think about the scalability of the solution?

There is a specific way of deploying a Fortigate product, and the scalability is related to the new unit deployment so there are no problems here. If you need more power/space, you just have to add a new box.

How are customer service and technical support?

Customer Service:

It's very good, I've never had any problems with customer service.

Technical Support:

It's very good, I've never had any problems with technical support.

Which solution did I use previously and why did I switch?

I was using Cisco ASA, and I switched due to a lack of features (e.g. poor SSL VPN support).

How was the initial setup?

It's a very simple setup as everything is well documented online and via the Fortigate channel on YouTube. Also, I posses a large amount of knowledge gained during the years that has helped me to deploy all my solutions. Even from the the beginning, it was easy as Fortigate has a great GUI and good online help,

What about the implementation team?

We did an in-house implementation, with no third party involvement.

What was our ROI?

The product is deployed as part of, and an add-on to, the MPLS solution for the majority of my customers. There is no ROI as this is not the major expectation, as the ROI is coming from the whole solution, not just this product.

What's my experience with pricing, setup cost, and licensing?

All the costs are for the annual licenses. The cost of the original deployment fell below £5,000, and licenses are priced at around £3,000.

Which other solutions did I evaluate?

We considered Cisco, however we decided to go with Fortigate as it provides a good set of the features for the price paid,

What other advice do I have?

Enjoy it. The product is easy to implement, easy to manage, and easy to develop and grow.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Technical Specialist at a tech services company with 201-500 employees
Real User
Good threat prevention capabilities, good price, and very easy to deploy and manage
Pros and Cons
  • "It's a user-friendly firewall. Most of the tasks are very simple. It's simple to configure and troubleshoot this firewall."
  • "The improvement is related to logs. Instead of the CLI, we should be able to have more insights into the logs of the firewall in the GUI."

What is our primary use case?

We have deployed this firewall for many companies. Our clients are financial and medical companies.

How has it helped my organization?

It enabled our clients to reach locations and access their applications easily with no latency. It provided ease of access.

What is most valuable?

Its threat prevention capabilities are most valuable. 

It's a user-friendly firewall. Most of the tasks are very simple. It's simple to configure and troubleshoot this firewall. 

What needs improvement?

The improvement is related to logs. Instead of the CLI, we should be able to have more insights into the logs of the firewall in the GUI.

I faced a lot of issues when I was trying to deploy the firewall through FortiManager. The firewall is stable, but FortiManager is too buggy, and it doesn't work properly. It gives too many errors.

There are some issues with Fortinet SD-WAN. It's quite complex.

For how long have I used the solution?

I've been using this solution for more than four years.

What do I think about the stability of the solution?

It's a very stable product.

What do I think about the scalability of the solution?

It's scalable. We have plans to increase its usage.

How are customer service and support?

Most of the time, they are helpful, but there are times when they don't resolve an issue right away. They take the log, and then they take their time to give input on the issue. Most of the time, they take one or two days to get back after analyzing the logs. Instead of that, they can just schedule a session to resolve the issue right away because sometimes the issue impacts the production environment, so we need to resolve that issue as soon as possible. Overall, I'd rate them a six out of ten.

How would you rate customer service and support?

Neutral

Which solution did I use previously and why did I switch?

I have worked with other firewalls. Fortinet FortiGate is better than Palo Alto and Check Point firewalls. It's more user-friendly.

How was the initial setup?

I have deployed it for a bank at a core level. On the perimeter, there was a Palo Alto firewall, and at the core level, we deployed the FortiGate firewall at DC and DR locations. After that, we deployed SD-WAN. We replaced the MPLS switch with the Fortinet SD-WAN device, so the whole branch traffic comes to the SD-WAN box, and from there, it comes to the FortiGate firewall, and then it goes to the Palo Alto firewall for the internet access and resource access. While migrating branches from MPLS to SD-WAN, we did require a maintenance window.

There was no difficulty. It was very user-friendly. I have had many difficulties with the Check Point firewall. I have deployed major projects on the FortiGate firewall. I migrated more than a thousand branches on Fortinet SD-WAN and implemented FortiGate super massive firewalls at DC and DR locations. There were no complexities. Only at one location, I had an issue related to SD-WAN, but my query was resolved by Fortinet's local team.

It's an on-premises firewall for the DC and DR locations. I have never worked on cloud projects, but if there is any opportunity to deploy it on the cloud, I will do it. I have only done on-premises deployment.

What about the implementation team?

I am an implementation engineer. I deployed and configured the whole firewall. I also troubleshot any issues. When I had any queries, they were clarified by Fortinet's engineers.

What's my experience with pricing, setup cost, and licensing?

Its pricing is good. It's average or normal as compared to Palo Alto and Check Point firewalls. 

Which other solutions did I evaluate?

I didn't evaluate other options.

What other advice do I have?

I'd recommend this firewall to others. Most of the time, when I do PoCs, I recommend Fortinet FortiGate. It's quite easy to manage and deploy.

I'd rate Fortinet FortiGate an eight out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: PeerSpot contacted the reviewer to collect the review and to validate authenticity. The reviewer was referred by the vendor, but the review is not subject to editing or approval by the vendor. The reviewer's company has a business relationship with this vendor other than being a customer: Partner
PeerSpot user
Buyer's Guide
Download our free Fortinet FortiGate Report and get advice and tips from experienced pros sharing their opinions.
Updated: April 2024
Buyer's Guide
Download our free Fortinet FortiGate Report and get advice and tips from experienced pros sharing their opinions.