Try our new research platform with insights from 80,000+ expert users
reviewer2235570 - PeerSpot reviewer
Production director at a media company with 11-50 employees
Real User
Top 20
Jul 23, 2025
We have managed functionalities quickly and easily and see potential for improvement with AI integration
Pros and Cons
  • "The interest of the Fortinet FortiGate appliance is the ability to manage quickly and easily the different functionalities."

    What is our primary use case?

    We use Fortinet FortiGate as edge protection for the customer site. Right now, we are trying FortiNAC before deploying it for our customer. We link Fortinet FortiGate Firewall to our SIEM solution. We have a cybersecurity department, and we aggregate all the logs of the firewall, the proxy, the PC, virtual machine, and other systems.

    What is most valuable?

    The interest of the Fortinet FortiGate appliance is the ability to manage quickly and easily the different functionalities. It's easier to use rather than Palo Alto, for example. AI should be a good improvement. The only difficulty that I have today with the Fortinet FortiGate is that on the Forti appliance, there are many functionalities.

    What needs improvement?

    As we are trying FortiNAC right now, there is some improvement needed on the product. For the rest, perhaps having more packages would be beneficial. We do not use FortiManager for our own usage. We have developed some scripts using Ansible and we automate everything.

    For how long have I used the solution?

    We have been using the solution for more than 10 years.

    Buyer's Guide
    Fortinet FortiGate
    December 2025
    Learn what your peers think about Fortinet FortiGate. Get advice and tips from experienced pros sharing their opinions. Updated: December 2025.
    879,371 professionals have used our research since 2012.

    What do I think about the stability of the solution?

    The question concerns failures on the appliance or security breaches.

    What do I think about the scalability of the solution?

    Not all functionalities are scalable.

    How are customer service and support?

    The access to the support is good. When specific information or professional services support is needed, the professional services are very expensive.

    How would you rate customer service and support?

    How was the initial setup?

    Most of the time we are implementing the UTP service.

    What about the implementation team?

    The implementation is handled by my team. They are involved in the deployment for the customer and use it day by day. We have three people dedicated to the security part on the Fortinet FortiGate and roughly eight people working on it in the security team.

    What's my experience with pricing, setup cost, and licensing?

    The cost reduction potential exists but is difficult to quantify.

    Which other solutions did I evaluate?

    Fortinet is increasing its value in this area. It's easier to use compared to Palo Alto.

    What other advice do I have?

    The functionality is acceptable but nothing really impressive. For some customers, we are using Fortinet FortiGate, FortiNAC, FortiAnalyzer. FortiMonitor is used for one customer. For FortiMonitor it's FortiAnalyzer. We don't use FortiAnalyzer on AWS. For both, we need the approval of the head office.

    On a scale of 1-10, I would rate this solution between seven and eight.

    Which deployment model are you using for this solution?

    On-premises

    If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

    Disclosure: My company has a business relationship with this vendor other than being a customer. Integrator
    Last updated: Jul 23, 2025
    Flag as inappropriate
    PeerSpot user
    IT Infrastructure Architect at a manufacturing company with 5,001-10,000 employees
    Real User
    Top 20
    Feb 20, 2025
    Firewall functions have improved security with threat prevention and VPN capabilities
    Pros and Cons
    • "The most valuable features of the FortiGate firewall include SSL inspection, VPN functionality, and threat intelligence features for preventing threats."
    • "The most valuable features of the FortiGate firewall include SSL inspection, VPN functionality, and threat intelligence features for preventing threats."
    • "There should be more testing before releasing software since it can be a little buggy sometimes when new features come out after updates."
    • "There should be more testing before releasing software since it can be a little buggy sometimes when new features come out after updates."

    What is our primary use case?

    I use the FortiGate firewall for ordinary firewall functions, including SSL inspection, VPN, and site-to-site VPN.

    What is most valuable?

    The most valuable features of the FortiGate firewall include SSL inspection, VPN functionality, and threat intelligence features for preventing threats. These features are essential and provide significant functionality for our organization.

    What needs improvement?

    There should be more testing before releasing software since it can be a little buggy sometimes when new features come out after updates.

    For how long have I used the solution?

    I have been working with the FortiGate firewall for many years.

    How are customer service and support?

    I am satisfied with Fortinet support. Usually, it is fast and provides advice effectively.

    How was the initial setup?

    The initial setup of FortiGate was an easy process. It took about three months for a full deployment across the entire organization.

    What was our ROI?

    The FortiGate firewall provides good value for the money. It usually is cheaper than the competition, contributing to cost savings.

    What's my experience with pricing, setup cost, and licensing?

    The pricing of the FortiGate firewall is good. It offers cost savings as it is generally cheaper than the competition.

    Which other solutions did I evaluate?

    Palo Alto is an alternative solution. While it may be better for filtering and category white-listing, especially in areas like banking, it is more expensive than FortiGate.

    What other advice do I have?

    Overall, I would rate FortiGate an eight out of ten. 

    For some use cases like banking, Palo Alto may perform better due to its filtering capabilities.

    Disclosure: My company does not have a business relationship with this vendor other than being a customer.
    PeerSpot user
    Buyer's Guide
    Fortinet FortiGate
    December 2025
    Learn what your peers think about Fortinet FortiGate. Get advice and tips from experienced pros sharing their opinions. Updated: December 2025.
    879,371 professionals have used our research since 2012.
    Consultant at a computer software company with 51-200 employees
    Reseller
    Top 5
    Dec 23, 2024
    Deep inspection provides strong threat protection but needs more advanced AI
    Pros and Cons
    • "This solution works well on a daily basis, detecting various types of malicious traffic."
    • "The most valuable feature is the deep inspection for traffic, which is capable of identifying zero-day attacks."
    • "More advanced AI capabilities would be beneficial in future updates."
    • "There could be improvements in the mathematical algorithms used for behavior analytics of traffic."

    What is our primary use case?

    I primarily use FortiGate IPS to protect my company from advanced threats like zero-day attacks and other cybersecurity threats.

    What is most valuable?

    The most valuable feature is the deep inspection for traffic, which is capable of identifying zero-day attacks. This solution works well on a daily basis, detecting various types of malicious traffic. Integration with FortiFabric enables easy management and scalability across different locations.

    What needs improvement?

    There could be improvements in the mathematical algorithms used for behavior analytics of traffic. More advanced AI capabilities would be beneficial in future updates.

    For how long have I used the solution?

    I have been using FortiGate IPS for about two years.

    What do I think about the stability of the solution?

    The stability of the solution is excellent. I rate it as nine out of ten. There are no issues with stability, and it integrates seamlessly with the main product, which is a firewall.

    What do I think about the scalability of the solution?

    FortiGate IPS is highly scalable. I can easily integrate it with FortiFabric and manage multiple firewalls and other Fortinet solutions from a single dashboard.

    How are customer service and support?

    Fortinet support is very responsive. I would rate their support as eight out of ten.

    How would you rate customer service and support?

    Positive

    Which solution did I use previously and why did I switch?

    I also use Cisco for email security. Fortinet was chosen since it is a popular solution for middle-sized companies in my region.

    How was the initial setup?

    The initial setup took about two to three hours and included setup and configuration.

    What about the implementation team?

    The implementation involved two engineers. It was handled internally.

    What was our ROI?

    I have not calculated ROI specifically, however, the primary goal was to enhance cybersecurity.

    What's my experience with pricing, setup cost, and licensing?

    There are no extra expenses involved after purchasing the solution. Pricing could be better, however, overall, it is considered a middle-level price for a middle-level company.

    Which other solutions did I evaluate?

    I am currently working mostly with Fortinet as well as with Cisco for email security.

    What other advice do I have?

    I recommend FortiGate IPS for those looking to add an additional layer of security on top of a firewall to combat cyberattacks. I would rate the overall solution as seven out of ten.

    Disclosure: My company has a business relationship with this vendor other than being a customer.
    PeerSpot user
    Syed Ali Waqas - PeerSpot reviewer
    Head IT at a tech services company with 11-50 employees
    Real User
    Top 5Leaderboard
    Jan 31, 2024
    Provides centralized management, enhanced visibility, and reduces cybersecurity risks
    Pros and Cons
    • "The most valuable features are SD-WAN, application control, IPS control, and FortiSandbox."
    • "The graphical user interface of Fortinet's FortiGate product does not function well with text-based interfaces."

    What is our primary use case?

    We use Fortinet FortiGate as our security and routing solution.

    We implemented Fortinet FortiGate to enhance our security posture by blocking and restricting access to certain websites and securing our VPN traffic. 

    How has it helped my organization?

    Fortinet FortiGate offers enhanced visibility and segmentation for our industrial devices, a crucial process when some machines utilize systems demanding high-level security.

    We have implemented Fortinet Security Fabric on our VM infrastructure, and it has provided great service in helping us meet regulations, governance, and compliance requirements. This is important to us because Fortinet Security Fabric connects to our sandbox, allowing us to scan shares across all clusters and enabling FortiGate to resolve any online issues.

    Fortinet FortiGate has enhanced our organization's security by enabling secure VPN access and restricting access to social media sites, thus ensuring that employees can focus on their work. We saw the benefits of FortiGate within weeks of the deployment.

    FortiGate helps reduce the risk of cyberattacks that could disrupt our production by isolating the affected traffic and creating a log for us.

    It also helps to centralize the management of our network and security operations.

    The centralized management allows us to access all of our firewalls and policies using a single interface.

    Fortinet provides actionable data to help us make informed decisions about the actions to take. For example, if one of our firewalls goes down, the solution helps us rectify the issue by providing details on the problem and how to address it.

    By consolidating the numerous individually connected batches, FortiGate helped us reduce operational expenses associated with the extra costs they incurred.

    Fortinet FortiGate has helped us mature our approach to cybersecurity for protecting our industrial equipment. Their knowledge and daily webinars on email security and virus prevention have empowered us to stop attacks and maximize our efficiency.

    What is most valuable?

    The most valuable features are SD-WAN, application control, IPS control, and FortiSandbox. These features help reduce our downtime, manage the ISPs, and deploy SLAs for all the website traffic.

    What needs improvement?

    The graphical user interface of Fortinet's FortiGate product does not function well with text-based interfaces. This functionality should be improved.

    For how long have I used the solution?

    I have been using Fortinet FortiGate for seven years.

    What do I think about the stability of the solution?

    I would rate the stability of Fortinet FortiGate a ten out of ten.

    What do I think about the scalability of the solution?

    While Fortinet FortiGate firewalls are scalable, upgrading to a new version or adding hardware requires purchasing a new license to migrate the old backup to the new firewall. 

    How are customer service and support?

    While the technical support team is knowledgeable, their response time to support tickets is concerning. It typically takes them 48-72 hours to respond, which significantly disrupts my work.

    How would you rate customer service and support?

    Neutral

    Which solution did I use previously and why did I switch?

    While we previously used the open-source PSS firewall, it lacked the layered security architecture offered by Fortinet FortiGate.

    We migrated to Fortinet FortiGate for its superior control, in-depth scanning, and ability to minimize cybersecurity risks, features not offered by other firewall solutions.

    How was the initial setup?

    The initial deployment is easy. The solution can be installed by following the on-screen prompts, and the policies can be implemented through the interface dashboard.

    Deploying the system takes one full business day. We begin by gathering user requirements from each department, as they have varying policies. The policies are implemented department-first, followed by branches. Finally, VPNs are generated for remote users. Two people are required for the deployment.

    What about the implementation team?

    The implementation was completed in-house.

    What was our ROI?

    Since implementing Fortinet FortiGate, we have observed an increase in user productivity, which translates to a positive return on investment.

    What's my experience with pricing, setup cost, and licensing?

    While Fortinet FortiGate has a higher price point compared to Sophos XG, its user-friendly interface justifies the cost. Additionally, its fixed pricing structure eliminates concerns about surprise fees.

    Which other solutions did I evaluate?

    After evaluating Sophos XG and finding its interface overly complex for our needs, we opted for the user-friendly interface of Fortinet FortiGate.

    What other advice do I have?

    I would rate Fortinet FortiGate an eight out of ten.

    We have one person that deals with maintaining Fortinet FortiGate.

    We have 1,100 users in multiple cities and departments using FortiGate.

    The Fortinet FortiGate 60F is a good choice for organizations to begin evaluating firewalls.

    Which deployment model are you using for this solution?

    On-premises
    Disclosure: My company does not have a business relationship with this vendor other than being a customer.
    PeerSpot user
    reviewer2078835 - PeerSpot reviewer
    Network Analyst at a manufacturing company with 11-50 employees
    Real User
    Top 5
    Jul 16, 2025
    Offers granular application control and cost efficiency
    Pros and Cons
    • "The impact of SD-WAN on the network performance has been significant."

      What is our primary use case?

      It is a next-generation firewall used to create policies to allow and deny any traffic. I have used Fortinet FortiGate in the finance sector previously, and we are now using it in the manufacturing side.

      What is most valuable?

      In my opinion, some of the best features of Fortinet FortiGate include its ability to block specific applications. For example, if I want to block someone from using Facebook videos, I can disable or use its application control features to block access. Facebook has many components such as video features, chat features, and VoIP calling features, and I can block any of these features to be more granular.

      SD-WAN is an excellent feature where you can route the traffic to other WAN links without manual interruption. Technically, you cannot put two default routes on any firewall, but SD-WAN is a feature we can use to divert our traffic from one ISP to another. The impact of SD-WAN on the network performance has been significant. Previously, when we didn't have Fortinet FortiGate, we had Cisco routers where we used manual routing, and if one of the primary links was down, we had to do manual routing. With Fortinet FortiGate, it's much easier as we don't have to do anything; it's already configured, and if something happens, our configuration automatically changes the link and diverts the traffic when one of the links is down.

      What needs improvement?

      Fortinet FortiGate can be improved by being more stable because when we look for logs or open a case, we always find a bug and then we have to upgrade it. However, since it's a cost-effective solution, we are satisfied.

      For how long have I used the solution?

      I have more than 10 years of experience with Fortinet FortiGate.

      What do I think about the stability of the solution?

      Fortinet FortiGate is stable, but it has some bugs, so you have to upgrade it. I would not say it has all the capabilities, but it's good for a manufacturing site.

      What do I think about the scalability of the solution?

      Fortinet FortiGate is pretty scalable.

      How are customer service and support?

      I would rate Fortinet FortiGate's support at a seven out of ten because whenever I open a case with their support, I have to explain everything and clarify the background. They take some time—at least a day—to see what's happening with the firewall. The agents aren't much experienced in providing solutions, but it's better than Palo Alto's support, which is the worst.

      How would you rate customer service and support?

      Which solution did I use previously and why did I switch?

      Previously, we had Palo Alto firewalls which were expensive—the contracts were particularly expensive. Fortinet FortiGate is not that expensive and is more affordable when comparing pricing. Nowadays, firms usually look for cheaper models and solutions, so Fortinet FortiGates are good, but for financial sectors, Palo Alto is better.

      The main differences between Palo Alto and Fortinet FortiGate are that Palo Alto has more features and functionality compared to Fortinet FortiGate. Palo Alto can be slow, but Fortinet FortiGate is fast. With Palo Alto, we have to commit and it takes five minutes for the configuration to push, which isn't the case with Fortinet FortiGate.

      How was the initial setup?

      The initial setup of Fortinet FortiGate is straightforward. The upgrade process is also straightforward.

      What's my experience with pricing, setup cost, and licensing?

      It's cost-effective.

      What other advice do I have?

      I would rate Fortinet FortiGate a nine out of ten. If you are looking for a cost effective solution and want to avoid the risk, go with the Fortinet FortiGate.

      Which deployment model are you using for this solution?

      On-premises
      Disclosure: My company does not have a business relationship with this vendor other than being a customer.
      Last updated: Jul 16, 2025
      Flag as inappropriate
      PeerSpot user
      Taha Turkestani - PeerSpot reviewer
      Senior IT specialist at a import and exporter with 10,001+ employees
      Real User
      Top 5
      Jul 2, 2025
      Easy interface and resilience against power interruptions improve network security
      Pros and Cons
      • "Two aspects I'm happy with regarding Fortinet FortiGate firewall are the easy user interface and its resilience during power interruptions."

        What is our primary use case?

        We are using Fortinet FortiGate firewall as a data center firewall.

        What is most valuable?

        Two aspects I'm happy with regarding Fortinet FortiGate firewall are the easy user interface and its resilience during power interruptions. We experienced two power interruptions where the firewall got disconnected from electricity, but it resumed working normally without any issues. 

        The firewall provides enhanced security for our network, and as administrators, we are satisfied with the friendly interface. We are particularly pleased with the Fortinet FortiGate firewall's ability to provide network and security convergence.

        For how long have I used the solution?

        We have been using it for three years.

        What do I think about the scalability of the solution?

        It is scalable.

        Which solution did I use previously and why did I switch?

        We did not use any solution before Fortinet FortiGate.

        What was our ROI?

        The price-to-performance ratio that we get from using Fortinet FortiGate firewall is very good.

        What's my experience with pricing, setup cost, and licensing?

        The pricing is affordable. We are satisfied with the Fortinet FortiGate firewall.

        What other advice do I have?

        I would highly recommend Fortinet FortiGate firewall. We feel more secure after implementing it. We are securing the whole network with the Fortinet FortiGate firewall, not specifically the data. 

        On a scale of one to ten, I rate this solution a nine.

        Which deployment model are you using for this solution?

        On-premises
        Disclosure: My company does not have a business relationship with this vendor other than being a customer.
        Last updated: Jul 2, 2025
        Flag as inappropriate
        PeerSpot user
        MURALI NIDAMANURI - PeerSpot reviewer
        Managing Director at a manufacturing company with 10,001+ employees
        Reseller
        Top 5Leaderboard
        Jun 25, 2024
        Has good two factor authentication and client VPN for advanced threat protection across clouds and data centers
        Pros and Cons
        • "The strengths of Fortinet FortiGate include network security, VPN, site-to-site tunnels, client VPN solutions, two-factor authentication for VPN clients, and SD-WAN for branch level. We have implemented these solutions for various customers."
        • "Regarding challenges, customers initially faced issues like internet dropping, but after firmware upgrades, everything worked well."

        What is our primary use case?

        My customers use Fortinet FortiGate for SD-WAN, network security, branch-to-branch communication, site-to-site channel communication, multi-layer protection, authentication, and antivirus solutions. They span various industries, including IT setups, chip-level designing, VLSI companies, software development, SAP implementation, manufacturing, and production groups.

        How has it helped my organization?


        What is most valuable?

        The strengths of Fortinet FortiGate include network security, VPN, site-to-site tunnels, client VPN solutions, two-factor authentication for VPN clients, and SD-WAN for branch level. We have implemented these solutions for various customers.

        What needs improvement?

        Regarding challenges, customers initially faced issues like internet dropping, but after firmware upgrades, everything worked well.

        I believe Fortinet should offer short and frequent training sessions, preferably in video format, whenever they introduce new features. These sessions should be around five to ten minutes long, allowing users and partners to quickly grasp the information without disrupting their daily tasks.

        Long training sessions spanning one or two full days can lead to distractions and reduced focus due to continuous support calls. Therefore, providing brief and focused training snippets would be more beneficial for users.

        For how long have I used the solution?

        I have been using Fortinet FortiGate for six to seven years.

        What do I think about the stability of the solution?

        Our customers are satisfied with the stability of Fortinet FortiGate. I would rate it as a ten out of ten for stability.

        What do I think about the scalability of the solution?

        Fortinet FortiGate is quite flexible and scalable, allowing us to scale up from sixty to a hundred units. However, there are limitations for extremely high production levels. I would rate its scalability an eight out of ten.

        How was the initial setup?

        Setting up Fortinet FortiGate is straightforward and easy. I would rate it a ten out of ten for ease of setup. The deployment typically takes around two to three hours.

        What was our ROI?

        Operational costs for Fortinet FortiGate are pretty low because once it's configured, no changes are needed. In terms of ROI, clients have seen benefits. After switching from other brands to

        Fortinet, they experienced fewer support calls. Initially, there were some support calls in the first one to two months, but after that, there were none. Clients are now comfortable and not wasting productive hours on IT support.

        What's my experience with pricing, setup cost, and licensing?

        The cost of Fortinet FortiGate is competitive and not expensive compared to other enterprise- grade solutions. On average, the license cost per year is around seventy percent of the firewall's purchase price.

        What other advice do I have?

        Regarding AI elements, I believe Fortinet has the capability to implement machine learning snippets for improved security and advanced configurations, but this should be integrated as part of their overall strategy.

        I will advise to focus on configuring the admin tools and monitoring users and serial numbers effectively. 

        As for rating the solution, I would give it a ten out of ten for being a very good solution.

        Disclosure: My company has a business relationship with this vendor other than being a customer.
        PeerSpot user
        EhabAli - PeerSpot reviewer
        Sr. Cybersecurity Solutions Architect at a computer software company with 201-500 employees
        Real User
        May 16, 2023
        Efficient, user-friendly, and affordable
        Pros and Cons
        • "Fortinet FortiGate is user-friendly and affordable."
        • "For the migration, everyone has a firewall in use and I am selling Fortinet. Typically, I am replacing another firewall. Previously, there was a tool available to convert configurations from one firewall, such as Palo Alto, to Fortinet, but this tool is no longer free. If it could be made free again, it would be very beneficial."

        What is our primary use case?

        There are various use cases for Fortinet FortiGate, including firewall protection for internet access, data centers, branches, and SD-WAN. We use the firewall in multiple locations throughout our network, taking advantage of its many features, such as the promising CDR feature and security profiles like the WAF filter and application DNS security. We deploy these features in different parts of the network. Additionally, some customers use Fortinet FortiGate in the cloud to safeguard their cloud servers within platforms like Microsoft tenants.

        Our customers are using Secure SD-WAN for connecting different branches. For example, oil and gas companies have different branches all over Egypt, which are not in the main city, so they need a secure connection and stability for certain protocols, such as voice and things like that. They also need visibility. They need to understand which applications are consuming SD-WAN. 

        Some of the customers are also using SD-WAN for load balancing. For SD-WAN, you need at least two internet connections, so some of the customers are using it as a load-balancing technique. Overall, there are a lot of features for which customers are using SD-WAN.

        How has it helped my organization?

        For our customers, Secure SD-WAN is very useful for giving the right priority to the applications and controlling the proper use of the application.

        Secure SD-WAN's interoperability with other systems and applications in the environment is very good. The integrated application protection provided by Secure SD-WAN is also good. There is a very good integration with all the applications and portfolios. We don't integrate the firewall with the application itself, but it does what is needed to control and reroute the traffic.

        Secure SD-WAN has a lot of benefits. There is a calculator on Fortinet's website. When you feed the right information to that calculator, it tells you how much money you will save by acquiring SD-WAN. The first benefit is that you're going to save money. Instead of buying multiple ISP connections, MPLS, and other such things, you can use the normal internet and apply SD-WAN on it, so you can save a lot of money. You also don't need to increase the bandwidth. SD-WAN helps with the routing of your traffic and the optimum use of your links. It's efficient and secure, and it saves you a lot of money, and of course, there is the security of the firewall that's applied on SD-WAN. If we're comparing it with other vendors like Cisco, you are not getting the firewall features.

        It's very efficient. There is a lot of visibility. It reduces the number of incidents. If there is any problem, you can immediately log in to the firewall, and you will know if there is a notification about bandwidth consumption or any other issue, or if there is any drop in connectivity. It makes the operation very easy. It makes it easy for the teams to respond to incidents and manage issues. SD-WAN helps to remediate threats more quickly and efficiently because, with SD-WAN, there are a lot of applications going through different links, so if you can know which link an application is using and what's on the link, you can make the right decision in a very fast way to fix it. It provides both visibility and efficiency.

        It reduces your mean time to detect (MTTD). In the new version, which is version 7.x, of the FortiGate firewall, through the main dashboard, you can know what is going on. If you've done the dashboard and you're putting these statistics in front of you on a screen, once you look at it, you'll know what's going on and what's the problem. It, of course, will give you the tools and the right information to reduce the time to solve.

        It's hard to say whether it has reduced help desk tickets because it's more on the operational side, but it helps them a lot. The operations team is not handling the firewall. It's either the network team or the network security team. Generally, once it's up and running, it just works. It's different from having an antivirus or something else that can be changed from day-to-day activities. With this one, once you turn it on, the service will be stable unless you have a problem with your internet. It doesn't cause a lot of problems.

        In terms of helping to future-proof business, from a partner perspective, it gives you a lot of flexibility to enhance the customer network. It opens a lot of doors for sales, for a new business, and for new potential. That's from the partner side. From the customer side, you can save money and solve a lot of problems. If you need to connect with a few branches all over the country, it's efficient. You don't need to travel for five to ten hours to reach the second branch. If you have proper SD-WAN technology and it's connected in a good way with good vendors, you can save a lot of time, effort, and money. You can have proper connectivity between branches as if the guy you are talking to is next door. So, SD-WAN gives a lot of benefits at the vendor level, partner level, and customer level.

        What is most valuable?

        Fortinet FortiGate is user-friendly and affordable.

        When it comes to Secure SD-WAN, ease of use is valuable. The visibility and reporting are also valuable. A cool thing is that SD-WAN is free of charge with the Fortinet firewall. You can just use it just by using the Fortinet appliances that you already have in the branches. You cannot have appliances from different vendors. Fortinet customers can use the feature in a very easy way. It takes one click to integrate with the firewalls. It's very very easy to deploy. You don't need to build anything.

        What needs improvement?

        In the past, NSS Labs was utilized to test files and verify the numbers and datasheets. It would be beneficial to have an organization or testing lab that can verify the numbers in our datasheets since changes are frequently made, which can be inconvenient for review. For instance, when comparing different competitors such as Forcepoint, Palo Alto, and Check Point, the throughput or numbers in the datasheet may be lower than the actual numbers. Conversely, Fortinet typically reports very high numbers, but they cannot be replicated in the real world. Therefore, it would be advantageous for them to partner with a neutral testing organization such as NSS Labs to validate these numbers, thus providing more credibility and comfort to everyone regarding the accuracy of the datasheets.

        For the migration, everyone has a firewall in use and I am selling Fortinet. Typically, I am replacing another firewall. Previously, there was a tool available to convert configurations from one firewall, such as Palo Alto, to Fortinet, but this tool is no longer free. If it could be made free again, it would be very beneficial. This tool shows a lot of promise and is very good. Making it free would help many companies deliver their products in a more efficient and integrated way. It would also be more valuable to include the tool with the firewall package or license instead of having to pay extra for it. Paying extra puts more pressure on small companies to deliver the firewall and complete the configuration, especially if they have hundreds or thousands of policies. It's very painful to move through these policies line by line.

        The stability has room for improvement.

        When it comes to Secure SD-WAN, everything is fine. They are going the right way. SD-WAN is very promising. They can provide the SD-WAN solution separately, but they will not take this approach because even the smallest firewall can support the features, so there is no need to have a separate service or appliance. They are following the right steps, and there is nothing to be improved. Feature-wise, I'm really satisfied with the new release, and the features they have added. For now, it's fine.

        For how long have I used the solution?

        I have been using Fortinet FortiGate for seven years, and I have been using Secure SD-WAN for two years.

        What do I think about the stability of the solution?

        Secure SD-WAN is stable, but when it comes to the firewall, sometimes there are issues with the throughput and related factors. Improper handling of these can lead to a memory surge, a well-known bug that can cause the entire system to freeze. When this happens, the system appears to be running but no traffic is processed, causing disruptions to applications, users, and overall internet connectivity. This can be confusing because the firewall appears to be functioning correctly. Typically, the solution is to restart the firewall. However, when we contact support, they require logs before restarting, which can be challenging in urgent situations. As a result, we prioritize quick resolution over troubleshooting. This is a common drawback of the operating system.

        What do I think about the scalability of the solution?

        I'd rate Fortinet FortiGate's scalability an eight out of ten.

        How are customer service and support?

        While the technical support offered online and on-site is generally effective, there may be occasions when we need to escalate an issue to a higher level due to its complexity. 

        I initially sought assistance from level-one support, but they were unable to resolve my issue. Eventually, they informed me that the problem would be addressed in a future patch. However, within a day or two, a level three engineer intervened and provided me with an update to resolve the issue. He explained that it required a command line configuration, as it couldn't be done through the graphical user interface. I was impressed with the level-three engineer's expertise and problem-solving skills. It taught me that if we persist and communicate our needs, we can achieve our desired outcomes.

        How would you rate customer service and support?

        Positive

        How was the initial setup?

        The initial setup is straightforward. We need to determine whether the firewall will be positioned in an active-standby or active-active configuration. Based on this decision, we will choose the appropriate license. If the firewall is intended for use with the Internet, we will need to include features such as a full DNS filter. However, if it's being used in a data center, these features may not be necessary. Additionally, we need to consider the speed of the interface, 1G or 10G, and the expected amount of network traffic to properly size the firewall model and ensure proper throughput. This is the initial phase of the process. Once the firewall has been deployed, it's a matter of connecting it and configuring policies. 

        When it comes to the deployment model of SD-WAN, my customers usually buy the appliance. They already have FortiGates, so we're just connecting firewalls to each other. In Kuwait and Egypt, there are mostly on-prem deployments. It's rare to have someone deploying a firewall on the cloud, and if it's deployed on the cloud, it's for a certain reason. It's not for SD-WAN because you're not loading balancing or you don't need SD-WAN for cloud access. In the countries where I was responsible for its implementation, there was only on-prem deployment.

        There is one single challenge with the deployment of SD-WAN, but it's not from the FortiGate side. It's from the customer side. You need to understand your traffic so you can get the best out of SD-WAN. For some organizations, it's huge because they don't know which application is doing what and which is more important than the other. Especially during the COVID years, a lot of applications popped up. Companies used to release an application every few weeks. To do a proper implementation, you need to understand your network, understand your application, and set your priorities. Once you do this, the implementation will be a piece of cake. If you have all the information, it will take a day or two days.

        What about the implementation team?

        We implement the solution for our clients. One person can easily deploy multiple Fortinet products through the firewall including FortiAnalyzer for the logs, FortiManager, and FortiMail.

        For SD-WAN also, one senior security engineer can do everything for a customer. The maintenance is easy. We haven't faced any critical problems with it.

        What was our ROI?

        We have experienced a positive return on investment by utilizing Fortinet's products. For instance, their website features a calculator for SDR, which enables us to measure the actual ROI in dollar amounts. We input our current expenses, the products we intend to purchase, and our connectivity plans, along with a few other details. At the end of the process, we receive data that indicates the amount of money we will save, such as two hundred thousand, for example. This provides us with clear and precise figures on our savings, making it an excellent tool.

        Our customers have seen time to value with Secure SD-WAN. Its time to value is seen within weeks of implementation.

        What's my experience with pricing, setup cost, and licensing?

        The price for the Fortinet FortiGate is reasonable. Secure SD-WAN is free of charge. If you have their firewall, it's free of charge. It's very tempting. Other vendors, such as Palo Alto, will charge you to have an SD-WAN license, whereas, with Fortinet, it's free of charge.

        What other advice do I have?

        When purchasing a firewall, stability is non-negotiable. For small to medium businesses, Fortinet's affordability and ease of deployment make it a suitable option. However, for enterprise-level businesses, Palo Alto or Check Point would be preferred for their robust clients and immediate updates, despite the higher cost.

        When comparing the pros and cons of Secure SD-WAN with other solutions, the challenge is not with SD-WAN. It's with the appliance that's offering SD-WAN, which is the firewall. So, the first comparison would be between the FortiGate firewall and other firewalls, and if the other firewalls are already offering the same service, the comparison will be between different levels, not just SD-WAN. There could be other firewalls that are more efficient or lower in cost or even more familiar to customers than Fortinet. So, the challenge is not with SD-WAN. The main reason I use SD-WAN on FortiGate is to get the benefit of the security profiles or security features of the firewall on top of the SD-WAN. Otherwise, I can use my internet router, the basic load balancing protocols, and the basic IP tunneling, and send some traffic here and some traffic there, and I'll save the cost. 

        I'd rate Fortinet FortiGate an eight out of ten.

        Which deployment model are you using for this solution?

        On-premises
        Disclosure: My company has a business relationship with this vendor other than being a customer. Integrator
        PeerSpot user
        Buyer's Guide
        Download our free Fortinet FortiGate Report and get advice and tips from experienced pros sharing their opinions.
        Updated: December 2025
        Buyer's Guide
        Download our free Fortinet FortiGate Report and get advice and tips from experienced pros sharing their opinions.