Try our new research platform with insights from 80,000+ expert users
PeerSpot user
Solutions Engineer/Consultant at a tech services company with 11-50 employees
Real User
A reliable and consistent solution that allows us to manage the entire network from one interface and supports on-premises and cloud deployments
Pros and Cons
  • "One of the nice things about FortiGate is that it can be deployed on the cloud or on-premises. You can actually do both. That's the biggest reason why I stick with this solution as opposed to something like Cisco Meraki. Another nice thing is that I can log directly into a FortiGate or get to it through their FortiCloud access products. They're pretty reliable and consistent. One of the reasons why I started using the product was their single pane of management. I can deploy their line of firewalls in conjunction with their switching and access points, and I can manage the entire network from one interface. I don't have to log into one interface for the firewall, another one for the access points, and another one for the switches. These firewalls have access point controller functionality built right into the system, so I don't even have to purchase additional devices to manage them."
  • "FortiLink is the interface on the firewall that allows you to extend switch management across all of your switches in the network. The problem with it is that you can't use multiple interfaces unless you set them up in a lag. Only then you can run them. So, it forces you to use a core type of switch to propagate that management out to the rest of the switches, and then it is running the case at 200. It leaves you with 18 ports on the firewall because it is also a layer-three router that could also be used as a switch, but as soon as you do that, you can't really use them. They could do a little bit more clean up in the way the stacking interface works. Some use cases and the documentation on the FortiLink checking interface are a little outdated. I can find stuff on version 5 or more, but it is hard to find information on some of the newer firmware. The biggest thing I would like to see is some improvement in the switch management feature. I would like to be able to relegate some of the ports, which are on the firewall itself, to act as a switch to take advantage of those ports. Some of these firewalls have clarity ports on them. If I can use those, it would mean that I need to buy two less switches, which saves time. I get why they don't, but I would still like to see it because it would save a little bit of space in the server rack."

What is our primary use case?

We are a managed services company, and we are also a partner with Fortinet and Cisco Meraki. The firmware that I just started using is 6.4.4. Most of the FortiGates that I sell are 60E and 60F. For some of our larger customers, I have got a handful of FortiGate 80, 100, and 200.

Fundamentally, its primary purpose is security at the edge of the network. I have got some clients who are starting to use the SD-WAN feature for a multi-location setup. I have got other clients who are using a lot of IPSec tunnels. I also have some clients who, with the increase in remote workers, are taking advantage of the FortiClient product that ties in. They are using that for remote VPN connections. 

How has it helped my organization?

We are a managed services provider, and I would say that it has improved the way our client's organization functions. I would also hope that it is seamless for them. They don't even know it. The biggest improvement for us is that it allows us to do more with a smaller staff.

What is most valuable?

One of the nice things about FortiGate is that it can be deployed on the cloud or on-premises. You can actually do both. That's the biggest reason why I stick with this solution as opposed to something like Cisco Meraki. Another nice thing is that I can log directly into a FortiGate or get to it through their FortiCloud access products. They're pretty reliable and consistent.

One of the reasons why I started using the product was their single pane of management. I can deploy their line of firewalls in conjunction with their switching and access points, and I can manage the entire network from one interface. I don't have to log into one interface for the firewall, another one for the access points, and another one for the switches. These firewalls have access point controller functionality built right into the system, so I don't even have to purchase additional devices to manage them.

What needs improvement?

FortiLink is the interface on the firewall that allows you to extend switch management across all of your switches in the network. The problem with it is that you can't use multiple interfaces unless you set them up in a lag. Only then you can run them. So, it forces you to use a core type of switch to propagate that management out to the rest of the switches, and then it is running the case at 200. It leaves you with 18 ports on the firewall because it is also a layer-three router that could also be used as a switch, but as soon as you do that, you can't really use them. They could do a little bit more clean up in the way the stacking interface works.

Some use cases and the documentation on the FortiLink checking interface are a little outdated. I can find stuff on version 5 or more, but it is hard to find information on some of the newer firmware.

The biggest thing I would like to see is some improvement in the switch management feature. I would like to be able to relegate some of the ports, which are on the firewall itself, to act as a switch to take advantage of those ports. Some of these firewalls have clarity ports on them. If I can use those, it would mean that I need to buy two less switches, which saves time. I get why they don't, but I would still like to see it because it would save a little bit of space in the server rack.

Buyer's Guide
Fortinet FortiGate
October 2025
Learn what your peers think about Fortinet FortiGate. Get advice and tips from experienced pros sharing their opinions. Updated: October 2025.
869,832 professionals have used our research since 2012.

For how long have I used the solution?

I have been using this solution since 2007.

What do I think about the stability of the solution?

If you have the firmware version 6.4.3 and are using FortiLink in VLAN, it has trouble with tunneling networks for a wireless network. It won't give it a route to the internet. I found it just last week. There was a version back in 6.2 where it required 12 characters for the password of a wireless network on Web 2.0 as opposed to the traditional eight characters. The problem came when you wanted to edit it. If you upgraded to that firmware from a previous version, it wouldn't let you save any changes without changing the password, making it a requirement. That was kind of problematic for a while, but for the most part, it has been pretty stable and responsive.

What do I think about the scalability of the solution?

It is easy to scale as long as you start with the right firewall. Our clients are of different sizes. We have clients with the home office with two or three employees. One of the clients has about 26 locations in all four time zones and about 400 employees.

How are customer service and support?

I haven't used their official tech support, which is actually a good thing. The reason I haven't used their official tech support is that they have a support mechanism in place. I have direct access to a local sales engineer, and when I have problems, I call him up on the cell phone. Based on that, they definitely support their partners 100%. They are definitely channel driven, and it shows.

Which solution did I use previously and why did I switch?

I have deployed SonicWall, WatchGuard, Cisco ASA, Rockies, and Palo Alto. The biggest reason I went with Fortinet is that it felt like it has got Palo Alto type of functionality at a much more reasonable price point.

I spent seven years working at the state level education, and budgets were tough. We had SonicWall subscription services. I could replace them with the brand new FortiGate with a three-year subscription for the same cost. That really changed things. The single pane of management that they have was just the frosting on the cake.

How was the initial setup?

It is pretty simple. For example, I just set up a new network with a 100E, and I have got four stackable switches. It will run a network with 23 access points. I set up all the VLANs, routing, rules, and other things. It won't take more than four hours of work. I am getting ready to box up and ship it out. It will be plug and play once it gets to the site.

What other advice do I have?

Take the training. They've got free training that is available online, and there are different levels for technical training. It is crucial. If you sign up as a partner, which doesn't cost you anything, the training is free. If you want to go for the test and get certified, you got to pay for the test, but the actual training materials are available to every partner for free. I would say that definitely take advantage of those. When you have new employees as network engineers, make this training a part of the routine.

I would rate Fortinet FortiGate an eight out of ten. I have been using it for years, and I do try to evaluate it on a regular basis and continue to stick with them. I just don't have a lot of bad things to say about them. Aside from their product, I'm a also fan of their company and how they do business, which makes it easier to do business with them. I don't necessarily appreciate the business practices of some of their competitors. It is nice not to have to worry about that.

Which deployment model are you using for this solution?

Private Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
PeerSpot user
Network Security Engineer at Social Security Commission
Real User
Good interface with good reporting and useful templates
Pros and Cons
  • "There are great templates, so you don't have to customize them if you don't want to. You do have the option to custom create some folders and some reports, however, with what is there, you don't really need to go through extra effort, as they already give you a lot of predefined views of reports and so forth."
  • "There are SD-WAN network monitoring, SD-WAN features, Industrial Databases, Internet of Things, Detection, etc., however, we do have not licenses for those features. We thought that if you bought a product, you should have all of the features it offers. Why should you need to make so many extra purchases to enable features? They should have one price for the entire offering."

What is our primary use case?

We primarily use the solution as a firewall.

What is most valuable?

We use the firewall to enforce our company ideologies and principles and policies. The solution has built-in features for web filtering that are great. It categorizes it nicely for you. 

The interface itself is nice to work with. It's a lot better than the initial interface that they used to have around version four. I used to work for FortiGate some time back, and the earlier interfaces were not as good as these latest ones. 

I like that once you open it up, you have a dashboard that can give you a holistic overview of what is happening. You can see, for example, how your resources are doing on your firewall or if you still have disc space for logs and so forth.

The solution gives you an immediate view of what's happening on the hardware itself. What we have done with FortiGate is we have put up a FortiAnalyzer, a FortiGate reporting hardware. We are using it in conjunction with FortiGate. 

The solution offers good reporting. We get our reports from there. We have the opportunity to get real-time reports. 

There are great templates, so you don't have to customize them if you don't want to. You do have the option to custom create some folders and some reports, however, with what is there, you don't really need to go through extra effort, as they already give you a lot of predefined views of reports and so forth.

We have access to quite a few features. The web filter and application control are primarily what we are using. Then we also have a VPN feature, which allows for our remote users to connect and get through the firewall. 

What needs improvement?

The commercial side of things can be improved a bit. They have such a good product, and when you disable some features, it has to be commercialized for you to enjoy those features. Therefore, you are actually buying half a product. You have hardware there, and yet, your features are not enabled. The primary things, such as the antivirus, web filter, DNS filter, application intrusion, file filter, and email filter come with the general license. There are other things that you want to also enjoy in this system and you can't. 

There are SD-WAN network monitoring, SD-WAN features, Industrial Databases, Internet of Things, Detection, etc., however, we do have not licenses for those features. We thought that if you bought a product, you should have all of the features it offers. Why should you need to make so many extra purchases to enable features? They should have one price for the entire offering. That's one of the drawbacks they could look at. 

Sometimes the firmware automatically updates itself. Then it corrupts the configuration and you have to roll back or you have to do amendments to the configurations. That, however, has happened only once with us. We have put in controls for automatic updates to stop them and now we do manual allowance or we allow the manual update.

Most of the features are good. They give you pricing and you get a VPN for about 10 users where you can test it. For us, we feel that we need to buy extra licenses due to COVID, as people are working from home. Under the current conditions, we are not getting the best out of the firewall. 

They could just maybe put better graphics or better reporting into the solution. I want to know who is the user and what is the exact website they're visiting. Something like that would help. They should do more like what the GFI is doing.

For how long have I used the solution?

We've been using the solution for a bit over a year now.

What do I think about the stability of the solution?

6.4.2 is our current version. The latest is 6.4.3. It's available like I say, however, we have not installed it. We'll wait until around December, then we will then install that one. We like to wait to witness its stability. Once we know it is bug-free, then we allow it to run as the latest platform.

What do I think about the scalability of the solution?

We have a cluster and we have configured it with high availability. What we have done is we have put one primary and one secondary in case it breaks or it gets damaged. We have a third one at our DR site as well, which works in conjunction with Plateau. We have employed the same rules and some stricter rules on the DR site, just to allow traffic between these machines.

We allow certain times for updates on the infrastructure we have at the DR. We are planning some more, however, we don't enjoy all the features yet. We want to bring in an SD-WAN. Maybe that can also help us with scaling our network at different angles and from the cloud or being from an LD device or so forth. We're still working on that.

How are customer service and technical support?

We have a partner that we work with. We have support at another level and I'm the primary person that looks after the firewall. If I have an issue that is urgent and I don't have the time to do the knowledge base to actually turn it around, we usually engage our partner, which has engineers that have the knowledge necessary to deal with it and who are certified in FortiGate. 

We have what is called FortiCare. We have FortiCare support as well for firmware and general updates and all those other things. I normally do updates and so forth myself. It's very little intervention from outside technical support.

How was the initial setup?

Having background knowledge, the initial implementation was not really complex for me. You just need to know your environment and what is needed as well as what is allowed. 

The business input was the only item outstanding as there were issues such as who needs to have social media access at what time and who needs to have full access. Those were business decisions, however, but from the technical side, it was fairly easy.

What's my experience with pricing, setup cost, and licensing?

They have almost all the features embedded in the solution. It's just that some features are not available because you have to pay for it. There are lots of add-ons available, and you need to pay extra for them, so pricing can add up.

What other advice do I have?

We are strictly a government entity. We are a customer.

The model that we are using is the 500E, which is for small and medium enterprises. We are not a big institution. We do not have the latest version. We like to wait about three months before we apply anything new to make sure the early releases aren't flawed. After three months, after we've got a good review, then we will say, "Okay, let's upgrade to that version."

Even though we feel that sometimes they create a new version to take care of a vulnerability or threat, we like to be safe and avoid bugs. The version that we are fitting currently is 6.4.2, which is fairly stable.

Apart from the fact that they should just include everything in their offering, everything else works fine for me. There's a whole lot of Fortinet products that work together, FortiSwitches, FortiAP's, etc. Overall, I would give it eight of ten. 

Which deployment model are you using for this solution?

On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Buyer's Guide
Fortinet FortiGate
October 2025
Learn what your peers think about Fortinet FortiGate. Get advice and tips from experienced pros sharing their opinions. Updated: October 2025.
869,832 professionals have used our research since 2012.
Jenesty Alissoutin - PeerSpot reviewer
Project Manager at Expertsys Technologies Inc.
Real User
Top 10
Good pricing, good technical support, and fairly user-friendly
Pros and Cons
  • "The pricing is excellent. It's much less expensive than Cisco."
  • "The initial setup is complex."

What is our primary use case?

I'm primarily using the solution for security purposes, and also for managing the network for various companies. I am deploying it for uniting management statuses, in order to be able to manage everything inside and to control security policies. It can fight against attacks to the system or for email searches. It is basically a central management security appliance.

What is most valuable?

We find it's good for managing the network and offers good defense against attacks.

Technical support is great. It's really fast.

Overall the solution is pretty user-friendly. It has a good dashboard and is pretty easy to navigate.

The pricing is excellent. It's much less expensive than Cisco.

What needs improvement?

The only thing is sometimes you have to learn with CLI. For those not familiar with CLI it can be an issue. It would be ideal if we could avoid using CLI. If you make a mistake in the command line, it's harder to detect. It would be much better if they had a user-friendly GUI.

The initial setup is complex.

For how long have I used the solution?

I've been using the solution for five years.

What do I think about the stability of the solution?

The solution is very stable. You don't have to worry about bugs or glitches. I tend to wait and not upgrade to the latest version right away to ensure this is the case.

What do I think about the scalability of the solution?

The solution is scalable. If you need to expand it, you can. We have it at a variety of networks and sites with no problem.

We have 120 users that are connected to a minimum of 80 computers and a minimum of 15 servers, which is great. The solution is working and it is still stable even across all of these devices and servers. We have multiple networks inside as well, so we are not only on one network. We set them separately, which is why the initial setup for us was quite complex. We're through with that though.

How are customer service and technical support?

The technical support is pretty good. they're pretty knowledgeable and responsive, especially when you get to the Level 3 techs.

Which solution did I use previously and why did I switch?

We previously used CheckPoint. Unfortunately, they didn't have a very good service, especially in technical support, and therefore we decided to switch.

How was the initial setup?

For our organization, the initial setup was not straightforward. It was pretty complex. That's due to the fact that we had many networks to set up and many sites to take into account.

What about the implementation team?

We set up the solution ourselves, although we did work closely with Fortinet as part of their bundle package.

What's my experience with pricing, setup cost, and licensing?

The licensing is paid on a yearly basis.

Which other solutions did I evaluate?

I evaluated Palo Alto. They didn't have the complete solution we wanted. Neither did Juniper, which we also looked at. We looked into possible having Cisco, however, Cisco is too expensive. 

When we looked at Cisco, we also evaluated Meraki, which is a part of Cisco. It did not have what we needed either. 

What other advice do I have?

We are using the 200E in our environment. We had 200D before.

We're not using the latest version of the solution, which is 6.4. I like to wait on new versions to see if it is stable before deploying it. I like to take my time and avoid headaches where possible.

I would recommend the product to other organizations. It's got great bundle options which make it a very good choice - and it's much cheaper than Cisco.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
PeerSpot user
Chief of Technical Department at a tech services company with 51-200 employees
Real User
Top 20
Enables efficient and fast task configuration with extensive options for problem-solving
Pros and Cons
  • "The configuration possibilities that Fortinet FortiGate provides are extensive, and the task configuration activity is fast and efficient for me."

    What is our primary use case?

    My use case for Fortinet FortiGate involves different plans and consulting in the retail area, and I utilize it in various press scenarios. 

    What is most valuable?

    The configuration possibilities that Fortinet FortiGate provides are extensive, and the task configuration activity is fast and efficient for me. My group in the office has ten years of experience with Fortinet FortiGate, and we utilize AI services that help with problem-solving. EER represents a ten-year experience, and we have certified five people in Fortinet FortiGate.

    What needs improvement?

    I don't know how Fortinet FortiGate can be improved; I find it comfortable and appreciate it as it is.

    For how long have I used the solution?

    I have used the Fortinet FortiGate solution for three years and a different firewall for more than ten years.

    What do I think about the stability of the solution?

    Stability is important, and I can be contacted via email for further details.

    What do I think about the scalability of the solution?

    My experience with the SD WAN capabilities includes working with more than one company, including a small company and a big company with users ranging from twenty to nine hundred. The users can see the tracking.

    How are customer service and support?

    I rate the support of Fortinet as internal departmental support, which helps me, although I have no other experience.

    How would you rate customer service and support?

    What's my experience with pricing, setup cost, and licensing?

    The pricing for Fortinet FortiGate is good; it's a competitive price.

    Which other solutions did I evaluate?

    I find Fortinet FortiGate preferable over Cisco for firewall solutions. Fortinet FortiGate works well for me, while Cisco does not work for me anymore.

    What other advice do I have?

    I am the chief of the technical department and provide support. I rate Fortinet FortiGate a ten out of ten.

    Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
    Flag as inappropriate
    PeerSpot user
    reviewer2540127 - PeerSpot reviewer
    Graduate Teaching Assistant at a university with 5,001-10,000 employees
    Real User
    Top 5
    Easy to use and checks the access control as a firewall
    Pros and Cons
    • "The solution is easy to use and checks the access control as a firewall."
    • "Fortinet FortiGate SWG can't be used on its own, and you have to get FortiAnalyzer."

    What is our primary use case?

    We used the solution for the client environment.

    What is most valuable?

    The solution is easy to use and checks the access control as a firewall. We did not face any challenges while integrating the solution into our infrastructure. Fortinet FortiGate SWG is easy to use.

    What needs improvement?

    Fortinet FortiGate SWG can't be used on its own, and you have to get FortiAnalyzer.

    For how long have I used the solution?

    I have been using Fortinet FortiGate SWG for three years.

    What do I think about the stability of the solution?

    Fortinet FortiGate SWG is a very stable solution.

    What do I think about the scalability of the solution?

    Fortinet FortiGate SWG is a scalable solution.

    How was the initial setup?

    The solution's initial setup is simple once you get a hang of it. All the documentation is available to help with the setup.

    What other advice do I have?

    Overall, I rate the solution a nine out of ten.

    Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
    PeerSpot user
    TiagoSilva - PeerSpot reviewer
    Senior Consultant at a tech consulting company with 10,001+ employees
    Real User
    Top 5
    Enables organizations to prevent access to classified IP addresses and protects environments from attacks
    Pros and Cons
    • "The solution protects the environment from internal and external threats."
    • "Two-way inspections are not possible in FortiGate."

    What is our primary use case?

    We use the solution for a large government customer. We helped them migrate from Check Point to Fortinet FortiGate. The customer had a lot of applications that are accessed by HTTPS. It was necessary to put some protection in place to prevent certain internet access. They have a reverse proxy published behind FortiGate. The reverse proxy balances the servers.

    FortiGate uses IPS profiles for the reverse proxy. The operation system is Linux, and the server is Apache with HTTPS of medium, high, and critical severity. FortiGate is used to inspect the connections between the servers and the customers. It is used to protect the environment.

    What is most valuable?

    We use .NET services to block IPs. We use the tool’s features to prevent access to classified IP addresses. We use ISDB to prevent network access to malware, botnet, BitTorrent networks, and mining for cryptocurrencies.

    We prevent access to certain classified addresses to stop attackers from understanding our environment. Attackers try to study the environment to explore its vulnerabilities and attack us. The solution protects the environment from internal and external threats.

    What needs improvement?

    Our customers have a specific application for two-way inspection. Two-way inspections are not possible in FortiGate. It is usually available in load-balancing solutions like F5. It would be a good improvement if the product provides two-way inspection features in the next release.

    For how long have I used the solution?

    I have been using the solution for five years.

    How are customer service and support?

    The support is good. We need to raise specific tickets for specific problems. If we have any issues, the team helps us solve them.

    How would you rate customer service and support?

    Positive

    How was the initial setup?

    It is easy to deploy the solution. The configuration of the firewall is simple.

    What was our ROI?

    The protection of the customers’ networks is our return on investment. The integration with FortiAnalyzer allows us to see the traffic and perform troubleshooting. Creating a profile with IPS does not require many steps. The level of protection provided by the tool is better than other vendors.

    Which other solutions did I evaluate?

    Fortinet FortiGate is better compared to Check Point.

    What other advice do I have?

    Overall, I rate the product a nine out of ten.

    Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
    PeerSpot user
    Amarjit Singh - PeerSpot reviewer
    Strategic Projects - Information Security at Peristent Systems
    Real User
    Top 20
    Simplifies the deployment of next-generation firewalls with integrated IPS and VPN capabilities

    How has it helped my organization?

    I work with multiple customers. Most are comfortable running IPS within their firewalls rather than deploying it. The standard deployment requires finding a service owner and training them on the platform. However, if I deploy a next-generation firewall with integrated IPS and VPN capabilities, it simplifies things. It's straightforward for someone to manage. Consolidating a VPN server, IPS, and standalone firewall into one appliance can be challenging for many customers. Fortinet's servers are increasingly popular.

    What needs improvement?

    Fortinet has serious vulnerabilities. Some of their interfaces are exposed to attacks. Since they are more prevalent, they may attract more attacks and have more vulnerabilities discovered.

    What do I think about the stability of the solution?

    If I'm incorporating FortiGate IPS, FortiGate firewall, Forti VPN server, or any other component into an existing Fortinet fabric, I already have a Fortinet analyzer and FortiManager. With this integrated Fortinet ecosystem, stability issues are significantly reduced. Additionally, inserting a standalone Fortinet device is much easier and much more accessible.

    How are customer service and support?

    Customer support is fine and fairly responsive.

    How would you rate customer service and support?

    Neutral

    Which solution did I use previously and why did I switch?

    We used Cisco products and operated within a Cisco ecosystem. Currently, Cisco is too expensive, but FortiGate IPS does not position itself as premium like Cisco.

    How was the initial setup?

    The initial setup can be completed within a month with some IT security architecture by replacing IPS.

    What's my experience with pricing, setup cost, and licensing?

    The product is expensive but comparable to Cisco.

    What other advice do I have?

    There are limitations to consider, such as the sandbox capacity. Increasing the sandbox limit is essential for better integration with the firewall IPS, facilitating traffic offloading. Since my customers deal with heavy content, we often need to upload content for analysis by the IPS and sandbox. Thus, the system effectively fulfils its intended purpose. However, we do not need to assess features beyond what the customer requires. As long as we meet their specific needs and use case, it's satisfactory.

    We're building a network of partners, you know, offering competitive pricing to engage in significant projects. Firewalls are pretty standard. The ecosystem issues may revolve around business support and pricing.

    You need more considerable internal resources to manage it. For clients with a robust security solutions team, architects, and skilled developers who handle data and generate similar content, I would recommend Fortinet FortiGate IPS. These individuals should be capable of upgrading their packages and downloading them. If they are comfortable with Docker, they can deploy it as an appliance on a server.

    Overall, I rate the solution a six out of ten.

    Disclosure: My company has a business relationship with this vendor other than being a customer. partner
    PeerSpot user
    Jaffar Ali - PeerSpot reviewer
    Director Technical Services at TechnoBIZ
    Reseller
    Top 5Leaderboard
    A comprehensive solution for web filtering, malware protection, and application control that offers robust security features and user-friendly interface
    Pros and Cons
    • "Web filters, particularly web application controls, grant us the ability to regulate user access effectively."
    • "There's room for improvement in the interface, especially following their upgrade to version nineteen."

    What is our primary use case?

    Our standard practice involves tailoring deployments to meet specific customer needs. Typically implemented at the network edge, FortiGate SWG addresses diverse security requirements. Use cases include securing online services, protecting internal servers in a DMZ for LAN user access, and employing a segmented approach where different firewalls safeguard distinct zones, collaborating to manage and pass traffic for unique security needs. One of the firewalls also serves as the primary filter for internet traffic.

    What is most valuable?

    Web filters, particularly web application controls, grant us the ability to regulate user access effectively. Among the various features, I find web application control and IPS to be the most valuable.

    What needs improvement?

    There's room for improvement in the interface, especially following their upgrade to version nineteen. The issue arises from the increased complexity, where tasks like defining the NAS require navigating a separate window, and regular policy configurations are done in a different window.

    For how long have I used the solution?

    I have been using it for seven years.

    What do I think about the stability of the solution?

    I would rate its stability capabilities nine out of ten.

    What do I think about the scalability of the solution?

    Regarding scalability, I would rate Fortinet highly, giving them eight out of ten due to the effectiveness of their new hardware, which greatly enhances scalability. We've carried out installations for a variety of setups, spanning from small to medium-sized deployments.

    How are customer service and support?

    I would rate its technical support services seven out of ten.

    How would you rate customer service and support?

    Neutral

    Which solution did I use previously and why did I switch?

    WatchGuard deserves credit for offering multiple options, including a client base and a comprehensive reporting feature, all within a unified license and toolset.

    How was the initial setup?

    I would rate the initial setup six out of ten in terms of complexity.

    What about the implementation team?

    The deployment can take up to a week but typically can be done in a couple of days.

    What's my experience with pricing, setup cost, and licensing?

    We essentially customize implementations based on the customer's chosen appliance. The cost varies depending on the specific appliance they purchase. We provide coverage for whatever they acquire, and throughout the year, we pay different amounts to various vendors. The cost has increased since the update so I would rate it eight out of ten.

    What other advice do I have?

    In terms of reliability and security, FortiGate stands out. WatchGuard excels in additional features, offering the best reporting and various configuration options. While Sophos is also strong in security, I would rate it slightly lower than FortiGate. Overall, I would rate it nine out of ten.

    Which deployment model are you using for this solution?

    On-premises
    Disclosure: My company has a business relationship with this vendor other than being a customer. Reseller
    PeerSpot user
    Buyer's Guide
    Download our free Fortinet FortiGate Report and get advice and tips from experienced pros sharing their opinions.
    Updated: October 2025
    Buyer's Guide
    Download our free Fortinet FortiGate Report and get advice and tips from experienced pros sharing their opinions.