A use case for Fortinet FortiGate includes connecting nine to ten different sites to the main Fortinet FortiGate firewall and diversifying the traffic with two-way traffic. It functions as a load balancer to balance loads between different sites.
Freelance at Oorjasaxena
Works very well for Indian market because of the economic value, scalability, and different sizing options
Pros and Cons
- "The best feature of Fortinet FortiGate is SD-WAN."
- "The best feature of Fortinet FortiGate is SD-WAN; it ensures continuous connectivity by taking over during link failures, preventing any downtime for the company."
- "Not all features are available in the web UI. Features such as enabling multiple MPLS circuits can only be accomplished through the command line, so these need to be made available in the web UI."
- "Some features in Fortinet FortiGate need improvement as we discover when calling support that certain actions must be done from the command line."
What is our primary use case?
How has it helped my organization?
The main benefits of Fortinet FortiGate, especially in India, are its economic value, scalability, and different sizing options. When compared to Cisco or Juniper, upgrading to a higher class involves a substantial cost increase, whereas with Fortinet FortiGate, the next class is only marginally higher.
What is most valuable?
The best feature of Fortinet FortiGate is SD-WAN. It ensures continuous connectivity by taking over during link failures, preventing any downtime for the company. One of my clients faced many problems with the primary internet provider and requested multi-path functionality. We implemented the SD-WAN facility and added another three-link WAN link, converting the normal port into SD-WAN and assigning weightage. When there is no response from the primary connection after a certain number of milliseconds, it switches to the secondary and then to the tertiary connection. The impact on network performance with the SD-WAN is very good, provided it is sized properly based on throughput. It is necessary to calculate how much data is transferring daily or per minute, then size the firewall accordingly and select a particular model.
The Fortinet FortiGate solution offers ease of use, not requiring highly skilled workers. General users with two or three experienced team members can read the manual and implement the needed configurations.
Hardware-assisted DDoS protection in Fortinet FortiGate is very easy to implement with single-click options, though care must be taken not to burden bandwidth. Certain ACL units should be used, applying rules only to interesting or exposed traffic.
What needs improvement?
Some features in Fortinet FortiGate need improvement as we discover when calling support that certain actions must be done from the command line. Not all features are available in the web UI. Features such as enabling multiple MPLS circuits can only be accomplished through the command line, so these need to be made available in the web UI.
Fortinet needs to improve customer support and documentation.
Buyer's Guide
Fortinet FortiGate
September 2025

Learn what your peers think about Fortinet FortiGate. Get advice and tips from experienced pros sharing their opinions. Updated: September 2025.
867,349 professionals have used our research since 2012.
For how long have I used the solution?
I have been working with Fortinet FortiGate for more than 15 years.
What do I think about the stability of the solution?
Fortinet FortiGate is very stable, but the person procuring the firewall needs to ensure it is sized properly. If the sizing is not proper, it will create many problems.
What do I think about the scalability of the solution?
The scalability of Fortinet FortiGate is very good. It has improved significantly compared to five years ago when it was not as scalable.
How are customer service and support?
When we encounter struggles, they perform actions from the backend, taking control and resolving issues. This becomes a black box for us because we do not know what actions they took.
How would you rate customer service and support?
Neutral
How was the initial setup?
The initial setup of Fortinet FortiGate is straightforward and easy. HA is the deployment model we always recommend.
What was our ROI?
While we have not calculated it specifically, we found the ROI to be good, approximately 97% to 98%.
What other advice do I have?
I utilize the Fortinet FortiGate hardware and have never tried the VM version, working only with normal VPN configuration, user configuration, normal routing, and multiple WAN links. While we are using the dynamic segmentation feature, we have not tested it thoroughly enough to analyze its benefits.
People generally go with the recommendations of high-level architects. For core networks, they typically suggest Cisco or Juniper. In India, the market follows whatever the chief architect suggests without quantifying whether it is worth it.
My advice for others considering Fortinet FortiGate implementation is to focus on its ease of use.
Based on my experience, I would rate this solution an eight out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Last updated: Jun 14, 2025
Flag as inappropriate
BDM Fortinet & BDM Teamlead at Exclusive Networks
Integrates seamlessly with the team for quick threat remediation and cost benefits
Pros and Cons
- "The biggest lesson would be that Fortinet FortiGate provides a high level of security at a good total cost of ownership."
- "They should do a better job in testing when they put out a new release because when a new software version is released, it is not always stable or does not always have all the previous features working correctly."
What is our primary use case?
We use Fortinet FortiGate to help protect and secure mission-critical data. There are policies and rules that we apply, and there is an intrusion prevention system that notifies if there are critical vulnerabilities on some clients.
What is most valuable?
I assess the security services provided by Fortinet FortiGate, such as URL filtering and DNS filtering, as quite good; they are quite effective. Fortinet FortiGate is rather sustainable; it's a good, stable product that gets faster and uses less power with new versions.
It helps us remediate threats more quickly because we have specialists who can work with it rather effectively. When there is an alert on the Fortinet FortiGate, they work together with our FortiAnalyzer and can quickly remediate the incidents.
What needs improvement?
They should do a better job in testing when they put out a new release because when a new software version is released, it is not always stable or does not always have all the previous features working correctly. They should do more testing or launch a new version later when they have tested it more thoroughly.
They already did a good job in their GUI, but they can make more features available in the GUI that are still only accessible through the command line.
For how long have I used the solution?
My proper experience is only two or three years, but in the company, they have been using it for over 10 years.
What do I think about the stability of the solution?
In terms of network and security convergence, they are there, but we are not currently using them because in the office itself, we have other brands of switches and access points. It's now not quite stable in the demo lab environment; we are now on the latest version, but in the production environment, we are not. Production is always on a lower version.
What do I think about the scalability of the solution?
It is scalable.
How are customer service and support?
I would give Fortinet's technical support an eight out of 10; they are responsive and helpful.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
I previously used Sophos before Fortinet FortiGate.
How was the initial setup?
If you first implement Fortinet FortiGate to get it up and running, it takes just a couple of minutes, but to get all the policies configured correctly, it takes a couple of days.
What about the implementation team?
For my company, Exclusive Networks, the whole company had three or four engineers involved.
What was our ROI?
We have seen a return on investment from using Fortinet FortiGate for integration with the SOC team. The automation part is giving us a cost benefit and speed; we can react faster.
What's my experience with pricing, setup cost, and licensing?
The price-to-performance ratio from using Fortinet FortiGate is very good; I would give it a nine out of 10. It has helped save on costs due to reduced power consumption.
Which other solutions did I evaluate?
Performance is the reason I switched from Sophos to Fortinet FortiGate. It has good value for money, ease of use, and a higher security level, with better security solutions. It's more expensive, but it offers a really good total cost of ownership and is still considerably cheaper than Palo Alto.
What other advice do I have?
I would suggest to anyone considering purchasing Fortinet FortiGate's data center firewall to get training to understand very thoroughly how FortiOS works, and if you have several Fortinet FortiGates, to go for a FortiManager with the necessary training.
The users who work with Fortinet FortiGate are only the IT people, around three or four. Locally, we have around 60 end-users for Fortinet FortiGate. The biggest lesson would be that Fortinet FortiGate provides a high level of security at a good total cost of ownership.
I would give Fortinet FortiGate an overall rating of nine.
Which deployment model are you using for this solution?
On-premises
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Other
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
Last updated: Jun 5, 2025
Flag as inappropriateBuyer's Guide
Fortinet FortiGate
September 2025

Learn what your peers think about Fortinet FortiGate. Get advice and tips from experienced pros sharing their opinions. Updated: September 2025.
867,349 professionals have used our research since 2012.
Network &Security Engineer at Natioanal Drug Authority Uganda
Provides good application control and security, and it's user-friendly
Pros and Cons
- "Application control and the web filter are the best features of Fortinet FortiGate."
- "I would recommend using Fortinet FortiGate because of its usability."
- "Its pricing can be better."
- "The only issue that I have is with FortiNAC. The firewall is fine, but the FortiNAC interface is a little bit too jumbled or too complicated, not as straightforward as it is on the Fortinet FortiGate firewall and FortiAnalyzer."
What is our primary use case?
We have two deployments of Fortinet FortiGate at different sites. One is the SD-WAN, and the other is the next-generation firewall.
We secure our perimeter using Fortinet FortiGate. We are using it as a gateway device, and we have all the filters, such as the web filter, the intrusion detection and the anti-virus. We mainly use it to filter our traffic. Most importantly, it serves as our gateway device. That is how we are using it at the end of the day.
We wanted to see how Fortinet FortiGate SD-WAN can help us reach out to our branch, and that was the only reason for enabling it. It pretty much works for connectivity to the branch.
How has it helped my organization?
It is very user-friendly compared to other products. It integrates with many other technologies out there. It does not matter what technology you have deployed within your network, it can work with that.
We have not had an issue with the Fortinet FortiGate firewall. We recently renewed the licenses for the firewall and FortiNAC, and it has been working well. I have not had any incidents or instances since the last renewal.
What is most valuable?
Application control and the web filter are the best features of Fortinet FortiGate.
Traffic control is available, and I have been using Fortinet FortiGate to allocate bandwidth also, so it helps me manage and allocate bandwidth to my applications. On that side, that has worked for me. Most importantly, it helps to filter unwanted traffic.
What needs improvement?
Its pricing can be better. I cannot think of anything else because it pretty much satisfies our requirements. I am comfortable with this product.
The only issue that I have is with FortiNAC. The firewall is fine, but the FortiNAC interface is a little bit too jumbled or too complicated, not as straightforward as it is on the Fortinet FortiGate firewall and FortiAnalyzer.
What do I think about the stability of the solution?
I have not faced any stability issues with Fortinet FortiGate. I would give it an eight out of ten for stability.
What do I think about the scalability of the solution?
Fortinet FortiGate is scalable. I would rate it an eight out of ten for scalability.
How are customer service and support?
I raise my tickets for Fortinet FortiGate, and they are handled well. The support is pretty good. I would rate the support an eight out of ten.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
In this work environment, Fortinet FortiGate was the first one we had as our firewall. We had nothing before it.
I have previously worked with Check Point and Cyberoam. Those are the only two products that I can compare with Fortinet FortiGate.
From my experience, administration is a bit complicated on the Check Point side. Most of the concepts are similar, but configuring Fortinet FortiGate is a little bit easier for me compared to Check Point. Cyberoam was resource intensive, which I have not seen in Fortinet FortiGate.
How was the initial setup?
The initial setup of Fortinet FortiGate was handled by a provider to implement it, but the knowledge transfer was pretty much straightforward. It took about two weeks to deploy Fortinet FortiGate.
What was our ROI?
We are not a business-oriented organization; our primary aim is to make sure that our assets are protected. We had some issues before having this firewall, and we have not had any incidents ever since we implemented Fortinet FortiGate.
What's my experience with pricing, setup cost, and licensing?
When I look around at other products, such as Sophos, Fortinet FortiGate is 20% to 30% more expensive with our current cost.
The license renewal for Fortinet FortiGate has been a little bit costly. When we are paying, we renew both the warranty and licenses for Fortinet FortiGate. That is what makes the whole thing a bit costly.
We normally purchase and renew those licenses for FortiAnalyzer, FortiNAC, and Fortinet FortiGate firewall at the same time. When I look around, I would say Fortinet FortiGate is on the higher side.
What other advice do I have?
The thing that I have not experienced with it is the web application firewall. I was trying to find out from the partner whether it is something that is licensed separately. When you look at the policies, it looks it is not active.
I would recommend using Fortinet FortiGate because of its usability. I would rate it a nine out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Last updated: Apr 14, 2025
Flag as inappropriateManager Digital & IT Infrastructure, Information Technology and Cyber Security at a energy/utilities company with 10,001+ employees
Seamlessly connects and efficiently supports various regional offices with enterprise-level assistance
Pros and Cons
- "The system is very easy to scale."
- "The enterprise-level support is excellent, and we receive quick assistance from Fortinet FortiGate."
- "There should be some open-source training or free training for decision makers, or some webinars should be available. These would help understand the new product line and the existing product line features."
- "There should be some open-source training or free training for decision makers, or some webinars should be available."
What is our primary use case?
We use Fortinet FortiGate for SD-WAN as well as the switches for renewable plants and energy sector power plants.
What is most valuable?
All the features needed to protect the digital landscape are available. The enterprise-level support is excellent, and we receive quick assistance from Fortinet FortiGate.
With the SD-WAN network, the connectivity is seamless. The dependency on bandwidth and MPLS connectivity is expensive compared to SD-WAN. Currently, there is seamless connectivity between all plants and corporate offices. The implementation is straightforward and not complex to execute.
The SD-WAN connects all sites, as we have many regional offices in different locations. The Fortinet FortiGate devices are very useful and easy to configure, and we are benefiting from their features.
In the utilities and electrical generation sector, we use various models. In IT security, we have different models, and for sites, we use 40F, 460F, and various others. While my part is limited to India, Fortinet FortiGate is used worldwide across our group.
What needs improvement?
There should be some open-source training or free training for decision makers, or some webinars should be available. These would help understand the new product line and the existing product line features.
Additionally, it would be helpful to have comparisons between competitors such as Cisco, Juniper, and others with Fortinet FortiGate.
For how long have I used the solution?
I have been using the solution for three years.
What do I think about the stability of the solution?
The system is very stable.
What do I think about the scalability of the solution?
The system is very easy to scale.
How are customer service and support?
We receive quick support from Fortinet FortiGate. When we raise a ticket, we get support via email reply promptly. The experience has been perfect, and we are satisfied with it.
How would you rate customer service and support?
How was the initial setup?
The initial setup is easy. I'd rate it nine out of ten.
What about the implementation team?
This is handled by my team. I am in leadership and do not handle the technical aspects directly.
What was our ROI?
While we haven't calculated specific ROI numbers, most devices are very stable and seamless. We don't typically consider money since this is an infrastructure requirement. Fortinet FortiGate support is available, annual maintenance contracts are in place, and the devices haven't failed in three years. The product quality is good, eliminating the need to reinvest in the same devices or setup.
What other advice do I have?
Fortinet FortiGate has an excellent portfolio including firewalls, switches, and access points. I would recommend it to anyone. We are using FortiSwitches as part of our implementation.
I rate Fortinet FortiGate a nine out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Last updated: Jul 9, 2025
Flag as inappropriateOwner at ICAL S.A.
Comprehensive and easy to manage with a simple GUI
Pros and Cons
- "It's easy to manage. The GUI is very simple, and what is very good is that every product, regardless of size, has the same interface."
- "The GUI is very simple, and what is very good is that every product, regardless of size, has the same interface."
- "Their support's response time can be better. In the past six months, they took quite a long time to respond to the support tickets."
- "In the past six months, they took quite a long time to respond to the support tickets. I don't know if they are overwhelmed with too much activity, but for the last six months, the support has not been very good."
What is our primary use case?
Most of our clients are SMB. We have several support contracts, and as a way to standardize all the products and processes, we ask our clients to switch to Fortinet FortiGate as a firewall, and that's how we standardize our process. Most of our clients we support with a support contract have Fortinet FortiGate as a firewall on-premises.
What is most valuable?
It's easy to manage. The GUI is very simple, and what is very good is that every product, regardless of size, has the same interface. Most features are in every single product irrespective of the size.
What needs improvement?
Their support's response time can be better. In the past six months, they took quite a long time to respond to the support tickets. I don't know if they are overwhelmed with too much activity, but for the last six months, the support has not been very good. Previously, it was very good.
For how long have I used the solution?
I have dealt with Fortinet FortiGate for four or five years.
What do I think about the stability of the solution?
I would say that Fortinet FortiGate is stable. We have several appliances installed, but we encountered some trouble with the smaller models on three occasions, which somehow limited the inbound traffic. We had to send one in for a Return Merchandise Authorization (RMA), and Fortinet sent us a new appliance, which resolved the issue. The only downside is that the replacement process takes about two to three weeks. That has been the only problem we've experienced with the smaller model.
What do I think about the scalability of the solution?
The scalability of Fortinet FortiGate is mostly with the bigger appliances. It's not quite flexible once you buy one appliance; to scale up, you have to buy a new appliance, and there's no way to upgrade the appliance. The challenge is that you don't want to oversize the appliance because that is tied to the subscription. The price of the subscription is tied with the size of the appliance, so you have to size it very precisely, considering the future growth of the company.
How are customer service and support?
Their technical support is pretty good. Over the last six months, there has been a delay in response, but previously, it was very good.
How would you rate customer service and support?
Positive
How was the initial setup?
The initial setup for Fortinet FortiGate is pretty straightforward.
What's my experience with pricing, setup cost, and licensing?
My experience with the pricing, setup cost, and licensing for Fortinet FortiGate is quite good. I don't have a public site, such as in Azure, where I can see the pricing. I always have to go through the distributor, and that could take some time to get the real price for each appliance.
What other advice do I have?
When our client has two internet connections, we do Fortinet FortiGate SD-WAN configuration, and it works very well. I can't determine if there is better performance using SD-WAN, but it's much more stable. We did have some trouble with certain types of traffic that doesn't work well with SD-WAN, and we had to implement rules to stick to one of the connections, but those are exceptions. The traffic is much more fluent, but mostly it makes the connection much more stable.
I would rate Fortinet FortiGate an eight out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
Last updated: Jun 21, 2025
Flag as inappropriateComprehensive traffic management and explore improve initial setup processes
Pros and Cons
- "Fortinet FortiGate is among the best options in the market."
- "Fortinet FortiGate provides superior protection compared to other firewalls, with high processing capabilities."
- "They could simplify their deployment process, especially when customers have existing devices."
- "They could simplify their deployment process, especially when customers have existing devices."
What is our primary use case?
I'm using Fortinet FortiGate for consultancy, implementation, and troubleshooting after device implementation. We serve as both reseller and consultant, providing search support and consultancy support. I usually recommend Fortinet FortiGate for small and small-sized businesses.
How has it helped my organization?
I have experience with Fortinet FortiGate SD-WAN, as it is a method for routing traffic. We can assign profiles with specific conditions to create best practices or optimal experiences for customers. These profiles can manage traffic balance or link balancing. We can detect users or specific links for particular services, including load balancing.
What is most valuable?
Fortinet FortiGate provides superior protection compared to other firewalls, with high processing capabilities. In comparison to Sophos devices, Fortinet FortiGate offers enhanced protection through network protection, IPS, and application protection.
What needs improvement?
They could simplify their deployment process, especially when customers have existing devices. The configuration approach depends on whether customers need to start from scratch or can utilize existing backups and rules.
I would seek to improve Fortinet FortiGate by exploring additional features, such as SASE solutions that we are currently studying and implementing. The configuration could be made easier, particularly during initial setup. We need to ensure comprehensive utilization of all device features and learn best practices from other cases.
For how long have I used the solution?
I have been working with Fortinet FortiGate for approximately one year.
What do I think about the stability of the solution?
Fortinet FortiGate is overall stable. When compared with Sophos, particularly regarding remote access and SSL VPN, Fortinet FortiGate proves much easier to use. While Sophos presented port-related challenges in Egypt, Fortinet FortiGate operates more smoothly.
What do I think about the scalability of the solution?
Fortinet FortiGate is scalable, with capacity depending on firewall sizing. We determine sizing based on multiple factors: number of users, available links, traffic types, server count, services in use, and whether services will be published. We consider parameters such as VPN requirements, remote access needs, side-to-side VPN configuration, and overall traffic volume to determine device capacity.
How are customer service and support?
We tend to handle support.
Which solution did I use previously and why did I switch?
I have experience with Fortinet products and limited experience with Cisco.
I provide other firewalls, such as Sophos, and I have worked with endpoint protection solutions. I have experience with backup solutions such as Veeam, and endpoint security solutions including Kaspersky and ESET.
How was the initial setup?
I have created many profiles for SD-WAN capabilities while integrating with Fortinet FortiGate. We assess customer needs and make recommendations accordingly. If customers aren't using SD-WAN, I suggest implementing it due to its effective load balancing capabilities and additional firewall features.
What was our ROI?
Regarding the evaluation of changes in return on investment after implementing the Fortinet solution for SD-WAN hybrid workforce, we work on a case-by-case basis. ROI is monitored by management, and we do not directly track ROI in the systems.
Which other solutions did I evaluate?
Fortinet FortiGate is among the best options in the market, though alternatives exist, including Sophos. Fortinet FortiGate demonstrates stronger performance and protection compared to Sophos, though its device and license costs are higher.
What other advice do I have?
I'd rate the solution eight out of ten.
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
Last updated: May 17, 2025
Flag as inappropriateHead Of Technical Department at Modern establishment for supply and trading
Works very well as a perimeter firewall, and it's easy to deploy and configure
Pros and Cons
- "Fortinet FortiGate has a very simple configuration, is easy to set up, and includes SD-WAN features at no additional cost."
- "Fortinet FortiGate is among the best firewall solutions, having a significant market share in Egypt."
- "From my experience, I see that the datasheets of the Fortinet FortiGate portfolio need to be more accurate because correct sizing is essential. The datasheets should provide clear information when deploying features."
- "From my experience, I see that the datasheets of the Fortinet FortiGate portfolio need to be more accurate because correct sizing is essential."
What is most valuable?
Fortinet FortiGate is among the best firewall solutions, having a significant market share in Egypt. Fortinet FortiGate has a very simple configuration, is easy to set up, and includes SD-WAN features at no additional cost. I recommend Fortinet FortiGate to act as an internet or perimeter firewall.
Features such as URL filtering, intrusion detection, and threat prevention make it suitable as a perimeter firewall. It also includes free SD-WAN features. It is recommended when any customer has more than one site, as it can act as an SD-WAN solution without any extra licenses, with SD-WAN being a built-in feature. It is a very easy solution.
What needs improvement?
From my experience, I see that the datasheets of the Fortinet FortiGate portfolio need to be more accurate because correct sizing is essential. The datasheets should provide clear information when deploying features.
When comparing Fortinet to all other vendors, I believe most features are available in Fortinet. I'm not sure if the DNS security license is available in Fortinet; if not, it is important to add Fortinet DNS security and sandboxing licenses. I know Fortinet has a separate sandbox solution, but I am unsure about sandbox features in the firewall. In contrast, Palo Alto has a DNS security license, email security, and WildFire license that serves as a sandbox solution.
For how long have I used the solution?
I have been working with Fortinet FortiGate for around eight years.
What do I think about the stability of the solution?
I find Fortinet FortiGate to be very stable.
What do I think about the scalability of the solution?
The scalability of Fortinet FortiGate depends on the project. If the project meets accurate sizing, it can be scalable, but if the presales engineer does not accurately size it, Fortinet FortiGate can have limited resources to scale. It depends on the project.
How are customer service and support?
I evaluate Fortinet's technical support as a seven out of ten. They aren't the best support, but when we need assistance with any features or field activities, we can utilize the internal support team of the vendor located in our country.
How would you rate customer service and support?
Neutral
What was our ROI?
I believe it is cost-effective. With Fortinet FortiGate, we can pay once for every renewal period, and there are no CAPEX expenses because Fortinet FortiGate is easy to configure, easy to manage, and familiar to most engineers.
What's my experience with pricing, setup cost, and licensing?
It is not the cheapest one, but its price is very competitive.
Which other solutions did I evaluate?
When comparing Fortinet FortiGate to Palo Alto or other firewalls I've worked with, Fortinet is more stable, easy to configure, easy to manage, and is competitive in price.
Fortinet offers multiple product sizes suitable for various enterprises, including small, medium, and enterprise customers. Compared to Palo Alto, Fortinet offers a free SD-WAN feature while Palo Alto requires an SD-WAN license with more costs and several licenses. However, Palo Alto does offer more advanced features than Fortinet. A notable difference is that when the Fortinet FortiGate license expires, the box still works until the customer renews the license, while with Palo Alto, the box stops entirely and the customer must renew the license to continue functioning.
What other advice do I have?
My experience in integrating SD-WAN capabilities with Fortinet FortiGate in the network shows that the integration is very simple and has a straightforward configuration.
The Fortinet SD-WAN solution consists of multiple products. To create or set up a full SD-WAN solution, it needs two products from Fortinet: FortiGate and FortiManager, which is a centralized management solution, and FortiAnalyzer, which is a log management solution. SD-WAN connects more than one site. It centralizes management and logs. Fortinet FortiGate with SD-WAN does not require any extra license, but to have the full SD-WAN solution, it is required to have FortiManager and FortiAnalyzer for several reasons. Fortinet products can be VM or hardware.
I have worked with the hardware-assisted DDoS protection in the Fortinet FortiGate, and I think it's good.
I recommend the Fortinet FortiGate when acting as a perimeter firewall, and some customers use it in the data center. I recommend another vendor in the data center, but our customers are very satisfied with Fortinet FortiGate when acting as a data center firewall.
I have limited experience with the AI and machine learning enhanced FortiGuard services, but I know that Fortinet is leading this trend.
Fortinet FortiGate provides SD-WAN and SASE solutions to secure any type of user and any type of traffic. It has many features, including a secure web gateway and secure service edge, helping users access the internet and applications, whether inside or outside.
I would rate Fortinet FortiGate an eight out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer. Integrator
Last updated: Jun 21, 2025
Flag as inappropriateNetwork Security Engineer/ Firewall Engineer at Charter Communications
Perfectly balances performance, security, and ease of management
Pros and Cons
- "By utilizing features such as dynamic path selection and application-aware routing, we've been able to reduce latency for critical applications such as VoIP and video by 20-30% during peak times."
What is our primary use case?
Me and my team have been managing site-to-site and remote access VPNs. We have been doing centralized logging through FortiManager and applying security policies, such as web filtering and application control across distributed branch locations.
I have also handled firmware upgrades, security patching, and integrating the Fortinet FortiGate logs within SIEM tools, such as Splunk, for threat monitoring.
How has it helped my organization?
I have integrated SD-WAN capabilities with Fortinet FortiGate by configuring multiple WAN links for dynamic path selection, load balancing, and failover based on performance metrics. I have used application-aware routing to prioritize critical traffic, such as VoIP or business apps, over high-quality links, while sending less critical traffic over backup circuits. We have managed and monitored these through FortiManager and FortiAnalyzer, ensuring visibility and automated alerts if link performance degrades.
The network performance has shown a significant positive impact. By utilizing features such as dynamic path selection and application-aware routing, we've been able to reduce latency for critical applications such as VoIP and video by 20-30% during peak times. Additionally, we’ve minimized downtime through automatic failover between links. This approach has also allowed us to cut costs by routing non-critical traffic over lower-cost circuits while keeping high-priority applications on premium links.
I have used the unified SASE feature a little bit, and it is very effective because it consolidates firewall, IPS, and other features such as sandbox into a single platform. It simplifies the management since we do not have to rely on separate appliances. It also helps with faster threat detection and response, especially when paired with FortiAnalyzer and SIEM tools, such as QRadar. The logs and events are correlated automatically, which makes a significant difference.
What is most valuable?
Something that stood out for me once I started using Fortinet FortiGate was the centralized management through FortiManager and how easily I could deploy consistent policies across multiple sites. The VPN configuration was also very straightforward compared to some other platforms. The integration with SIEM tools makes monitoring and incident response much smoother, which stood out to me.
What needs improvement?
For the future, one improvement area is the complexity of SD-WAN configuration. When managing a large number of sites, the GUI is user-friendly, but when scaling deployments, it sometimes requires more manual fine-tuning or scripting.
Another concern is reporting. FortiAnalyzer is powerful, but generating customized reports can be cumbersome compared to some other tools. Additionally, seeing deeper automation and API integrations would be beneficial so that policy updates and SD-WAN changes can be pushed faster across large environments.
For how long have I used the solution?
I have been using FortiGate for about four to five years in various settings. My experience includes working with Fortinet FortiGate and other firewalls and Panorama across multiple roles. I have been involved in designing as well as managing policies. Additionally, I have handled upgrades and migrations.
What do I think about the stability of the solution?
The performance and stability of Fortinet FortiGate has been strong in both small and large environments. The throughput and latencies are very good, even with multiple security features such as IPS, antivirus, or SSL inspection enabled simultaneously. I have found them to be reliable with minimum downtime. The Fortinet high availability features work effectively to ensure continuous network availability.
What do I think about the scalability of the solution?
Scalability is quite straightforward. They can scale from small branch offices to large enterprise environments. Their model hardware options and virtual firewall instances allow flexible deployment. For larger data centers or higher complex environments, sometimes Palo Alto or Cisco solutions offer more advanced scaling options, but Fortinet FortiGate is definitely competitive for enterprise needs.
How are customer service and support?
I have worked with them a bit, and we usually start by opening a support ticket through the Fortinet support portal. I also remember calling their TAC hotline directly for priority one issues, particularly for major VPN outages or SD-WAN failures.
I typically provide the necessary diagnostics upfront, such as logs, packet captures, and debug outputs, so we can move quickly towards a resolution. Most cases are resolved fairly quickly, but for more complex bugs, they may suggest fixes or recommend firmware updates. In such cases, it just takes a bit more time.
I would rate their support an eight out of ten. They are generally very responsive and knowledgeable, especially regarding firewall and VPN issues. While resolutions can take longer for complex problems or new features, overall, the support team is very helpful and proactive in providing patches and workarounds.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
I have used many alternatives to Fortinet FortiGate, including Palo Alto Networks firewalls and Cisco ASA Firepower. Palo Alto has strong application visibility and threat prevention, while Cisco excels in routing and integration. I have also worked with Juniper, which is great for scalability, and Check Point. I am comfortable adapting to different firewall ecosystems depending on the environment and requirements.
How was the initial setup?
It wasn't that hard. Overall, it was pretty straightforward. For smaller sites or branch offices, the GUI is intuitive and clear. FortiManager helped streamline policy pushes across multiple devices, which made it easy to manage. However, for more complex deployments that involved SD-WAN or advanced features, there was some initial complexity in fine-tuning configurations and integrating with our existing infrastructure. Despite this, it was manageable with good planning and testing. Overall, the process was relatively easy.
Maintenance is definitely a part of my role. I am responsible for applying firmware updates, security patches, and configuration backups on FortiGate devices to ensure stability and security. While Fortinet provides regular updates and technical support, the day-to-day maintenance, monitoring, and troubleshooting are handled internally by our network team.
What's my experience with pricing, setup cost, and licensing?
I haven't looked into that directly, as I am not involved in the purchasing or budgeting aspects. However, I believe Fortinet offers competitive pricing compared to other enterprise firewall vendors. Their licensing model is straightforward, especially regarding security features like anti-filtering, IPS, and web filtering.
The choice really depends on the specific features needed, such as advanced SD-WAN capabilities, which can increase costs. Therefore, it is important for organizations to plan their licensing effectively to optimize value.
What other advice do I have?
I have used FortiClient as part of the Fortinet SASE deployment, primarily for remote users, providing secure access via VPN and ZTNA, along with endpoint protection such as web filtering and threat detection. I have also deployed it to integrate with Fortinet FortiGate and the cloud so users can get consistent policies whether they are on-site or remote. It is useful because it centralizes management and policy enforcement, but I have noticed it can use more system resources on endpoints, so tuning the profiles is important for performance.
I would rate Fortinet FortiGate an eight out of ten. It offers a great balance of performance, security features, and ease of management. However, there is room for improvement in areas such as scalability for extremely large environments and deeper automation. Nonetheless, it is a solid platform that fits well in most enterprise networks. Therefore, I would give it an eight out of ten.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Last updated: Jul 30, 2025
Flag as inappropriate
Buyer's Guide
Download our free Fortinet FortiGate Report and get advice and tips from experienced pros
sharing their opinions.
Updated: September 2025
Popular Comparisons
Netgate pfSense
OPNsense
Sophos XG
Cisco Secure Firewall
Palo Alto Networks NG Firewalls
Cisco Meraki MX
WatchGuard Firebox
Check Point Quantum Force (NGFW)
Azure Firewall
SonicWall TZ
Cato SASE Cloud Platform
Cisco Catalyst SD-WAN
Sophos XGS
Fortinet FortiGate-VM
Juniper SRX Series Firewall
Buyer's Guide
Download our free Fortinet FortiGate Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- Comparison of Barracuda F800, SonicWall 5600 and Fortinet
- Sophos XG 210 vs Fortigate FG 100E
- Looking Into Implementing a Web Security Solution.
- Cyberoam or Fortinet?
- Fortinet, Palo Alto or Check Point?
- Which would you recommend to your boss, Fortinet FortiGate or Sophos UTM?
- What Is The Biggest Difference Between Cisco ASA And Fortinet FortiGate?
- Cisco Firepower vs. FortiGate
- We're trying to choose between Fortinet or Checkpoint UTM firewalls. Can you help?
- What Is The Biggest Difference Between Fortinet FortiGate and Meraki MX Firewalls?