No more typing reviews! Try our Samantha, our new voice AI agent.
Assistant Manager (Infrastructure) at SISTIC
User
Sep 10, 2018
It has improved the security posture and visibility of our traffic
Pros and Cons
  • "Easy to use support and licensing portal as well as activation process."
  • "It has improved the security posture and visibility of our traffic."
  • "I would like to see improvements made to the dashboard and UI, as well as to the reporting."
  • "I found that the memory usage for the Fortigate firewall are relatively higher than other firewall brand when compared to same traffic volume."

What is our primary use case?

E-commerce environment, enterprise data center.                                                                                                                                                                                                        

How has it helped my organization?

It has improved the security posture and visibility of our traffic. The OS and the firmware updates are very straightforward.                                                                                         

What is most valuable?

All the features are very good, straightforward licensing, Fortinet product integration, standardized FortiOS and automatic uninterruptable firmware upgrade. Easy to use support and licensing portal as well as activation process.                                                                 

What needs improvement?

I would like to see improvements made to the dashboard and UI, as well as to the reporting. I would also like them to consider offering more predefined security templates.                       

Buyer's Guide
Fortinet FortiGate
August 2026
Learn what your peers think about Fortinet FortiGate. Get advice and tips from experienced pros sharing their opinions. Updated: August 2026.
909,647 professionals have used our research since 2012.

For how long have I used the solution?

One to three years.

What do I think about the stability of the solution?

No issues.

What do I think about the scalability of the solution?

No issues.

How are customer service and support?

Customer Service:

An eight and a half out of 10.

Technical Support:

They are able to identify an issue and resolve it within a pretty short period of time.

Which solution did I use previously and why did I switch?

We previously used Cisco ASA. We switched to Fortinet Fortigate because it was easy to manage, and it uses a Single OS for the whole product. We were also able to learn how to use it very quickly.

How was the initial setup?

It is very straightforward.

What about the implementation team?

We implemented it ourselves with some assistance from vendor. Because of the limited assistance from the vendor, we do not know what the level of expertise was.

What was our ROI?

No

What's my experience with pricing, setup cost, and licensing?

They have very competitive solutions across the entire product line.

They also offer very clear licensing and pricing.

Which other solutions did I evaluate?

Checkpoint, Cisco, Palo Alto, Sonicwall, Huawei, and Sophos.

What other advice do I have?

I found that the memory usage for the Fortigate firewall are relatively higher than other firewall brand when compared to same traffic volume. It might be the scan engine do their job well or the scan engine not well tuning. If there is a details information about this would be good.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Iz - PeerSpot reviewer
IzAssistant Manager (Infrastructure) with 1-10 employees
User

In fact I only apply on our DMZ firewall rules I only get the same result.

See all 2 comments
PeerSpot user
System Administrator at HAMMOND LUMBER COMPANY
Real User
Aug 23, 2018
Their proxy-based inspection is responsive and secure
Pros and Cons
  • "The CLI and GUI do a good job of putting a lot at your fingertips."
  • "Their proxy-based inspection is responsive and secure."
  • "Fortinet FortiGate has improved our routing and made us more secure."
  • "It could use more templates for third-party site-to-site VPN setups other than FortiGate and Cisco."

What is our primary use case?

We use Fortinet FortiGate as our firewall and Layer 3 switch. Together, they connect all our locations for internal and external access with an MPLS as the primary connection and a backup VPN over a secondary DSL/Cable ISP.

How has it helped my organization?

Fortinet FortiGate has improved our routing and made us more secure. Using OSPF tables with an MPLS VPN, along with the combined security of the firewalls, has made a huge difference in our organization.

What is most valuable?

  • The ability to customize UTM features and add or remove features as we like.
  • Availability of different locations as options.
  • The VPN features are easy to deal with.
  • The CLI and GUI do a good job of putting a lot at your fingertips.

What needs improvement?

It could use more templates for third-party site-to-site VPN setups other than FortiGate and Cisco.

For how long have I used the solution?

Three to five years.

What other advice do I have?

Their proxy-based inspection is responsive and secure.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Buyer's Guide
Fortinet FortiGate
August 2026
Learn what your peers think about Fortinet FortiGate. Get advice and tips from experienced pros sharing their opinions. Updated: August 2026.
909,647 professionals have used our research since 2012.
it_user915438 - PeerSpot reviewer
Director TICs at a comms service provider with 51-200 employees
Real User
Aug 21, 2018
We can detect any attack of viruses or malware at the first point of contact
Pros and Cons
  • "We can detect any attack of viruses or malware at the first point of contact."
  • "It controls the traffic in the organization and the navigation of the Internet, blocks some sites, permits limited access to our information through the web, and lets us detect any attack of viruses or malware at the first point of contact."
  • "There are problems with the custom reporting of the unique traffic. The data is there, but it is too difficult for us to extract."

What is our primary use case?

We use it for security. It performs okay.

How has it helped my organization?

It controls the traffic in the organization and the navigation of the Internet. It blocks some sites and permits limited access to our information through the web. We can detect any attack of viruses or malware at the first point of contact.

What is most valuable?

  • The security
  • Monitoring
  • Alarms

It is a very strong platform.

What needs improvement?

There are problems with the custom reporting of the unique traffic. The data is there, but it is too difficult for us to extract. 

For how long have I used the solution?

One to three years.

What do I think about the stability of the solution?

Just today, our platform was down seven hours today. We called the technical support and they told us that there was some maintenance in the cloud for the platform.

What do I think about the scalability of the solution?

The scalability is good.

How is customer service and technical support?

The technical support is good.

How was the initial setup?

The initial setup is not difficult, but tricky. It's easy, but it's important that their technical support will help you during the configuration of the platform. Procedures that appear logical are not always so.

What other advice do I have?

Most important criteria when selecting a vendor: The security of the platform, because we are very concerned about cybersecurity. Also, the customer service response is important.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Security Engineer at a real estate/law firm with 1,001-5,000 employees
Consultant
Aug 19, 2018
Their response and resolution times are good
Pros and Cons
  • "Whenever we raise a complaint with FortiGate, their response and resolution times are minimal."
  • "They need faster serviceability and more security features."

What is our primary use case?

It performs well.

How has it helped my organization?

We have a lot of bandwidth.

What is most valuable?

  • Box stability
  • Security features, like SSL scanning. 
  • Their service: Whenever we raise a complaint with FortiGate, their response and resolution times are minimal.

What needs improvement?

They need faster serviceability and more security features.

For how long have I used the solution?

Three to five years.

What do I think about the stability of the solution?

It has good stability compared to its competitors.

What do I think about the scalability of the solution?

It is scalable. We are making a cost savings on the scalability.

How are customer service and technical support?

We have been using technical support. Their response and resolution times are good.

Which solution did I use previously and why did I switch?

Our previous solution had performance issues.

How was the initial setup?

The initial setup was straightforward and easy.

Which other solutions did I evaluate?

We evaluated Cyberoam and Cisco.

What other advice do I have?

Most important criteria when selecting a vendor: stability and service.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Works at El loco hugo
User
Aug 19, 2018
It has improved our organization with control data
Pros and Cons
  • "It has improved our organization with control data."
  • "The reports are very basic."

What is our primary use case?

We use it because it is a good device.

How has it helped my organization?

It has improved our organization with control data.

What is most valuable?

The rules.

What needs improvement?

The reports are very basic.

For how long have I used the solution?

More than five years.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
InfoSec301 - PeerSpot reviewer
Information Security Analyst at a tech vendor with 51-200 employees
Real User
Aug 6, 2018
Protected us from several Zero-day attacks and includes data leak prevention
Pros and Cons
  • "Valuable features include the Web Application Firewall, and it even has DLP (data leak prevention)."
  • "The firewall engine is very good, very suitable for picking up Zero-day threats, and it has protected us from two or three instances, thanks to this engine."
  • "The firewall engine is not so strong as of now, in my opinion... My second concern is that, while they have Zero-day vulnerability and anti-malware features, the threat engine needs to be strengthened, its efficiency can be increased."
  • "I need user-behavior analytics, to find threat scenarios from inside the organization, insider attacks. That would be very helpful for us. In addition, I would like next-generation features for small and medium businesses. These businesses require UTM, all in one product. Fortinet must include it."
  • "After four years it has started to fail. The firewall engine is not so strong as of now, in my opinion."

What is our primary use case?

It is performing fine, there is no problem from FortiGate. The firewall engine is very good, Very suitable for picking up Zero-day threats. It has protected us from two or three instances, thanks to this engine.

How has it helped my organization?

From 2014 when they started using it, I was not associated with the company. I have only been associated with the company for the last year.

What is most valuable?

Valuable features include the Web Application Firewall, and it even has DLP (data leak prevention).

What needs improvement?

After four years it has started to fail. The firewall engine is not so strong as of now, in my opinion. For that reason, we want to migrate to Check Point. This is one of the concerns that I have right now. 

My second concern is that, while they have Zero-day vulnerability and anti-malware features, the threat engine needs to be strengthened, its efficiency can be increased.

I also need user-behavior analytics, to find threat scenarios from inside the organization, insider attacks. That would be very helpful for us. In addition, I would like next-generation features for small and medium businesses. These businesses require UTM, all in one product. Fortinet must include it.

For how long have I used the solution?

One to three years.

What do I think about the scalability of the solution?

Scalability is fine as of now. Compared to other firewall products, it's a little cheaper in terms of pricing. So scalability is good. 

But right now, due to a greater focus on security, I think FortiGate needs to improve on the security features, and they need to do so for their small and medium business products, in order to compete.

How are customer service and technical support?

Technical support is pretty good. We had to call FortiGate support once, and they really helped us. In one of the configuration files from FortiGate, during an upgrade of the hardware, something was changed. They were very helpful in resolving it for us. There is no problem with support.

Which solution did I use previously and why did I switch?

Previously, in 2013, I believe we were using WatchGuard.

In the process of selecting a vendor, the most important criteria will be to go through threat assessment reports - the NSS testing reports that are published every year. Our decision will depend on that.

What other advice do I have?

If price is a constraint for you, you should go with Fortinet. But security is a very big factor right now. If you want to be compliant with GDPR and all the other things that are coming up, you should go with another good vendor. Even though Fortinet is a big competitor, in one to three years, when they include many new features in their products, they will be a good solution.

I would rate FortiGate at eight out of 10 because the support was very good. Considering the current scenario, I would not give it nine or 10 because they need to include many features in the smaller products, not only in enterprise-level products.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
PeerSpot user
Cybersecurity & IT Operations Professional (VirtualCxO) at BrainWave Consulting Company, LLC
Consultant
Top 20
Aug 5, 2018
The IPsec tunnels are very easily created, and quite interoperable with devices from other vendors
Pros and Cons
  • "The CLI is robust and powerful, enabling rapid, consistent changes via SSH."
  • "The IPsec tunnels are very easily created, and quite interoperable with devices from other vendors."
  • "In almost every case, I've experienced (or had customers experience) an ROI within 12 months, based on better performance for the same price or increased functionality for the same (or less) price."
  • "WAN load-balancing could be a lot better at detecting when a link is poor or inconsistent, and not just flat out dead."
  • "Some configuration elements cannot be easily altered once created."

What is our primary use case?

I have deployed several of the following models for customers: 200D, 60E, 60D. This review focuses on the FortiGate 200D.

How has it helped my organization?

The first implementation I performed of a FortiGate 200D was to replace a Juniper SSG-140 in a main corporate office.  This implementation provided improved network administration and network performance.

We also received more timely security updates, and it became easier to connect all of the other offices together (via an IPsec VPN mesh).

As additional FortiOS releases have come out, we have obtained more flexibility in device identification and WAN load-balancing, among other things.

What is most valuable?

  • The CLI is robust and powerful, enabling rapid, consistent changes via SSH. 

    The device identification is very flexible, facilitating the creation of rules to regulate all sorts of devices that might spring up on a network, especially via WiFi.
  • The IPsec tunnels are very easily created, and quite interoperable with devices from other vendors.
  • WAN load-balancing has improved, but needs some refinement.

    You can set up a different DDNS config for each WAN link.

    It is great to be able largely use the same OS features across the family of devices.

What needs improvement?

WAN load-balancing could be a lot better at detecting when a link is poor or inconsistent, and not just flat out dead. There are lots of options for routing traffic over a specific path when you have WAN load-balancing enabled, but they are not as clear and consistent as they could be, and most can only be set at the CLI.

Some configuration elements cannot be easily altered once created.  For instance, there is no way to rename an interface (say, for a VPN tunnel), unless you create an entirely new one and perform a little gymnastics to switch from one to the other. Or, you export the config, rename the elements in question, then re-import the entire config.

Creating a meshed VPN connection (Office A with two WAN links connecting to Office B with two WAN links) requires a massive bundle of four IPsec interfaces, with two policies. It would be nice to have a cleaner, simpler config for that functionality, something not very uncommon today.

I have found that if you have a console cable in the device when you reboot it for a disk check, it will boot to the device firmware. This will not happen for a regular reboot.

If you have more than a very basic environment, you quickly have to escalate past the first level of support. The initial level is so-so.  The next level up has been stellar for me, and quick to figure out issues and resolve them.

For how long have I used the solution?

Three to five years.

What do I think about the stability of the solution?

I've only experienced stability issues a few times.  One was with the v5.4.0 and .1 releases. Also, there was an issue during the v5.2.x series where there was an SSD issue that was fixed with later firmware. Overall, the devices have been very stable.

What do I think about the scalability of the solution?

No. Scalability is good, and performance increases are great as you move to higher products.

How are customer service and technical support?

Customer support is okay. They are fairly responsive for level three and higher (one and two) issues, but if your issue is a little complex, you will want to ask them to escalate to a second level tech. They don't always read all the info you provide in the first pass, but overall, they are helpful.

Which solution did I use previously and why did I switch?

I previously favored NetScreen/Juniper SSG solutions, but Juniper stopped supporting the SSG line, and FortiGate provides more value and performance for the dollar.

I've also tested the Sophos solutions, but found them not compelling enough to switch from the FortiGate devices.

How was the initial setup?

The devices are very easy to setup, even if you need to configure VPNs. You could have an HA config up and running within 60-90 minutes, with the latest firmware installed, and a couple of policies and tunnels.

If you do not regularly work with enterprise-class firewalls, you might need to add an hour to the above scenario, but the provided wizards make it pretty easy to address the basic functions.

What about the implementation team?

In-house deployment all the time.

What was our ROI?

In almost every case, I've experienced (or had customers experience) an ROI within 12 months, based on better performance for the same price or increased functionality for the same (or less) price.

What's my experience with pricing, setup cost, and licensing?

Licensing and setup costs are generally pretty clear with Fortinet. If you go with centralized management or their Log Analyzer tool, these carry some additional pricing that you need to look at.

Check out the price matrix, and go with a value-added reseller that understands how to help you size out the equipment. Remember to always look at the performance with the assumption that you will have many of the unified threat management (UTM) features on, not off.

Which other solutions did I evaluate?

Yes, I tested and evaluated solutions from pfSense, Sophos, and Palo Alto.

What other advice do I have?

I highly recommend, and often try to deploy Fortinet solutions for my office network and for my customers. They run for a long time, they are supported for many OS updates, and they are pretty solid.

Don't upgrade the OS right away when it is released, if a major new version has come out.  v5.0 was problematic early, but v5.2 was great. v5.4 was a problem child, but v5.6 had only a minor issue. v6.0 was surprisingly smooth and had only a minor issue. I could have avoided most of these problems if I waited an additional month or so before updating, but I updated because I need to advise customers on what they should be doing.

I've had to interact with support a lot, and overall they've been good (with the caveat mentioned earlier).

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
I.T. Manager at Pacific Cigarette Company
Real User
Jul 29, 2018
Our security improved from being able to put in rules and close off unwanted traffic
Pros and Cons
  • "With FortiClient, you can easily connect when you are home, check out what you want to do, and connect to your network when you are not at work. You can switch on servers and you can check what is wrong."
  • "Our security improved from being able to put in rules and close off unwanted traffic."
  • "You don't need to reinvent the wheel, as FortiGate is the best solution."
  • "It should come integrated or have its own type of network monitor tool in a module. There should just be one package, and you are good to go."

What is our primary use case?

When we looking for a device, we wanted to control incoming and outgoing traffic into our network to protect our organization, like have a barrier before anyone could send something in or anyone could send something out. We also use this for our DHCP.

How has it helped my organization?

The greatest improvement was on security. If you put rules that will not allow certain traffic, it won't happen. You can close the traffic that you don't want in your network, because of malware and people fishing and spamming.

What is most valuable?

  • DHCP functionality: The object tab where we manage our IP addresses and static. The DHCP monitors them.
  • FortiClient: You can easily connect when you are home, check out what you want to do, and connect to your network when you are not at work. You can switch on servers and you can check what is wrong.

What needs improvement?

It should come integrated or have its own type of network monitor tool in a module. There should just be one package, and you are good to go.

For how long have I used the solution?

More than five years.

What do I think about the stability of the solution?

Stability is excellent. It is so stable that it is the best in the market. I would rate the stability as a 10 out of 10.

What do I think about the scalability of the solution?

It has the capacity to change in size. It comes in different sizes. E.g., for a smaller organization, you buy smaller package, then for bigger entities, you buy the bigger one. If you have fewer users in a certain entity, they would get a package of 50 each. If it's a head office, then you'd get something like 201. So, it accommodates for all sizes.

How are customer service and technical support?

Technical support has been great. We have used it before because sometimes you get issues that you can't handle, then you have to call it in, send emails, and they assist you. 

We also work through our partners, which has been good.

Which solution did I use previously and why did I switch?

We were previously using Netgear, which was smaller. It didn't have the advanced technology in terms of what we wanted it to do. It was an older version. We thought that if we were going to change the firewall, then we should make a good, future investment. Thus, our partners advised us that FortiGate was one of the best, so we invested in them.

How was the initial setup?

The initial setup was not straightforward. You need some training and to learn some of these things through the experience of using it.

What about the implementation team?

We were guided by our partner, so we worked on our devices with our partners. They were the ones who helped us and who have been working with us, even for upgrades, and it has not been straightforward.

Which other solutions did I evaluate?

We evaluated Cisco, Netgear, and Cyberoam.

What other advice do I have?

You don't need to reinvent the wheel, as FortiGate is the best solution.

Most important criteria when selecting a vendor: 

  • The ability of the brand
  • Best of breed
  • Reliability
  • After hours sales service, because we know technology comes with renewals, upgrades, and support. This is quite critical to our functionality and efficiency.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
it_user824916 - PeerSpot reviewer
it_user824916Works at a tech company with 10,001+ employees
Vendor

Need information on Fortinet IPS.

reviewer895482 - PeerSpot reviewer
ICT Officer at a non-profit with 5,001-10,000 employees
Real User
Jul 26, 2018
It is straightforward to implement the device from scratch
Pros and Cons
  • "There is an easy process for configuring it, and it is straightforward to implement the device from scratch."
  • "At first glance, the interface for the device is very confusing."

What is our primary use case?

We have been using the FortiGate antivirus software for a couple of years, as of mid-July. The hardware solutions for the firewall, we have been using for less than a year.

We are using FortiGate 80E for a medium-sized office. I am pretty satisfied with it. It has performed well. The primary use is to protect the internet traffic for a medium-sized office, up to fifty users, using a local domain with a not so intensive cloud traffic. Generally, it is just to protect the internet access for all the users in the network.

Also, we are using VPN at external locations to the office, which FortiGate supports.

How has it helped my organization?

It give us the liberty to let us do our jobs.

What is most valuable?

  • There is an easy process for configuring it, and it is straightforward to implement the device from scratch.
  • It has a somewhat diverse device interface, but if you have one day to play with it, you can easily find whatever you need. 
  • All types of policies need to be installed, then all the parameters are configured. It is not very demanding,

What needs improvement?

At first glance, the interface for the device is very confusing. However, every version is getting better.

For how long have I used the solution?

One to three years.

What do I think about the stability of the solution?

I have had no concerns with the stability so far.

What do I think about the scalability of the solution?

We have been in no position to upgrade our number of users. So, I cannot judge this aspect of the product.

How are customer service and technical support?

They provides local support. I have been using them only for some site blocking. They are pretty efficient in this. They say they will respond in 24 hours, but I have received responses in a maximum of one hour, which is impressive.

Which solution did I use previously and why did I switch?

We had a server acting as our service-based firewall, so no solution for firewall. 

FortiGate is my first actual solution for firewalls.

How was the initial setup?

The initial setup was very straightforward.

What's my experience with pricing, setup cost, and licensing?

It provides mid-sized company pricing.

What other advice do I have?

Most important criteria when selecting a vendor: We have specific procurement rules, then we specify the technical specifications. After that, whoever is cheapest should get the job.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
reviewer743844 - PeerSpot reviewer
Mgr. IT Infrastructure and Network Operations at a media company with 11-50 employees
User
Jul 10, 2018
Centralized monitoring, policy management, and virtualized appliances allow us to take control over our public and private infrastructure
Pros and Cons
  • "Centralized monitoring, policy management, and virtualized appliances allow us to take control over our public and private infrastructure."
  • "We replaced Sophos with FortiGate and found it better than the Sophos product, with better control, insights, and prevention from crypto malware and other threats."
  • "Cisco Meraki products are rising very quickly in the cloud and the connected era. Meraki products offer much better ROI, upgradability, and manageability."
  • "Part of the setup was straightforward and other parts were complex. They need to work on feature placements and menus."

What is our primary use case?

  • Security
  • Monitoring and controlling
  • VPN
  • Active Directory integration
  • Servers
  • All components related to an enterprise environment.

How has it helped my organization?

We replaced Sophos with FortiGate and found it better than the Sophos product. It has better control, insights, and prevention from crypto malware and other threats.

What is most valuable?

The most valuable features are centralized monitoring, policy management, and virtualized appliances so we can have control over public and private Infrastructure.

What needs improvement?

Cisco Meraki products are rising very quickly in the cloud and the connected era. Meraki products are future proof and offer much better ROI, upgradability, and manageability.

IT is continuously evolving, and every few days or months, there is something new. Whoever evolves first will take the lead over the competition. Adopting and evolving is the key to success.

For how long have I used the solution?

Less than one year.

What do I think about the stability of the solution?

These products are solid and stable.

What do I think about the scalability of the solution?

We have not had any issues with scalability.

How are customer service and technical support?

Our experience with support has been fine. No trouble or hassle.

Which solution did I use previously and why did I switch?

Sophos: It was good for small businesses, who are evolving and improving. Though, I found Cisco Meraki to be much better.

How was the initial setup?

Part of the setup was straightforward and other parts were complex. They need to work on feature placements and menus.

What about the implementation team?

We did the implementation through a vendor, who had good experience.

What was our ROI?

Two to three years, depending on usage type, number of users, and organizational size.

Which other solutions did I evaluate?

Yes, we did, Palo Alto and other solutions, but we found FortiGate to be the best solution at that point in time.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Buyer's Guide
Download our free Fortinet FortiGate Report and get advice and tips from experienced pros sharing their opinions.
Updated: August 2026
Buyer's Guide
Download our free Fortinet FortiGate Report and get advice and tips from experienced pros sharing their opinions.