Try our new research platform with insights from 80,000+ expert users
PeerSpot user
CEO & Sr. Information Security Consultant at a tech services company with 1-10 employees
Consultant
The solution improved the security posture and overall management's TCO
Pros and Cons
  • "One of the valuable features is a standardized OS."
  • "It claims it does DLP, but the degree and level of controls are very basic."

How has it helped my organization?

The solution improved the security posture and overall management's TCO.

What is most valuable?

One of the valuable features is a standardized OS.

What needs improvement?

It claims it does DLP, but the degree and level of controls are very basic. We recommend that our clients supplement it with other products.

What do I think about the stability of the solution?

There were no issues with stability.

Buyer's Guide
Fortinet FortiGate
September 2025
Learn what your peers think about Fortinet FortiGate. Get advice and tips from experienced pros sharing their opinions. Updated: September 2025.
867,445 professionals have used our research since 2012.

What do I think about the scalability of the solution?

There were no issues with scalability.

How are customer service and support?

Customer Service:

Customer service is excellent.

Technical Support:

Technical support is excellent.

Which solution did I use previously and why did I switch?

We did not use a previous solution.

What about the implementation team?

We implemented in-house.

What's my experience with pricing, setup cost, and licensing?

Work through partners for the best pricing.

Which other solutions did I evaluate?

We evaluated Palo Alto, Check Point, and Cisco.

What other advice do I have?

I highly recommend Fortinet as a leader in integrated suite information security capabilities.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
PeerSpot user
Network Security Coordinator at a energy/utilities company with 1,001-5,000 employees
Real User
The VPN capabilities provide a reliable connection to our corporate network over low cost internet services.
Pros and Cons
  • "LinkGreat firewall capabilities"
  • "Stability and technical support are the two major issues I have found with Fortinet."

How has it helped my organization?

These devices allowed my organization to connect a network of gas stations and convenience stores nationwide. The VPN capabilities provide a reliable connection to our corporate network over very low cost internet services (basically, any Internet service locally available can be used for this connections).

We also leverage the NGFW, UTM and WLAN controller features to provide security for corporate network traffic, and secure, content-filtered guest internet access for customers in the convenience stores. All this at a relative low cost.

What is most valuable?

  • LinkGreat firewall capabilities
  • Great IPS and web filter for small remote locations, with VPNs for tunneling to the corporate network, makes this device a solid choice for many sites.

What needs improvement?

Stability and technical support are the two major issues I have found with Fortinet.

What do I think about the stability of the solution?

We’ve had cases of unexplained bugs that go away with a simple device reboot. Software updates usually help with these issues.

What do I think about the scalability of the solution?

I have personally found that Fortinet advertising can be misleading. The devices will usually fail way before reaching the capacity advertised in the data sheets, especially when you activate several of the features the device can handle. This is not a dealbreaker for me, especially because of the cost. But I would advise care when dimensioning the devices you’ll need.

How are customer service and technical support?

Customer Service:

Customer service in Fortinet is OK. Lately they've been making efforts in this area. They actually call you when licenses are about to expire which is a nice touch on their part.

Technical Support:

I would say technical support is 6/10. I’ve found tech support to vary, sometimes being decent, sometimes painfully inefficient. Much room for improvement here IMHO.

Which solution did I use previously and why did I switch?

We still use Cisco for some cases. However, where we need the advanced security and UTM features, Cisco’s prices can be very restrictive. Fortinet is a much more cost-effective choice for those cases.

How was the initial setup?

Initial setup was very straightforward. Interface is very friendly and easy to comprehend.

Which other solutions did I evaluate?

Before choosing this product, we also evaluated Cisco.

What other advice do I have?

Be careful with dimensioning. Don’t expect the device to handle ALL the features. Usually firewall, Web Filter and the WLAN controller work well. But if you need IPS, app control and AV, I would advise over-dimensioning the device a bit (taking Fortinet data sheets as the reference).

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Buyer's Guide
Fortinet FortiGate
September 2025
Learn what your peers think about Fortinet FortiGate. Get advice and tips from experienced pros sharing their opinions. Updated: September 2025.
867,445 professionals have used our research since 2012.
Vendor
We use it as an internal firewall for VLAN segmentation.
Pros and Cons
  • "Layer-3 firewall and routing are the most valuable features."
  • "They should improve high CPU and memory usage that occurs."

How has it helped my organization?

We have secured our LAN IP subnets with VLAN segregation.

What is most valuable?

Layer-3 firewall and routing are the most valuable features. We use it as an internal firewall for VLAN segmentation.

What needs improvement?

When we need to enable Netflow on the firewall, there is a high CPU and memory usage that occurs. They should improve that high CPU and memory usage that occurs.

What do I think about the stability of the solution?

There were no stability issues.

What do I think about the scalability of the solution?

There were no scalability issues.

How are customer service and technical support?

Technical support is good.

Which solution did I use previously and why did I switch?

We were previously using the Check Point and Palo Alto software. The price and user-friendly GUI are the reasons that we switched to this solution.

How was the initial setup?

It is an easy setup and configuration.

What other advice do I have?

It's a user-friendly and stable firewall. You can safely use it for all small and big LAN networks.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
it_user454521 - PeerSpot reviewer
Deputy Chief Manager at a newspaper with 5,001-10,000 employees
Vendor
It has given us improved security over the internet. It is easy to use with a single console and unified threat management features.
Pros and Cons
  • "Unified Threat Management (UTM) features."
  • "NGN, reporting and controls."

How has it helped my organization?

It has given us improved security over the internet.

What is most valuable?

Ease of use, single console, Unified Threat Management (UTM) features.

What needs improvement?

NGN, reporting and controls.

What do I think about the stability of the solution?

We had some stability issues but we upgraded.

What do I think about the scalability of the solution?

There was a hardware limitation, affecting scalability.

How are customer service and technical support?

I would rate the technical support as 8/10.

Which solution did I use previously and why did I switch?

We had a different solution in the organization arising from different OEMs and this solution was chosen with consideration of requirements and costs.

How was the initial setup?

The initial setup was simple but the DC was complex.

What's my experience with pricing, setup cost, and licensing?

Go for long term pricing negotiated at the time of purchase.

Which other solutions did I evaluate?

We evaluated Check Point, Cisco ASA.

What other advice do I have?

You should be clear concerning the scope and outcome you are looking for.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
it_user677703 - PeerSpot reviewer
Superintendent, Process Automation and Safety at a pharma/biotech company with 5,001-10,000 employees
Real User
Allows for firewall rules to be programmed and named in a way that makes it readable.
Pros and Cons
  • "Allows for firewall rules to be programmed and named in a way that makes it “readable”"
  • "It would be nice if backups could more easily migrate between different models."

What is most valuable?

  • Flexible enough to handle everything we could want
  • Configuration layout is easily understandable
  • Allows for firewall rules to be programmed and named in a way that makes it “readable”
  • VPN support and some anti-virus protection.

What needs improvement?

It would be nice if backups could more easily migrate between different models.

What do I think about the stability of the solution?

I did not encounter any issues with stability.

What do I think about the scalability of the solution?

No scalability issues, but communications is severely limited in our case by design.

Which solution did I use previously and why did I switch?

They were our first firewalls on site.

How was the initial setup?

It does require someone knowledgeable in routing, firewall rules, and these firewalls in particular. Once it is set up, they are easy to modify and maintain.

What's my experience with pricing, setup cost, and licensing?

It is difficult as an end-user to setup continuing license contracts. It is possible to do between emails and their website, but it is practically impossible to find a phone number to call anyone directly.

Which other solutions did I evaluate?

We considered SonicWall .

What other advice do I have?

It is an excellent product and works extremely well. If it is set up in a logical way, it is very easy to understand and modify. It is highly recommended to have a service “expert” familiar with these to set it up initially with customer direction.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Hamza_Farhan - PeerSpot reviewer
Hamza_FarhanProfessioan Services Engineer at a tech vendor with 501-1,000 employees
Real User

The easy way to migrate from one model to another is taking the config file and modify it manually, say rename port WAN to port-1 ( sometimes you need to modify the syntax of commands when moving between different versions) and upload the config back. Another method is to divided the config file to multiple sections say interfaces , NAT policies , Firewall ACLS / objects / object groups , then modify every part as required and upload them one-by-one.

PeerSpot user
Senior Security Consultant with 501-1,000 employees
Real User
They added a valuable WAF feature to the latest version.

What is most valuable?

  • Complete and cost-effective next-generation firewall features with app identification, and IPS and URL filtering with SSL inspection.

How has it helped my organization?

  • Better manageability
  • Straightforward deployments
  • Streamlined and reliable upgrades

Customers have more time to focus on security because maintaining the firewalls is completely hassle-free.

What needs improvement?

Grouping/tabbing (not only by interface) in the policy table of the web GUI would be a great addition.

For how long have I used the solution?

I have used it for two years.

What was my experience with deployment of the solution?

We have not encountered any deployment issues.

What do I think about the stability of the solution?

We have not encountered any stability issues. Stability has dramatically improved over the previous main version branch of FortiOS; 5.2.x and 5.4.x are stable enough for critical environments.

What do I think about the scalability of the solution?

We have not encountered any scalability issues; proven that you properly sized the FortiGate model that fits your environment.

How are customer service and technical support?

Customer Service:

Customer service is sufficient.

Technical Support:

The tech support is not excellent; this is where Fortinet saves money compared to others... But plenty of free, clear and public documentation is available and this compensates for the most part the tech support shortcomings.

Which solution did I use previously and why did I switch?

We previously used Cisco ASA. We switched because the old ASA has no next-generation features.

How was the initial setup?

IMHO It is the most straightforward enterprise-level next generation firewall.

What about the implementation team?

All implementations were done in-house.

What was our ROI?

ROI is very high, it has hands-down the best price/performance/features ratio in the market...

What's my experience with pricing, setup cost, and licensing?

The licensing model is straightforward, easy to understand and purchase; prices are fairly low compared to other vendors.

Which other solutions did I evaluate?

Before choosing this product, we also evaluated Check Point and Palo Alto Networks.

What other advice do I have?

In version 5.4, they added a WAF feature that is absolutely unique for this kind of product; no other NGFW product can also be a WAF and this is a great added value...

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
PeerSpot user
IT Infrastructure Engineer at a tech company with 11-50 employees
Real User
FortiGate/FortiWiFi; FortiManager; FortiAnalyzer

What is most valuable?

FortiGate/FortiWifi:

  • IPS
  • Application control
  • IPsec & SSL VPN
  • Web filtering
  • E-mail security
  • Data leak prevention
  • Wireless security and wireless controller
  • Central antivirus (FortiClient)
  • HW & SW token controller (FortiToken) etc.
  • FortiManager
  • Central management
  • Administrative domains (can group devices according to geographical are, functionality, admins, etc.)
  • FortiGuard management
  • Logging and reporting
  • Configuration version control and tracking
  • Firmware management
  • Scripting

  • FortiAnalyzer
  • Centralized security log analysis and forensics
  • Centralized graphical reports
  • Customized reports
  • Scheduled reports
  • Queries
  • Content archiving/data mining

How has it helped my organization?

Routing and security policies, central management and all of the other features help us to improve network performance and implement organization policies.

What needs improvement?

They could improve vulnerability scanning.

For how long have I used the solution?

I have used it for three years.

What do I think about the stability of the solution?

We encountered a few stability issues; maybe one case per year.

What do I think about the scalability of the solution?

I did not encounter any scalability issues.

How are customer service and technical support?

Technical support is 10/10. They respond and offer solutions very fast.

Which solution did I use previously and why did I switch?

We previously used Cisco solutions. They are more expensive, have fewer features, are more difficult to use, and response and help from
technical support is not quick.

How was the initial setup?

For Fortinet solutions, the initial setup is very easy.

What's my experience with pricing, setup cost, and licensing?

They are very cheap compared to other vendors.

What other advice do I have?

Fortinet solutions are very easy to implement, proven, certified and tested.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
PeerSpot user
ICT Manager at a aerospace/defense firm
Real User
Virtual domains are treated as separate firewall instances
Pros and Cons
  • "You can create multiple Virtual Domains (VDOMs), which are treated as separate firewall instances."
  • "The reporting you receive out of this appliance is excellent. You will not need an external management system."
  • "The user interface is relatively easy. The devices are easy to deploy and figure out when you have experience with other security appliances."
  • "I could not configure sFlow from the FortiGate graphical user interface. I realized that the sFlow configuration is available only from the CLI, and discovered that sFlow is not supported on virtual interfaces, such as VDOM links, IPsec, or GRE."
  • "There is one big configuration file with no separations for the unique VDOMs. Maybe they could separate individual VDOM configuration files with the root VDOM configuration file referencing the individual VDOM config files.​"

How has it helped my organization?

There is no need to buy physical firewall hardware when you host multiple customers requiring individual secure access to their FW. You just create virtual domains (VDOMs).

What is most valuable?

You can create multiple Virtual Domains (VDOMs), which are treated as separate firewall instances. The reporting you receive out of this appliance is excellent. You will not need an external management system.

What needs improvement?

1. sFlow and NetFlow

I could not configure sFlow from the FortiGate graphical user interface. I realized that the sFlow configuration is available only from the CLI, and discovered that sFlow is not supported on virtual interfaces, such as VDOM links, IPsec, or GRE.

NetFlow is a network protocol developed by Cisco for collecting IP traffic information and monitoring network traffic. It is not supported on FortiGate for those who have a NetFlow analyzer/collector already setup in their network.

2. Policies

To control traffic in a firewall, you need to create and apply policies to the FW interfaces. By default, policies are sorted by FW interfaces and this makes FW interfaces an integral part of the policies. Zones provide the option to logically group multiple virtual and physical FortiGate firewall interfaces. Then, you apply security policies to those zones (logical groups of interfaces) to control traffic flow on those interfaces.

In a FortiGate unit with a lot of interfaces (including virtual interfaces), there is a high probability of having duplication of policies.

For how long have I used the solution?

Three to five years.

What do I think about the stability of the solution?

These devices are very stable.

What do I think about the scalability of the solution?

They are easily scalable with multiple built-in interfaces. It supports a minimum of 10 VDOMs. VDOM supports all dynamic routing protocols like RIP, OSPF, BGP, and IS-IS. You do not need to reboot after enabling the VDOMs.

Area for improvement - there is one big configuration file with no separations for the unique VDOMs. Maybe they could separate individual VDOM configuration files with the root VDOM configuration file referencing the individual VDOM config files.

How are customer service and technical support?

Customer Service:

Customer service is great, an eight out 10.

Technical Support:

I will give technical support an eight out 10.

Which solution did I use previously and why did I switch?

We previously used different solutions as well. We did not switch, we have different requirements for different customers.

How was the initial setup?

The user interface is relatively easy. The devices are easy to deploy and figure out if you have experience with other security appliances.

What about the implementation team?

It was an in-house installation.

What was our ROI?

The ROI is great. These boxes are not that expensive compared to what they can do, their functionality, and the reporting you receive.

What's my experience with pricing, setup cost, and licensing?

Fortinet licensing is straightforward and less confusing compared to Cisco. Fortinet has one or two license types, and the VPN numbers are only limited by the hardware chassis make.

Which other solutions did I evaluate?

I already have experience with Cisco ASA, so it was simply a customer preference and well within the budget.

What other advice do I have?

Great appliances, and it is affordable.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Simon Chaba - PeerSpot reviewer
Simon ChabaICT Manager at a aerospace/defense firm
Real User

Hi Becky. I chose Fortigate mainly because it provides the capabilities to provide logical separate firewall instances to multiple customers. These logical firewall are know as VDOMs. I have the partitions the physical fw devices to multiple logical units thus saving costs.

See all 4 comments
Buyer's Guide
Download our free Fortinet FortiGate Report and get advice and tips from experienced pros sharing their opinions.
Updated: September 2025
Buyer's Guide
Download our free Fortinet FortiGate Report and get advice and tips from experienced pros sharing their opinions.