We changed our name from IT Central Station: Here's why
Security Systems Analyst at a retailer with 5,001-10,000 employees
Real User
Top 20
It works and does its job and has good stability and scalability
Pros and Cons
  • "I only deal with it from a security analyst's point of view. I don't really get into the features of the actual FortiGate. From the security point of view, it works, and it does its job."
  • "If I had any criticism that I would give FortiGate, it would be that they need to stop changing their logging format. Every time we do a firmware upgrade, it is a massive issue on the SIM. Parsers have to be rebuilt. Even the FortiGate guys came in and said that they don't play well in the sandbox."

What is our primary use case?

We have some that are doing IPS, and we have some that are for AV. That's basically their main role. We are using one version below the current release.

What is most valuable?

I only deal with it from a security analyst's point of view. I don't really get into the features of the actual FortiGate. From the security point of view, it works, and it does its job. 

What needs improvement?

If I had any criticism that I would give FortiGate, it would be that they need to stop changing their logging format. Every time we do a firmware upgrade, it is a massive issue on the SIM. Parsers have to be rebuilt. Even the FortiGate guys came in and said that they don't play well in the sandbox.

For how long have I used the solution?

I have been using this solution for probably 20 years.

What do I think about the stability of the solution?

They are pretty stable. We never had any real issues with them.

What do I think about the scalability of the solution?

Their scalability is pretty good. We have upgraded and changed them, and we have been running them for 20 years. They run for a long time. We are not replacing them every couple of years, and we have scaled up a lot. We have over 10,000 users behind it. We have three people for maintenance and deployment. 

How are customer service and technical support?

I never had to deal with technical support directly, but I've never heard the guys complain about it.

How was the initial setup?

I never set them up.

What other advice do I have?

We are using FortiGate, but we are switching to Palo Alto. We are just moving over to the new next-gen and do an extra layer or higher layer filtering. Being a government organization, it was RFP, and basically, Palo Alto won the RFP. I wasn't part of the RFP review, so I can't tell which features pushed Palo Alto over the edge or not. For all I know, it could just be price.

I would rate Fortinet FortiGate an eight out of ten. I would also rate Palo Alto the same.

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Deputy General Manager Information Technology at a media company with 201-500 employees
Real User
Top 5
Good filtering, ROI, and technical support
Pros and Cons
  • "We use the filtering feature the most. It has filtering and inbuilt securities. We can create customized rules to define which users can access a particular type of site. We can create policies inside the firewall."
  • "The visibility of the network can be better. The GUI can be improved for better visibility of the network flow. Other solutions have better GUI in terms of network visibility."

What is our primary use case?

We use it for routing and restricting user access.

What is most valuable?

We use the filtering feature the most. It has filtering and inbuilt securities. We can create customized rules to define which users can access a particular type of site. We can create policies inside the firewall.

What needs improvement?

The visibility of the network can be better. The GUI can be improved for better visibility of the network flow. Other solutions have better GUI in terms of network visibility.

For how long have I used the solution?

I have been using this solution for maybe five or six years.

What do I think about the stability of the solution?

It is stable.

What do I think about the scalability of the solution?

You can have the availability features. All the traffic goes through this firewall for access to the outside world.

How are customer service and technical support?

Their technical support is good.

Which solution did I use previously and why did I switch?

We were using some open-source solutions, and then we directly moved to firewalls.

How was the initial setup?

The initial setup was straightforward. It was completed in a month or so.

What about the implementation team?

We implemented it on our own. We are a small team, so a person with a few other duties also manages this solution.

What's my experience with pricing, setup cost, and licensing?

It is not a very costly product if you compare it with other products. The return on investment is also good. If you compare the return of investment and money that you are spending on this product with Palo Alto, Cisco, Check Point, and other solutions, the investment is very less. We are happy with this solution.

The optional licenses are there, and you can choose which one you want and which one to avoid.

What other advice do I have?

It is a fine solution. We have been using this solution for some years, and we are happy with it. We will continue using it unless the FortiGate solution is running itself in some other ways with new features.

I would recommend this solution. It is working fine for us. 

I would rate Fortinet FortiGate an eight out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Learn what your peers think about Fortinet FortiGate. Get advice and tips from experienced pros sharing their opinions. Updated: January 2022.
563,148 professionals have used our research since 2012.
President at Integral Design Software
Real User
Top 20
Reasonably-priced, intuitive, and offers a seamless VPN
Pros and Cons
  • "Using this product makes the VPN seamless and almost invisible to me in the sense that I don't have to think about it."
  • "The initial setup and configuration are not intuitive and require training."

What is our primary use case?

I am primarily using FortiGate to provide a hardware VPN or an equipment base of VPN to a central office. I am only using a small fraction of its capabilities, so I'm not pushing it at the edges.

How has it helped my organization?

Using this product makes the VPN seamless and almost invisible to me in the sense that I don't have to think about it.

What is most valuable?

Once it is in use, it is intuitive to use. Once it's in place, it doesn't require any further interaction.

What needs improvement?

The initial setup and configuration are not intuitive and require training.

For how long have I used the solution?

I have been using Fortinet FortiGate for approximately four months.

What do I think about the stability of the solution?

The stability has been rock-solid, and I haven't seen any glitches or bugs at all.

What do I think about the scalability of the solution?

With only two people in the company, we haven't needed to scale. Our roles include software development and providing technical support for various clients.

How are customer service and technical support?

I have not needed to contact technical support.

Which solution did I use previously and why did I switch?

This is the first firewall product that I have used.

How was the initial setup?

The initial setup is fairly technical and it's not something the untrained person would want to do. You need to know what you're doing in order to set it up.

What's my experience with pricing, setup cost, and licensing?

The price of FortiGate is reasonable. In terms of the market, it's not a cheap product, but it's cost-effective.

Which other solutions did I evaluate?

I purchased this product because this is the one that the central office supports.

What other advice do I have?

In summary, this is a good product, it works, it doesn't need any attention, and I'm satisfied with it. Although the initial setup is slightly complex, security is a complex question and I'm not sure that it can be simplified.

I would rate this solution a ten out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Engineer at The Learning Network
Real User
A very stable firewall and numerous functions we use on the IPS; good interface
Pros and Cons
  • "We use a lot of function on the IPS and it works well for us."
  • "A lack of integration between our data centers."

What is our primary use case?

Our primary use case of this solution is for the firewall and IPS; the security on behalf of our network, to support north and south traffic. We are customers of Fortinet and I'm a systems engineer.

What is most valuable?

The firewall is stable and that's important. There are a lot of functions we use on the IPS and it works well for us. It's stable, the interface works for me.

What needs improvement?

We currently have two on-premise data centers with several separate firewall units and unfortunately they don't connect with each other. We'll likely migrate to Azure in the next two years because of that. 

For how long have I used the solution?

I've been using this product for about seven years. 

What do I think about the stability of the solution?

This is a stable solution. 

What do I think about the scalability of the solution?

For the traffic we have all five firewalls. The log is minimal with the traffic, which is going over the firewall and we don't require a lot of scalability. 

How are customer service and technical support?

We have support in the Netherlands, direct contact with our partner but not with Fortinet. For big changes and difficult issues I can get extended support from a partner. I do the simple fixes myself. 

Which solution did I use previously and why did I switch?

I've used a heap of different products. I've worked with Palo Alto and also with Fortinet. From experience, I prefer Palo Alto, but for the business I'm working in now, Fortinet is okay.

What other advice do I have?

I've had great experience with Palo Alto but I think Fortinet FortiGate is also a great solution. Some time ago we upgraded to the Fortinet solution of our previous partner and there was a memory leak which created problems. Our firewalls crashed multiple times a day and we had a lot of issues. I think the issue was a systems error and it shouldn't have been deployed. It's all very stable now. 

I would rate this product a nine out of 10. 

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Rishi Vanarse
Manager - IT at Mosambee - Synergistic Financial Networks
Real User
Top 20
Provides zero-day protection against undiscovered malware and vulnerabilities

What is our primary use case?

We are dealing in the payment business where we provide services to end-users, and FortiGate is part of our security solution. The customers swipe their cards into our product, which transmits the data through another server to the acquirer or bank. The server is hosted behind the FortiGate firewall, so all of the traffic that comes in and out goes through the firewall policies, intrusion detection, and instruction prevention systems.

What is most valuable?

We use the FortiGate Sandbox to detect zero-day vulnerabilities, such as anomalies or malware, that are unknown and have not yet been discovered.

What needs improvement?

We would like to see a better training platform implemented.

For how long have I used the solution?

We have been using…

What is our primary use case?

We are dealing in the payment business where we provide services to end-users, and FortiGate is part of our security solution.

The customers swipe their cards into our product, which transmits the data through another server to the acquirer or bank. The server is hosted behind the FortiGate firewall, so all of the traffic that comes in and out goes through the firewall policies, intrusion detection, and instruction prevention systems.

What is most valuable?

We use the FortiGate Sandbox to detect zero-day vulnerabilities, such as anomalies or malware, that are unknown and have not yet been discovered.

What needs improvement?

We would like to see a better training platform implemented.

For how long have I used the solution?

We have been using Fortinet FortiGate for the past five years.

What do I think about the scalability of the solution?

This is a scalable solution. We are able to integrate new products and different payment options. As new projects come in, we are looking for a hybrid setup that will incorporate the cloud.

How are customer service and technical support?

We have been in contact with technical support and I find them to be good. We've had no issues with them.

Which solution did I use previously and why did I switch?

We are continuing to use FortiGate but we are in the process of upgrading to the 200E and 300E enterprise firewall.

How was the initial setup?

The initial setup was complex. We had to connect it and set up the PCI DSS compliance. To maintain this, there are a lot of things that have to be done on a regular basis. This includes scanning and hardening the servers, then rescanning. Initially, it is very complex.

We have the FortiGate firewall in our environment, and we are using network segmentation. Based on the segmentation, there are policies. Based on the policies, the traffic to the critical components is monitored and goes through the IDS/IPS antivirus profile. We also have hosted applications, so a basic DDoS and WAP are configured.

What other advice do I have?

I would rate this solution a nine out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
MichaelZhang
IT Director at Guangdong Technion Institute of Technology
Real User
Top 5Leaderboard
Includes an antivirus, IPS, and even SD-WAN
Pros and Cons
  • "The notable features that I have found most valuable are that it includes the antivirus, and also IPS, and even SD-WAN."
  • "FortiGate support could do some improvements on their IPv6 configuration. Right now it's still in the very early stage for utilizing in an enterprise level network environment."

What is our primary use case?

This Fortinet product is a firewall system, acting as our perimeter firewall. Generally speaking we use this system as a security product to defend from any attacks and to protect our internal network. We are very happy with the security features afforded by this product.

What is most valuable?

The notable features that I have found most valuable are that it includes the antivirus, IPS, and even SD-WAN.

What needs improvement?

In terms of what could be improved, the FortiGate support could do some improvements on their IPv6 configuration. Right now it's still in the very early stage for utilizing in an enterprise level network environment

In terms of the FortiGate IPS, we haven't gotten additional tools because they are not free, and we have to purchase them to maximize this IPS feature. As long as they can perform some basic functions to meet our business needs, that is okay. I'm okay with this feature right now, so far.

In the next release of FortiGate the price could be better.

For how long have I used the solution?

I have been using Fortinet FortiGate since May of 2018.

What do I think about the stability of the solution?

This product is very stable.

What do I think about the scalability of the solution?

Fortinet FortiGate is a very scalable product.

It is managed by the IT department, so only they use it.

How are customer service and technical support?

Their support is quite good.

How was the initial setup?

The initial setup is quite simple.

Not including the preparation, setup took about three days to just unpack them, connect it to the power, power it on, and do some initial configuration. That's just the three days, but we took about two weeks for the preparation and planning.

What about the implementation team?

We had an external partner to help us and to work together with us to do the initial setup.

What other advice do I have?

On a scale of one to ten I would give Fortinet FortiGate an eight.

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Firewall Engineer at a marketing services firm with 1-10 employees
MSP
Top 5Leaderboard
Scalable solution with a straightforward setup

What is our primary use case?

I use the solution primarily for the VPN connections in local area. In some cases, I use it at universities in order to secure the local network in the university, such as servers and backup devices. I have also used the solution as a load balancer and the EMS functionality, which I use as a controller for wireless devices.

What needs improvement?

The PPPoE server protocol with a connection to a Radius server is used a lot by ISPs and not so much by the end user. I think it would be great to see this solution with the protocol developed for ISPs.

For how long have I used the solution?

I have been using the solution for more than two or three years.

What do I think about the scalability of the solution?

The solution is scalable.

How are

What is our primary use case?

I use the solution primarily for the VPN connections in local area. In some cases, I use it at universities in order to secure the local network in the university, such as servers and backup devices.

I have also used the solution as a load balancer and the EMS functionality, which I use as a controller for wireless devices.

What needs improvement?

The PPPoE server protocol with a connection to a Radius server is used a lot by ISPs and not so much by the end user. I think it would be great to see this solution with the protocol developed for ISPs.

For how long have I used the solution?

I have been using the solution for more than two or three years.

What do I think about the scalability of the solution?

The solution is scalable.

How are customer service and technical support?

There are some problems that support cannot give you a logical reason as to why it happened. For example, I had a case where I was dealing with a WhatsApp application that was giving issues. Technical support gave more than one reason it could be giving issues, but none of them solved the problem. Eventually I solved the problem, but it was far from the solutions that support had given.

Which solution did I use previously and why did I switch?

Before choosing Fortigate, I was using Cisco and pfSense.

How was the initial setup?

The initial setup was very easy and straightforward.

The time it takes to setup the solution depends on the case. It may take less than a day or more than two months, it depends on the technology that is being used. For example, a hospital I am working with has 20 switches with two firewalls, but there are issues in the physical place and not in Fortinet. In this case, the environment limits the speed of setup.

What other advice do I have?

I would rate FortiGate a nine out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
Product Manager at a comms service provider with 1,001-5,000 employees
Reseller
Top 10
Flexible and easy to use, with good support, but they should introduce security at the packet level
Pros and Cons
  • "FortiGate is flexible and easy to use."
  • "Fortinet currently has many products bundled with FortiGate including the basic firewall and load balancer, and I think that that they need to have separate product portfolios for each of these specialized services."

What is our primary use case?

We use this product as a perimeter firewall and also in the role of a firewall as a service for our cloud.

What is most valuable?

FortiGate is flexible and easy to use.

What needs improvement?

Fortinet currently has many products bundled with FortiGate including the basic firewall and load balancer, and I think that that they need to have separate product portfolios for each of these specialized services. When it comes to large deployments, I don't think it's a good plan to have all of these services in a single box.

I think that they should introduce in-line security at the packet level, where they can do filtering and other firewall functions. It should not comes down to the infrastructure level but rather, offer services at the ISP level.

For how long have I used the solution?

We have been using FortiGate for the past four to five years.

What do I think about the stability of the solution?

This is a stable product.

What do I think about the scalability of the solution?

This product is scalable and as a service provider, we extend our usage to external customers. There are many users on the platform.

How are customer service and technical support?

We have premium support from Fortinet and it is quite good.

What about the implementation team?

We used their Professional Services for the initial installation.

We have a large in-house team for maintenance, although I am not sure how many are dedicated to this particular product.

What's my experience with pricing, setup cost, and licensing?

The price of FortiGate is average and I would say that based on the top five products available on the market, it is in the affordable range.

What other advice do I have?

This is a product that I can recommend to others.

I would rate this solution a seven out of ten.

Which deployment model are you using for this solution?

Public Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
Buyer's Guide
Download our free Fortinet FortiGate Report and get advice and tips from experienced pros sharing their opinions.