We use the solution for securing our network.
Network Administrator at Furnmart
Scalable security solution with well-defined intrusion detection feature
Pros and Cons
- "Its technical support is excellent."
- "The solution's web-filtering configuration could be better."
What is our primary use case?
What is most valuable?
The solution's intrusion detection feature is excellent.
What needs improvement?
The solution's web-filtering configuration could be more straightforward. It takes a long time to configure.
For how long have I used the solution?
I have been using the solution for eight years.
Buyer's Guide
Fortinet FortiGate-VM
May 2026
Learn what your peers think about Fortinet FortiGate-VM. Get advice and tips from experienced pros sharing their opinions. Updated: May 2026.
895,151 professionals have used our research since 2012.
What do I think about the stability of the solution?
The solution is primarily stable. Although, some time ago, there were performance drops where it was freezing as the logs were full. We managed to resolve the issue. I rate its stability eight out of ten.
What do I think about the scalability of the solution?
It is a very scalable product. The solution users in our organization include IT managers, finance officers, accountants, and chief financial officers. I rate its scalability a nine out of ten.
How are customer service and support?
The solution's support team is excellent and efficient.
How was the initial setup?
The solution's initial setup and configuration are straightforward. But if someone is trying to put policies and restrictions in place, then one has to understand many things. It takes one and half hours to configure and requires two executives for maintenance.
What's my experience with pricing, setup cost, and licensing?
Initially, the solution's price was high for us. But it decreased on the purchase of more than one license.
What other advice do I have?
I recommend the solution to others and rate it a nine.
Disclosure: My company has a business relationship with this vendor other than being a customer.
Cloud Consultant at Tata Consultancy
Easy to scale up and integrate
Pros and Cons
- "It is highly scalable because it has a mesh architecture that allows consistent policies."
- "The pricing is expensive."
What is our primary use case?
Our primary requirement is security. We are using it as part of our enterprise deployment with Fortinet. Currently, we are doing the firewalls using these appliances.
How has it helped my organization?
We are a services company that provides IT solutions for many other customers. As an IT service provider, we have different requirements from different customers and support them.
What needs improvement?
There is room for improvement in the pricing model. The pricing is expensive, but pricing should be competitive, and it should be unit-based pricing.
For how long have I used the solution?
We have a decade of experience with Fortinet FortiGate-VM. We have different versions.
What do I think about the stability of the solution?
The stability is good. I would rate it a nine out of ten.
What do I think about the scalability of the solution?
I rate scalability a ten out of ten because its mesh architecture allows consistent policies. Additionally, we can keep adding points and integrate them into the same dish, making it easy to scale up as needed.
How are customer service and support?
The customer service and support team is of high quality. The reason is that we are a preferred partner and vendor for Fortinet. So, they are available whenever we call them, and we have no problems. We have a specialized team that is deployed only for our organization.
How would you rate customer service and support?
Positive
How was the initial setup?
I would rate the initial setup a nine out of ten, where one is difficult, and ten is easy. You need to deploy it on a virtual appliance. Deploying the appliance itself is usually straightforward, but designing the architecture and arranging the solution can be challenging for many customers.
What about the implementation team?
We deploy it on both on-prem and cloud, depending on the customer's preference. Our architecture is a mesh architecture. It depends on the customer's requirements. We choose the type of appliances and the capacity required to run. For instance, for a customer with a thousand workloads utilizing a Fortinet gateway, we would select the physical appliances that best suit their needs for on-prem deployment.
Conversely, we would use a mesh configuration with consistent policies across cloud engines for a data interface in the cloud. So, we've used both ways. We use a virtual version on-premises, physical appliances on-premises, and virtual appliances inside the cloud.
The whole deployment takes around four weeks to three months, depending on the architecture. It is quite a broad process, but if I summarize, we typically start with a high-level solution design and then move into the low-level details, such as port configuration and traffic flow. Finally, we move on to the actual deployment phase.
What's my experience with pricing, setup cost, and licensing?
I would rate it a five, where one is low, and ten is high. We usually do monthly licensing costs as we don't invest capital and do more OpEx-based pricing.
What other advice do I have?
My advice is if you have to go with the complete stack, go with the complete stack, not the replacement-only product. Don't look at it as a replacement. Choose a platform.
Overall, I would rate it a nine out of ten. The reason is that I have a next-generation firewall. Fortinet FortiGate-VM provides various deployment options, such as physical or virtual devices, and it can be easily integrated with public clouds. Additionally, I can integrate it with other Fortinet products like network access control or zero trust network access in a single step, which is very convenient. Their security stack portfolio works well with my hybrid mesh firewall, and I am satisfied with its integration capabilities.
We have had a very good experience with Fortinet FortiGate-VM. They are usually the first choice for us when it comes to designing. We have certain products for certain purposes, and this one is our preferred choice for firewall purposes.
Moreover, They have hardware appliances that can be deployed on-premise, virtual appliances deployed on the cloud, and a mesh that can form a cluster. It's very good.
Disclosure: My company has a business relationship with this vendor other than being a customer. partner
Buyer's Guide
Fortinet FortiGate-VM
May 2026
Learn what your peers think about Fortinet FortiGate-VM. Get advice and tips from experienced pros sharing their opinions. Updated: May 2026.
895,151 professionals have used our research since 2012.
Network Administrator Team Lead at a financial services firm with 51-200 employees
A full-featured virtual appliance with valuable monitoring and visibility features
Pros and Cons
- "I like the visibility and monitoring features because they're easy to use to monitor traffic. Features like geo-blocking and more have AI, and we're currently using all of it. But for now, we're only using geo-blocking, and we're able to block traffic from different countries. I also like that it's highly responsive. VM04 is also very powerful."
- "It would be better if it could provide you with options before completely blocking anything through the web filter. If you are doing a deep SSL inspection on the site if it says it's expired, it doesn't give you the option to continue at your own risk. I can't say that it's bad, but SSL internally isn't really a requirement. However, its security features can help. Right now, we have people going out and spending on purchasing the SSL certificates for internal sites."
What is our primary use case?
We use Fortinet FortiGate-VM for managing inbound and outbound internet traffic through our environment. Sometimes, we also use it for managing the site's internet outbound and routing. We also use it for IPSec on Azure. We also have an on-premises environment, and we're using it for IPSec on that environment.
All the routing happens through it because we're swinging all the traffic on the Azure side through a firewall which is basically the gateway. It acts as the gateway and manages outbound traffic in that environment. We have also set up the SSL VPN for users. We do have FortiGate on-premise, and we set up the SSL VPN connection for users.
How has it helped my organization?
It made the routing of traffic seamless and it helped us with SD-WAN as well as load balancing.
What is most valuable?
I like the visibility and monitoring features because they're easy to use to monitor traffic. Features like geo-blocking and more have AI, and we're currently using all of it. But for now, we're only using geo-blocking, and we're able to block traffic from different countries. I also like that it's highly responsive. VM04 is also very powerful.
What needs improvement?
It would be better if it could provide you with options before completely blocking anything through the web filter. If you are doing a deep SSL inspection on the site if it says it's expired, it doesn't give you the option to continue at your own risk. I can't say that it's bad, but SSL internally isn't really a requirement. However, its security features can help. Right now, we have people going out and spending on purchasing the SSL certificates for internal sites.
For how long have I used the solution?
I have been using this solution for three years.
What do I think about the stability of the solution?
Fortinet FortiGate-VM is a stable and very reliable solution.
What do I think about the scalability of the solution?
Fortinet FortiGate-VM is a scalable solution. It's very powerful, and I've never seen that machine running out of resources. It always worked.
How are customer service and support?
Tech support is okay, but we do a lot of management by ourselves. We have a third party that we use when we do implementations, and I haven't contacted Fortinet even though I have access to it. The local support that we use costs much less.
Which solution did I use previously and why did I switch?
I still remember using Check Point, and it took a long time to apply a policy. To install the policy, you had to wait for ten to 20 minutes or even 30 minutes. Fortinet FortiGate-VM instantly applies the policy on the FortiGate itself.
How was the initial setup?
The initial setup was difficult because we were all new when it came to the Azure environment. It was a little difficult to create space and understand that you have to have more than one interface. But once you get used to it. It's pretty straightforward.
It's straightforward if you have all that is required when you're clearing your traffic. If you're clearing your traffic already into your internal length to communicate with the firewall range, and you have information and understand it before the implementation, it will be very seamless. It will be stress-free when you understand the environment where you're going to implement it.
What's my experience with pricing, setup cost, and licensing?
Our license is yearly, but we're thinking of going monthly. I think it's somewhere around 100,000 for VM04. Nowadays, everyone wants to be a hacker, so we believe in security. That's why we also have third-party people that we involve to make sure that we're secure.
I don't think the costs are too bad. You still want to get advice from people who worked in security for many years, so you add a third party. The third party also said they would give their share like 100K, or 200K or something like that, so I don't think it's too expensive for security. I think it just adds more trust.
Which other solutions did I evaluate?
We have been using Check Point Firewall so it was easy to identity the difference.
What other advice do I have?
I will recommend the solution. If it's a first-time deployment in Azure, they need to understand a couple of things, like the interfaces we need to create. The good thing about FortiGate is that they don't hide how their devices work. You can go to their website and get every instruction that you need at any time. It's straightforward and even has pictures showing you what you should expect. I've done a few changes for the first time, and I didn't have to stress. But you must know the infrastructure well.
On a scale from one to ten, I would five Fortinet FortiGate-VM a ten.
Which deployment model are you using for this solution?
Public Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Microsoft Azure
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
IT Manager at a energy/utilities company with 1,001-5,000 employees
Delivers good protection from different network threats
Pros and Cons
- "Good for the servers and can stop network attacks, including spam."
- "I found the Antivirus and Anti-spam features most valuable in this solution; I'm happy with FortiGate-VM because it's good for our servers and it stopped many attacks, including spam, over our networks."
- "FortiGate-VM is more expensive than Sophos."
What is our primary use case?
Internally, I've been using this solution to front our servers.
What is most valuable?
I found the Antivirus and Anti-spam features most valuable in this solution. I'm happy with FortiGate-VM because it's good for our servers. It stopped many attacks, including spam, over our networks.
For how long have I used the solution?
It's been a year since I started using FortiGate-VM.
What do I think about the stability of the solution?
I find this solution really stable.
What do I think about the scalability of the solution?
The scalability of this solution is an eight or a nine to me. It's good.
How are customer service and support?
I don't have experience with Fortinet's technical support. When I face any problem or issue, I call the company that came here to implement the device.
What about the implementation team?
I hired a consultant to implement the solution. I had a good experience. It was good for my work and my networks.
What's my experience with pricing, setup cost, and licensing?
FortiGate-VM is more expensive than Sophos. We have two appliances: a main appliance, then a backup, e.g. FortiGate-VM, and this make it so expensive, even more than the costs from Sophos.
We pay the standard three-year licensing fees.
Which other solutions did I evaluate?
I evaluated Sophos.
What other advice do I have?
I spent many years using Cyber and Sophos. Mainly, I use Sophos, while I use FortiGate-VM in the network background.
I see that Fortinet is a big company. I can't compare the Sophos and Fortinet solutions I'm using, because I'm using Sophos at the front, and behind Sophos, I'm using FortiGate-VM, so I can't give a good comparison or opinion. I've only used FortiGate-VM for one year.
It took nearly one month to complete the FortiGate-VM deployment because the decision came from upper management.
No other users use FortiGate-VM in our organization, because it's a device or appliance that only stands in front of our servers.
We don't have a need for maintenance yet. We've only been using it for one year and it currently needs no maintenance.
I don't know if our organization has plans to increase the usage of FortiGate-VM because this decision will come from upper management.
I'm a good observer and I'm still learning some feature metrics of this solution.
What I'd like to advice people looking into implementing FortiGate-VM is to study the FAQs of other users. You should know the tricks and what exactly is needed in this appliance. This is a very good appliance, but I have less experience with it compared to Sophos which I've used for many years.
I'm rating FortiGate-VM an eight out of ten.
Maybe others rate the vendor a 10 out of 10, but I'm sticking with eight.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Cyber Security architect at Avanade
Great intrusion prevention systems and anti-spam capabilities alongside other useful security features
Pros and Cons
- "The solution is stable."
- "In terms of features, it has almost everything - whatever someone would need."
- "The costs could be lowered."
- "The product could be cheaper. When a company scales it, it can get pricey."
What is our primary use case?
The solution is primarily used for security. When a company has a hybrid solution and the client is looking for a next-generation firewall with all the bells and whistles inside, we recommend FortiGate.
What is most valuable?
The intrusion prevention systems are great.
The anti-spam capabilities are really great.
The solution has a lot of very useful security features.
The solution is stable.
The scalability potential is there.
What needs improvement?
The previous version, which was 7.1 or 7.2, was a little bit easier to use. It's kind of a little bit tricky to find the options from the firewall configurations now, in the latest version. Previously, it was easier to deal with. The whole dashboard that you get can be improved. They could organize the whole dashboard a bit more to put stuff under each other in a way that makes sense and makes everything easy to reach.
The costs could be lowered.
For how long have I used the solution?
I've used the solution for a while. I've used it over the last 12 months.
What do I think about the stability of the solution?
We have found the stability to be good. There aren't bugs or glitches. It doesn't crash or freeze. It's reliable.
What do I think about the scalability of the solution?
The product is scalable. It is a little bit expensive on Azure when you use it on the cloud, however. If a company plans to expand it, they need to keep this in mind. However, even those on-premises can be highly scalable.
How was the initial setup?
The initial setup needs to be handled by a person knowledgeable in Fortinet products.
What about the implementation team?
We are implementors. We can handle the setup process for our clients.
What was our ROI?
The product does have the capabilities of providing an ROI to companies.
What's my experience with pricing, setup cost, and licensing?
The product could be cheaper. When a company scales it, it can get pricey.
The pricing, in fact, is the one aspect that could potentially make clients change their minds. In terms of features, it has almost everything - whatever someone would need. However, the price sometimes is the obstacle. It could force the client to go with a cheaper product. Especially on the cloud, a solution such as this can get costly as you are paying for the cloud stuff on top of the license, and you have to pay per hour.
What other advice do I have?
We are implementors.
We have both virtual and physical servers.
I would advise new users first to ensure they have strong knowledge before attempting an implementation. It has everything a company might need and it is scalable. However, the person doing the implementation itself needs to be skilled. There might be a lot of things going on during implementation that need to be dealt with properly.
I'd rate the solution at a nine out of ten.
Disclosure: My company has a business relationship with this vendor other than being a customer. Implementer
IT Support Team Leader at a tech services company with 201-500 employees
Gives us strong security and is well-tailored to our organization's needs
Pros and Cons
- "The best part about FortiGate-VM is its strong security."
- "The best part about FortiGate-VM is its strong security."
- "One thing that can be better is added automation. And, on top of that, enhanced security when it comes to the automation itself."
- "One thing that can be better is added automation. And, on top of that, enhanced security when it comes to the automation itself."
What is our primary use case?
We are using FortiGate-VM for the protection of our internal network and also for VPN services. Right now, there are about 200 end users in our main office and in other business units we have an additional 100-200 end users. We have about five different firewalls, yet almost all of our units are using FortiGate-VM. So, in total, we have about 500-600 users.
What is most valuable?
The best part about FortiGate-VM is its strong security. Besides that, it's nice that there are different models for different sizes of businesses. For example, there are models tailored to enterprise companies and small organizations, and the model that we are using is perfectly suitable for our usage.
What needs improvement?
One thing that can be better is added automation. And, on top of that, enhanced security when it comes to the automation itself.
For how long have I used the solution?
I have been using Fortinet FortiGate-VM for five years.
What do I think about the stability of the solution?
I think it is stable.
What do I think about the scalability of the solution?
I am impressed by its scalability, given that we are already using it for over 500 users. And, in future, we plan to increase usage even more.
Which solution did I use previously and why did I switch?
We have used Palo Alto before, but we switched because at that time Fortinet was more scalable and there were more options available.
I also use Sophos Firewall, though not within the organization, but rather just for small business or personal use.
What about the implementation team?
Currently, we only require the services of three engineers and administrators on our technical team when it comes to deployment and maintenance.
What's my experience with pricing, setup cost, and licensing?
The license we pay is a yearly fee. I can't say it's very expensive; it is a good price and is highly suitable for our usage.
What other advice do I have?
FortiGate-VM is a good solution, and I would say one of the best solutions on the market.
I would rate it an eight out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Senior Network Engineer at SONDA
Stable with good pricing but needs a better interface
Pros and Cons
- "The interface is decent."
- "It's great that we can have separate services for the same client, and it's a complete solution where you only need to deploy it once and can have many clients and many services for these clients in the same VM."
- "The solution could use very well-defined support for resellers."
- "The solution could use very well-defined support for resellers."
What is our primary use case?
I occasionally implement Fortinet for clients.
In the most recent instance, we had a cloud implemented and I was driving the infrastructure. The client had separate areas inside it purposely. They needed to implement a FortiGate solution in the same client, with different VMs, for different clients, to make different areas for these clients.
What is most valuable?
It's great that we can have separate services for the same client.
It's a complete solution. You only need to deploy it once. You can have many clients and many services for these clients in the same VM. It's a solution that works very well for companies that may need separated sections.
It makes things less expensive for clients. The pricing is good.
The interface is decent.
Technical support has a lot of knowledge.
The initial setup is simple.
The solution is stable.
It can scale well.
What needs improvement?
The solution could use very well-defined support for resellers. There isn't necessarily 24/7 support and resolution.
The interface could be improved.
The product could have more protocol routing options.
I'd rate the solution at a seven out of ten.
What do I think about the stability of the solution?
The stability is good. There are no bugs or glitches. It doesn't crash or freeze.
What do I think about the scalability of the solution?
If you need to scale, this is a good option.
How are customer service and support?
The technical support is pretty good. We are quite satisfied with the level of service on offer.
How was the initial setup?
The initial setup process is very easy and straightforward. It's not difficult or complex.
We only need three people for deployment and maintenance. It's not a solution that requires a big team. You might need one or two field engineers.
What other advice do I have?
I'm working in a Fortinet partner company. I'm a reseller.
I'm dealing with the latest version of the product.
I like the 100F version, and it may be a good option for most clients, however, it might not be right for every company. It's a good idea to figure out what you need before you decide to avoid purchasing something that's not right for your company's needs.
Disclosure: My company has a business relationship with this vendor other than being a customer.
Information Security Manager at a financial services firm with 501-1,000 employees
Easy to use and setup but could use more documentation and true layer-7 protection
Pros and Cons
- "I have worked on some of the largest and smallest solutions that Fortinet sells and they all scale really well."
- "The most valuable FortiGate-VM features are the ease of use and setup."
- "I have worked on some of the largest and smallest solutions that Fortinet sells and they all scale really well."
- "FortiGate-VM does have that too, but it doesn't work as well."
What is our primary use case?
We use FortiGate-VM to access clients' networks. These are generally Azure cloud environments in which we set up resources for clients to use.
What is most valuable?
The most valuable FortiGate-VM features are the ease of use and setup.
What needs improvement?
Sometimes, FortiGate-VM is a little different to set up than other firewalls that I've managed. It would be better if it was just a little more mainstream. Some more documentation would be nice as well. Documentation has always kind of been our problem with FortiGate-VM.
There's a lot of stuff I like about FortiGate-VM, but like I said, we still do a lot more Palo Alto firewalls than anything because they have true layer-seven attack prevention. FortiGate-VM does have that too, but it doesn't work as well. I would like to see more layer-seven functionality and expect to realistically block things at the top level.
For how long have I used the solution?
We have been using this solution for two years.
What do I think about the stability of the solution?
FortiGate-VM is stable. They have been okay for everything that I have done with them.
What do I think about the scalability of the solution?
I have worked on some of the largest and smallest solutions that Fortinet sells and they all scale really well.
How was the initial setup?
The initial setup is straightforward and only takes hours to deploy.
What about the implementation team?
We implemented FortiGate-VM in-house.
What other advice do I have?
Make sure that you're on the latest stable versions when you update code and stuff like that. That's one of the things that we've had some issues with in the past.
Which deployment model are you using for this solution?
Private Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Microsoft Azure
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Buyer's Guide
Download our free Fortinet FortiGate-VM Report and get advice and tips from experienced pros
sharing their opinions.
Updated: May 2026
Product Categories
FirewallsPopular Comparisons
Fortinet FortiGate
Netgate pfSense
Sophos Firewall
Cisco Secure Firewall
Palo Alto Networks NG Firewalls
WatchGuard Firebox
Check Point Quantum Force (NGFW)
Cisco Meraki MX
Azure Firewall
Check Point Cloud Firewall (formerly CloudGuard Network Security)
SonicWall TZ
Palo Alto Networks VM-Series
Juniper SRX Series Firewall
KerioControl
Buyer's Guide
Download our free Fortinet FortiGate-VM Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- Features comparison between Palo Alto and Fortinet firewalls
- How is FortiGate-VM different from the physical FortiGate firewall?
- Looking for a piece of advice and tips on the deployment of VPN concentrators for SD-WAN tunnels?
- What happens if FortiGate VM next-generation firewall in VMware NSX license becomes expired?
- Which would you recommend - FortiGate VM or Azure Firewall?
- What do you recommend for a corporate firewall implementation?
- Comparison of Barracuda F800, SonicWall 5600 and Fortinet
- Sophos XG 210 vs Fortigate FG 100E
- Which is the best network firewall for a small retailer?
- When evaluating Firewalls, what aspect do you think is the most important to look for?














