Try our new research platform with insights from 80,000+ expert users

ForgeRock vs Fortinet FortiAuthenticator comparison

Sponsored
 

Comparison Buyer's Guide

Executive SummaryUpdated on Dec 1, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Omada Identity
Sponsored
Ranking in Identity Management (IM)
4th
Average Rating
8.2
Reviews Sentiment
6.8
Number of Reviews
48
Ranking in other categories
User Provisioning Software (3rd), Identity and Access Management as a Service (IDaaS) (IAMaaS) (5th), Customer Identity and Access Management (CIAM) (3rd)
ForgeRock
Ranking in Identity Management (IM)
10th
Average Rating
8.0
Reviews Sentiment
7.1
Number of Reviews
30
Ranking in other categories
Access Management (6th), Customer Identity and Access Management (CIAM) (4th)
Fortinet FortiAuthenticator
Ranking in Identity Management (IM)
7th
Average Rating
8.0
Reviews Sentiment
7.0
Number of Reviews
59
Ranking in other categories
Single Sign-On (SSO) (6th), Authentication Systems (3rd), Multi-Factor Authentication (MFA) (3rd)
 

Featured Reviews

Michael Rask Christensen - PeerSpot reviewer
Cloud-based, highly configurable, and very user-friendly
Certain things are unclear to us. For example, in situations where you can only request an access if you are a member of a specific department or if you are participating in a certain project, we are unclear about how to resolve such restrictions. We have some restrictions where you need to be a member of a special project in order to get access. We have restrictions on which accesses you can apply for, based on the context that you are a member of. The comprehensiveness of Omada's out-of-the-box connectors for the applications we use could be better. We are getting a new HR system called Cornerstone for which they do not have an out-of-the-box connector, so we have to take the REST connector and play around with it. We might be the only Omada customer who is using this HR system. I would love to see more connectors.
Trisha Bhola - PeerSpot reviewer
It's easier to customize and maintain our code
I worked on two different projects based on ForgeRock, and both are automated deployments. One is a UI-based deployment. It's an automated process using some scripts. The deployments are done through Octopus, so it's also automated. We first deploy the essential components of AM and then implement additional configurations like Amster Imports. After that, we import all the SAML Federation data and add some certificates. We have two teams of five and three team members working on the different deployment processes. One is working on the dev side, another is looking at the higher environment, and one is managing the data. In another project, I'm the only developer. We also deploy on the dev environments so that anyone can test new features, configurations, and client requirements. They can test it on the dev environment, but a team of four people manages higher environments. The Access Management component involves the most customization, which takes around 15 to 20 minutes because of the need to import the Amster configuration. If another deployment is simultaneously happening, it may be a little slower and take around 30 minutes. The other components, like the user data stores, take about five to seven minutes. It's another five to 10 minutes for Identity Management. After deployment, the maintenance is mostly checking for security vulnerabilities. If ForgeRock shares security vulnerabilities or advisories, we check to see if there is something inside we need to maintain. Other than that, we just install updates when they add features each month.
Rias_Majeed - PeerSpot reviewer
Once configured properly, it runs smoothly with minimal potential for misconfiguration and enhances security by providing two-factor authentication
Customer service and support are helpful, but in the last few years, I've found that the first-level support isn't able to understand the issue. They escalate to the tier-two level, who are able to resolve it. On the first level, it takes time. Maybe they have grown too big and aren't able to give each network the unique attention it deserves. We customize some implementations, and at that time, they're not able to help because the people supporting are new and not from the field. The training seems fine, but in practice, it's different. Their support is not that great anymore. A little arrogance is there. It doesn't qualify them very well if there's arrogance in their communication. They do not understand the issue. That's why you're coming back to support. For example, one issue I'm facing is when a person leaves the organization without handing over details. They'll send an email to that person, but that person is not available. How are you going to access this email? These are a few instances where we are finding it difficult, and they take more than a week or two to resolve some issues. Their support used to be very good, but now that they're on top, they're not as responsive at the first-level support.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The identity lifecycle support is definitely valuable because we are a complex organization, and there is a lot of onboarding, movement, and offboarding in our organization. We have 31,000 users, and there are a lot of users who are constantly onboarding, offboarding, and moving. So, we need to make sure that these activities are supported. In old times, we used to do everything manually. Everyone was onboarded, offboarded, or moved manually. So, from a business point of view and an economics point of view, identity lifecycle is most valuable. From a security point of view, access review is the most important feature for us."
"The most valuable functionality of the solution for us is that when employees stop working for the municipality, they are automatically disabled in Active Directory. Omada controls that 100 percent. They are disabled for 30 days, and after that time Omada deletes the Active Directory account. The same type of thing happens when we employ a new person. Their information is automatically imported to Omada and they are equipped with the roles and rights so they can do their jobs."
"It has a lot of out-of-the-box features. It is flexible, and there are a lot of possibilities to configure and extend it. It is user-friendly. It has an interface that is end-user or business-user friendly."
"Its best feature is definitely the process design. It is quite easy and straightforward to design a process."
"The most valuable feature of Omada is its API connectivity, which allows seamless integration with various services like SAP, GRC, and Microsoft licenses."
"The benefits of Omada Identity include a holistic way of viewing access, the ability to give people access, and automation."
"The most relevant feature is Omada's reporting engine. Omada never 'forgets' and archives every process. All steps an admin, user, or manager has executed, are recorded in Omada."
"Surveying is a valuable feature because it allows us to import data and see who has access to what data, for example."
"The product is easy to use in a development environment."
"I like the way it is handling authentication and authorization."
"ForgeRock is an extensive product with many functionalities and capabilities, much more than many other tools combined."
"The most valuable features of ForgeRock are social login and data protection."
"Easy to navigate, handle and manage the applications."
"ForgeRock has CIAM, which other products didn't have, and they have DevOps ready."
"The solution is very scalable. We have a lot of users that have been increasing over the years that we have been using it. We have approximately 20,000 users."
"Their access management solution, OpenAM, is most valuable because it meets the needs of a lot of users."
"The implementation has significantly improved access management within our organization."
"Features the addition and removal of access as needed for the VPN."
"The two-step authentication provides a higher level of security."
"The product is good, cost-effective, and functionally efficient."
"The current version is stable...Scalability-wise, it is a fine solution"
"The product is stable and reliable."
"We have not had issues with Fortinet FortiAuthenticator. It is stable."
"The initial setup of Fortinet FortiAuthenticator is easy."
 

Cons

"In our organization, all the data is event-driven, which means that if an attribute is changed in the source system, it can be updated within a few seconds in all end-user systems. There is room for improvement in Omada regarding that. Omada is still batch-based for some processes, so sometimes it can take an hour or even four hours before the execution is run and the update is sent."
"What I would most like to see added to the product is role management, especially enterprise or business role management, and the processes around that."
"I am not working with the product, but they have this BI tool for role-based mining, and I think that should be included in the core product rather than an add-on."
"One thing that we are not so happy about is the user interface. It is a bit dated. I know that they are working on that, but the user interface is quite dated. Currently, it is a little bit difficult to customize the user interface to the need of the business, which is a little bit disappointing. It needs it to be a little bit easier to operate, and it should have a better user interface."
"The biggest issue, which is the reason why we are transitioning from their product to SailPoint, is the overall user experience."
"We are still on Omada on-prem, but I understand that when Omada is in the cloud, you cannot send an attachment via email. We have some emails with attachments for new employees because we have to explain to them how to register and do their multi-factor authentication. All that information is in the attachment. People have to do that before they are in our system. We cannot give them a link to our Intranet and SharePoint because they do not yet have access. They have to register before that, so I need to send the attachments, but this functionality is not there in the cloud."
"There's a challenge with handling large amounts of data in this system."
"If you're running Omada on a cloud service, you may have some issues deploying the newest release. Sometimes, the latest release doesn't adapt to the processes we have already installed. Identity Access Management is a critical system for our organization, and we need to ensure that everyone has the same access as they did before the release."
"ForgeRock is an open source solution and is available to everyone but it is not freeware. If you need support, you need a subscription for ForgeRock. Many of its functionalities need to be built up with the help of a consultant."
"Lacks simplified documentation within the tool that requires use of a separate portal."
"The solution could improve by adding more advertising and marketing."
"The only problem with ForgeRock is that it is derived from an open-source product, so sometimes it's a bit unstable."
"I think the upgrade process is sometimes a little complicated and there are failures that occur."
"We're worried about the scaling. We're told it will be okay and there won't be issues, however, I'm not 100% convinced."
"I don't think ForgeRock directly supports integrations with Slack, making it an area where improvements are required."
"As with any complex software platform, there is a learning curve to using ForgeRock, and it may require specialized expertise to implement and manage effectively."
"The only way the solution could be improved is if it were cheaper."
"The customization capability of Fortinet FortiAuthenticator is not very flexible."
"I would like to see more ways to authenticate, such as adding facial recognition to the two-factor, where you log into your phone or another device."
"Integration with FortiGate could be more fluid."
"We have issues with HA (high availability). These should be addressed in future releases."
"The only issue I encounter is that when not using FortiAuthenticator for an extended period, it's typical to encounter some obstacles in the configuration process that you need to address."
"Fortinet FortiAuthenticator provides only authentication. It should also enable authorization services"
"The stability of Fortinet FortiAuthenticator is rated as six out of ten, indicating some instability issues."
 

Pricing and Cost Advice

"It is not cheap. It is expensive, but compared to what we did almost three years ago, it is value for money. It is worth it."
"Omada Identity is competitively priced and delivers good value for our money."
"While Omada Identity carries a premium price tag, it proves to be cost-effective."
"Omada isn't cheap or expensive. The licensing model is flexible. I've only had limited interactions with the Omada sales team, but they were positive. They don't sell the customers more licenses than they need. It's important to accurately forecast future usage. For example, we have many licenses that we don't use because we don't have the identities yet. We pay extra, which isn't good."
"Omada is too expensive. We are in the automotive industry. The pricing might be high because most of the other customers are in the insurance or banking sectors, but it's steep for an auto supply company."
"Omada continues to be very competitive on pricing, especially on the Omada cloud product."
"It is licensed per managed user per year."
"It is expensive. Fortunately, I had a very good procurement manager on my side, but they are expensive. The closest competitors are also very expensive. You get a full-fledged solution that can do everything you dream of, but you pay for everything."
"It's a bit pricey and could be more competitive."
"The license is purchased annually per user. However, you can negotiate if you are signing for a longer period of time. When comparing this solution to others on the market it is priced fair, it is not at the top of the price range or at the bottom end."
"The pricing of the solution is fair but I do not have the full details."
"Its price is comparable to other products in the market."
"ForgeRock's pricing is more competitive than other products."
"We have multiple clients we are looking at right now. We are at a very small number, however, the idea and the goal is to grow. We are looking at about $100,000 and $50,000 a minimum a month cost. That'd be minimum maybe in a couple of years."
"Its licensing is on a yearly basis, but it also depends on the contract that you have with the vendor. They have multiple types of contracts. There are additional costs to the standard licensing fees. If you need some of the features, you have to pay more."
"ForgeRock is an expensive solution."
"You can pay as you go with them. You purchase a base license and add to it as needed."
"The product has affordable pricing compared to other vendors."
"I rate the price of Fortinet FortiAuthenticator a three out of five."
"It's not expensive."
"The price seems okay. It's not that expensive compared to other authenticators."
"The cost of the license could be less expensive. The license is paid on a yearly basis."
"We pay for licensing on a yearly basis."
"The pricing is fair."
report
Use our free recommendation engine to learn which Identity Management (IM) solutions are best for your needs.
830,726 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
17%
Computer Software Company
13%
Manufacturing Company
8%
Government
7%
Financial Services Firm
24%
Computer Software Company
12%
Insurance Company
7%
Manufacturing Company
7%
Computer Software Company
18%
Government
8%
Financial Services Firm
8%
Comms Service Provider
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What do you like most about Omada Identity?
We don't have to go in and do a lot of the work that we did before. It may have saved us somewhere in the range of 10...
What needs improvement with Omada Identity?
There are some technical bits and pieces that we have looked at that could be better. For instance, when you do a rec...
What is your primary use case for Omada Identity?
We wanted a solution that could help us make HR the master of identities. We wanted a solution that could take that d...
What do you like most about ForgeRock?
The most valuable features of ForgeRock are social login and data protection.
What is your experience regarding pricing and costs for ForgeRock?
Our company was considering switching back to Keycloak from ForgeRock, so as to not pay any license fees. ForgeRock a...
What needs improvement with ForgeRock?
In the past, I saw that Splunk was integrated with a testing portal, and then it was integrated with Slack. I don't t...
What is your experience regarding pricing and costs for Fortinet FortiAuthenticator?
The cost of FortiAuthenticator is rated high due to market conditions. Nevertheless, I rated its cost an eight on a s...
What needs improvement with Fortinet FortiAuthenticator?
The technical support could be improved as some staff lacks the necessary knowledge to assist effectively.
 

Also Known As

Omada Identity Suite, Omada Identity Cloud
ForgeRock Identity Platform, ForgeRock OpenIDM
FortiAuthenticator
 

Learn More

Video not available
 

Overview

 

Sample Customers

Bayer, ECCO Shoes, Vattenfall, NuStar Energy, Unicredit, Schiphol Group, BMW Group, Deutsche Leasing
Geico, Thomson Reuters, Salesforce, McKesson, Trinet, SKY, BNP Paribas, Deloitte, Capgemini, North Western University
Black Gold Regional Schools, Amadeus Hospitality, Jefferson County, Chunghwa Telecom, City of Boroondara, Dimension Data
Find out what your peers are saying about ForgeRock vs. Fortinet FortiAuthenticator and other solutions. Updated: January 2025.
830,726 professionals have used our research since 2012.