Try our new research platform with insights from 80,000+ expert users

Fortinet FortiGate vs Zscaler Internet Access comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
7.3
Fortinet FortiGate offers cost-effective and efficient security with quick ROI, reducing expenses in data communication and management.
Sentiment score
7.5
Zscaler Internet Access offers financial and security benefits, saving costs by eliminating legacy systems and reducing device infections.
Clients are now comfortable and not wasting productive hours on IT support.
We have experienced a positive return on investment by utilizing Fortinet's products.
There's definitely an ROI. Having a centralized way of managing and applying policies across the entire organization always helps.
 

Customer Service

Sentiment score
7.0
Fortinet FortiGate's customer service is praised for problem-solving but criticized for inconsistent response times and language barriers.
Sentiment score
7.1
Zscaler Internet Access's technical support is responsive and competent, with user ratings typically between seven to nine out of ten.
He explained that it required a command line configuration, as it couldn't be done through the graphical user interface.
I would rate their support for FortiGate a nine out of ten.
They offer very accurate solutions.
I find customer support to be quite adequate
 

Scalability Issues

Sentiment score
7.3
Fortinet FortiGate is scalable, flexible, and adaptable, though some face hardware upgrades and licensing challenges during deployment sizes.
Sentiment score
7.8
Zscaler Internet Access offers excellent scalability, enabling seamless growth across various environments with efficient management and flexibility.
They scale up really well from smaller models like the FortiGate 40 and 50 to bigger sites with the FortiGate 100 for more throughput - up to enterprise datacenters.
The processor, the microprocessor and the security processors are very intelligent so they can scale significantly and manage that well.
There are many options available, and we can choose the size of the box based on our requirements.
I find Zscaler Internet Access to be highly scalable, which was one of the reasons for choosing it.
 

Stability Issues

Sentiment score
7.9
Fortinet FortiGate is praised for its stability and reliability, with occasional issues improved by updates and configurations.
Sentiment score
7.7
Zscaler Internet Access is reliable and secure, with minor regional issues and challenges like SSL inspection and latency.
There are no bugs or glitches, and it doesn't crash or freeze.
Improper handling of these can lead to a memory surge, a well-known bug that can cause the entire system to freeze.
It is less stable than Palo Alto Networks and Check Point firewalls because there are lots of bugs in the latest firmware.
Zscaler Internet Access is very stable, and I would rate its stability as nine out of ten.
 

Room For Improvement

Fortinet FortiGate needs improvements in stability, usability, integration, cost-effectiveness, and documentation for enhanced user satisfaction and performance.
Zscaler Internet Access requires improvements in integration, usability, performance, connectivity, and feature enhancements like VPN and multi-factor authentication.
If I have put 10 GBPS of throughput on a firewall and I enable all of these features available, such as IPS or UTM functionalities, the throughput comes down to 1 GBPS.
By providing an integrated solution, users would have access to all features and functionalities within a single window, eliminating the need to navigate through multiple windows.
Investing in a solution that can accommodate such growth would be more cost-effective than repeatedly purchasing new hardware.
One feature I am missing is the ability to connect automatically to internal monitoring systems.
 

Setup Cost

Fortinet FortiGate offers competitive pricing with varied costs; affordable long-term licenses, though renewal complexity can accumulate costs.
Zscaler Internet Access is costly but valued by users for its features and global reach despite extra fees.
Secure SD-WAN is free of charge.
The most expensive part is the renewal of the license subscription.
FortiGate is priced lower than Palo Alto.
Zscaler Internet Access is recognized as an expensive solution.
 

Valuable Features

Fortinet FortiGate offers advanced security features, user-friendly configuration, and comprehensive management tools, valued for robust protection and flexibility.
Zscaler Internet Access offers robust security with low latency, scalability, and ease of use for distributed organizations.
Fortigate blocks unusual traffic and therefore secures our network.
It's easy to monitor the end-to-end network through the firewall.
The firewall, IPS, and VPN functions are the most valuable features.
The most valuable feature for me is the ability to see how my network and traffic looks with modules like analytics and insights.
 

Categories and Ranking

Fortinet FortiGate
Average Rating
8.4
Reviews Sentiment
7.2
Number of Reviews
318
Ranking in other categories
Firewalls (2nd), Software Defined WAN (SD-WAN) Solutions (1st), WAN Edge (1st)
Zscaler Internet Access
Average Rating
8.2
Reviews Sentiment
7.0
Number of Reviews
52
Ranking in other categories
Secure Web Gateways (SWG) (2nd), Internet Security (2nd)
 

Mindshare comparison

While both are Enterprise Networking solutions, they serve different purposes. Fortinet FortiGate is designed for Firewalls and holds a mindshare of 20.7%, up 17.7% compared to last year.
Zscaler Internet Access, on the other hand, focuses on Secure Web Gateways (SWG), holds 15.9% mindshare, down 17.3% since last year.
Firewalls
Secure Web Gateways (SWG)
 

Q&A Highlights

it_user822630 - PeerSpot reviewer
Mar 06, 2019
 

Featured Reviews

EhabAli - PeerSpot reviewer
Efficient, user-friendly, and affordable
In the past, NSS Labs was utilized to test files and verify the numbers and datasheets. It would be beneficial to have an organization or testing lab that can verify the numbers in our datasheets since changes are frequently made, which can be inconvenient for review. For instance, when comparing different competitors such as Forcepoint, Palo Alto, and Check Point, the throughput or numbers in the datasheet may be lower than the actual numbers. Conversely, Fortinet typically reports very high numbers, but they cannot be replicated in the real world. Therefore, it would be advantageous for them to partner with a neutral testing organization such as NSS Labs to validate these numbers, thus providing more credibility and comfort to everyone regarding the accuracy of the datasheets. For the migration, everyone has a firewall in use and I am selling Fortinet. Typically, I am replacing another firewall. Previously, there was a tool available to convert configurations from one firewall, such as Palo Alto, to Fortinet, but this tool is no longer free. If it could be made free again, it would be very beneficial. This tool shows a lot of promise and is very good. Making it free would help many companies deliver their products in a more efficient and integrated way. It would also be more valuable to include the tool with the firewall package or license instead of having to pay extra for it. Paying extra puts more pressure on small companies to deliver the firewall and complete the configuration, especially if they have hundreds or thousands of policies. It's very painful to move through these policies line by line. The stability has room for improvement. When it comes to Secure SD-WAN, everything is fine. They are going the right way. SD-WAN is very promising. They can provide the SD-WAN solution separately, but they will not take this approach because even the smallest firewall can support the features, so there is no need to have a separate service or appliance. They are following the right steps, and there is nothing to be improved. Feature-wise, I'm really satisfied with the new release, and the features they have added. For now, it's fine.
ShanavasVK - PeerSpot reviewer
Helps maintain a consistent posture of internet security while getting rid of VPN and hovering into zero trust
There could be a better way for the tool to categorize the traffic. For example, the tool does exceptions and everything overall. If I want to give guest access or provide access to guest users or any other internet access and if it does not go through the SSL inspection because, in our company, we can't have the root certificate on a device that we don't manage, which can be called out as an exception or an exclusion, but that doesn't provide a proper reflection of the picture of what is happening in the environment. There are granularities bringing it down. The tool I used or still have is Zscaler Cloud Connector to protect the cloud environment, which can have a bit more user-friendly installation and setup, and it would help a lot. The deployment process of Zscaler Cloud Connector needs to be more user-friendly. Improvements are required in the exception category. For example, suppose I report on a monthly basis what the breaches and traffic violating the SSL inspection area are coming from. In that case, I may find that half of them may be coming through some guest network, meaning the tool doesn't differentiate between the guest or normal networks or the corporate networks. Having options to differentiate different networks would be ideal so that it can show a true picture of things to users, as half of the things in the tool are not in our control and are not of our concern.
report
Use our free recommendation engine to learn which Firewalls solutions are best for your needs.
838,713 professionals have used our research since 2012.
 

Comparison Review

it_user216600 - PeerSpot reviewer
Jan 3, 2016
Sophos UTM vs. Fortinet FortiGate
I have used both Sophos and Fortinet products in production and I have found the Sophos UTM appliances (hardware and virtual) to be a better fit most of the time -- with a few caveats which I will touch on below. In both instances, the transition from TMG will be mostly straightforward. The main…
 

Answers from the Community

it_user822630 - PeerSpot reviewer
Mar 6, 2019
Mar 6, 2019
IT really depends on the type of business you had currently. These days almost all security vendors are offering Virtual Appliances so it's a preference based decision. Almost all vendors are offering basic features with some add-ons / additional features with differences among others competitors. Look at 1. FortiGate, 2. Cisco Meraki, 3. SOPHOS Products they all provide you flexibility to have...
2 out of 63 answers
it_user519153 - PeerSpot reviewer
Feb 28, 2018
There are several factors to consider: · In-house expertise to manage a physical firewall · Number of locations requiring a firewall · Current and planned linkage between office locations · Value of the information you want to protect I’m personally a fan of on-premise physical firewalls for high $ information to protect. However, if the $ risk is not particularly high, your in-house expertise to manage firewalls is low, and you have multiple locations to protect, I would recommend a security gateway service with VPN connections between your offices and the location of the security provider. I cannot recommend one supplier over another. If you choose to go with a physical firewall, Fortigate has a good reputation. Regards,
it_user351612 - PeerSpot reviewer
Feb 28, 2018
Depending what is your goal and where offices are based. When you want to protect your users in offices, then you would want to have kind of perimeter firewall (usually appliance) - standard (old) way. Fortinet is affordable and OK. When you wan't better check Palo Alto Networks. In case your offices are close (in milliseconds) to Zscaler cloud then you could also use this. Ask them to share information of their "cloud" locations and measure RTT from your offices. Note that all your traffic will go via Zscaler cloud (privacy, confidentiality). With Fortinet or similar appliance, you have possibilty to have VPN for your users with home office. Not sure when it's feasible with cloud solution from Zscaler. Like said really depends on where you are, what kind of business you are doing.
 

Top Industries

By visitors reading reviews
Educational Organization
22%
Computer Software Company
14%
Comms Service Provider
6%
Manufacturing Company
6%
Educational Organization
25%
Computer Software Company
13%
Financial Services Firm
9%
Manufacturing Company
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

Which is the better NGFW: Fortinet Fortigate or Cisco Firepower?
When you compare these firewalls you can identify them with different features, advantages, practices and usage at large. In my opinion, Fortinet would be the best option and l use Fortinet too...
What is the biggest difference between Sophos XG and FortiGate?
From my experience regarding both the Sophos and FortiGate firewalls, I personally would rather use FortiGate. I know the firewalls change every 5 to 7 years as stated but you really do need to upg...
What are the biggest technical differences between Sophos UTM and Fortinet FortiGate?
As a solution, Sophos UTM offers a lot of functionality, it scales well, and the stability and performance are quite good. The most valuable features for me are their web and email filtering. I wou...
Which is the better security solution - Cisco Umbrella or Zscaler?
Cisco Umbrella and Zscaler Internet Access are two broad-spectrum Internet security solutions that I have tried. Zscaler Internet Access is a good option for carrying out multiple security functi...
Which is better, Zscaler internet access or Netsckope CASB?
We researched Netskope but ultimately chose Zscaler. Netskope is a cloud access security broker that helps identify and manage cloud applications, protecting your sensitive data from exfiltration....
 

Also Known As

FortiGate 60b, FortiGate 60c, FortiGate 80c, FortiGate 50b, FortiGate 200b, FortiGate 110c, FortiGate, Fortinet Firewall
ZIA
 

Overview

 

Sample Customers

Amazon Web Services, Microsoft, IBM, Cisco, Dell, HP, Oracle, Verizon, AT&T, T-Mobile, Sprint, Vodafone, Orange, BT Group, Telstra, Deutsche Telekom, Comcast, Time Warner Cable, CenturyLink, NTT Communications, Tata Communications, SoftBank, China Mobile, Singtel, Telus, Rogers Communications, Bell Canada, Telkom Indonesia, Telkom South Africa, Telmex, Telia Company, Telkom Kenya
Ulster-Greene ARC, BanRegio, HDFC, Ralcorp Holdings Inc., British American Tobacco, Med America Billing Services Inc., Lanco Group, Aquafil, Telefonica, Swisscom, Brigade Group
Find out what your peers are saying about Fortinet FortiGate vs. Zscaler Internet Access and other solutions. Updated: January 2023.
838,713 professionals have used our research since 2012.