- Real time reports
- Reports on who tried to attack
- FortiGate monitor
IT Director with 501-1,000 employees
I'm able to see each IP separately, including user name and other stats, but the admin UX needs improvement.
What is most valuable?
How has it helped my organization?
Before using FortiAnalyzer, people would surf wherever and we could not monitor or see which computer in the company goes where. Everyone had the same IP. Now, using the analyzer, I am able to see each IP separately, including user name and other stats. One time the police called and told me someone from the company was breaking the law and I was able to monitor the specific computer.
What needs improvement?
They should learn from CheckPoint how to design UX for admins.
What was my experience with deployment of the solution?
No issues encountered.
Buyer's Guide
Fortinet FortiAnalyzer
January 2025
Learn what your peers think about Fortinet FortiAnalyzer. Get advice and tips from experienced pros sharing their opinions. Updated: January 2025.
831,158 professionals have used our research since 2012.
What do I think about the stability of the solution?
It's very stable.
How are customer service and support?
Customer Service:
I've not used them yet.
Technical Support:I've not used them yet.
Which solution did I use previously and why did I switch?
We previously used a previous solution.
How was the initial setup?
It was straightforward.
What about the implementation team?
We did it in-house.
What was our ROI?
It's a great ROI for the price.
What's my experience with pricing, setup cost, and licensing?
Only get it if you need it.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
IT Security Engineer at a tech services company with 1,001-5,000 employees
Straightforward to set up and simple to use but could have a better reporting module
Pros and Cons
- "The initial setup is straightforward."
- "The pricing could be better. They could work to make it more competitive on the market."
What is our primary use case?
We primarily use it for logging collection.
What is most valuable?
It's a simple log collection tool. There isn't too much that's special or unique about it.
It meets our expectations for the most part.
The solution does offer very useful integration capabilities.
The interface is fine.
The initial setup is straightforward.
What needs improvement?
The pricing could be better. They could work to make it more competitive on the market.
The report module could be simplified a bit to make it easier to use.
Technical support has been very bad. They should work to improve their level of service.
For how long have I used the solution?
I've been dealing with the solution for about seven years at this point. It's been a while. I have a lot of experience with it.
What do I think about the stability of the solution?
The solution is stable and there are no bugs or glitches. It doesn't crash or freeze. It's reliable. The performance is good.
What do I think about the scalability of the solution?
The scalability might be limited depending on the installation.
How are customer service and technical support?
We haven't been happy with technical support. We find the service to be quite bad. For example, in our last experience dealing with them, we had multiple issues and the outcomes were not great. We were disappointed with the help we received.
How was the initial setup?
The initial setup is not overly complex or difficult. It's straightforward enough. A company shouldn't have any issues with the setup.
What's my experience with pricing, setup cost, and licensing?
The pricing isn't the least expensive on the market. They could work to improve it to make it more interesting for other companies. Adjusting pricing might be a good move.
Which other solutions did I evaluate?
I've personally looked into other security solutions, just to understand the market for myself. I've personally compared Fortinet, Meraki, Check Point, and Cisco ASA Firewall in terms of their safety and security capabilities.
What other advice do I have?
We're Fortinet partners. We have a business relationship with the company.
I'd give the solution a rating of six out of ten.
I'd still recommend it to other users, however. If the reporting, interface, and tech support were a bit better, I'd rate it higher.
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
Buyer's Guide
Fortinet FortiAnalyzer
January 2025
Learn what your peers think about Fortinet FortiAnalyzer. Get advice and tips from experienced pros sharing their opinions. Updated: January 2025.
831,158 professionals have used our research since 2012.
Security Engineer at a tech services company with 1-10 employees
Easily allows for multiple cluster groups but the GUI needs improvement
Pros and Cons
- "The scalability is good. It is also good in the cluster nodes. You can make multiple FortiAnalyzer clusters groups, and you can distribute the logs between these FortiAnalyzer nodes. In other words, you can expand the scale."
- "In terms of what could be improved, sometimes it's lagging and it also has some graphical issues with the GUI."
What is most valuable?
Fortinet FortiAnalyzer is simple and reliable. It does what the product says it would do. We have a lot of replacements in Turkey, Palo Alto, Check Point, and Forcepoint. We are replacing these various vendors with Fortinet products. But there are some software issues, like bugs or bug fixes. Otherwise, we are very happy with Fortinet products.
What needs improvement?
In terms of what could be improved, sometimes it's lagging and also has some graphical issues with the GUI. The correlation mechanism and the analytics are not as good as the competitors like Check Point or Panorama. But for IoT and SoT, it has graphical dashboards and analytical diagram tables that can correlate various logs from other products like FortiMail and FortiWeb, so it is a good mechanism for Fortinet products. If you have various Fortinet products for your firm, you can use FortiAnalyzer like a synchro mechanism.
But it needs development for software issues like the GUI bug, some logs not showing, not collecting some logs... They need to fix them.
For how long have I used the solution?
I have been using Fortinet FortiAnalyzer for almost five years and maybe six years experience with Fortinet products.
What do I think about the scalability of the solution?
The scalability is good. It is also good in the cluster nodes. You can make multiple FortiAnalyzer clusters groups, and you can distribute the logs between these FortiAnalyzer nodes. In other words, you can expand the scale.
How are customer service and technical support?
We have SLA agreements with the customers, so we are giving the technical support.
How was the initial setup?
The initial setup is very simple.
If it is an individual environment, it may take one hour to complete the entire initial setup.
If the hardware requires physical adjustments for the cabinet location or the protected area, then it may take 2 hours.
What other advice do I have?
I would absolutely recommend FortiAnalyzer. Fortinet products have internal logging mechanisms if they have internal disks or stores. But if you have multiple location SD-WAN branches for multiple areas you are controlling with FortiGate, the hardware doesn't give any disk or storage, only limited storage. So if you want to go further on the logging, you have limited options, maybe one week or two weeks. So if you're using a FortiAnalyzer in the SD-WAN branches, you have a centralized logging mechanism, so you can collect all the logs in a central location and you can make the correlations or analytics with all the devices. Otherwise, you can go device, device to see what is happening on each site.
On a scale of one to ten, I would give Fortinet FortiAnalyzer a seven.
To improve this rating, as I mentioned, I need to see the older bugs, the graphical user experience, made better, like Check Point. Check Point is more visual than FortiAnalyzer. If the customer has experience with the Check Point logging mechanism, they will seek additional features in the FortiAnalyzer, but it has to be more visual.
So as I said, the graphical issues must improve.
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
Chief Technical Officer at a tech services company with 11-50 employees
Stable and scalable but a little overpriced
Pros and Cons
- "Initial setup is ok."
- "Pricing should be about 10-20% lower."
What is most valuable?
The feature I find most valuable is the reporting customization.
What needs improvement?
Areas for improvement would be the default template reporting and the user-friendliness of the report customization. In the next release, I would like to see more information about tracking intelligence.
For how long have I used the solution?
I have been using this product for over five years.
What do I think about the stability of the solution?
This solution is stable.
What do I think about the scalability of the solution?
This solution is scalable.
How are customer service and support?
Technical support is fine, but they could improve their understanding of the customer environment when troubleshooting.
How was the initial setup?
The initial setup is ok.
What's my experience with pricing, setup cost, and licensing?
The pricing of this product should be about 10-20% lower.
What other advice do I have?
This is a good product, but I think there are better ones for log analytics. I would rate this product seven out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer:
Software Developer with 201-500 employees
SSD is helpful in generating customized reports
Pros and Cons
- "Storage in SSD helps in generating customized reports."
- "The following could be better: operation and maintenance, high-availability architecture, and management link embedded in the transmission link."
- "The FortiAnalyzer is not scalable."
How has it helped my organization?
It generate reports from a specific date or interval.
What is most valuable?
- Storage in SSD, to generate customized reports
- Event management
What needs improvement?
- Operation and maintenance
- High-availability architecture
- Management link embedded in the transmission link
For how long have I used the solution?
One to three years.
What do I think about the stability of the solution?
Yes. The combination between FortiAnalyzer and FortiGate 5000 Series with millions of concurrent sessions is high-risk because it can interrupt the operation of the network.
What do I think about the scalability of the solution?
The FortiAnalyzer is not scalable.
How is customer service and technical support?
Tech support is very poor and slow.
How was the initial setup?
Straightforward.
What's my experience with pricing, setup cost, and licensing?
The hardware cost and services contract are fair.
What other advice do I have?
Buy it for networks that have the FortiGate platform as a security gateway or for enterprises with employees who are on the road a lot.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Buyer's Guide
Download our free Fortinet FortiAnalyzer Report and get advice and tips from experienced pros
sharing their opinions.
Updated: January 2025
Product Categories
Log ManagementPopular Comparisons
Dynatrace
Splunk Enterprise Security
IBM Security QRadar
Elastic Security
Elastic Observability
LogRhythm SIEM
Grafana Loki
Sumo Logic Security
Security Onion
syslog-ng
Amazon CloudWatch
SolarWinds Kiwi Syslog Server
Buyer's Guide
Download our free Fortinet FortiAnalyzer Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- When evaluating Log Management tools and software, what aspect do you think is the most important to look for?
- Datadog vs ELK: which one is good in terms of performance, cost and efficiency?
- Which Windows event log monitoring tool do you recommend?
- What is the difference between log management and SIEM?
- Splunk vs. Elastic Stack
- How can Cloudtrail logs be used effectively to improve log monitoring?
- Why hot data and cold data differences in SIEM solutions are not discussed sufficiently?
- When evaluating Log Management solutions, what aspect do you think is the most important to look for?
- When evaluating Log Management solutions, what aspects do you think are the most important to look for?
- Why are Log Management tools important for companies?