Fortinet FortiAnalyzer is simple and reliable. It does what the product says it would do. We have a lot of replacements in Turkey, Palo Alto, Check Point, and Forcepoint. We are replacing these various vendors with Fortinet products. But there are some software issues, like bugs or bug fixes. Otherwise, we are very happy with Fortinet products.
Security Engineer at a tech services company with 1-10 employees
Easily allows for multiple cluster groups but the GUI needs improvement
Pros and Cons
- "The scalability is good. It is also good in the cluster nodes. You can make multiple FortiAnalyzer clusters groups, and you can distribute the logs between these FortiAnalyzer nodes. In other words, you can expand the scale."
- "In terms of what could be improved, sometimes it's lagging and it also has some graphical issues with the GUI."
What is most valuable?
What needs improvement?
In terms of what could be improved, sometimes it's lagging and also has some graphical issues with the GUI. The correlation mechanism and the analytics are not as good as the competitors like Check Point or Panorama. But for IoT and SoT, it has graphical dashboards and analytical diagram tables that can correlate various logs from other products like FortiMail and FortiWeb, so it is a good mechanism for Fortinet products. If you have various Fortinet products for your firm, you can use FortiAnalyzer like a synchro mechanism.
But it needs development for software issues like the GUI bug, some logs not showing, not collecting some logs... They need to fix them.
For how long have I used the solution?
I have been using Fortinet FortiAnalyzer for almost five years and maybe six years experience with Fortinet products.
What do I think about the scalability of the solution?
The scalability is good. It is also good in the cluster nodes. You can make multiple FortiAnalyzer clusters groups, and you can distribute the logs between these FortiAnalyzer nodes. In other words, you can expand the scale.
Buyer's Guide
Fortinet FortiAnalyzer
April 2025

Learn what your peers think about Fortinet FortiAnalyzer. Get advice and tips from experienced pros sharing their opinions. Updated: April 2025.
849,190 professionals have used our research since 2012.
How are customer service and support?
We have SLA agreements with the customers, so we are giving the technical support.
How was the initial setup?
The initial setup is very simple.
If it is an individual environment, it may take one hour to complete the entire initial setup.
If the hardware requires physical adjustments for the cabinet location or the protected area, then it may take 2 hours.
What other advice do I have?
I would absolutely recommend FortiAnalyzer. Fortinet products have internal logging mechanisms if they have internal disks or stores. But if you have multiple location SD-WAN branches for multiple areas you are controlling with FortiGate, the hardware doesn't give any disk or storage, only limited storage. So if you want to go further on the logging, you have limited options, maybe one week or two weeks. So if you're using a FortiAnalyzer in the SD-WAN branches, you have a centralized logging mechanism, so you can collect all the logs in a central location and you can make the correlations or analytics with all the devices. Otherwise, you can go device, device to see what is happening on each site.
On a scale of one to ten, I would give Fortinet FortiAnalyzer a seven.
To improve this rating, as I mentioned, I need to see the older bugs, the graphical user experience, made better, like Check Point. Check Point is more visual than FortiAnalyzer. If the customer has experience with the Check Point logging mechanism, they will seek additional features in the FortiAnalyzer, but it has to be more visual.
So as I said, the graphical issues must improve.
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner

Chief Technical Officer at a tech services company with 11-50 employees
Stable and scalable but a little overpriced
Pros and Cons
- "Initial setup is ok."
- "Pricing should be about 10-20% lower."
What is most valuable?
The feature I find most valuable is the reporting customization.
What needs improvement?
Areas for improvement would be the default template reporting and the user-friendliness of the report customization. In the next release, I would like to see more information about tracking intelligence.
For how long have I used the solution?
I have been using this product for over five years.
What do I think about the stability of the solution?
This solution is stable.
What do I think about the scalability of the solution?
This solution is scalable.
How are customer service and support?
Technical support is fine, but they could improve their understanding of the customer environment when troubleshooting.
How was the initial setup?
The initial setup is ok.
What's my experience with pricing, setup cost, and licensing?
The pricing of this product should be about 10-20% lower.
What other advice do I have?
This is a good product, but I think there are better ones for log analytics. I would rate this product seven out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer:
Buyer's Guide
Fortinet FortiAnalyzer
April 2025

Learn what your peers think about Fortinet FortiAnalyzer. Get advice and tips from experienced pros sharing their opinions. Updated: April 2025.
849,190 professionals have used our research since 2012.
Software Developer with 201-500 employees
SSD is helpful in generating customized reports
Pros and Cons
- "Storage in SSD helps in generating customized reports."
- "The following could be better: operation and maintenance, high-availability architecture, and management link embedded in the transmission link."
- "The FortiAnalyzer is not scalable."
How has it helped my organization?
It generate reports from a specific date or interval.
What is most valuable?
- Storage in SSD, to generate customized reports
- Event management
What needs improvement?
- Operation and maintenance
- High-availability architecture
- Management link embedded in the transmission link
For how long have I used the solution?
One to three years.
What do I think about the stability of the solution?
Yes. The combination between FortiAnalyzer and FortiGate 5000 Series with millions of concurrent sessions is high-risk because it can interrupt the operation of the network.
What do I think about the scalability of the solution?
The FortiAnalyzer is not scalable.
How is customer service and technical support?
Tech support is very poor and slow.
How was the initial setup?
Straightforward.
What's my experience with pricing, setup cost, and licensing?
The hardware cost and services contract are fair.
What other advice do I have?
Buy it for networks that have the FortiGate platform as a security gateway or for enterprises with employees who are on the road a lot.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
IT Director at Atlantic Quantum Innovations
Gaining deep insights into network traffic analysis with detailed dashboards
Pros and Cons
- "I completely recommend Fortinet FortiAnalyzer to others."
What is our primary use case?
I use Fortinet FortiAnalyzer as our main investigation tool for some issues related to network traffic analysis and penetration detection. My company relies heavily on it to gather deep information about the network and analyze traffic thoroughly.
How has it helped my organization?
Fortinet FortiAnalyzer provides a lot of visibility over network traffic and helps track incidents effectively.
What is most valuable?
The usability and the information that Fortinet FortiAnalyzer provides are very valuable. It offers many details within a good dashboard, making it easy to use. The visibility it gives us over traffic and incidents is especially beneficial. It provides deep insights into network performance, allowing for efficient traffic analysis and investigation.
What needs improvement?
The only area where it could improve is in providing better training for the tool. Some training would be beneficial, even though it's not entirely necessary for its usage.
For how long have I used the solution?
I have been using Fortinet FortiAnalyzer for five years.
How are customer service and support?
I reached out to Fortinet support once, and it was a very good experience. I would rate it a nine out of ten.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
We used Wireshark before but it wasn't sufficient for our needs. It lacked necessary features and was complex to handle.
How was the initial setup?
The initial setup of Fortinet FortiAnalyzer was very easy, and I would rate it a ten out of ten.
What's my experience with pricing, setup cost, and licensing?
We pay roughly $5,000 for a solution that we needed specifically, but I do not remember the exact price. Overall, I find the pricing to be good compared to other tools in the market.
Which other solutions did I evaluate?
We evaluated Wireshark, a free tool for traffic analysis, but it did not meet our needs.
What other advice do I have?
It's easy to set up and use, offering significant visibility over network traffic. I completely recommend Fortinet FortiAnalyzer to others. I would rate the overall solution as ten out of ten.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Last updated: Apr 21, 2025
Flag as inappropriateHead of Presales at AcSys Networks Private Limited
Comprehensive log analysis and cost reduction achieved
Pros and Cons
- "The most valuable feature of Fortinet FortiAnalyzer is its capability for analyzing and providing visually comprehensive reports, making it easier to understand the network environment."
- "There is no issue with the hardware appliance. However, when discussing the cloud options, they offer very limited features, especially in terms of reporting and analyzing data."
What is our primary use case?
We are using Fortinet FortiAnalyzer primarily to collect all logs and for analyzing and reporting purposes. It aids in understanding our network environment by tracking what goes in and out of the network.
What is most valuable?
The most valuable feature of Fortinet FortiAnalyzer is its capability for analyzing and providing visually comprehensive reports, making it easier to understand the network environment. Additionally, there is an important feature called the IOC (Indicator of Compromise) license. This separate license allows correlation and straightforward analyzing paths, but it does not come with the default standard license.
What needs improvement?
There is no issue with the hardware appliance. However, when discussing the cloud options, they offer very limited features, especially in terms of reporting and analyzing data.
For how long have I used the solution?
I have been using Fortinet FortiAnalyzer for about ten years in my organization.
What was my experience with deployment of the solution?
The deployment of Fortinet FortiAnalyzer was very straightforward. An individual can deploy it within a few minutes.
What do I think about the stability of the solution?
Fortinet FortiAnalyzer is definitely a stable solution.
What do I think about the scalability of the solution?
When talking about hardware appliances, there is no option to expand, which makes scalability limited.
How are customer service and support?
Fortinet support is pretty good and responsive.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
I have more involvement with FortiGate devices, which also collect logs from all devices across the network to one single place.
How was the initial setup?
The initial setup of Fortinet FortiAnalyzer was very straightforward.
What about the implementation team?
Normally, an individual can complete the deployment process.
What was our ROI?
We have seen a 30% reduction in costs, particularly with the cloud deployment of Fortinet FortiAnalyzer.
What's my experience with pricing, setup cost, and licensing?
Fortinet FortiAnalyzer is a satisfactory solution in terms of price. However, it only supports Fortinet devices. If there was integration with non-Fortinet devices, it would be more advantageous.
Which other solutions did I evaluate?
There are alternative options like Splunk, but they are very expensive.
What other advice do I have?
I would recommend having a solution like Fortinet FortiAnalyzer for analyzing logs and understanding the network environment. My overall rating for Fortinet FortiAnalyzer is eight out of ten.
Which deployment model are you using for this solution?
Private Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Other
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
Last updated: Apr 18, 2025
Flag as inappropriate
Buyer's Guide
Download our free Fortinet FortiAnalyzer Report and get advice and tips from experienced pros
sharing their opinions.
Updated: April 2025
Product Categories
Log ManagementPopular Comparisons
Dynatrace
Splunk Enterprise Security
IBM Security QRadar
Elastic Security
Elastic Observability
Grafana Loki
Security Onion
LogRhythm SIEM
Elastic Stack
syslog-ng
Amazon CloudWatch
Sumo Logic Security
Buyer's Guide
Download our free Fortinet FortiAnalyzer Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- When evaluating Log Management tools and software, what aspect do you think is the most important to look for?
- Datadog vs ELK: which one is good in terms of performance, cost and efficiency?
- Which Windows event log monitoring tool do you recommend?
- What is the difference between log management and SIEM?
- Splunk vs. Elastic Stack
- How can Cloudtrail logs be used effectively to improve log monitoring?
- Why hot data and cold data differences in SIEM solutions are not discussed sufficiently?
- When evaluating Log Management solutions, what aspect do you think is the most important to look for?
- When evaluating Log Management solutions, what aspects do you think are the most important to look for?
- Why are Log Management tools important for companies?