Try our new research platform with insights from 80,000+ expert users
MOHAN RAUT - PeerSpot reviewer
Senior Network Architect at NTT Global Networks Incorporated
MSP
Stable, but the initial setup is complex
Pros and Cons
  • "The analyzer is the most valuable feature."
  • "The deployment is complex and has room for improvement."

What is our primary use case?

We use the solution for log analysis.

What is most valuable?

The analyzer is the most valuable feature.

What needs improvement?

The deployment is complex and has room for improvement.

For how long have I used the solution?

I have been using the solution for five years.

Buyer's Guide
Fortinet FortiAnalyzer
March 2025
Learn what your peers think about Fortinet FortiAnalyzer. Get advice and tips from experienced pros sharing their opinions. Updated: March 2025.
842,690 professionals have used our research since 2012.

What do I think about the stability of the solution?

The solution is stable.

How was the initial setup?

The initial setup is complex. The deployment took a few hours.

What about the implementation team?

The implementation was completed with an integrator.

What's my experience with pricing, setup cost, and licensing?

We pay for an annual license.

What other advice do I have?

I give the solution a six out of ten.

I do not recommend the solution.

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
PeerSpot user
Solutions Consultant at a manufacturing company with 11-50 employees
Real User
Easy to deploy, stable, and scalable
Pros and Cons
  • "The most valuable feature of the solution is reporting."
  • "The solution can improve the incident response function to provide more detailed information on where the incident is originating."

What is our primary use case?

The customer purchased a Fortinet Firewall in order to run it as a decentralized block and collect amazing security logs from their internet usage or other data from the box. The benefit of having an on-premise firewall is that they don't have to worry about any subscription, and the storage space it consumes is minimal due to the internal hard drive of the FortiAnalyzer. Furthermore, the firewall does not consume a lot of traffic from the internet due to it being on-premise.

What is most valuable?

The most valuable feature of the solution is reporting. The report that accompanies the solution includes the top 10 usages, threats to be aware of, and any highlights. Additionally, the API can be connected to other systems to receive more notifications.

What needs improvement?

The solution can improve the incident response function to provide more detailed information on where the incident is originating.

For how long have I used the solution?

I have been using the solution for three months.

What do I think about the stability of the solution?

The solution is stable and we have never experienced downtime.

What do I think about the scalability of the solution?

I give the scalability of the solution an eight out of ten.

This solution is suitable for enterprise customers with a large number of devices and logs. Fortinet FortiAnalyzer enables the compilation of log files over a period of time, such as 90 days in Thailand. This is especially useful for gathering and analyzing data.

How was the initial setup?

The initial setup is simple. Fortinet FortiAnalyzer is an out-of-the-box solution, so we can start customizing as soon as we finish the installation.

What's my experience with pricing, setup cost, and licensing?

I give the cost a seven out of ten. I believe that Fortinet is a cost-effective brand, making it a competitive option in terms of pricing.

Which other solutions did I evaluate?

An alternative solution is SolarWinds, which analyzes server performance, and could be a competitor's CM solution or a managed service that sends data from sensors on the site to their facility. The primary distinguishing feature of SolarWinds is its form factor. SolarWinds must be installed on a server and requires server resources. In the past, a large amount of OS and other resources were necessary, but the form factor has remained the same.

What other advice do I have?

I give the solution an eight out of ten.

Due to the high cost, Fortinet FortiAnalyzer is not feasible to use for certain office or branch office environments. A possible compromise could be to use a combination of two solutions: for banks, the file-based solution may be beneficial, but for on-premises locations, it could be worthwhile to make use of the existing value and use it to centrally control and manage the data.

I recommend utilizing the FortiAnalyzer if our log volume is sufficient and we have a FortiGate.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
PeerSpot user
Buyer's Guide
Fortinet FortiAnalyzer
March 2025
Learn what your peers think about Fortinet FortiAnalyzer. Get advice and tips from experienced pros sharing their opinions. Updated: March 2025.
842,690 professionals have used our research since 2012.
reviewer930837 - PeerSpot reviewer
Senior Manager (Engineering Department) at a comms service provider with 10,001+ employees
Real User
User-friendly, easy to deploy and simple to create reports
Pros and Cons
  • "The solution is quite easy to deploy."
  • "The solution should be more price competitive."

How has it helped my organization?

The clients using this solution have wifi for their guests and for their own users. They want to know which user has used their wifi to access the internet, and probably use this knowledge for a kind of security management purpose.

What is most valuable?

The solution is quite easy to deploy. For the user, they don't need to have a lot of technical know-how. It is easy to generate the report for review by the management.

The solution is stable and reliable.

We have not faced any scalability issues.

What needs improvement?

The solution should be more price competitive.

For how long have I used the solution?

I've used the solution for one or two years. I used it on a recent project.

However, the first time I used this product was in 2006 for our own infrastructure. We are not using it in our infrastructure anymore.

What do I think about the stability of the solution?

The solution is stable. There are no bugs or glitches. It doesn't crash or freeze. The performance is reliable. 

What do I think about the scalability of the solution?

In terms of scalability, it really depends. For our customer, the SME customer, not that many people need it. If you talk about scalability around analysis, related to the hub and space, the hub disk size, and the capacity of the box, for the on-prem model, we need to choose it with some buffer. We can't foresee any scalability issue for that customer. 

We only have one client on the solution. 

How are customer service and support?

While I haven't directly dealt with technical support, I have not heard any complaints from my colleagues that may have. I would say that the support has been satisfactory for the moment.

How was the initial setup?

The initial setup is pretty straightforward. That said, I didn't handle it directly. We had an internal team that did the implementation. 

Most of the time, one engineer is sufficient for a small deployment, just two AP, one firewall, and one analyzer.

What about the implementation team?

The implementation work was done by my engineers. We did not need any outside assistance from any integrators or consultants. 

What's my experience with pricing, setup cost, and licensing?

I can't remember if they have a new license for software maintenance. They have maintenance that is charged annually. Unlike a firewall, they have a UTM license you need to pay annually and then only an annual maintenance cost for the hardware, for FortiAnalyzer.

I'm not sure what the exact price is at the moment. However, my understanding is the pricing could be better.

What other advice do I have?

I would recommend the solution to others. We have been happy with its overall capabilities. I'd rate the solution at an eight out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
PeerSpot user
Ahmet Coruk - PeerSpot reviewer
Co-founder at Korunet
Real User
User-friendly interface with a quick response and good analytics
Pros and Cons
  • "FortiAnalyzer has a user-friendly interface with a quick response and good analytics. It's very secure because it's taking the log from the devices on a secure channel, so there is no problem with that in your network."
  • "The cost of FortiAnalyzer could be cheaper, especially when you are installing to a VM. For 90 percent of customers, the VM solution is enough."

What is our primary use case?

For most of our customers, we are installing FortiAnalyzer as a VM-based solution. We installed a big analyzer for just one customer because they needed too much storage capacity. We have about 10 clients using it currently.

How has it helped my organization?

We prepare reports for our customers, and when the manager sees them, he's pleased. They show how many users connected, how many attacks happened, and the number of attacks stopped. The management of the IP depends on your report, so the customers need it. We are customizing these reports every day or every week, depending on what the customers need. We send emails with these reports, and the managers are also pleased about it. Also, technical guys are thrilled because they can solve problems very quickly. It's working on the SQL Server, so techs can do a quick search in real-time and see everything in the port analyzer's interface query.

What is most valuable?

FortiAnalyzer has a user-friendly interface with a quick response and good analytics. It's very secure because it's taking the log from the devices on a secure channel, so there is no problem with that in your network. Because you're getting the information from a secure channel, it's also possible to back it up in a storage solution. 

For how long have I used the solution?

We have been installing FortiAnalyzer bundled with other products for about six or seven years.

How was the initial setup?

Setting up FortiAnalyzer is very straightforward. It takes just 30 minutes or less. With our installation, we sent our FortiGates log, email logs, and other logs for the three devices we're currently running to the analyzers we are using within the public architecture.

What's my experience with pricing, setup cost, and licensing?

The license depends on the storage capacity. If you want to take a log of up to 1 gigabyte daily, it's free, if I remember correctly. But if you want 5 gigabytes daily, it's licensed at different prices. The cost of FortiAnalyzer could be cheaper, especially when you are installing to a VM. For 90 percent of customers, the VM solution is enough. 

What other advice do I have?

I would rate FortiAnalyzer 10 out of 10

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
PeerSpot user
Robert Dumitru - PeerSpot reviewer
Information Technology Administrator at Omnient SRL
Reseller
Offers a great overview of the logs and integrates perfectly
Pros and Cons
  • "It is easy to integrate Fortinet FortiAnalyzer with other products. You have a better overview of what's going on."
  • "The only issue that I can see is with the cost. For example, if you buy support for one year, you are messed up next year. It's better to buy another gateway."

What is our primary use case?

We collect the logs from Fortinet in order to search and get a better view of everything that's coming from FortiGate because the overview on FortiGate isn't the same. FortiAnalyzer provides an overview of the logs and everything that's happening there. We integrate FortiGate and FortiAnalyzer with the SOC that we're working on, which is an open-source security solution.

The other use case is to have logs. Because otherwise, in FortiGate, you don't have logs for a long period of time. You only have seven days if you don't have an account in FortiGuard. So, FortiAnalyzer provides a better understanding of what's happening there. And for our clients, we always recommend FortiAnalyzer.

FortiGate by itself is a good choice, but without FortiAnalyzer, you lose a lot of features. Even the free version of FortiAnalyzer provides some useful features.

What is most valuable?

It is easy to integrate Fortinet FortiAnalyzer with other products. You have a better overview of what's going on. For example, you get a smaller alert for an infected workstation if it causes some suspicious traffic, you see it right away in Fortinet.

What needs improvement?

The only issue that I can see is with the cost. For example, if you buy support for one year, you are messed up next year. It's better to buy another gateway.

For how long have I used the solution?

I have been using Fortinet FortiAnalyzer for one year, and I am currently working with the latest version.

What do I think about the stability of the solution?

It is a very stable solution and integrates perfectly.

What do I think about the scalability of the solution?

It is a scalable solution. Our company is very proud of FortiGate solutions.

How are customer service and support?

The support team is good. We have some cases open with them, and they resolve them very quickly. Even when there is a breach of security, they patch it quickly.

How was the initial setup?

It is very easy to set up and deploy. Even someone with little networking knowledge or a manager can quickly understand what's happening in the network, such as an increase in traffic from specific endpoints or which websites are being browsed, including social media.

What's my experience with pricing, setup cost, and licensing?

You get a gateway, but without support, it's not worth much. We've also tried FortiGate virtual machines, but the price is so high that it's better to buy other appliances than to buy the license for the VM. 

We also work with third-party solutions. However, this solution is not for everyone, and even though it's free, it's easy to implement when you have money.

Overall, I would rate it an eight out of ten.

What other advice do I have?

I would advise buying FortiGate and FortiAnalyzer together. They get it free of charge. When you buy FortiGate, you can put in a FortiAnalyzer VM for free. Although the free version has its limitations, you should get it because it doesn't cost you anything. When you try the free version of FortiAnalyzer, you'll see its potential, and you'll want more.

Which deployment model are you using for this solution?

Hybrid Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer: Reseller
PeerSpot user
Network Security Engineer at Social Security Commission
Real User
A good firewall activity reporting tool with next to real-time reporting capabilities, but lacking auto-detection when upgrades take place
Pros and Cons
  • "We like the fact that we can run minute-by-minute reporting form this solution."
  • "We would like to see some improvement on the upgrade process around this solution. There are sometimes communication issues when a new version of the firewall is implemented, and it fails to report back to this product."

What is our primary use case?

We use this solution to actively pick up and report on all activities and connectivity going through the FortiGate firewall.

What is most valuable?

We like the fact that we can run minute-by-minute reporting form this solution.

We also appreciate that the interface of this solution is very good, and doesn't require a lot of configuration, updating, or maintenance.

What needs improvement?

We would like to see some improvement on the upgrade process around this solution. There are sometimes communication issues when a new version of the firewall is implemented, and it fails to report back to this product.

We would also like to be able to pull off incident reports and display them graphically using this solution.

For how long have I used the solution?

We have been using this solution for about three years now.

What do I think about the stability of the solution?

The stability of this solution is okay. There is some room for improvement, and so we would rate the stability as an eight out of ten.

What do I think about the scalability of the solution?

We have found this to be a fairly scalable solution.

How was the initial setup?

The initial setup of this solution is very easy, and takes around three hours to complete the implementation.

What about the implementation team?

We carried out the implementation using in-house resources.

What's my experience with pricing, setup cost, and licensing?

The renewals for this solution are carried out yearly.

What other advice do I have?

We would rate this solution a seven out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
reviewer1392267 - PeerSpot reviewer
Fraud Risk Analyst at a university with 1,001-5,000 employees
Real User
Provides analyzing tools, monitoring tools, and log management
Pros and Cons
  • "From my perspective, we need to see the traffic in a good way so we can know what has happened in our network. The analyzing tools and the monitoring tools and the logs are the important part in the network."
  • "The traffic monitoring could be better, and stability could be improved."

What is our primary use case?

The primary use cases are log management and the reporting fraud forum. It provides a vision of the network.

What is most valuable?

From my perspective, we need to see the traffic in a good way so we can know what has happened in our network. The analyzing tools and the monitoring tools and the logs are the important part in the network.

What needs improvement?

The traffic monitoring could be better, and stability could be improved.

For how long have I used the solution?

I have been using this solution for about two years.

What do I think about the stability of the solution?

The solution should be more stable.

What do I think about the scalability of the solution?

For the cloud version, you can expand it as you need it.

How are customer service and support?

I haven't contacted technical support.

How was the initial setup?

The solution is easy to install.

What's my experience with pricing, setup cost, and licensing?

FortiAnalyzer was in the product itself, but two years ago they split it from Fortinet. We paid the license two years ago.

What other advice do I have?

I would rate this solution 9 out of 10. 

I can recommend this solution for other users. 

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
CEO at Corem Technologies
Reseller
Robust reporting and flexible connectivity
Pros and Cons
  • "The features that our customers have found most valuable are their different type of reports including the drill down report, as well as the flexibility to connect to any number of appliances which can be connected to it centrally."
  • "Pricing-wise, it not affordable for the normal customer. Most of the people want to see different types of reporting, but FortiAnalyzer's fee is a little bit difficult."

What is our primary use case?

The primary use case for Analyzer, is for keeping the logs and for different types of reporting.

What is most valuable?

The features that our customers have found most valuable are their different type of reports including the drill down report, as well as the flexibility to connect to any number of appliances which can be connected to it centrally.

What needs improvement?

In terms of what can be improved, of course the cloud storage possibilities are there, but the cost and the renewal parts are high. Pricing-wise, it not affordable for the normal customer. Most of the people want to see different types of reporting, but FortiAnalyzer's fee is a little bit difficult.

For how long have I used the solution?

We have been selling and supporting FortiAnalyzer for customers for three to four years.

What do I think about the stability of the solution?

All the Fortinet services are very stable products.

Maintenance and networking are under the Fortinet warranty so we cannot do anything on that. It means we can just coordinate things. It is based on the ticket.

What do I think about the scalability of the solution?

I don't think the built-in memory can be upgraded for the Analyzer. I think it is not possible. That means that the hardware is more suitable for large companies.

How are customer service and support?

Their support is fairly good.

How was the initial setup?

The initial setup was simple.

What's my experience with pricing, setup cost, and licensing?

In terms of fees, one is subscription and one is the hardware warranty. There are two types of subscriptions - one is a security subscription and the other one is the support.

A lot of products are coming with built-in facilities, but FortiAnalyzer is a much better solution. People may like it, but affordability is a problem.

What other advice do I have?

For customers who need to have different types of reporting presentable to different levels of hierarchy, FortiAnalyzer is a lovely solution. Otherwise, there is no point in getting some logs. It should be presentable.

On a scale of one to ten, I'll give FortiAnalyzer an eight or nine.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Reseller
PeerSpot user
Buyer's Guide
Download our free Fortinet FortiAnalyzer Report and get advice and tips from experienced pros sharing their opinions.
Updated: March 2025
Product Categories
Log Management
Buyer's Guide
Download our free Fortinet FortiAnalyzer Report and get advice and tips from experienced pros sharing their opinions.