For most of our customers, we are installing FortiAnalyzer as a VM-based solution. We installed a big analyzer for just one customer because they needed too much storage capacity. We have about 10 clients using it currently.
Co-founder at Korunet
User-friendly interface with a quick response and good analytics
Pros and Cons
- "FortiAnalyzer has a user-friendly interface with a quick response and good analytics. It's very secure because it's taking the log from the devices on a secure channel, so there is no problem with that in your network."
- "The cost of FortiAnalyzer could be cheaper, especially when you are installing to a VM. For 90 percent of customers, the VM solution is enough."
What is our primary use case?
How has it helped my organization?
We prepare reports for our customers, and when the manager sees them, he's pleased. They show how many users connected, how many attacks happened, and the number of attacks stopped. The management of the IP depends on your report, so the customers need it. We are customizing these reports every day or every week, depending on what the customers need. We send emails with these reports, and the managers are also pleased about it. Also, technical guys are thrilled because they can solve problems very quickly. It's working on the SQL Server, so techs can do a quick search in real-time and see everything in the port analyzer's interface query.
What is most valuable?
FortiAnalyzer has a user-friendly interface with a quick response and good analytics. It's very secure because it's taking the log from the devices on a secure channel, so there is no problem with that in your network. Because you're getting the information from a secure channel, it's also possible to back it up in a storage solution.
For how long have I used the solution?
We have been installing FortiAnalyzer bundled with other products for about six or seven years.
Buyer's Guide
Fortinet FortiAnalyzer
April 2025

Learn what your peers think about Fortinet FortiAnalyzer. Get advice and tips from experienced pros sharing their opinions. Updated: April 2025.
849,190 professionals have used our research since 2012.
How was the initial setup?
Setting up FortiAnalyzer is very straightforward. It takes just 30 minutes or less. With our installation, we sent our FortiGates log, email logs, and other logs for the three devices we're currently running to the analyzers we are using within the public architecture.
What's my experience with pricing, setup cost, and licensing?
The license depends on the storage capacity. If you want to take a log of up to 1 gigabyte daily, it's free, if I remember correctly. But if you want 5 gigabytes daily, it's licensed at different prices. The cost of FortiAnalyzer could be cheaper, especially when you are installing to a VM. For 90 percent of customers, the VM solution is enough.
What other advice do I have?
I would rate FortiAnalyzer 10 out of 10
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner

Information Technology Administrator at Omnient SRL
Offers a great overview of the logs and integrates perfectly
Pros and Cons
- "It is easy to integrate Fortinet FortiAnalyzer with other products. You have a better overview of what's going on."
- "The only issue that I can see is with the cost. For example, if you buy support for one year, you are messed up next year. It's better to buy another gateway."
What is our primary use case?
We collect the logs from Fortinet in order to search and get a better view of everything that's coming from FortiGate because the overview on FortiGate isn't the same. FortiAnalyzer provides an overview of the logs and everything that's happening there. We integrate FortiGate and FortiAnalyzer with the SOC that we're working on, which is an open-source security solution.
The other use case is to have logs. Because otherwise, in FortiGate, you don't have logs for a long period of time. You only have seven days if you don't have an account in FortiGuard. So, FortiAnalyzer provides a better understanding of what's happening there. And for our clients, we always recommend FortiAnalyzer.
FortiGate by itself is a good choice, but without FortiAnalyzer, you lose a lot of features. Even the free version of FortiAnalyzer provides some useful features.
What is most valuable?
It is easy to integrate Fortinet FortiAnalyzer with other products. You have a better overview of what's going on. For example, you get a smaller alert for an infected workstation if it causes some suspicious traffic, you see it right away in Fortinet.
What needs improvement?
The only issue that I can see is with the cost. For example, if you buy support for one year, you are messed up next year. It's better to buy another gateway.
For how long have I used the solution?
I have been using Fortinet FortiAnalyzer for one year, and I am currently working with the latest version.
What do I think about the stability of the solution?
It is a very stable solution and integrates perfectly.
What do I think about the scalability of the solution?
It is a scalable solution. Our company is very proud of FortiGate solutions.
How are customer service and support?
The support team is good. We have some cases open with them, and they resolve them very quickly. Even when there is a breach of security, they patch it quickly.
How was the initial setup?
It is very easy to set up and deploy. Even someone with little networking knowledge or a manager can quickly understand what's happening in the network, such as an increase in traffic from specific endpoints or which websites are being browsed, including social media.
What's my experience with pricing, setup cost, and licensing?
You get a gateway, but without support, it's not worth much. We've also tried FortiGate virtual machines, but the price is so high that it's better to buy other appliances than to buy the license for the VM.
We also work with third-party solutions. However, this solution is not for everyone, and even though it's free, it's easy to implement when you have money.
Overall, I would rate it an eight out of ten.
What other advice do I have?
I would advise buying FortiGate and FortiAnalyzer together. They get it free of charge. When you buy FortiGate, you can put in a FortiAnalyzer VM for free. Although the free version has its limitations, you should get it because it doesn't cost you anything. When you try the free version of FortiAnalyzer, you'll see its potential, and you'll want more.
Which deployment model are you using for this solution?
Hybrid Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer: Reseller
Buyer's Guide
Fortinet FortiAnalyzer
April 2025

Learn what your peers think about Fortinet FortiAnalyzer. Get advice and tips from experienced pros sharing their opinions. Updated: April 2025.
849,190 professionals have used our research since 2012.
Network Security Engineer at Social Security Commission
A good firewall activity reporting tool with next to real-time reporting capabilities, but lacking auto-detection when upgrades take place
Pros and Cons
- "We like the fact that we can run minute-by-minute reporting form this solution."
- "We would like to see some improvement on the upgrade process around this solution. There are sometimes communication issues when a new version of the firewall is implemented, and it fails to report back to this product."
What is our primary use case?
We use this solution to actively pick up and report on all activities and connectivity going through the FortiGate firewall.
What is most valuable?
We like the fact that we can run minute-by-minute reporting form this solution.
We also appreciate that the interface of this solution is very good, and doesn't require a lot of configuration, updating, or maintenance.
What needs improvement?
We would like to see some improvement on the upgrade process around this solution. There are sometimes communication issues when a new version of the firewall is implemented, and it fails to report back to this product.
We would also like to be able to pull off incident reports and display them graphically using this solution.
For how long have I used the solution?
We have been using this solution for about three years now.
What do I think about the stability of the solution?
The stability of this solution is okay. There is some room for improvement, and so we would rate the stability as an eight out of ten.
What do I think about the scalability of the solution?
We have found this to be a fairly scalable solution.
How was the initial setup?
The initial setup of this solution is very easy, and takes around three hours to complete the implementation.
What about the implementation team?
We carried out the implementation using in-house resources.
What's my experience with pricing, setup cost, and licensing?
The renewals for this solution are carried out yearly.
What other advice do I have?
We would rate this solution a seven out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Robust reporting and flexible connectivity
Pros and Cons
- "The features that our customers have found most valuable are their different type of reports including the drill down report, as well as the flexibility to connect to any number of appliances which can be connected to it centrally."
- "Pricing-wise, it not affordable for the normal customer. Most of the people want to see different types of reporting, but FortiAnalyzer's fee is a little bit difficult."
What is our primary use case?
The primary use case for Analyzer, is for keeping the logs and for different types of reporting.
What is most valuable?
The features that our customers have found most valuable are their different type of reports including the drill down report, as well as the flexibility to connect to any number of appliances which can be connected to it centrally.
What needs improvement?
In terms of what can be improved, of course the cloud storage possibilities are there, but the cost and the renewal parts are high. Pricing-wise, it not affordable for the normal customer. Most of the people want to see different types of reporting, but FortiAnalyzer's fee is a little bit difficult.
For how long have I used the solution?
We have been selling and supporting FortiAnalyzer for customers for three to four years.
What do I think about the stability of the solution?
All the Fortinet services are very stable products.
Maintenance and networking are under the Fortinet warranty so we cannot do anything on that. It means we can just coordinate things. It is based on the ticket.
What do I think about the scalability of the solution?
I don't think the built-in memory can be upgraded for the Analyzer. I think it is not possible. That means that the hardware is more suitable for large companies.
How are customer service and support?
Their support is fairly good.
How was the initial setup?
The initial setup was simple.
What's my experience with pricing, setup cost, and licensing?
In terms of fees, one is subscription and one is the hardware warranty. There are two types of subscriptions - one is a security subscription and the other one is the support.
A lot of products are coming with built-in facilities, but FortiAnalyzer is a much better solution. People may like it, but affordability is a problem.
What other advice do I have?
For customers who need to have different types of reporting presentable to different levels of hierarchy, FortiAnalyzer is a lovely solution. Otherwise, there is no point in getting some logs. It should be presentable.
On a scale of one to ten, I'll give FortiAnalyzer an eight or nine.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Reseller
Network & Security Administrator at Diamond Bank Plc
Simple solution that can is good for log collection but it should be more efficient
Pros and Cons
- "It is a simple and solution."
- "I'm looking for something more efficient to analyze different foreign things. That's why FortiSIEM could compete with FortiAnalyzer."
What is our primary use case?
We use the on-prem deployment model of this solution.
My primary use case for this solution is for log collection. I have a lot of FortiGates that I have to collect logs from, so I primarily use it for log collection. We plan to deploy a SIEM and we want to try to see how to integrate all the solutions to our SIEM. We are processing for PCI data specifications. We have to respond to PCI requirements, so that's why we are making some changes and acquiring some new security solutions to deploy. Among them, we have FortiSIEM and other security solutions like antivirus.
What is most valuable?
It is a simple and solution. I can structuralize all my FortiGate logs but it's not so good from the administrative side. I have FortiGate in four countries and I am responsible for securing Fortinet. I also have to manage FortiGate in other countries, not just my own. If I have to go through each FortiGate it's going to be a little bit complicated. FortiAnalyzer is a good product; but, I keep thinking that FortiAnalyzer isn't really what I'm looking for which is why I am looking to acquire a SIEM solution. It will give me more log collection possibilities.
What needs improvement?
I'm looking for something more efficient to analyze different foreign things. That's why FortiSIEM could compete with FortiAnalyzer.
For how long have I used the solution?
I have been using this solution in this company for three months.
How are customer service and technical support?
I haven't had to contact their technical support yet.
How was the initial setup?
The initial setup is not that complex. I didn't do the initial configuration, it was already set up, I'm only managing it right now. If we're talking about the integration side, like how to integrate FortiGate in FortiAnalyzer, I don't think it's complex. That's why they are known as one of the leaders in security.
What other advice do I have?
I would recommend this solution to somebody considering it.
The relevance of this solution will depend on the case. If you are considering this solution I would ask what you really intend to accomplish with it and what model you want. It's going to be based on the data you need to protect and analyze.
If I had to choose between FortiSIEM and FortiAnalyzer for log position it's better to go for SIEM. We all know that we can do a lot more with SIEM than just a log collection. Log collection is included in FortiSIEM; so, why acquire FortiAnalyzer is you can have FortiSIEM?
I would rate FortiAnalyzer a 6.5 out of ten.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Security Manager at Alternative Solutions
Scales well, helpful GUI, and useful automation
Pros and Cons
- "The most valuable features of Fortinet FortiAnalyzer are the GUI and there is automation that can be done with playbooks and mini-books."
- "Fortinet FortiAnalyzer can improve by introducing integration with other Fortinet solutions with automation with one interface would be helpful."
What is our primary use case?
My clients mainly use Fortinet FortiAnalyzer for the log and automation.
This solution can be deployed on-premise and on the cloud.
What is most valuable?
The most valuable features of Fortinet FortiAnalyzer are the GUI and there is automation that can be done with playbooks and mini-books.
What needs improvement?
Fortinet FortiAnalyzer can improve by introducing integration with other Fortinet solutions with automation with one interface would be helpful.
For how long have I used the solution?
I have been using Fortinet FortiAnalyzer for approximately four years.
What do I think about the stability of the solution?
The stability of Fortinet FortiAnalyzer is good.
I rate the stability of Fortinet FortiAnalyzer a ten out of ten.
What do I think about the scalability of the solution?
The solution is scalable.
This solution is suitable for all sized companies.
I rate the scalability of Fortinet FortiAnalyzer a nine out of ten.
How are customer service and support?
My clients had a mixed experience with the support from Fortinet FortiAnalyzer. Some had good experiences and others had poor experiences.
I rate the support of Fortinet FortiAnalyzer a ten out of ten.
How would you rate customer service and support?
Neutral
Which solution did I use previously and why did I switch?
My customers have tried Palo Alto Panorama and we only had positive feedback from Fortinet FortiAnalyzer.
How was the initial setup?
The initial setup of Fortinet FortiAnalyzer is simple.
What's my experience with pricing, setup cost, and licensing?
The price of Fortinet FortiAnalyzer is expensive.
I rate the price of Fortinet FortiAnalyzer a ten out of ten.
What other advice do I have?
I rate Fortinet FortiAnalyzer a ten out of ten.
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
Section Head, Enterprise Solutions & SI Management at HGC Global Communications Limited
Good performance, reliable, but interface could improve
Pros and Cons
- "The most valuable feature of Fortinet FortiAnalyzer is its performance."
- "Fortinet FortiAnalyzer could improve the user interface, and the experience of users receiving the reports and tracking could be better."
What is our primary use case?
We are using Fortinet FortiAnalyzer for the managing surface for our customers. We are a service provider and we are focusing on providing a service to our customers.
What is most valuable?
The most valuable feature of Fortinet FortiAnalyzer is its performance.
What needs improvement?
Fortinet FortiAnalyzer could improve the user interface, and the experience of users receiving the reports and tracking could be better.
For how long have I used the solution?
I have been using Fortinet FortiAnalyzer for approximately three years.
What do I think about the stability of the solution?
Fortinet FortiAnalyzer is stable.
How are customer service and support?
The support from Fortinet FortiAnalyzer is good.
How was the initial setup?
The initial setup of Fortinet FortiAnalyzer is fine. There is a lot of browsing and a lot of hierarchy that you need to have a particularly good understanding of in order to track the right things that you want to select.
What's my experience with pricing, setup cost, and licensing?
There is a license needed to use this solution.
What other advice do I have?
My advice to others is they have to assess well what kind of specific function or what kind of solution they are looking for.
I recommend this solution to others, but it depends on their usage.
I rate Fortinet FortiAnalyzer a seven out of ten.
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
Senior Manager at Technometrics Limited
Stable and scalable solution, but the technical support could be better
Pros and Cons
- "We have the most data visibility."
- "The user interface could be a bit more user-friendly."
What is our primary use case?
We have the most data visibility with this solution.
What needs improvement?
The user interface could be a bit more user-friendly, and they could have more robust support. The support does not respond quickly. They should be able to solve the problems in one or two days, but sometimes it takes time. They constantly ask for logs, and it takes time.
For how long have I used the solution?
We have been using this solution for three years, and we are using the latest version. It is deployed on-premises and cloud. It gets all the logs in a single platform because we have multiple sites.
What do I think about the stability of the solution?
The stability is good. I rate it an eight out of ten.
What do I think about the scalability of the solution?
For cloud, the solution is always scalable. We have about ten customers using Fortinet FortiAnalyzer.
How are customer service and support?
I rate the technical support a five out of ten.
How was the initial setup?
The initial setup was not complex.
What other advice do I have?
I rate this solution a seven out of ten.
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner

Buyer's Guide
Download our free Fortinet FortiAnalyzer Report and get advice and tips from experienced pros
sharing their opinions.
Updated: April 2025
Product Categories
Log ManagementPopular Comparisons
Dynatrace
Splunk Enterprise Security
IBM Security QRadar
Elastic Security
Elastic Observability
Grafana Loki
Security Onion
LogRhythm SIEM
Elastic Stack
syslog-ng
Amazon CloudWatch
Sumo Logic Security
Buyer's Guide
Download our free Fortinet FortiAnalyzer Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- When evaluating Log Management tools and software, what aspect do you think is the most important to look for?
- Datadog vs ELK: which one is good in terms of performance, cost and efficiency?
- Which Windows event log monitoring tool do you recommend?
- What is the difference between log management and SIEM?
- Splunk vs. Elastic Stack
- How can Cloudtrail logs be used effectively to improve log monitoring?
- Why hot data and cold data differences in SIEM solutions are not discussed sufficiently?
- When evaluating Log Management solutions, what aspect do you think is the most important to look for?
- When evaluating Log Management solutions, what aspects do you think are the most important to look for?
- Why are Log Management tools important for companies?