We use Fortinet FortiAuthenticator, mostly where wireless or wired authentication needs to be integrated between multiple identity stores.
Technology Services Director at a computer software company with 11-50 employees
With a very effective support team in place, the solution provides a good stability
Pros and Cons
- "The most valuable feature of the solution is RADIUS service and the social network integration feature."
- "The GUI has some shortcomings and can be made better. The GUI is not great."
What is our primary use case?
What is most valuable?
The most valuable feature of the solution is RADIUS service and the social network integration feature.
What needs improvement?
The GUI has some shortcomings and can be made better. The GUI is not great.
For the next release, the thing that will be most useful is to integrate with other MFA providers.
For how long have I used the solution?
I have been using Fortinet FortiAuthenticator for four years. My company has a partnership with Fortinet. We are also resellers.
Buyer's Guide
Fortinet FortiAuthenticator
December 2024
Learn what your peers think about Fortinet FortiAuthenticator. Get advice and tips from experienced pros sharing their opinions. Updated: December 2024.
823,875 professionals have used our research since 2012.
What do I think about the stability of the solution?
Stability-wise, I rate the solution a nine out of ten. I have only ever known one stability problem.
What do I think about the scalability of the solution?
Scalability-wise, I rate the solution an eight out of ten.
I think that commercially it is not valid for a very small number of users. It doesn't scale down all the way. I think that although it can be scaled up to thousands of users, it wouldn't be suitable for, like, a mobile network scale if you have got 50,000 or 1,00,000 users.
At the entry point, we have more than 100 users.
How are customer service and support?
I have directly contacted the solution's support. They are very helpful. They do require a lot of supporting information, but they are very effective for what they do. I rate the technical support a nine out of ten.
How would you rate customer service and support?
Positive
How was the initial setup?
Regarding setup, I would say that it is straightforward but not simple. It's not a job for the novice, but it is straightforward for an experienced engineer. Also, my clients normally ask for help.
The solution gets deployed on physical, virtual, and SaaS.
What's my experience with pricing, setup cost, and licensing?
On a scale of one to ten, where one is a high price and ten is a low price, I rate the pricing a seven.
Price-wise, it is competitive, but they still charge.
Which other solutions did I evaluate?
For comparing or evaluating Fortinet FortiAuthenticator, the competitors I would normally expect to see would be RSA Security with their SecurID product. Also possibly, I would say that you would compare it against Duo or Okta.
Fortinet FortiAuthenticator is better since it is very much use-case dependent. I think a Fortinet-heavy environment where the customer already has a lot of investment into Fortinet makes it easier since it integrates more closely with their network equipment, like their firewalls. Also, it does not always require an on-premise component to provide services like RADIUS.
What other advice do I have?
People who are looking to implement the product should pay attention to scaling and plan deployment thoroughly before starting, as for many things, once the decision is made, some things are difficult to change.
I rate the overall solution an eight out of ten.
Disclosure: My company has a business relationship with this vendor other than being a customer: Reseller
Network Security Architect at Appzone Group
Provides us with a single point of authentication, instead of having an authenticator on each one of the firewalls
Pros and Cons
- "The first valuable feature is being able to see everything on one platform. This includes logs and authentication failure."
- "The technical support team is bad."
What is our primary use case?
My environment is multi-cloud. I have a production workload in Nigeria. I have some data centers in Continental Europe and in the East US in multiple regions. We operate both on-premises and on two different public clouds: AWS and Azure. At the time, because of how Fortinet worked, we connected to our customers via remote access VPN.
Because of the nature of Amazon Infiniti, it had a very big impact in Africa and on how we implemented our SA as the most effective authentication service for our VPN.
Originally, when people tried to connect, they had to put in their original credentials and send a request back. The issue here started before software tools were being used, and hardware tools had to be used for privacy. We had to have five firewalls and five different token devices. It was very clumsy and not efficient.
We decided to go with FortiAuthenticator because it provides us with a single point of authentication, instead of having an authenticator on each one of the firewalls. Only five to twelve hours are connected on the back and then Citrix will send us an email or a text message. We can then easily and seamlessly use the solution.
What is most valuable?
The first valuable feature is being able to see everything on one platform. This includes logs and authentication failure.
The second valuable feature is that the delivery and delivery methodology is toll-free. This includes email configuration, using the mobile app, and text message delivery. There is no need to buy any extra hardware, it is free.
The third valuable feature is that the chip that is applied is free.
We save a lot of money on consolidating tool teams. We have multiple different tool teams. This solution provides us with a single point of authentication for all of the files in all of the teams' environments.
What needs improvement?
The user interface can be improved.
How are customer service and support?
The technical support team is bad.
How would you rate customer service and support?
Neutral
How was the initial setup?
The cloud deployment felt limited, but there was valuable information on the Internet. A lot of testing needs to be done, and the deployment is easier for those who understand how to do it on the cloud. We needed support here and the support team could not figure out the issue. Eventually, one of the support team members helped, but there was still an information gap.
What's my experience with pricing, setup cost, and licensing?
It is usually cheap. Without a license, you can use some basic features. You can buy a 20-year license and implement the solution once.
What other advice do I have?
I rate the overall solution a nine out of ten, due to support issues.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Buyer's Guide
Fortinet FortiAuthenticator
December 2024
Learn what your peers think about Fortinet FortiAuthenticator. Get advice and tips from experienced pros sharing their opinions. Updated: December 2024.
823,875 professionals have used our research since 2012.
Presales Engineer at a comms service provider with 5,001-10,000 employees
Strengthens security, flexible two-factor authentication options, and integrates well with other solutions
Pros and Cons
- "It reduces the need for network administrator intervention by allowing the user to perform their own registration and resolve their own password problems and issues."
- "I would like to see integration and customization capabilities with the end-user portal to solve authentication issues with diverse implementation scenarios."
What is our primary use case?
We primarily use Fortinet FortiAuthenticator to centralize the management of user identity information in Security Architectures, enforce Role-Based authentication, and allow Two Factor authentication with Softclient support.
This is a must-have technology in Fortinet implementations with several gateways and distributed environments.
It is easy to set up and will reduce Network administrators' efforts to integrate diverse identification methods. Must evaluate Single Sing On Mobility Agents to full integration of users position on the network and complete the solution.
How has it helped my organization?
Using this product strengthens enterprise security. It offers role-based security policies and User Identity Management with different methods.
This product provides automatization. There is a self-service user portal for registry and support for domain and non-domain guest users, with diverse channels vía hardware tokens, software tokens, e-mail, and SMS.
This solution brings user satisfaction. It reduces the need for network administrator intervention by allowing the user to perform their own registration and resolve their own password problems and issues.
What is most valuable?
Key Features and Benefits
- Two-factor/OTP Authentication with FortiToken: Enforce user-based policies. Fortitoken is available in soft and hard versions for flexible usage. Most Valuable in Mobile Phones App for OTP.
- Integration with LDAP and AD: This solution integrates with existing enterprise systems and technologies from diverse vendors of user information management systems.
- LPAD/AD/RADIUS/SYSLOG/KERBEROS/REST API/FSSO and Web Portals: There is flexible integration with these services.
- It is usable in network WAN, wireless, and VPN Scenarios.
- The domain and guest-users support are good.
What needs improvement?
I would like to see integration and customization capabilities with the end-user portal to solve authentication issues with diverse implementation scenarios. Specifically, with web applications, enterprise networks, and VPN.
For how long have I used the solution?
We have been using Fortinet FortiAuthenticator for three years.
What do I think about the stability of the solution?
This is a stable, set-and-forget product. Logical operations run in the Gateways.
What do I think about the scalability of the solution?
FAC 200E/400E will support environments for hundreds of users, based on Physical Appliances. If future needs are in the scope then I suggest implementing virtual deployments.
How are customer service and technical support?
Technical support is not needed in any sense. We have three years running without hardware appliance incidents or major issues.
Which solution did I use previously and why did I switch?
This is the first authentication platform that I have worked with.
How was the initial setup?
The initial setup process will vary from simple to complex and depends on your existing User Identity Systems, integrations, and scale of the network
What about the implementation team?
In-house engineers, properly trained, are responsible for deployment and maintenance.
What was our ROI?
Our ROI was reached in less than a year. This solution is good in terms of financial returns.
What's my experience with pricing, setup cost, and licensing?
FAC is an affordable solution for Middle Range (200E/400E) and also needs a package of mobility agents (2,000) perpetual.
There is nothing to buy in the gateways (FG) and it is fully integrated.
Which other solutions did I evaluate?
As a Fortinet customer, the logical evaluation was FAC from the same vendor.
What other advice do I have?
This is a must-have technology in Fortinet deployments with distributed environments.
Which deployment model are you using for this solution?
On-premises
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Other
Disclosure: My company has a business relationship with this vendor other than being a customer: We implement and support Fortinet Technologies as MSSP.
Director - Global Solutions & Customer Service at Brits & Byte IT Consulting
Cost-effective and users can be securely managed by adopting it
Pros and Cons
- "FortiAuthenticator is a very good solution. It is all jury-based. FortiAuthenticator is very easy for anyone to understand how it works and be able to take action."
- "Other features that would improve the product are a single sign-on where people can use their Gmail ID to log-in, etc."
What is our primary use case?
The basic use we have for FortiAuthenticator is multi-pack authentication.
How has it helped my organization?
FortiAuthenticator has helped a lot of our customers in the way that they do the business when they onboard their clients to the data center. It has drastically changed what they used to do earlier after the installation.
What is most valuable?
It is cost-effective. The users can be securely managed by adopting it.
What needs improvement?
They need to have some kind of write-up and solution document that people can access very easily. All of the Cisco documentation is available on their website and in other places. They should make it available to the public.
The more people know about this product, the better. That will make it easier for them to position FortiAuthenticator to their customers or use the product in production.
Other features that would improve the product are a single sign-on where people can use their Gmail ID to log-in, etc. This feature we wanted and now they are rethinking it. At this stage, I can't give any other suggestions for improvement other than this.
A single sign-on is used to create a user ID and password for the user to get onto the network. You can ask them to use their LinkedIn credentials or maybe Gmail, some of the social networking credentials to gain access.
This is useful when you are onboarding any guest users for internet access. This is something that is a very good feature which they could have integrated already.
For how long have I used the solution?
I have been using the solution a year.
What do I think about the stability of the solution?
It's very stable when compared to other products.
What do I think about the scalability of the solution?
For scalability, you need to size FortiAuthenticator properly. You should plan it initially, then make the implementation.
It's is not 100%, maybe 80% on the scalable side. There are some places where we use it for 800 to 1000 users. With the proper deployment, we can support close to 2000 users.
You need certified people to understand this product like dedicated engineers. You need a person that knows the product and how it works.
Otherwise, if any new person comes to FortiAuthenticator, it will be very difficult for them to understand. Over time, you'll be able to get to know the layout and how the product works.
How are customer service and technical support?
Technical support is quite good, There is something called the 8x5 and 24x7 technical support for the solutions. If you have 24x7, they will respond immediately.
If you have 8x5, and they will respond next business day depending on how soon the TAC engineer picks your request for your deployment or ongoing support issues.
Which solution did I use previously and why did I switch?
We used a different method as a solution, primarily SafeNet, but there are others. It all depends on a customer-to-customer and case-to-case basis. It depends on the budget and what the customer asks for in the contract.
At the end of the day, it all revolves around the money, i.e. how many dollars you pay for the solution.
How was the initial setup?
The initial setup is straightforward. It's not that complex. If you know about the product, you will be able to do the setup.
It takes generally, one to two weeks for the full-fledged deployment. We have a demo unit. We just used that for showcasing the capability of the device to all of our customers.
Once they start using it, they would advise on the deployment.
What was our ROI?
There is an economic investment on this product that compares to other products from Cisco. There is a ROI on this product.
What's my experience with pricing, setup cost, and licensing?
You buy the pack for 100 to 200 users. Once it goes over, you have to renew it on a yearly basis. It may be on a term where you license for one business. Officially, the authentication license has a third-party involved. Then you need to take your action.
I don't see any additional license costs from FortiAuthenticator, but for the add-on features like MS Gateway, etc., you need to buy them.
What other advice do I have?
FortiAuthenticator is a very good solution. It is all jury-based. FortiAuthenticator is very easy for anyone to understand how it works and be able to take action.
I would rate FortiAuthenticator with an eight to nine.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Business Development Manager at a retailer with 1-10 employees
Enhance d and secure access with strong authentication
Pros and Cons
- "The response from Fortinet is very fast."
- "FortiAuthenticator should integrate with other applications."
What is our primary use case?
We are currently using FortiAuthenticator for VPN access.
How has it helped my organization?
For security access, it is good.
What is most valuable?
The Fortinet security area is authenticated; they use it to access that is the main purpose.
What needs improvement?
FortiAuthenticator should integrate with other applications. I currently use Google Authenticator and Office Authenticator, and it would be better if FortiAuthenticator could be added to other applications.
For how long have I used the solution?
As a user, I have been working with FortiAuthenticator for about three years now.
What do I think about the stability of the solution?
The solution is stable, and I would rate it ten out of ten.
How are customer service and support?
The response from Fortinet is very fast. We use them for integration with the Mitel solution, and they are supportive and helpful.
How would you rate customer service and support?
Positive
How was the initial setup?
My colleague did the setup, and I didn't feel that he struggled much. It seemed straightforward and not too difficult.
What's my experience with pricing, setup cost, and licensing?
The pricing is about three on a scale where ten is low. Pricing should be more flexible.
What other advice do I have?
I recommend it to other users who are using FortiGate to go for Fortinet.
I'd rate the solution ten out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Last updated: Oct 8, 2024
Flag as inappropriateArchitect engineer at DGS S.P.A.
A scalable solution that identifies users through a varied range of methods
Pros and Cons
- "The web feature is quite versatile. It serves as the sole server authenticator and is valuable not only with FortiGate products but also within the entire Forti system, making it highly useful for me."
- "The only issue I encounter is that when not using FortiAuthenticator for an extended period, it's typical to encounter some obstacles in the configuration process that you need to address."
What is our primary use case?
In my recent job, I worked in tandem with Fortinet to enable 802.1X authentication for the Wi-Fi environment.
What is most valuable?
The web feature is quite versatile. It serves as the sole server authenticator and is valuable not only with FortiGate products but also within the entire Forti system, making it highly useful for me. However, from my experience, I find the visual data to be less practical. While some features might be more respected than others, it's valuable that, for instance, when a customer has a new lead cluster, I can authenticate or leverage alternative solutions to achieve the desired outcome.
What needs improvement?
The only issue I encounter is that when not using FortiAuthenticator for an extended period, it's typical to encounter some obstacles in the configuration process that you need to address. It's not a consistent problem, and I can't recall all the specifics. This issue is something I face with the entire product. While it's normal for products to require ongoing attention, this can be a challenge when checking the system.
For how long have I used the solution?
I have experience with Fortinet FortiAuthenticator.
What do I think about the stability of the solution?
I recollect instances when customers didn't approach me about their issues, instead opting to submit tickets. From a personal perspective, customer mobility played a role, and sometimes I wasn't fully aware of the problem until later. However, I can't recall many details about these cases.
What do I think about the scalability of the solution?
It's scalable. If the need arises, you can easily set up a cluster with two or more units. Additionally, if you require more licenses or features, you can expand.
How are customer service and support?
It works well for me. I can review the initial check, explain it thoroughly, outline the subsequent steps, and attempt to address the problem. This often involves quickly escalating to technical levels two or three. In situations where I open a general ticket, it's standard to begin with a level one tech who collects information to understand and resolve the issue. The more detailed and accurate the data is, the easier it becomes to find a resolution.
How would you rate customer service and support?
Positive
How was the initial setup?
It is deployed on-premises. One or two days for initial deployment is insufficient. It typically takes a few more days to set up the specific configurations. The standard device configuration is exceptionally fast.
What other advice do I have?
Based on my experience it's been very good. I don't have much knowledge, for instance, about how it compares to Gartner's system and its current position in the market, or whether there are other systems that might have a better position. I've noticed that Fortinet lacks certain features that other solutions have implemented. This leads me to explore and understand other solutions, looking for differences. I've observed that some solutions offer features that Fortinet may excel in, while others may have strengths in different areas. I would rate it an eight out of ten overall.
Disclosure: My company has a business relationship with this vendor other than being a customer: Implementor
System Engineer - Security at a educational organization with 1,001-5,000 employees
Priced high, but reliable and simple implementation
Pros and Cons
- "We have not had issues with Fortinet FortiAuthenticator. It is stable."
- "The price of the solution could improve, it is expensive."
What is our primary use case?
We're using Fortinet FortiAuthenticator to bypass identity to the Fortinet FortiGate. We do not use FortiAuthenticator too much because it is middleware.
How has it helped my organization?
Fortinet FortiAuthenticator has improved our organization because we are able to can create identity-based policies. For example, who are you and where are you. We are shifting from the IP-based to the identity-based.
What needs improvement?
The price of the solution could improve, it is expensive.
For how long have I used the solution?
I have been using Fortinet FortiAuthenticator for approximately five years.
What do I think about the stability of the solution?
We have not had issues with Fortinet FortiAuthenticator. It is stable.
What do I think about the scalability of the solution?
Fortinet FortiAuthenticator is scalable.
We have approximately two people that are using the solution.
Which solution did I use previously and why did I switch?
We needed to use Fortinet FortiAuthenticator because we wanted to use the identity-based policy so that FortiAuthenticator can help us to pass the identity to the Fortinet FortiGate.
How was the initial setup?
The initial setup of Fortinet FortiAuthenticator was straightforward. The implementation process took three to four days with multiple sites.
I rate the initial setup of Fortinet FortiAuthenticator four out of five.
What about the implementation team?
We did the implementation of Fortinet FortiAuthenticator in-house and we have two people for the maintenance.
What's my experience with pricing, setup cost, and licensing?
We typically purchase licenses for five years and when new projects come we reassess the situation and renew or switch solutions.
There are no additional costs to the standard licensing fees.
I rate the price of Fortinet FortiAuthenticator a three out of five.
Which other solutions did I evaluate?
We did not evaluate other solutions before choosing Fortinet FortiAuthenticator.
What other advice do I have?
I rate Fortinet FortiAuthenticator a five out of ten.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Network Infrastructure Engineer at Softrobotics
Easy to configure, high performance, and secure
Pros and Cons
- "The most valuable features of Fortinet FortiAuthenticator are easy to configure, secure, and the application has good performance."
- "It would be helpful to receive a code by yourself for authentication instead of it registered to a phone."
What is our primary use case?
I am using Fortinet FortiAuthenticator for SSL and logins.
What is most valuable?
The most valuable features of Fortinet FortiAuthenticator are easy to configure, secure, and the application has good performance.
What needs improvement?
It would be helpful to receive a code by yourself for authentication instead of it registered to a phone.
For how long have I used the solution?
I have been using Fortinet FortiAuthenticator for approximately two years.
What do I think about the stability of the solution?
I rate the stability of Fortinet FortiAuthenticator a nine out of ten.
What do I think about the scalability of the solution?
Some additional features would be helpful.
Our customers are enterprise-sized companies.
I rate the scalability of Fortinet FortiAuthenticator an eight out of ten.
How are customer service and support?
The support is responsive and the support is in our local language.
I rate the support from Fortinet FortiAuthenticator a nine out of ten.
How would you rate customer service and support?
Positive
How was the initial setup?
The initial setup is simple compared to other solutions.
What's my experience with pricing, setup cost, and licensing?
I price of the solution is expensive.
I rotate the price of Fortinet FortiAuthenticator a seven out of ten.
What other advice do I have?
We have one person for 100 users of the solution.
I rate Fortinet FortiAuthenticator a nine out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
Buyer's Guide
Download our free Fortinet FortiAuthenticator Report and get advice and tips from experienced pros
sharing their opinions.
Updated: December 2024
Product Categories
Single Sign-On (SSO) Authentication Systems Identity Management (IM) Multi-Factor Authentication (MFA)Popular Comparisons
Microsoft Entra ID
Okta Workforce Identity
Ping Identity Platform
OneLogin by One Identity
ManageEngine Password Manager Pro
Microsoft Active Directory
Red Hat Single Sign On
Imprivata OneSign
Thales SafeNet Trusted Access
AWS IAM Identity Center
Buyer's Guide
Download our free Fortinet FortiAuthenticator Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- What are the differences between FortiAuthenticator and FortiNAC?
- When evaluating Single Sign-On, what aspect do you think is the most important to look for?
- CA SiteMinder vs IBM Tivoli Access Manager
- How much time does SSO save?
- Why is SSO needed?
- What single sign-on platform do you recommend?
- Why is Single Sign-On (SSO) important for companies?
- IBM Tivoli Access Manager vs CA SSO
Are you looking for an IdP type SSO login with G-Suite -- docs.fortinet.com
The documentation site docs.fortinet.com has a bunch of info and step-by-step. This would be your "Central Repository" you were asking about.