Integrated RADIUS server with 802.1x functionality and access control. Single Sign On and AD integration. It integrates very tightly with the rest of the Fortinet ecosystem.
Pre-sales, Telecommunications & Security Specialist at a tech services company with 201-500 employees
It integrates very tightly with the rest of the Fortinet ecosystem.
Pros and Cons
- "It integrates very tightly with the rest of the Fortinet ecosystem."
- "A better integration with other vendors."
What is most valuable?
How has it helped my organization?
It integrated with the existing Cisco wireless infrastructure to solidify the way people authenticate onto the network. It permitted having a centralized area to authenticate all users and enabled SSOimplementation.
What needs improvement?
A better integration with other vendors. The device is rich in features but there are a lot of functionalities I have still not experienced with.
For how long have I used the solution?
Two and a half years.
Buyer's Guide
Fortinet FortiAuthenticator
December 2024
Learn what your peers think about Fortinet FortiAuthenticator. Get advice and tips from experienced pros sharing their opinions. Updated: December 2024.
823,875 professionals have used our research since 2012.
What do I think about the stability of the solution?
Overall not really, a few hiccups with the syncing with AD but nothing major.
What do I think about the scalability of the solution?
Not in my experience. The device can scale on a VM with an additional license. And there are boxes that can support thousands of users (which I have still not met).
How are customer service and support?
Very good. In our area we get support both in French and English and the response times are usually pretty decent.
Which solution did I use previously and why did I switch?
We are a Fortinet reseller and integrator so there were no "switches" per say.
How was the initial setup?
The setup process can be tedious.
What's my experience with pricing, setup cost, and licensing?
I would start off with a VM including the base license and scale according to the number of users you need to authenticate.
Which other solutions did I evaluate?
ClearPass by Aruba and ISE by Cisco are the two main competitors in this space. To me ClearPass seams to be the most feature-rich solution for the price and vendor neutral as is FortiAuthenticator.
What other advice do I have?
I strongly recommend someone accompany you in the initial deployment of the product to view all the functionalities that the platform is capable of doing.
Disclosure: My company has a business relationship with this vendor other than being a customer:
Senior Consultant at a tech company with 1,001-5,000 employees
It has its own hardware and software token for two-factor authentication. Some of the settings are difficult to access.
What is most valuable?
One of the most valuable features is the simple FSSO (Fortinet Single Sign-On) configuration that helps to manage user-based security rules.
It is a cool security product. It's easy to use, implement and maintain, but there is room for improvement.
How has it helped my organization?
When we came across access management, we required several technical features to help manage user access to critical systems and remote access. That’s why we always go for a SSO two-factor authentication server. FortiAuthenticator is a bundle of these features. It has its own hardware and software token for two-factor authentication. It supports single sign-on and seamless integration with user-based web filtering, without any prior authentication. It can act as a Radius server to support other systems for Radius authentication. One of the common practices is using FortiAuthenticator with Dot1.X network access control.
What needs improvement?
The GUI is not fancy enough and some of the settings are difficult to access.
Part of the configuration has to be done by CLI, which is not friendly for security administrators.
Integration with other firewalls may not be as good as expected.
For how long have I used the solution?
I have used it for two years, mostly implementation for clients.
What do I think about the stability of the solution?
No stability issues so far, as long as the number of users is not too large.
What do I think about the scalability of the solution?
No issues for scalability: It is easy to add new resources as we deploy virtual machines.
How are customer service and technical support?
FortiCare can provide prompt replies. They have basic knowledge on every single product in the Fortinet family. They have a standard protocol to response to support cases which is great. They are willing to accept RMA for technical difficulties that cannot be solved in a short period of time.
Which solution did I use previously and why did I switch?
I have tried Cisco ISE as a NAC solution. Cisco ISE is the "Terminator" of NAC solutions, which has numerous features to prevent unauthorized access. However, its integration with FortiGate firewall is not great. When I use the SSLVPN service from FortiGate, it fails to authenticate with two-factor authentication. For this, using FortiAnthenticator would be a good choice for its genuine integration.
What about the implementation team?
It is quite straightforward to set up the FortiAuthenticator. We mainly deploy as a virtual machine. An OVF file is provided by Fortinet and you just simply compile the file in the VMware environment. Upon simple configuration, such as IP address and default gateway, you can access the web GUI and do any configuration, as you like.
What's my experience with pricing, setup cost, and licensing?
Licensing is straightforward, as Fortinet provides stackable licenses for FortiAuthenicator. Count the number of users and select sufficient licenses. Pricing is acceptable; much cheaper than Cisco ISE.
Which other solutions did I evaluate?
I have tried Cisco ISE. For state-of-the-art features, I would recommend Cisco ISE because of its brilliant features. But I would recommend FortiAuthenticator, if you are currently using FortiGate firewall and you seek a well-suited, complimentary NAC solution.
What other advice do I have?
The need for a NAC solution depends on your infrastructure. If you are a Fortinet user, FortiAuthenticator would be a nice choice to enhance security on VPN and web access. However, there are many other choices, such as ForeScout, which is vendor-neutral, to support different systems from different vendors.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Buyer's Guide
Fortinet FortiAuthenticator
December 2024
Learn what your peers think about Fortinet FortiAuthenticator. Get advice and tips from experienced pros sharing their opinions. Updated: December 2024.
823,875 professionals have used our research since 2012.
Channel Account Manager at a tech services company with 1,001-5,000 employees
Difficult to configure and deploy, poor support, and has issues with stability
Pros and Cons
- "This is a scalable product."
- "There are multiple areas that are in need of improvement. It is not a mature product."
What is our primary use case?
The primary use case is internal authentication.
What needs improvement?
There are multiple areas that are in need of improvement. It is not a mature product.
It is difficult to successfully configure.
For how long have I used the solution?
I have been using Fortinet FortiAuthenticator for one year.
What do I think about the stability of the solution?
The is not a very stable product.
What do I think about the scalability of the solution?
This is a scalable product. However, due to multiple challenges in the implementation, I will not be expanding its usage. Rather, I will be changing products.
How are customer service and support?
The support team is pathetic and does not properly understand the solution.
Which solution did I use previously and why did I switch?
This was the first of this type of solution that we implemented.
How was the initial setup?
The initial setup is not straightforward. Our deployment took almost two months to complete.
What about the implementation team?
We had a system integrator to assist us with the implementation and deployment. The implementation partner does not have sufficient expertise.
One or two engineers can implement it.
What was our ROI?
We have not seen ROI for this solution.
What's my experience with pricing, setup cost, and licensing?
We pay for licensing on a yearly basis. There are no costs in addition to the standard licensing fees.
Which other solutions did I evaluate?
Due to problems that I've been having with the implementation, after perhaps two years I will be changing to another product.
What other advice do I have?
This is not a product that I would recommend to others. There are different industry standards that require different expertise, and this product does not much help.
I would rate this solution a three out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Information Technology Manager at a tech services company with 51-200 employees
Good security and easy to use with good technical support
Pros and Cons
- "The ease of use is really nice. Using Authenticator, I've been able to actually work better on my authentication due to the fact that I have a single fabric to authenticate control from my firewall and on my access points. Authentication takes place from this area."
- "The solution could be more automated. It should be able to let me automate a lot of things so that what normally is done as a matter of manual processes can be handled quicker. Slow integrations can be taken up/out if there was more automation."
What is most valuable?
The most valuable aspect of the solution is the security. It's great.
The ease of use is really nice. Using Authenticator, I've been able to actually work better on my authentication due to the fact that I have a single fabric to authenticate control from my firewall and on my access points. Authentication takes place from this area.
It's easy to use for us due to the fact that, for each and every user, even a Mac user, we're able to easily retrieve them and add them. The authenticator syncs to my system and brings all the users to me under my firewall.
What needs improvement?
For us, the solution works quite well. I can't think of an area where improvements are needed. I haven't worked with it too extensively yet, so it's hard to gauge what's lacking.
The solution could be more automated. It should be able to let me automate a lot of things so that what normally is done as a matter of manual processes can be handled quicker. Slow integrations can be taken up/out if there was more automation.
For how long have I used the solution?
I've only worked with the solution for five or six months at this point. I haven't worked with it extensively, although I do have an understanding of how it works and what to do, as well as how to configure it.
What do I think about the stability of the solution?
It's a stable product that integrates well with other products (such as FortiNAC). It's reliable. It doesn't give us any problems. We don't have to worry about bugs or glitches of the system crashing.
What do I think about the scalability of the solution?
The solution is scalable. While we have plans to grow it out and integrate it a bit more with other solutions, we're not at that stage yet.
We are a company of about 200 people. The whole organization uses it at this point. All authentication happens through FortiAuthenticator.
How are customer service and technical support?
I'm really happy with the technical support. They are responsive and knowledgable.
Which solution did I use previously and why did I switch?
Before using FortiAuthenticator we were not using anything else. We just were controlling everything from our Fortinet firewall. That was the only equipment which we had at that point in time. Now, we have got FortiAuthenticator.
Going forward we might go for FortiNAC. That might be in the cards for us. However, we're not immediately going to make the switch as it offers access control.
How was the initial setup?
The initial setup wasn't a problem at all. It was handled by certified Fortinet engineers. For that reason, it wasn't complex or difficult.
What about the implementation team?
We had certified Fortinet engineers assist us with the initial implementation. They handled the setup and configurations as well.
What other advice do I have?
We're just end users. We don't have a special relationship with the company.
We're using the latest version of the solution. It might be something around version six.
I would recommend FortiAuthenticator to other organizations.
It is really a good product. Somebody looking for a good security product should go with FortiGate products. New users should explore all the features and see how they can maximize usage.
Overall, I'd rate the solution eight out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Network Security Engineer at Technicom Mali
Helps with SSL two-factor authentication but the graphical interface is outdated
Pros and Cons
- "We use this product for SSL two-factor authentication and FortiToken management."
- "It does the job I paid for, but the graphical interface could be improved."
What is our primary use case?
We use this product for SSL two-factor authentication and FortiToken management.
What needs improvement?
It does the job I paid for, but the graphical interface could be improved. If we take FortiGate or Fortinet, the graphical user interface is better designed. I think they can work on this.
It would be good to remove the FortiAuthenticator or to combine FortiAuthenticator and Fortinet. That would provide a single platform that can manage network access and user management. It doesn't make sense for me to sell FortiAuthenticator to a customer and then sell them Fortinet as well. I think they should just combine them into one solution.
For how long have I used the solution?
We've been using this solution for two years.
What do I think about the stability of the solution?
The solution is stable. I installed it two years ago, but we rarely check the internet for changes. It's really stable. We don't have problems.
What do I think about the scalability of the solution?
I think it's scalable. There are two kinds of appliances: virtual and physical. If you do a good sizing, the physical one can remain with the customer for a long time. The virtual one can be increased as you need. You can pay as you go with them. You purchase a base license and add to it as needed.
I have done an installation at an operator with over 200 users. That is the biggest one I've done.
How are customer service and technical support?
I don't usually have problems with this solution so I rarely test the support features. I cannot evaluate the support team.
How was the initial setup?
It was straightforward to implement and took one day to deploy.
What other advice do I have?
I would rate this solution as seven out of ten. I know there are other solutions that have a more modern graphical interface and provide better user management functionality. We need to tell the customer to get two solutions instead of doing the job with just one. I think I could give eight or nine to another solution, but FortiAuthenticator should be a seven.
Which deployment model are you using for this solution?
On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Assistant Infrastructure Manager at a maritime company with 1,001-5,000 employees
Straightforward installation and useful for network security, resource security, and server security
Pros and Cons
- "The most valuable features are the performance and ease of use."
- "The only way the solution could be improved is if it were cheaper."
What is our primary use case?
FortiAuthenticator can be useful for network security, resource security, and server security. It is a cloud-based solution.
What is most valuable?
The most valuable features are the performance and ease of use.
What needs improvement?
The only way the solution could be improved is if it were cheaper.
For how long have I used the solution?
I have been using Fortinet Fortiauthenticator for five years. We have 200 users in our organization who use FortiAuthenticator.
What do I think about the stability of the solution?
The solution is stable.
What do I think about the scalability of the solution?
Fortinet FortiAuthenticator is scalable.
How are customer service and support?
Technical and customer support is okay.
Which solution did I use previously and why did I switch?
We haven't used a different solution.
How was the initial setup?
Installation was very straightforward and took three days.
What about the implementation team?
We used a team of three people for deployment and maintenance.
What's my experience with pricing, setup cost, and licensing?
The cost of the license could be less expensive. The license is paid on a yearly basis.
What other advice do I have?
I would rate this solution an 8 out of 10. I would recommend Fortinet FortiAuthenticator for those who want to start using it.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Datacenter Engineer at a university with 501-1,000 employees
One-time passwords help to authenticate users so we know the timing of their usage
Pros and Cons
- "The feature I value the most is the one-time passwords because it helps to authenticate users so you know the timing of their usage."
- "I don't have any issues with this solution, but it may need a better, more user-friendly interface or better design of the platform."
What is most valuable?
The feature I value the most is the one-time passwords because it helps to authenticate users so you know the timing of their usage.
What needs improvement?
I don't have any issues with this solution, but it may need a better, more user-friendly interface or better design of the platform.
For how long have I used the solution?
I've been using FortiAuthenticator ( /products/fortiauthenticator-reviews ) for three years now.
What do I think about the stability of the solution?
I have found that the solution is very stable. I am officially conducting at FortiGate and I found that it was so easy to conduct my environment and control my environment with this solution.
What do I think about the scalability of the solution?
We have seven users licensed on this solution. With FortiAuthenticator it is so easy to manage our users and it is scalable to all the users at our university or in our environment.
How are customer service and technical support?
I am really impressed by the technical support because they were very helpful. Once we logged our complaint, we received an answer from them in no time, and they quickly fixed our issue.
How was the initial setup?
The initial setup is very easy.
What other advice do I have?
I will recommend this solution to others who are considering to use it. I give it a ten out of ten rating.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Pre-Sales Engineer at a tech services company with 11-50 employees
Some of the valuable features are user management and captive portal server.
What is most valuable?
- User management with many credential sources: LDAPs, RADIUS, Social login, SAML, tokens, and local
- Captive portal server: Used to configure several portals for each service
- User friendly GUI with many features
- Very powerful
How has it helped my organization?
We are now enjoying social login in public Wi-Fi environments with very easy deployment and a maximum level of security.
What needs improvement?
I would like to see support for more credential authentication protocols.
For how long have I used the solution?
I have used the product for six months.
What do I think about the stability of the solution?
I did not encounter any stability issues.
What do I think about the scalability of the solution?
I did not encounter any scalability issues.
How are customer service and technical support?
I would give technical support a rating of 10/10.
Which solution did I use previously and why did I switch?
We used FreeRADIUS. It had limited authentication protocols (only RADIUS), no GUI, and very complicated management.
How was the initial setup?
We enjoyed an easy deployment. There are many documents with guides and best practices.
What's my experience with pricing, setup cost, and licensing?
This solution comes with a low price for the features, power, and ease of licensing.
Which other solutions did I evaluate?
We looked at FreeRADIUS and Ciso ISE.
What other advice do I have?
This is a perfect solution for authentication services.
Disclosure: My company has a business relationship with this vendor other than being a customer: Distributor of the product.
Buyer's Guide
Download our free Fortinet FortiAuthenticator Report and get advice and tips from experienced pros
sharing their opinions.
Updated: December 2024
Product Categories
Single Sign-On (SSO) Authentication Systems Identity Management (IM) Multi-Factor Authentication (MFA)Popular Comparisons
Microsoft Entra ID
Okta Workforce Identity
Ping Identity Platform
OneLogin by One Identity
ManageEngine Password Manager Pro
Microsoft Active Directory
Red Hat Single Sign On
Imprivata OneSign
Thales SafeNet Trusted Access
AWS IAM Identity Center
Buyer's Guide
Download our free Fortinet FortiAuthenticator Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- What are the differences between FortiAuthenticator and FortiNAC?
- When evaluating Single Sign-On, what aspect do you think is the most important to look for?
- CA SiteMinder vs IBM Tivoli Access Manager
- How much time does SSO save?
- Why is SSO needed?
- What single sign-on platform do you recommend?
- Why is Single Sign-On (SSO) important for companies?
- IBM Tivoli Access Manager vs CA SSO