I use the Fortinet as a perimeter firewall. All of the servers are on this Fortinet firewall. All traffic comes from the perimeters and email accounts and we also use it for this purpose.
Senior Network & Security Engineer at TransIT
Intuitive to use, easy to set up, and simple to set up
Pros and Cons
- "The solution is easy to use."
- "Overall, the integration could be better."
What is our primary use case?
What is most valuable?
The solution is easy to use.
It is a scalable product.
The solution is stable.
Its GUI is very intuitive.
I found the solution very easy to set up.
The IPS's correct application control is perfect.
What needs improvement?
Overall, the integration could be better. The FortiManager is likely not good. I can't use it as it is unstable most of the time. We'd like to have an SD-WAN for a sandbox, for the Fortinet perimeter. We'd like to be able to manage different boxes.
For how long have I used the solution?
I've been using the solution for two years.
Buyer's Guide
Fortinet FortiGate IPS
December 2024
Learn what your peers think about Fortinet FortiGate IPS. Get advice and tips from experienced pros sharing their opinions. Updated: December 2024.
824,067 professionals have used our research since 2012.
What do I think about the stability of the solution?
The stability is great. There are no issues with crashing or freezing. There are no bugs or glitches.
What do I think about the scalability of the solution?
The product is scalable and easy to expand.
We have ten users on the solution. It is mostly the network team that deals with the product for the most part. We have 200 or so end-users as well that indirectly use it regularly.
We do plan to increase usage and would like to upgrade to a Fortinet perimeter firewall (a 501 model), however, on the financial side, it's difficult right now.
How are customer service and support?
Technical support is great. I called them twice in the last month and they were very helpful and responsive.
Which solution did I use previously and why did I switch?
We also have experience with Palo Alto products.
We had ASAs and other legacy firewalls that we used in the past.
How was the initial setup?
The product is very straightforward and simple to set up. It's not a complex process at all.
We have around 10 engineers that handle the operation, maintenance, and follow-up.
What about the implementation team?
We used partners as the integrator to facilitate anything with the vendor. It didn't take long and we were able to have different timelines for different deployment areas.
What was our ROI?
I have not witnessed an ROI.
What's my experience with pricing, setup cost, and licensing?
The cost of the product is reasonable. It's not overly expensive.
We pay a yearly license that renews every three years.
It's been two years since we set up the license. I can't recall how much we agreed to pay.
Which other solutions did I evaluate?
We looked at Fortinet and Palo Alto. Fortinet is well known in the industry, which is why we focused on it. It was reasonably priced and offered good efficiency.
What other advice do I have?
I'd rate the solution an eight out of ten. We're pretty happy with the product in general.
Which deployment model are you using for this solution?
On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Sr Technician at a computer software company with 501-1,000 employees
Practically perfect in every way with superior marks for the VPN services
Pros and Cons
- "The initial setup is straightforward."
- "We have not had to reach out to FortiGate support yet and that is a pretty good track record."
- "The VPN used with the product is secure and reliable without lag."
- "Integration with the antivirus companion Webroot is not seamless on Mac computers."
What is our primary use case?
We just use it for intrusion detection and prevention.
What is most valuable?
I think that the VPN software used through FortiGate is what our clients appreciate the most. They get secure reliable connections without lag.
What needs improvement?
I have been pretty satisfied with the application as it is. I am pleased with the layout and how everything is integrated. Sometimes we will have a client who has a firewall that is not FortiGate, and often times we are able to convince them to switch over to using FortiGate as their solution because of our recommendations.
On a little different subject, the software for antivirus that we usually use with FortiGate is called Webroot. I know that some of our Apple / Mac clients experience some issues with the integration of that product. The integration, in that case, is not seamless. That is an issue that could be addressed.
For how long have I used the solution?
We have been using Fortinet FortiGate IPS (Intrusion Prevention Service) since February of 2020. So that is about seven or eight months.
What do I think about the stability of the solution?
The FortiGate product is very stable.
What do I think about the scalability of the solution?
We have not scaled the use of the product much during the time that we have used it. Because we have small business clients and we usually are involved in offering other lower-end firewalls, I am not familiar with scaling FortiGate up because our clients are generally not poised for short-term growth. Our clientele is always 500 or fewer employees and so it is a pretty straightforward implementation and common, smaller user group size.
How are customer service and technical support?
I have not had to reach out to technical support. That is actually one of the reasons why I think we are pretty satisfied with the software and hardware: we have not had to reach out. I am the senior technician here and if I have not had to reach out to FortiGate support yet, that is a pretty good track record.
How was the initial setup?
The initial setup is straightforward. Just click a button and it is there in a short amount of time. Nothing complicated about the setup.
What's my experience with pricing, setup cost, and licensing?
The pricing for FortiGate IPS is competitive with other products in the category.
What other advice do I have?
On a scale from one to ten (where one is the worst and ten is the best), I would rate FortiGate IPS as a ten-out-of-ten. It is just that good.
Which deployment model are you using for this solution?
Public Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
Buyer's Guide
Fortinet FortiGate IPS
December 2024
Learn what your peers think about Fortinet FortiGate IPS. Get advice and tips from experienced pros sharing their opinions. Updated: December 2024.
824,067 professionals have used our research since 2012.
Network administrator at PISystems
Provides efficient features for malware analysis, but its pricing needs improvement
Pros and Cons
- "The product has an inbuilt IPS software. We can configure it to block specific anonymous attacks that are happening."
- "They should provide us with a CSV number for patch updates. It will help us block specific signatures as well."
What is our primary use case?
We use the FortiGate IPS solution to analyze malware. When we receive attacks, we analyze the IPs.
What is most valuable?
The product has an inbuilt IPS software. We can configure it to block specific anonymous attacks that are happening.
What needs improvement?
They should provide us with a CSV number for patch updates. It will help us block specific signatures as well.
For how long have I used the solution?
I have been using Fortinet FortiGate IPS for four years. We are using the latest version.
What do I think about the stability of the solution?
The product is stable, but we need to monitor IPs as new patches are released daily. Attackers will use these new patches to develop new attack methods and signatures. We need to ensure that our FortiGate IPS is up-to-date with the latest patches. We can get the logs and see if anything we have detected is suspicious. It includes programs, applications, files, or anything else. We investigate suspicious activity and act appropriately, such as blocking IP addresses or updating policy analytics.
What do I think about the scalability of the solution?
The product is scalable. I sometimes have enterprise clients, but my client base is mostly small businesses. We have to implement the entire setup for them. In addition to the endpoint solution and firewall, we need to create IP addresses for users and define their services. Then, we can protect these resources from FortiGate by enabling the IPS upgrade.
How are customer service and support?
There is a customer support portal number. We can create a case there and upload our details. They provide support services instantly.
How would you rate customer service and support?
Neutral
How was the initial setup?
The initial setup is easy. The default CSV is already updated so that we can block those threats. We have to update the block list from the policy settings.
What's my experience with pricing, setup cost, and licensing?
The product is expensive. I rate its pricing a six out of ten.
What other advice do I have?
Enterprises use Fortinet FortiGate IPS because it protects government or critical infrastructure networks. For small businesses, IPS may be sufficient. Overall, I rate it a six out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: partner
Chief Information Officer and Senior Vice President at Eureka Forbes Ltd
Effective logging method, easy to understand, implement, and maintain.
Pros and Cons
- "It's simple to operate and use."
- "The most important feature to have is zero trust, which is lacking in Fortinet FortiGate IPS."
What is our primary use case?
Fortinet FortiGate IPS utilizes the main firewalls.
What is most valuable?
Fortinet FortiGate IPS is a very good firewall. We don't have any complaints, it is doing its job correctly.
The functionality is good.
It's simple to operate and use.
There are various firewalls on the market, but we found Fortinet to be the most appropriate for the structures we have in place for our company. It is simple to comprehend, run, and maintain. The logging method is effective; it provides us with a clear picture of how threats are deflected or avoided.
What needs improvement?
When everything is taken into account, the migration is quite painless. I believe that improvements will continue to come from the fact that as threat vectors get more complex around the world, advanced threat protection and deep packet inspection will become increasingly vital. That is where technology needs to advance much more quickly.
The most important feature to have is zero trust, which is lacking in Fortinet FortiGate IPS.
Zero trust is something that has to be embedded and I would still like to see how Fortinet approaches it.
For how long have I used the solution?
I have been working with Fortinet FortiGate IPS for a couple of years.
This solution is updated on a regular basis.
What do I think about the stability of the solution?
The Fortinet FortiGate IPS is an extremely stable product.
What do I think about the scalability of the solution?
I can't speak to scalability because we are getting started with virtual machine-based firewalls. We are transitioning to FortiGate VM.
In our organization, we have 3,000 users.
How are customer service and support?
The technical support is good. They are made up of experienced professionals.
How was the initial setup?
The initial setup is very straightforward.
This solution is maintained by one person. We are using AMC services, which includes multiple people, but we have only chosen one.
What about the implementation team?
During the deployment phase, we always utilize the assistance of an integrator. Working with them was a good experience for us.
What's my experience with pricing, setup cost, and licensing?
The licensing costs are very competitive.
There are no fees in addition to the licensing costs.
Which other solutions did I evaluate?
When evaluating the solution, we wanted to make sure that it was simple to use, operate, and simple to maintain.
We have done a lot of research because we're bringing in the cloud version. We considered other vendors, but because we already had an on-premises Fortinet with a robust backend monitoring system, we decided that extending Fortinet into the Cloud was the best solution.
Gaining a good understanding of the simplicity of cloud migration will take about two months. It's not so much the implementation as it is the services that support it.
Before proposing a solution, it was critical that they have a progressive awareness of what we have and that they comprehend our requirements.
Because Fortinet was involved, we were reassured that they were acting in our best interests.
We also utilize the VPN with Fortinet, but we intend to go to zero trust in the future, eliminating the need for this dependency.
What other advice do I have?
We are expanding our Fortinet for our cloud security. The VM will be implemented in our public cloud, which is where we operate.
I wouldn't say it's specific to FortiGate; it applies to all firewalls. You should consider the simplicity of the task at hand, as well as the convenience of deployment, maintenance, and, most crucially, the availability of qualified personnel to carry it out. These are the reasons we chose Fortinet.
I would rate Fortinet FortiGate IPS an eight out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
IT Security Manager at a tech services company with 10,001+ employees
Easy to use, beneficial security reports, and useful blocking
Pros and Cons
- "Fortinet FortiGate's most valuable features are the UTM package which provides internet blocking restrictions and load balancing. Additionally, the solution is easy to use and the security reporting is good. The security fabric which they have launched Fortinet FortiGate IPS, it's very good in terms of giving details."
- "Fortinet FortiGate can improve performance. There was a huge challenge in terms of CPU and memory where the IPS engine would keep triggering. There were random spikes of overutilization in the CPU and memory resources. They have to work on CPU and memory stability considering these IPS engines. A few versions were very unstable."
What is our primary use case?
Fortinet FortiGate is used as an inline intrusion prevention tool to detect and scan ongoing connections and data. It will take action, either by blocking or intimating in real-time.
What is most valuable?
Fortinet FortiGate's most valuable features are the UTM package which provides internet blocking restrictions and load balancing. Additionally, the solution is easy to use and the security reporting is good. The security fabric which they have launched Fortinet FortiGate IPS, it's very good in terms of giving details.
What needs improvement?
Fortinet FortiGate can improve performance. There was a huge challenge in terms of CPU and memory where the IPS engine would keep triggering. There were random spikes of overutilization in the CPU and memory resources. They have to work on CPU and memory stability considering these IPS engines. A few versions were very unstable.
The current Fortinet FortiGate IPS package has only standard options. If they could work around optimizing those packages for different needs it would be better. There might be a media company, or banking organization, which needs a different set of signatures and different bundles on priority. If they could segregate that in terms of organization and needs, or at least institutional-wise segregation, that could be great.
For how long have I used the solution?
I have used Fortinet FortiGate within the past 12 months.
What do I think about the stability of the solution?
Fortinet FortiGate could improve the stability, we used different versions and they were unstable over time which caused an overall device error.
What do I think about the scalability of the solution?
The scalability of Fortinet FortiGate is a challenge. However, the cloud version is easy.
How are customer service and support?
I have had to use the support a number of times when we had overutilization of resources.
I rate the support from Fortinet FortiGate a six out of ten.
How would you rate customer service and support?
Neutral
How was the initial setup?
The initial setup of Fortinet FortiGate was easy. This is a common feature across Fortinet devices.
What's my experience with pricing, setup cost, and licensing?
There is a license required to use Fortinet FortiGate with all the features. It has to be updated with the threats on an ongoing basis for the signatures to prevent threats and a license is needed to receive those security updates.
The price of the solution is worth it for the features.
What other advice do I have?
My advice to others would be to have Fortinet FortiGate optimized. It is a good tool to be switched on and used in a live production environment. It is important to optimize rather than directly use the pro package, the full IPS package provided by the vendor.
Fine-tuning the solution according to the organization's needs will help in optimizing the utilization of CPU and memory because the whole bundle has too many features which might not be needed for the organization. Enabling the solutions and running it on the first default mode and then optimizing it using the customized package, would help a lot in stabilizing the device.
I rate Fortinet FortiGate an eight out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
Network Engineer at Masterfox
A tool with an easy initial setup phase
Pros and Cons
- "My company never had any complaints about the tool in terms of performance or stability."
- "The tool is expensive for small businesses, making it an area where the tool can improve the product by making it available at a cheaper rate."
What is our primary use case?
Our company's technical team handles the reselling part of the tool. I haven't heard of any problems related to the product.
My company's clients use the solution. The tool is not majorly used to monitor the network traffic or intrusion, so it is purely for protecting the network.
What needs improvement?
The tool is expensive for small businesses, making it an area where the tool can improve the product by making it available at a cheaper rate.
For how long have I used the solution?
I have experience with Fortinet FortiGate IPS. My company operates as a reseller. Sometimes, we purchase products to help our company's clients who need to renew the licenses of certain solutions.
What do I think about the stability of the solution?
My company never had any complaints about the tool in terms of performance or stability.
What do I think about the scalability of the solution?
My company's clients are usually small businesses, so they don't spend too much time on security and protection, meaning they use the tool to meet their bare minimum needs.
How are customer service and support?
Though I have never contacted the solution's technical support, I feel that the tool offers good support since I have never heard any complaints about the product's technical team from my company's team members.
I rate the technical support an eight out of ten.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
I think that my company has been using Fortinet FortiGate IPS for at least four to five years. My company has not been using the rest of the products in the market, so it is not possible for me to compare Fortinet FortiGate IPS with other solutions. So far, my company has been happy with Fortinet FortiGate IPS.
How was the initial setup?
The product's initial setup phase was pretty easy because my company is familiar with the product.
The solution is deployed on an on-premises model.
The solution can be deployed in an hour.
What's my experience with pricing, setup cost, and licensing?
The tool is a bit pricey for small businesses, but it is still bearable in terms of cost.
What other advice do I have?
Fortinet FortiGate IPS is used alone, so there is no need for any integrations.
The tool is not majorly used to monitor traffic or intrusions, so it doesn't provide much visibility in such areas. I am not sure whether Fortinet FortiGate IPS can be used easily for monitoring, considering that our company has many firewall tools over different networks. I am not sure whether it is possible to use the tool to log in or sign in individually.
I rate the overall tool an eight out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: reseller
CTO at itecks
It can prevent and log malicious intrusions, tries, and attempts
Pros and Cons
- "It does not require a lot of maintenance."
- "The prevention mechanisms and implementation are not easy."
What is our primary use case?
We have to use Fortinet for the data center. We filter all the entries and all the requests towards servers in the data center, so we've set up Fortinet to receive all the requests and check them before sending them to the servers.
What is most valuable?
The fact that Fortinet FortiGate IPS can prevent and log malicious intrusions, tries, and attempts is great. We can replace them and check the logs to see what happened.
What needs improvement?
The speed of the detection could be improved. The prevention mechanisms and implementation are not easy and could be better. In addition, filtering and IDS could be added.
For how long have I used the solution?
We have used this solution at my organization for over ten years. The biggest version we have is the 500E. But we have 60E and a lot of mid-range SMB firewalls, including DC ones using 500E. It is deployed on-premises.
What do I think about the stability of the solution?
We have no issues with stability.
What do I think about the scalability of the solution?
It is scalable.
How are customer service and support?
We escalated a lot of technical issues during the deployment. I rate the technical support a seven out of ten.
How would you rate customer service and support?
Neutral
How was the initial setup?
We completed the deployment by ourselves, and it took a lot of time to deal with the main data centres. The deployment took us more than nine months. We have 100 people using Fortinet FortiGate IPS in our organization, and our clients have more than 5000 users. It does not require a lot of maintenance.
Which other solutions did I evaluate?
We went with Fortinet FortiGate IPS because they're the best according to Gartner.
What other advice do I have?
I rate this solution an eight out of ten. Regarding advice, prepare and ensure that the Fortinet product you choose is suitable for your situation and use case.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
IT Coordinator at Plasser do Brasil
Great detection and anomaly hunting with a quick response
Pros and Cons
- "The detection is great."
- "The solution could maybe use more integration with artificial intelligence to be more proactive."
What is our primary use case?
The solution is helping us with the base key match work operations center. They are monitoring our match work 24/7.
What is most valuable?
Overall, it's a great solution.
The detection is great. The possibility to detect any anomaly under our match work is great. We have a quick response.
What needs improvement?
We'd like more integration with the analyzer so we can track down any problem and have a correlation to try to find the root cause.
The solution could maybe use more integration with artificial intelligence to be more proactive.
For how long have I used the solution?
I've used the solution for eight months or so.
What do I think about the scalability of the solution?
We have about 100 users on the solution right now.
Which solution did I use previously and why did I switch?
I'm just using Fortinet right now.
What's my experience with pricing, setup cost, and licensing?
We pay monthly for licensing. You just need to pay standard costs and do not need to pay extra fees.
What other advice do I have?
I'm using the Fortigate 60f.
We're a partner.
I'd rate the solution nine out of ten. We are quite happy with its capabilities.
Disclosure: My company has a business relationship with this vendor other than being a customer: partner
Buyer's Guide
Download our free Fortinet FortiGate IPS Report and get advice and tips from experienced pros
sharing their opinions.
Updated: December 2024
Product Categories
Intrusion Detection and Prevention Software (IDPS)Popular Comparisons
Darktrace
Vectra AI
KerioControl
Palo Alto Networks Advanced Threat Prevention
Splunk User Behavior Analytics
Trend Micro Deep Discovery
Trend Micro TippingPoint Threat Protection System
Check Point IPS
Palo Alto Networks URL Filtering with PAN-DB
Cisco Secure IPS (NGIPS)
Cisco Sourcefire SNORT
Trellix Intrusion Prevention System
ExtraHop Reveal(x) 360
Fortra's Tripwire Enterprise
Buyer's Guide
Download our free Fortinet FortiGate IPS Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- What are the threats associated with using ‘bogus’ cybersecurity tools?
- When evaluating Intrusion Detection, what aspect do you think is the most important to look for?
- What is your recommended cost-effective solution to detect and prevent APT attacks?
- What product do you recommend for a Campus IPS appliance implementation?
- How do you use the MITRE ATT&CK framework for improving enterprise security?
- What are the pros and cons of Darktrace vs CrowdStrike Falcon vs alternative EPP solutions?
- Which alternative solutions (other than Darktrace) do you recommend for an SMB?
- Which is the best intrusion detection and prevention solution?
- What is the best IDPS security tool and why?
- What is Cognitive Cybersecurity and what is it used for?