We primarily sell FortiGate to clients. We have customers such as pharmaceutical companies and hospitals that require the security on offer. It is a great firewall.
Manager Technical Support at Rubik Infotech Pvt. Ltd
Easy to set up and configure with good technical support
Pros and Cons
- "It's very easy to configure."
- "It would be ideal if they had some sort of GUI interface for troubleshooting and diagnostics."
What is our primary use case?
What is most valuable?
With many companies dealing with users now working from home, definitely a great feature is the SSL VPN. With that, a user can control everything from their own devices and get connected to the servers even if they are off-site.
The initial setup is easy. It's not overly difficult.
The solution offers very good security.
It's a good firewall. It's very easy to configure.
What needs improvement?
We require troubleshooting and those kinds of things. We have to worry about debugging. It would be ideal if they had some sort of GUI interface for troubleshooting and diagnostics. That would be much better. FortiGate has only CLI-based diagnostic capabilities. Sometimes it's become very difficult to do all this troubleshooting.
For how long have I used the solution?
We've been handling security solutions lie FortiGate for ten to 15 years at this point. It's been a while.
Buyer's Guide
Fortinet FortiGate
December 2024
Learn what your peers think about Fortinet FortiGate. Get advice and tips from experienced pros sharing their opinions. Updated: December 2024.
824,067 professionals have used our research since 2012.
What do I think about the stability of the solution?
There are some bugs you have to deal with. There's some troubleshooting that needs to be done.
What do I think about the scalability of the solution?
The solution isn't scalable per se as it is hardware. However, you can always buy more hardware to expand it if you need to.
How are customer service and support?
Technical support is good. You get very good support from this product overall. We're quite satisfied with their level of service.
How was the initial setup?
The implementation process is not complex. It's an easy solution. It's not complex setting everything up.
What other advice do I have?
We are resellers of security products.
New users should be aware that this solution offers very good security. The different level of security we have in Fortinet, in general, is good. They can use various security products to help protect their organizations.
I'd rate the solution at a nine out of ten.
Disclosure: My company has a business relationship with this vendor other than being a customer: Implementer
Security Engineer at Hitachi Systems, Ltd.
Secure, performs well and easy to manage
Pros and Cons
- "The management console is pretty simple, so anyone who understands networking can initially deploy the solution."
- "Currently, FortiGate is providing SSL VPN. But they're missing some features that are available in Palo Alto's SSL VPN."
What is our primary use case?
Most organizations use the Fortinet firewall as perimeter security at the gateway level.
How has it helped my organization?
FortiGate has threat protection, antivirus, and even SSL encryption and decryption. So FortiGate is primarily used for security purposes. And a few customers also use this firewall for web filtering and application control. So these are the two features for which people use FortiGate.
What is most valuable?
FortiGate is primarily a gateway, but customers also use web filter threat protection and application control. And some people use it as a special VPN for remote access. I recently deployed one virtual firewall where they're only using the FortiGate firewall for VPN. I can't say one feature is the most valuable because it's a bundle solution. So no one uses FortiGate for just one single feature.
What needs improvement?
Currently, FortiGate is providing SSL VPN. But they're missing some features that are available in Palo Alto's SSL VPN. Palo Alto provides a compliance check along with the VPN, and they have a very broad checklist. So Palo Alto's global protection can scan and check multiple things, and we can choose what access users can have based on compliance with policies. So I think this is one area where FortiGate can improve. Also, multi-factor authentication isn't native to FortiGate. If you want to incorporate multi-factor authentication, you have to add a secondary or third-party solution.
For how long have I used the solution?
I've been using FortiGate for around five years.
What do I think about the stability of the solution?
Before version 6.0, FortiGate's firewall performed well enough, but lately, they've introduced so many features. After that, its stability has been somewhat lacking. This is because they're constantly updating their firmware. So it was pretty stable, but nowadays, it's not that stable.
What do I think about the scalability of the solution?
I haven't worked on the scalability side because most of the time, the pre-sales tools are relatively bigger devices. So right now, I haven't faced any issues with scalability. They have some larger devices for the data center. So if we talk about their hardware, I think they're capable of handling around 10,000 to 15,000 people on a single device. But if you go with the virtual environment, I don't think there is a problem. Fortinet has a single OS that we can deploy on whatever hardware capacity we want to configure over there or through virtualization.
How are customer service and support?
Fortinet support is good. They resolve tickets relatively fast. So we've had no issues with that. And I don't know about other regions, but in my region, the salespeople working with Fortinet are strong. They're aggressively working on the sales part. So in the Pune region and the rest of Maharashtra, they're winning more contracts, and people are using FortiGate Firewall.
How was the initial setup?
The management console is pretty simple, so anyone who understands networking can initially deploy the solution. But you need some good hands-on experience for advanced configuration. The amount of time required to deploy depends upon the project and also the organization. So it takes around four to five days to deploy a smaller device. And for the largest device, it takes around a maximum of two months. We do the deployment on our own. So we have a sales team, a pre-sales team, and a deployment team. Our sales team gets this and handles the sales end. After that, we come into the picture. So we do the whole migration, as well as the new implementation and everything. It should take no more than two people to deploy. If we want to migrate from one Fortinet device to another, then we use the command line. They have some script in their firmware, and we can migrate the script directly from the older firewall to the new one. So it isn't too complex.
What's my experience with pricing, setup cost, and licensing?
I'm somewhat aware of the pricing, but most of the time, the pre-sales staff only defines their requirements. And we get the licenses at the time of implementation, then register and activate them. But I think Fortinet has multiple packages. They sell licenses for a period of one, three, or five years. They also have special add-on licenses for various things. So, for example, if you want to get a security rating for the firmware configuration and everything, you need to purchase an additional security license. And if you want to do some IoT-related security, you also need to purchase separate licenses.
What other advice do I have?
I rate FortiGate eight out of 10 based on the performance, stability, performance, management, rights, and features. So most people lack SSL encryption and the certificate part. Those servers are running behind the FortiGate firewall. And most of the people I've seen are not using SSL encryption over there. And even for internet purposes, they're not using deep scanning. So my suggestion to people thinking about using FortiGate is to prepare a plan before implementation and implement those things in inbound inspection and outbound inspection. This is recommended. And also, if you have multiple band links, then you must use SD-WAN. They have SD-WAN options in the FortiGate firewall. It's a pretty good feature. So you can use that to improve your stability and performance.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Buyer's Guide
Fortinet FortiGate
December 2024
Learn what your peers think about Fortinet FortiGate. Get advice and tips from experienced pros sharing their opinions. Updated: December 2024.
824,067 professionals have used our research since 2012.
Manager systems at HOCL
Offers good threat protection and stability
Pros and Cons
- "Fortinet FortiGate is scalable for our users. Right now, we have almost 70 users. We do not have any plan to increase our usage of FortiGate. For maintaining the firewall solution, one staff member is enough."
- "One issue that I have had is that sometimes I need to monitor the traffic, so I need to filter it according to the user and which user is using it the most. I experience a bottleneck most of the time, particularly at the peak time when the number of contracts and users are at maximum."
What is our primary use case?
We use Fortinet FortiGate as a firewall. On some particular days, when our network traffic is very busy, we use a separate debit line. We need additional monitoring to know whether our production was cut by peak rates or not.
How has it helped my organization?
It satisfies all of our requirements.
What is most valuable?
The most valuable feature is the threat protection. With many users, I've found an issue where sometimes I need to monitor the traffic that I need to filter.
What needs improvement?
We have many users currently with this solution. One issue that I have had is that sometimes I need to monitor the traffic, so I need to filter it according to the user and which user is using it the most. I experience a bottleneck most of the time, particularly at peak time when the number of contracts and users are at maximum. We feel a kind of bottleneck.
When I first entered the log section, I could not find any results. I did not find any proof, i.e. reporting and analytics on the speed and network availability were not optimized. I could not find any such log from the server, maybe Fortinet could improve this service.
For how long have I used the solution?
Less than one year.
What do I think about the stability of the solution?
Fortinet FortiGate is stable.
What do I think about the scalability of the solution?
Fortinet FortiGate is scalable for our users. Right now, we have almost 70 users. We do not have any plan to increase our usage of FortiGate. For maintaining the firewall solution, one staff member is enough.
How are customer service and technical support?
We are very well satisfied with the Fortinet technical support.
Which solution did I use previously and why did I switch?
We had been using another solution for approximately ten years. The product was not up to date, so we were not getting any support for it.
How was the initial setup?
The initial setup is straightforward. The total amount of deployment time required depends upon the number of users. Fortinet FortiGate automatically corrects any mistakes you make in the installation process.
What other advice do I have?
I cannot find anything lacking in Fortinet FortiGate. I would rate it a nine out of ten. We advise other users to go for Fortinet.
There is a back-up service that needs to be included with the firewall support.
I have the requirement to filter what information goes to the user to see which user require the most bandwidth and other resources. When there is a disconnection, that should be shown somewhere in the reports.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Security Analyst at a tech services company with 10,001+ employees
The UTM (application control) features have solved many issues that other firewall providers cannot, such as Google suite blocking and allowing.
What is most valuable?
The UTM (application control) features have been very important, because they have solved many issues that other firewall providers have not developed as Fortinet has.
A clear example of this feature advantages is blocking and allowing the Google suite. For example, without UTM, we would not have been able to execute some customer requirements like this one:
A customer asked us that some host on their LAN is going to be assigned to be a POS workstation. They needed that workstation to have permissions to some applications and some URLs, and they needed to block users from opening sites like YouTube, Google+, and Google Drive, but they needed to get in to some POS URLs hosted in the Google cloud. We were working with rules allowing some specified URLs, but it didn’t work because the subnetting IP address the customer needed to be allowed, sometimes matched the YouTube service. Google support engineers told us they rotate their IP addressing subnets to be more secure and they do not always attach an IP address to a domain name. So, sometimes the customer’s workstations were able to open YouTube sites too.
The way we could block YouTube and allow the customer POS URLs sites, was by configuring an application control sensor, where we were able to block some categories like this:
Another requirement was to allow some specified applications, so we configured the next sensor structure:
Another customer reported to us they had issues working with Gmail attachment files; they could not do it. Executing some packet captures and with the Fortinet TAC help, we found they were using the latest Chrome versions that use the QUIC Google protocol, which is not supported by Fortinet because it is not a valid protocol. We proceeded to block the QUIC protocol using an application control sensor.
After this blocking action, the customer was able to work without any issue.
How has it helped my organization?
It can block applications in level 7.
Even though other companies have latest-generation firewalls, FortiGate’s database is bigger.
What needs improvement?
They could improve performance with all the UTM features working.
Sometimes, we have seen that when you enable the antivirus sensor, customers report slow web browsing. We know this is normal, but we would like to know if it is possible to make feel the customer their web browsing is fast with not as much delay. The antivirus sensor analyzes all the protocols and packets we specified, and this is an important performance affectation. In my personal point of view, I don’t think it is a serious issue, but we receive many reports from users who browse the web with antivirus sensors applied to their firewall policies.
For how long have I used the solution?
I have been using it for seven years.
It is working in route mode, with all UTM licences active; it has FSSO configured to give permission to the users. It is configured to provide VPN SSL service.
What do I think about the stability of the solution?
I have encountered stability issues only when we enable all the UTM features.
What do I think about the scalability of the solution?
I have not encountered any scalability issues.
How are customer service and technical support?
Technical support is 9/10.
Which solution did I use previously and why did I switch?
We have been using FortiGate solutions for eight years. We have been upgrading when solutions in the family become unsupported.
How was the initial setup?
The initial setup is easy; no issues with doing it.
Which other solutions did I evaluate?
My company did not evaluate other options. They decided to purchase FortiGate directly.
What other advice do I have?
Work a lot with all of the UTM features because they can be very helpful right now with configuring firewall policies. The policies became very whole.
Disclosure: My company has a business relationship with this vendor other than being a customer: My company is a Fortinet provider for Mexico.
Professional Services Manager at Insight Technology
Unique and very efficient product for a security firewall
Pros and Cons
- "From the firewall perspective, the rules and policies are very sufficient and easy to use."
- "The solution is very expensive."
What is our primary use case?
The major function of this solution is traffic shaping for end-users. You can use a specific appendix for the specific manager.
We are using the latest version of the solution: 100D.
The solution is deployed on-premises.
What is most valuable?
From the firewall perspective, the rules and policies are very sufficient and easy to use.
What needs improvement?
The solution is very expensive.
What do I think about the stability of the solution?
It's very stable.
What do I think about the scalability of the solution?
It is scalable.
How are customer service and support?
The support is very good. They respond on time and are professional. From a technical perspective, they're good.
How was the initial setup?
It's easy to set up.
For maintenance, if you want to add a mesh configuration, you can restore your configuration from the backup.
What's my experience with pricing, setup cost, and licensing?
Most people prefer the functions and capabilities in FortiGate, but compared to other solutions, it's expensive.
The price depends on the size of the company. From the beginning, you just want to know the internet bandwidths, speed, and the number of users to be able to offer the right product and model. They have a lot of products in FortiGate according to the size of the company, like 200D and 300D.
What other advice do I have?
I would rate this solution 10 out of 10.
It's a very unique and efficient product for a security firewall. The only comment I have is that the price is expensive for small companies or startup companies.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
Works at a non-profit with 51-200 employees
Good support, simple to manage, and comes with lots of functionalities
Pros and Cons
- "It is simple to manage, and there are a lot of functionalities in the same box."
- "We would like to have the ability to disable some of the security functionalities."
What is our primary use case?
It is mainly for the SD-WAN network.
What is most valuable?
It is simple to manage, and there are a lot of functionalities in the same box.
What needs improvement?
At the moment, we are having some problems with IP multicast.
We would like to have the ability to disable some of the security functionalities.
What do I think about the stability of the solution?
It is stable. We didn't have any performance issues.
What do I think about the scalability of the solution?
It is scalable.
How are customer service and support?
Their support is good.
How was the initial setup?
Its setup is easy.
What other advice do I have?
I would recommend this product. We are very satisfied with this product.
I would rate it a nine out of ten.
Disclosure: My company has a business relationship with this vendor other than being a customer: partner
Business Development Manager - Security at a computer software company with 201-500 employees
A good product with good security that's simple to use
Pros and Cons
- "The security on offer is very good."
- "The scalability could be better."
What is our primary use case?
We primarily use the solution for security.
What is most valuable?
The security on offer is very good.
It's very simple to use.
They have a very good technical center.
It's, overall, a very good product.
The solution is stable.
The initial setup is straightforward.
What needs improvement?
The scalability could be better.
For how long have I used the solution?
I've used the solution for three years.
What do I think about the stability of the solution?
It's a stable solution. The reliability is good. There are no bugs or glitches. It doesn't crash or freeze.
What do I think about the scalability of the solution?
The product can be scalable. However, it could be better. You are limited by the hardware.
We have more than 100 clients using this solution.
How are customer service and support?
I've dealt with support in the past. I've also dealt with Palo Alto support. I find them to be very good.
Which solution did I use previously and why did I switch?
We also used Check Point and Palo Alto. Fortinet, however, scores very high against security threats, when you compare the three.
How was the initial setup?
The initial setup is great. It's not complex or difficult. It's pretty simple, pretty straightforward.
We installed it within a day with no issues. It doesn't take much time.
We have five to six technicians that can handle deployment and maintenance responsibilities. We are all engineers that are managed centrally.
What's my experience with pricing, setup cost, and licensing?
You do need to purchase a license in order to use the product.
What other advice do I have?
I'd recommend the solution to other companies that want to try it out.
I'd rate it at an eight out of ten. We don't have any real challenges with it at the moment.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
Pre-sales Analyst at Algar Telecom
Simple configuration, intuitive graphical interface, and efficient
Pros and Cons
- "The most valuable feature of Fortinet FortiGate is security. They are known for efficiency and are on the top of Gartner Quadrant reviews. Fortinet FortiGate has an easy-to-use platform with a good graphical interface. The configuration is simple and the solution provides an overall good layer of security."
- "Fortinet FortiGate could improve by having more storage in the hardware for log data."
What is our primary use case?
Depending on the final cost and any additional costs we deploy Fortinet FortiGate in the cloud or we can deploy on-premises in data centers.
What is most valuable?
The most valuable feature of Fortinet FortiGate is security. They are known for efficiency and are on the top of Gartner Quadrant reviews. Fortinet FortiGate has an easy-to-use platform with a good graphical interface. The configuration is simple and the solution provides an overall good layer of security.
What needs improvement?
Fortinet FortiGate could improve by having more storage in the hardware for log data.
For how long have I used the solution?
I have been using Fortinet FortiGate for approximately three years.
What's my experience with pricing, setup cost, and licensing?
Here in Brazil, we're going through difficult economic times and the tax on the dollar is high. All the solutions from minor competitors are growing in the market. The prices have come more competitive.
What other advice do I have?
I rate Fortinet FortiGate a nine out of ten.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Buyer's Guide
Download our free Fortinet FortiGate Report and get advice and tips from experienced pros
sharing their opinions.
Updated: December 2024
Popular Comparisons
Netgate pfSense
OPNsense
Cisco Secure Firewall
Sophos XG
Palo Alto Networks NG Firewalls
Azure Firewall
Check Point NGFW
WatchGuard Firebox
SonicWall TZ
Juniper SRX Series Firewall
Untangle NG Firewall
Fortinet FortiGate-VM
SonicWall NSa
Sophos XGS
Fortinet FortiOS
Buyer's Guide
Download our free Fortinet FortiGate Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- Comparison of Barracuda F800, SonicWall 5600 and Fortinet
- Sophos XG 210 vs Fortigate FG 100E
- Looking Into Implementing a Web Security Solution.
- Cyberoam or Fortinet?
- Fortinet, Palo Alto or Check Point?
- What Is The Biggest Difference Between Cisco ASA And Fortinet FortiGate?
- Cisco Firepower vs. FortiGate
- We're trying to choose between Fortinet or Checkpoint UTM firewalls. Can you help?
- What Is The Biggest Difference Between Fortinet FortiGate and Meraki MX Firewalls?
- What Is The Biggest Difference Between Fortinet FortiGate and WatchGuard XTM?
Hamza, I think you may find our product comparison between Checkpoint and Fortigate interesting:
www.itcentralstation.com