Try our new research platform with insights from 80,000+ expert users
Directorate at a wholesaler/distributor with 51-200 employees
Real User
A user friendly solution that helps protect us against spam
Pros and Cons
  • "It is user friendly, and has all the features you need."
  • "I feel that the reporting needs to be improved."

What is our primary use case?

Our primary use case for this solution is to protect ourselves against email spam.

How has it helped my organization?

This solution helps to protect us against spam and offers features like intrusion prevention.

What is most valuable?

The most important feature is that it's easy to use. It is user-friendly and has all the features you need. You can have IDS (Intrusion detection systems) and IPS (Intrusion prevention systems) in just one device. You don't need multiples. 

What needs improvement?

The reporting needs to be improved. Also, the VPN (Virtual private network) monitoring needs improvement.

Beyond these improvements, I cannot think of any additional features that I would like.

Buyer's Guide
Fortinet FortiGate
December 2024
Learn what your peers think about Fortinet FortiGate. Get advice and tips from experienced pros sharing their opinions. Updated: December 2024.
824,067 professionals have used our research since 2012.

For how long have I used the solution?

More than five years.

What do I think about the stability of the solution?

It is a stable solution. We rarely have problems.

What do I think about the scalability of the solution?

Regarding scalability, we have bought a very large box, so it meets all of our requirements.

We have a big company, with fifteen hundred end points.

How are customer service and support?

The technical support is excellent.

How was the initial setup?

I was not there when the initial setup was done.

Currently, we have five staff in charge of maintenance.

What's my experience with pricing, setup cost, and licensing?

Each feature costs money, so it is important to study your needs.

What other advice do I have?

Before implementing this solution, you have to study your network first, and then consider your needs. Decide what features you need and what features you don't need.

It is important to know what is required from the device because they come in very different models. There are different features and each feature costs money, so you need to be prepared so that you can optimize your cost. You don't want to end up buying something that you won't use in the future.

I would rate this solution eight out of ten.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Principal Mining Consultant at senhwabio
Consultant
Auto-scans for viruses, worms, and malware
Pros and Cons
  • "The features that prevent internet connections, the filtering are the most valuable because we did not have any internet protection before."
  • "Fortinet could improve the windows opener or the virtual IP solutions for opening windows. The virtual IP settings need improvement as firewalls are trending in new development directions."

What is our primary use case?

We use Fortinet FortiGate out of fear for malware on the internet, to protect our users from malware. We also use FortiGate to prevent connections to the internet.

How has it helped my organization?

We mainly use Fortinet FortiGate to prevent infections of technology on our network devices. We use it to auto-scan for viruses, worms, and malware.

What is most valuable?

The feature that prevents internet connections, the filtering, is the most valuable feature because we did not have any internet protection before.

What needs improvement?

Fortinet could improve the windows opener or the virtual IP solutions for opening windows. The virtual IP settings need improvement as firewalls are trending in new development directions.

For how long have I used the solution?

Three to five years.

What do I think about the stability of the solution?

Fortinet FortiGate is very stable. We use it for 20 hours a day only. It is a firewall so it cannot be shut down.

What do I think about the scalability of the solution?

Fortinet FortiGate is scalable, but it is not a requirement for us. We only have 25 users. They are general users, not engineers. I am the only engineer needed to maintain FortiGate.

How are customer service and technical support?

We didn't need Fortinet customer support because FortiGate was already configured.

Which solution did I use previously and why did I switch?

We started with Fortinet FortiGate. We weren't previously using another solution. 

How was the initial setup?

The initial setup of Fortinet FortiGate is not so difficult. We got the instructions for the installation from Fortinet online.

The majority of the work was implemented by our vendor. The deployment took about two days to complete.

What about the implementation team?

The installation of Fortinet FortiGate was implemented by our vendor. They are a third-party selling company, not the original manufacturer.

What's my experience with pricing, setup cost, and licensing?

Fortinet is reasonable in pricing and licensing. Overall, FortiGate is affordable. The licensing fee can be a little high, depending on the budget for your project.

Which other solutions did I evaluate?

Other products are not so popular in Taiwan, but the IBM IPM solution is a major competitor to Fortinet FortiGate for firewalls.

What other advice do I have?

Fortinet FortiGate is a stable and affordable product. I would rate Fortinet FortiGate an 8/10. So far, Fortinet FortiGate has been enough for our business requirements.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Buyer's Guide
Fortinet FortiGate
December 2024
Learn what your peers think about Fortinet FortiGate. Get advice and tips from experienced pros sharing their opinions. Updated: December 2024.
824,067 professionals have used our research since 2012.
Manager and General Attorney with 51-200 employees
Real User
Filtering and alerts help protect our data but the cost is becoming too high

What is our primary use case?

The main use is to protect from outside attack, from any side. Because we work with sensitive data, we have to protect our work. We use it mainly for security, not only for content control.

How has it helped my organization?

We have peace of mind. We do work in a very dangerous environment, the internet, and this device gives us alerts. It gives us the opportunity to know what is going on.

What is most valuable?

The filtering that you can do with the firewall.

What needs improvement?

I would like to be able to do segmentation, for a specific user, with more priveledges. I would also like to see an easier user interface to implement that.

What do I think about the stability of the solution?

Sometimes we found that the traffic to the internet froze, I don't know exactly the reason. The only way to get it to work again was to turn it off and then run it again, a hardware reset. Overall it is a very stable platform but sometimes there is this problem.

What do I think about the scalability of the solution?

The scalability is fine. The problem is the licensing. To do more you have to pay for it. In this market, where you can find a lot of devices to do the same things, to charge for them in the license is very difficult. Also, sometimes Fortinet changes their products, they drop devices from the market very quickly.

How are customer service and technical support?

We have guys who are certified to work with Fortinet, so right now it's fine with them. We never really have serious problems, something to escalate to Fortinet. Only when there is a very difficult issue with the performance or something like that have we had to go to Fortinet, but it has been great.

Which solution did I use previously and why did I switch?

One of the main reasons we're considering switching from FortiGate is because many companies have a lot of features and you don't have to pay for. If you compare side by side, you find a lot of things that new brands do as well for fewer dollars.

When selecting a vendor the most important factor is the prestige of the vendor. Also the cost, renewing licenses. Our customers are looking for more features for less cost. We have to look at what is going on in the market, who the main players are, who is doing well, and who has a good reputation.

How was the initial setup?

I was not involved in the initial setup of the devices. I only had to check it out and make sure it was working fine. But I saw the guys working with the configuration. Occasionally they had to reference the manual but had to find the answers on Google.

Which other solutions did I evaluate?

Fortinet and Sophos are the main players for this type of solution.

What other advice do I have?

I would rate FortiGate at seven out of 10 because, although they are doing well, the problem is the licensing, the cost is too high, and how they support their own devices needs improvement. They have to focus on more features with less cost for the customer. If you see the market, where it's going, there are a lot of players offering more features for less cost. FortiGate is a great product but they have to look out.

My advice would be, look at the time on the market. FortiGate is doing well, but right now they have many competitors that are doing well.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
PeerSpot user
CEO & Sr. Information Security Consultant at a tech services company with 1-10 employees
Consultant
The solution improved the security posture and overall management's TCO
Pros and Cons
  • "One of the valuable features is a standardized OS."
  • "It claims it does DLP, but the degree and level of controls are very basic."

How has it helped my organization?

The solution improved the security posture and overall management's TCO.

What is most valuable?

One of the valuable features is a standardized OS.

What needs improvement?

It claims it does DLP, but the degree and level of controls are very basic. We recommend that our clients supplement it with other products.

What do I think about the stability of the solution?

There were no issues with stability.

What do I think about the scalability of the solution?

There were no issues with scalability.

How are customer service and technical support?

Customer Service:

Customer service is excellent.

Technical Support:

Technical support is excellent.

Which solution did I use previously and why did I switch?

We did not use a previous solution.

What about the implementation team?

We implemented in-house.

What's my experience with pricing, setup cost, and licensing?

Work through partners for the best pricing.

Which other solutions did I evaluate?

We evaluated Palo Alto, Check Point, and Cisco.

What other advice do I have?

I highly recommend Fortinet as a leader in integrated suite information security capabilities.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
PeerSpot user
Network Engineer at a tech services company with 501-1,000 employees
Real User
I could achieve the same results with a software firewall. This one comes in a nice hardware package. Using the CLI should be documented better.

What is most valuable?

  • Flexibility
  • Flow tracking
  • B2B VPN

How has it helped my organization?

It's good for what it is. I could achieve the same results with a pfSense firewall. This one just comes in a nice hardware package.

What needs improvement?

Better documentation about usage of the CLI. I learned most of what I know in diagnostic functionality through saving SSH sessions with the customer support staff while in WebEx sessions.

I have tried looking up the manuals. They are OK in some respects, but I feel exhaustive documentation about the CLI "with examples" should be there, and I feel it's not.

I'm saying, hey lets consolidate some of the primary real world scenarios like:
Section A: - Troubeshooting B2B VPN peering with a business partner or client when initially setting up the VPN tunnel.

Inevitably, there are always quirks and nuances between the fortigate vendor versus peering with a Palo Alto or an ASA firewall or even a Juniper SSG.

Imagine providing all steps, command line syntax, and GUI (if available) and how to take steps to debug the flow and see what's failing.
Sometimes it's super hard to figure out what's wrong with a fortigate VPN unless you know the commands on the CLI to see the flow and how to interpret it.

If they had all the methods / syntax and the "how's and why's" for a scenario; even possibly an instructional video showing how via the CLI and gui alongside the documentation. It would be like the pearly gates had opened and I had gone to heaven.

For how long have I used the solution?

I have used it for three years.

What do I think about the stability of the solution?

I never encountered any stability issues. It is a very stable product.

What do I think about the scalability of the solution?

Scalability's not been an issue for my org. We only utilize it for certain applications.

How are customer service and technical support?

Technical support is excellent, although it can be a bit difficult to understand the tech. As with most support staff from almost all vendors now, the support comes from somewhere across the pond.

Which solution did I use previously and why did I switch?

On the site where the FortiGate is stationed, it's never been changed out.

How was the initial setup?

Initial setup was straightforward.

What's my experience with pricing, setup cost, and licensing?

Buy the support package! Upgrades, advice about upgrade paths, and troubleshooting help is paramount. There have been some times where, without it, I'd have been dead in the water.

Which other solutions did I evaluate?

This was an in-place firewall when I integrated the site to my org.

What other advice do I have?

Figure out what features you want, and what policies you want. Look up how to do it in advance, and create an implementation plan.

Plan for policies, routing, NATting, etc. Create a step-by-step process in advance, possibly create the environment in a DEV sandbox, test it, then implement.

It has a good feature set. However, sometimes you are forced to solicit technical support to get it working.

Also, I find the web interfaces sometimes do not display things properly.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Andrew S. Baker (ASB) - PeerSpot reviewer
Andrew S. Baker (ASB)Cybersecurity & IT Operations Professional (VirtualCxO) at BrainWave Consulting Company, LLC
Consultant

Great review. I was going to disagree with you about the CLI documentation, but I found that the examples are really missing for the common use cases, as you stated, so I had to agree.

The cookbook is getting better, but it's not yet comprehensive enough. Very good platform.

I also wish there were elements that you could rename without having to reload an entire config, but I am happy that you can easily search/replace a config and then replace it.

-ASB

See all 6 comments
PeerSpot user
Project Manager at a tech vendor with 1,001-5,000 employees
Vendor
For price criteria, Fortinet wins over competitors. That being said, certain areas of the product need improvement

What is most valuable?

  • Performances
  • VDOM
  • UTM
  • Consolidated Management
  • FortiGuard

    How has it helped my organization?

    • Endpoint control of mobile devices with Security Profiles compliancy checking, captive portal redirection, Antivirus, IPS and Web Filtering enabled on outgoing traffic (coupled to FortiClient solution)
    • Identity-based policies used to authenticated and profile users and guests whatever the media used to access the network (ie. Wired and WiFi)
    • Dynamic BGP routes injections to divert traffic requiring UTM inspection or DDOS mitigation
    • Two-Factor Authentication VPN SSL for itinerant users (coupled to FortiToken solution)
    • Active/Active cluster load-balancing http/https traffic
    • GTP tunnels inspections over GPRS backbones for pure-player telco operators
    • Distributed WiFi infrastructure with UTM enabled and managed from the central console like signatures and firmware updates
    • Classical IP/IPv6 Firewall with consolidated-management

    What needs improvement?

    • Fix all pending bugs present in 5.0.x branch
    • Improve the testing process of newly published firmware like using real and representative configurations submitted to consequent traffic load during a while
    • Support SNMPv3 INFORM requests
    • Uniform the scheduled backup between FortiGate, FortiManager and FortiAnalyzer
    • Integrate graphical troubleshoot tools for policies based on devices or user identities

    For how long have I used the solution?

    4.5 years

    What was my experience with deployment of the solution?

    Some few non-blocking bugs present in the latest release and which are now solved. In the past I encountered serious bug regarding SCTP and GTP supports. Fortinet helped me to qualify the bug, implement a temporary workaround and then published appropriate patches rapidly.

    What do I think about the stability of the solution?

    No. I always used the latest qualified-stable firmware recommended by Fortinet and check by own testing methods the stability of HW and SW before deploying anything into customer premises.

    What do I think about the scalability of the solution?

    With design and dimensioning parts well achieved I never encountered scalability issue. However it happened I had to troubleshoot some slowness and latency issues on existing projects already running live. Most of the time they were due to some design issues and non-optimized configurations like for instance “in” and “out” ports not handled by the same NP, policy rules non-optimized and non-used features enabled.

    How are customer service and technical support?

    Customer Service:

    Very good.

    Technical Support:

    Very good.

    Which solution did I use previously and why did I switch?

    • CISCO ASA: Too expensive, performances issues, non-consolidated management between traditional ASA and inspection ASA CX, not the best security engines
    • Checkpoint: Very expensive but good solutions, not the leader in UTM segment
    • Juniper: Expensive but good solutions, not the leader in UTM segment
    • Cyrberoam: Attractive prices but not yet tested, looks like promising
    • Arkoon/Netasq: Obsoletes (Stormshield not yet tested)

    How was the initial setup?

    It was quite simple if you have at least a minimum of experiment with Firewalls integration. It is now even simpler thanks to the FortiExplorer application.

    What about the implementation team?

    In-house.

    Which other solutions did I evaluate?

    Taking into account the price criteria, nowadays Fortinet always wins offers in front of competitors like CISCO and Checkpoint. Mixing this key-point with other success keys like UTM features and performances.

    What other advice do I have?

    Contact Fortinet or Fortinet’s partner and ask for a POC.

    Disclosure: I am a real user, and this review is based on my own experience and opinions.
    PeerSpot user
    it_user275226 - PeerSpot reviewer
    IT Director with 501-1,000 employees
    Vendor
    I don't need to have a cluster because it's stable, but rules are not intuitive and the admin UI needs improvement.

    What is most valuable?

    It offers a proxy and a firewall.

    How has it helped my organization?

    It has a better processor than CheckPoint.

    What needs improvement?

    It's not intuitive, as the rules will be in the last place you look. You can look for a report for an hour, eventually getting a blank page. User experience for the administrator is basically not good as it needs to be more proficient.

    For how long have I used the solution?

    I've used it for two years.

    What was my experience with deployment of the solution?

    I have five ISPs, and it was hard to connect the LAN to the WAN. It did not go well and I had do to a roll-back.

    What do I think about the stability of the solution?

    The product is so stable I don't need to have a cluster.

    How are customer service and technical support?

    Customer Service:

    I use a service given by the integrator and it's better than Fortigate’s. The integrator gives me a guarantee that they will immediately replace my machine if a problem occurs.

    Technical Support:

    I use a service given by the integrator and it's better than Fortigate’s. The integrator gives me a guarantee that they will immediately replace my machine if a problem occurs.

    Which solution did I use previously and why did I switch?

    I used an open-source product name Squid.

    How was the initial setup?

    It's straightforward, and was transparent for the users.

    What about the implementation team?

    We did it in-house.

    What was our ROI?

    It costs $200,000 and is only a bit better than the open source solution, which was free.

    What's my experience with pricing, setup cost, and licensing?

    You don’t have to buy the Fortigate analyzer, as you can also get the reports using Fortinet.

    What other advice do I have?

    It's fine as a firewall and as a proxy. You need to configure the rules right or else it will be hard to keep up with the logs.

    Disclosure: I am a real user, and this review is based on my own experience and opinions.
    PeerSpot user
    Andrew S. Baker (ASB) - PeerSpot reviewer
    Andrew S. Baker (ASB)Cybersecurity & IT Operations Professional (VirtualCxO) at BrainWave Consulting Company, LLC
    Consultant

    The v5.6 GUI is much improved, IMO. Very happy to see the changes there. Some things are still a little hard to find, but not as many.

    See all 5 comments
    Security Engineer at Eguardian lanka
    Reseller
    Initial implementation straightforward, helpful support, and scalable
    Pros and Cons
    • "The scalability of Fortinet FortiGate is good."
    • "The reporting in Fortinet FortiGate could improve. Customers are having to purchase additional reporting components. When I have used the Sophos solution it is a complete solution, in Fortinet FortiGate you have to use additional tools to have the features needed."

    What is our primary use case?

    We use Fortinet FortiGate as a network firewall.

    What needs improvement?

    The reporting in Fortinet FortiGate could improve. Customers are having to purchase additional reporting components. in  Fortinet FortiGate you have to use additional tools to have the features needed.

    We need to use FortiAuthenticator to have additional bandwidth. Fortinet should include more features in the solution instead of having separate tools.

    For how long have I used the solution?

    I have been using Fortinet FortiGate for approximately three years.

    What do I think about the stability of the solution?

    Fortinet FortiGate is a stable solution from my experience.

    What do I think about the scalability of the solution?

    The scalability of Fortinet FortiGate is good.

    How are customer service and support?

    The technical support from Fortinet FortiGate is 24 hours a day seven days a week, and 365 days a year. The support is good from Fortinet, and local distributor partner support has been helpful, we highly recommend them.

    Which solution did I use previously and why did I switch?

    I have previously used pfSense, Sophos Firewall, and other endpoint solutions.

    How was the initial setup?

    The initial implementation of Fortinet FortiGate is not complex because the GUI environment is easy to use. We can do a lot of things in the GUI. If the configurations engineer, network administrator, or network engineer has knowledge about firewalls, the process will not be complex. It can easily be managed.

    What's my experience with pricing, setup cost, and licensing?

    The price of Fortinet FortiGate when compared to other solutions is high. However, my knowledge of the price is from third parties and I am not sure how accurate it is. I typically work in the technical area of my organization.

    What other advice do I have?

    I rate Fortinet FortiGate a nine out of ten.

    Disclosure: My company has a business relationship with this vendor other than being a customer:
    PeerSpot user
    Buyer's Guide
    Download our free Fortinet FortiGate Report and get advice and tips from experienced pros sharing their opinions.
    Updated: December 2024
    Buyer's Guide
    Download our free Fortinet FortiGate Report and get advice and tips from experienced pros sharing their opinions.