We installed Fortinet FortiGate-VM for security purposes. Our main motivation is for security reasons and improving networking.
Owner at Mindware Computer Solutions
A scalable security solution with a valuable network security feature
Pros and Cons
- "The most valuable features are network security, VLAN, network protection, and encryption are very valuable to us."
- "Integration could be better. Whatever devices I'm using with FortiGate are all compatible. The access points and switches are also FortiGate, so I can easily integrate them. But it would be better if we could embed other devices as well. There are compatibility issues with other brands, and we need that. We can only integrate universal brands with FortiGate. The initial setup could also be easier."
What is our primary use case?
What is most valuable?
The most valuable features are network security, VLAN, network protection, and encryption are very valuable to us.
What needs improvement?
Integration could be better. Whatever devices I'm using with FortiGate are all compatible. The access points and switches are also FortiGate, so I can easily integrate them. But it would be better if we could embed other devices as well. There are compatibility issues with other brands, and we need that. We can only integrate universal brands with FortiGate. The initial setup could also be easier.
For how long have I used the solution?
I have been working with Fortinet FortiGate-VM for three years.
Buyer's Guide
Fortinet FortiGate-VM
November 2024
Learn what your peers think about Fortinet FortiGate-VM. Get advice and tips from experienced pros sharing their opinions. Updated: November 2024.
816,406 professionals have used our research since 2012.
What do I think about the stability of the solution?
It's stable, and our customers aren't giving us much of a problem.
What do I think about the scalability of the solution?
Our customers are very happy with its scalability.
How are customer service and support?
Technical support is good. However, we're not satisfied with partner support, and we're looking to diversify. We have signed up, and we're training our engineers.
How was the initial setup?
The initial setup is a little complex. Not too complex, but it's good because we like to work. It takes half an hour at most to install and deploy this solution.
What about the implementation team?
We're a reseller, and we implement this solution.
What other advice do I have?
On a scale from one to ten, I would give Fortinet FortiGate-VM an eight.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Integrator, reseller
Full support analyst at Gruppen
A very friendly and easy solution with an easy to use configuration, graphical interface and command line
Pros and Cons
- "The configuration, graphical interface and command line are easy to use."
- "The price is problematic."
What is our primary use case?
We primarily use the solution as a public cloud for Microsoft Azure.
What is most valuable?
My experience with the solution has been very positive and Fortinet provides a great layer of security when it comes to SD-WAN and other security capabilities. There are many models available to suit a host of environments.
The solution is extremely easy and friendly. The configuration, graphical interface and command line are easy to use.
What needs improvement?
The price is problematic.
An interesting feature of the vendor license involves SD-WAN orchestrator and this should be addressed in the part which deals with feature licensing.
For how long have I used the solution?
I have been working with FortiGate products for the past five years and with Fortinet FortiGate-VM for the past year.
How are customer service and support?
The technical support varies with the product in question. The support for FortiGate appliances is relatively good compared with the more complicated support afforded other products.
Which solution did I use previously and why did I switch?
I like the comparative use of the SD-WAN feature of the solution.
What's my experience with pricing, setup cost, and licensing?
The solution could be better priced.
What other advice do I have?
My sole experience with the solution is in the Azure environments.
As a Fortinet partner, I make use of many of its products.
As I feel Fortinet FortiGate-VM to be a good solution, I rate it as a ten out of ten.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Buyer's Guide
Fortinet FortiGate-VM
November 2024
Learn what your peers think about Fortinet FortiGate-VM. Get advice and tips from experienced pros sharing their opinions. Updated: November 2024.
816,406 professionals have used our research since 2012.
Consultant at a comms service provider with 11-50 employees
A solid product that could benefit from more traffic shaping
Pros and Cons
- "I really like that it's internationally deployable."
- "There should be more options to use lower-end models in a high availability configuration."
What is our primary use case?
It's an edge firewall that provides failover and redundancy management with the SD-WAN. We also use it for its traffic shaping capabilities and visibility through a central orchestrator.
How has it helped my organization?
It improves an organization because it's a single vendor solution for edge management.
It allows us to handle multiple types of connections at the edge and provide the proper routing and firewall services.
What is most valuable?
I really like that it's internationally deployable.
What needs improvement?
There should be more options to use lower-end models in a high availability configuration.
They should continue to improve the traffic shaping; they should add some AI to the traffic shaping. They should also consider learning from other organizations as opposed to just internally. They should follow patterns instead of everyone having to recognize patterns and make adjustments on their own. Instead, they should add some form of intelligence to guide administrators in best practices with traffic shaping. I think this will become very important as we move more toward a SaaS-type world.
For how long have I used the solution?
I have been using Fortinet FortiGate-VM for the past three years.
What do I think about the stability of the solution?
Stability is also high to very high.
What do I think about the scalability of the solution?
I'd say scalability is somewhere between high to very high.
How was the initial setup?
The initial setup depends on the types of connections that you're bringing into it and the complexity of the business requirements for individual networks. It depends on how you want to route across the company. Overall, I'd say it's less complex than Cisco but it really depends on who's doing it.
What other advice do I have?
My advice would be to look to the anticipated growth of the network before starting the implementation so that you are appropriately sizing the scope and size of the equipment.
Overall, on a scale from one to ten, I would give this solution a rating of seven — it's a solid product. Depending on the solution you need, some of the appliances can be a little cost-prohibitive at the high end, but at the low end, they're very cost-effective. Plus, the interface is simple to use. For the right customer, I think it's a solid play.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
Overall simple to use, reliable, and useful VPN tool
Pros and Cons
- "The most valuable features we have found to be the VPN, ease of use, and overall simplicity."
- "Web filtering is a feature that needs some improvement. There should be some additional features to allow active users to change their own passwords."
What is our primary use case?
We use the solution for IPS, internal segmentation, inspections, and VPN.
What is most valuable?
The most valuable features we have found to be the VPN, ease of use, and overall simplicity.
What needs improvement?
Web filtering is a feature that needs some improvement. There should be some additional features to allow active users to change their own passwords.
Additionally, the secure web gateway and the inspection feature need more security improvement in the next release.
For how long have I used the solution?
I have been using the solution for approximately one year.
What do I think about the stability of the solution?
The solution has been reliable in my experience.
What do I think about the scalability of the solution?
We have approximately 250 users using the solution in my organization and we plan to increase usage.
How are customer service and technical support?
The technical support has been good.
How was the initial setup?
The solution is easy to install.
What's my experience with pricing, setup cost, and licensing?
We are on an annual license for this solution and it could be cheaper.
Which other solutions did I evaluate?
Previously we evaluated other solutions, such as Check Point and the Palo Alto firewalls. This solution is easier to understand than the others.
What other advice do I have?
I would recommend this solution to others. Especially if they are new to these types of solutions, it is easy to understand.
I rate Fortinet FortiGate-VM an eight out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
IT Manager at Zipper
Easy to set up, quick to deploy, and very secure
Pros and Cons
- "The solution is very easy to set up. It doesn't take a lot of time and offers a quick deployment, so you can start using it almost right away."
- "The price model is not transparent by any means and should be made more clear. What's included in the packages is often not very obvious."
What is our primary use case?
We primarily provide the solution to our clients. We typically use it in the financial services industry.
What is most valuable?
The solution is very easy to set up. It doesn't take a lot of time and offers a quick deployment, so you can start using it almost right away.
It's a very secure product. The security provided is excellent and an organization can feel very safe while using it.
What needs improvement?
The scalability of the solution needs to be improved.
The price model is not transparent by any means and should be made more clear. What's included in the packages is often not very obvious.
For how long have I used the solution?
I've been using the solution for two years at this point.
What do I think about the stability of the solution?
The stability of the solution is pretty good. We don't have any blocks and we don't have problems with the solution in terms of bugs or crashes. We have a monitor. We have an aux for many services. It really is problem-free.
What do I think about the scalability of the solution?
The solution has some issues with scalability. I wouldn't say it's easy to scale at all.
Also, with the pricing model being so confusing, companies can't really wrap their arms around what the final pricing would be when they scale up, which makes it difficult for budgeting purposes.
How are customer service and technical support?
We don't use technical support from Fortinet. Rather, we get it from a local company. They are okay. They aren't terrible, however, they could be better. Their service is average at best.
How was the initial setup?
The initial setup is straightforward. We didn't find it to be complex at all.
Deployment is quick and easy. It takes a maximum of two hours to handle everything.
What's my experience with pricing, setup cost, and licensing?
The pricing of the solution is strange. We don't understand exactly how it's calculated or how it works.
What other advice do I have?
We recommend this firewall often and we've actually used many solutions previously. Since we chose this one, we've been overall quite happy with the results. We recommend it largely due to the fact that we use the solution ourselves.
I'd rate the solution eight out of ten. If it wasn't for the pricing model and the scalability issues, I would rate it higher.
Disclosure: My company has a business relationship with this vendor other than being a customer: Reseller
Manager Information Technology at a media company with 51-200 employees
Clearly captures each and every thing for the backup capture
Pros and Cons
- "FortiGate is a nice and very good product."
- "FortiGate should be more customer friendly and budgeted better."
What needs improvement?
In terms of what features should be improved with Fortinet, I feel it should give better reports. They provide some basic reports in the entry-level and middleware products but I would love this product if they gave more reports, including more MIS from the traffic because they capture everything in the UTM. They don't produce a team value report. They don't produce a usable report where the IT manager, IT head or CTO can analyze where the attack happened or figure out where the bridge is down, etc. The reports are basic. There are engines which make everything on the GUI. All the user can potentially access for the risky function in the Fortinet but it should be on the GUI, it should not be behind the command line. They could definitely provide the FortiAnalyzer with the basic UTM in a bundle pack.
People should not have to ask for another FortiAnalyzer. It's an entry-level product. I understand that FortiAnalyzer is an expert level product but the functionality should be available at the entry-level as well. Fortinet should think about the entry-level and give it managing capabilities. That's why I selected Sophos because, for a small or medium office, all the reports are available there.
Secondly, Sophos is cost-effective. It is comparatively much cheaper. Sophos is available for a much cheaper price than Fortinet. Also, they have some other functions like sandboxing and others. FortiGate should be more customer-friendly and budgeted better. If I am a buyer, I do not want multiple appliances to manage. It should be one box, one appliance. One mobile should do everything. Multiple products require IT to create a workaround. You have to buy two products and then there is actually another one with that, one plus one, and then there is multiple management, so the product is definitely cumbersome. The beauty of the product is implementation and maintenance without it.
I have my own team to maintain this product. We are very happy as a Sophos user, as we get whatever we want from the reporting point of view. There are no glitches. There is no one issue in particular. When I ask, or my team asks, how the network is working and why there is network latency there are reports about where the traffic is going and I do not have the input after moving or switching to Sophos. I can get the support regarding which IP is working where and which IPs are making traffic, and more.
For how long have I used the solution?
I have been personally using FortiGate-VM for two years.
Which solution did I use previously and why did I switch?
We already procured Sophos. I already ordered two devices from our Indian partner.
We are now partners with Sophos. We were partners with FortiGate for the last year.
The first reason that we switched is because of our work use cases. We moved 80% of our infrastructure to AWS outsource. So we do not require a big firewall anymore. We are a 50 to 70 employee organization so a different firewall is required. We have a 310 exchange enterprise-level firewall. So we moved to 83210 Sophos. The reason why we are changing to different technologies is the comprehensive reports that Sophos provides at the very basic entry-level firewall. In the FortiGate, we have to also have another plan for data analyzer.
The second thing which I believe is that FortiGate has some special functions in the CLI (command-line interface) mode. Sophos does not support that and all its functions are on the UI. So it's easier management in Sophos compared to FortiGate.
In terms of ease of use, if you implement FortiGate in your organization, you must have a FortiGate person who knows FortiGate and then three, four, or five years to learn to maintain the FortiGate device. Whereas Sophos doesn't require that much because all the things are on the UI. So anybody can understand it from the UI.
I can give you an example of the issue with UI. This is a basic thing. In the UI, you could go to the FortiGate console and work directly in the command. You can manage it from the command but you must have command line experience to manage the FortiGate device. If I want to see the traffic and where it goes and where it's from or any attack, in case of an attack, you need FortiAnalyzer to analyze, to track the packet, to protect the traffic. So that's easily available in other products like Sophos 83210.
The cost of Sophos and other players is better compared to the FortiGate. FortiGate is a more important product in the industry. It is recommended, but the cost is also a major point in evaluating Fortinet's firewall solutions in our niche.
What other advice do I have?
On a scale of 1 to 10, I'd give it a 9.
FortiGate is a nice and very good product but the implementation and post-implementation of the product are cumbersome. You have to manage four devices instead of two devices if I go for FortiAnalyzer. For a small, entry-level business, Fortinet should give the entire reporting on the UI so that end to end engineers can manage efficiently. So as technology is concerned, I give eight out of 10, but because of reporting, I would give five out of 10. I am just giving an example: if I know everything or you know everything but if you can't explain it, how do other people come to know that you know everything? FortiGate clearly captures each and everything for the backup capture and everything but it doesn't show what it is acquiring. Analytical reports are missing from there.
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
CISO at a religious institution with 501-1,000 employees
A scalable solution that protects our mobile users
Pros and Cons
- "The thing that I like the most is that they're very willing to work with us to resolve issues that they haven't taken care of before in their product."
- "There should be integration with an active directory — with Microsoft."
What is our primary use case?
We use Fortinet FortiGate-VM as a firewall, for intrusion detection and prevention to protect our Azure data center, principal operation sites, and our mobile users.
How has it helped my organization?
Together with the FortiAnalizer we have a better grasp of our security position and understand the type of adversary attacks our installations.
What is most valuable?
The thing that I like the most is that they're very willing to work with us to resolve issues that they haven't taken care of before in their product.
The end-user protection suite is very good, including the log analysis feature that they now have.
What needs improvement?
The Fortinet solution has resolved the issues with Microsoft Azure active directory. This integration allows us to build rules based on Grupo membership for access to data center assets on individual bases.
For how long have I used the solution?
We have used the Fortigate and Forticlient solutions for three years and they have proven to be very stable solutions.
What do I think about the stability of the solution?
Fortinet FortiGate-VM is very stable.
What do I think about the scalability of the solution?
The solution has proven to be scalable to all our requirements. In the years using Fortinet, we have had no cases of scalability due to Fortinet. We have had to increase the firewall resources to deal with a large increase in Forticlient connections.
How are customer service and support?
The technical support is very good.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
We previously used Check Point. Though it is a good solution, the license costs became too high for our organization and obliged us to look for another option.
How was the initial setup?
The initial setup was a little complicated due to our engineers working on knowledge of Checkpoint and trying to replicate the same configurations. Hindsight finds it may have been less complicated to build the rules from the ground up rather than importing them.
What about the implementation team?
Mostly through a vendor team at first, however, the process was plagued by miscommunications and inadequate scope definitions.
What's my experience with pricing, setup cost, and licensing?
Be very clear with your security consultant who is proposing Fortinet as a solution regarding all the features and integrations you expect to achieve with the solution.
Which other solutions did I evaluate?
We reviewed Palo Alto, Barracuda, and Sophos.
What other advice do I have?
Overall, on a scale from one to ten, I would give this solution a rating of eight.
Which deployment model are you using for this solution?
Public Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Microsoft Azure
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Tech Security & Networking Support Lead at a venture capital & private equity firm with 51-200 employees
Feature-rich, reliable, easy to scale, and has good support
Pros and Cons
- "The most valuable features are the IPS and Antivirus."
- "It needs an Application Inspection."
What is our primary use case?
FortiGate is an Exhibition Firewall that comes with the Antivirus, IPS, and Web Applications
What is most valuable?
The most valuable features are the IPS and Antivirus.
The firewall functionalities are fine.
It has a lot of features.
What needs improvement?
It needs an Application Inspection. The threat landscape is very high. Anyone can exploit the flow-based policies. It is always better to have intern-based policies.
For how long have I used the solution?
I have been using Fortinet FortiGate-VM for more than two years.
We are using the latest version.
What do I think about the stability of the solution?
Fortinet FortiGate-VM is a reliable product.
What do I think about the scalability of the solution?
It is easy to scale this solution, but there are some challenges with Azure and high availability.
How are customer service and technical support?
My experience with technical support was good.
Which solution did I use previously and why did I switch?
We are also using Palo Alto.
How was the initial setup?
The initial setup was simple.
We don't require a lot of maintenance. Most of the maintenance is carried out by Microsoft.
It is a custom operating system that is available on FortiGate Firewall, and Palo Alto Firewall.
Microsoft doesn't do anything in terms of upgrades of the patches. They only do basic maintenance at the host level and the VM level.
We only have one person managing the device.
What about the implementation team?
We were able to complete the installation on our own.
What's my experience with pricing, setup cost, and licensing?
Pricing is somewhere in the middle. It's a mid-ranged product.
There are additional fees with this solution.
What other advice do I have?
I would recommend this solution to others. It is a stable firmware, with many releases. It has a lot of features. Apart from the firewall, it comes with antivirus, IPS, and Web Application Firewall.
It has a lot of integration with external connectors, such as Teams, that are protected from threats that come from external sources.
I would rate Fortinet FortiGate-VM an eight out of ten.
Which deployment model are you using for this solution?
Public Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Microsoft Azure
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Buyer's Guide
Download our free Fortinet FortiGate-VM Report and get advice and tips from experienced pros
sharing their opinions.
Updated: November 2024
Product Categories
FirewallsPopular Comparisons
Fortinet FortiGate
Netgate pfSense
Cisco Secure Firewall
Sophos XG
Palo Alto Networks NG Firewalls
Azure Firewall
Check Point NGFW
Juniper SRX Series Firewall
Untangle NG Firewall
SonicWall NSa
Sophos XGS
Fortinet FortiOS
KerioControl
Sangfor NGAF
Buyer's Guide
Download our free Fortinet FortiGate-VM Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- Features comparison between Palo Alto and Fortinet firewalls
- How is FortiGate-VM different from the physical FortiGate firewall?
- Looking for a piece of advice and tips on the deployment of VPN concentrators for SD-WAN tunnels?
- What happens if FortiGate VM next-generation firewall in VMware NSX license becomes expired?
- Which would you recommend - FortiGate VM or Azure Firewall?
- What do you recommend for a corporate firewall implementation?
- Comparison of Barracuda F800, SonicWall 5600 and Fortinet
- Sophos XG 210 vs Fortigate FG 100E
- Which is the best network firewall for a small retailer?
- When evaluating Firewalls, what aspect do you think is the most important to look for?