We use Fortinet FortiGate-VM as a firewall, for intrusion detection and prevention to protect our Azure data center, principal operation sites, and our mobile users.
CISO at a religious institution with 501-1,000 employees
A scalable solution that protects our mobile users
Pros and Cons
- "The thing that I like the most is that they're very willing to work with us to resolve issues that they haven't taken care of before in their product."
- "There should be integration with an active directory — with Microsoft."
What is our primary use case?
How has it helped my organization?
Together with the FortiAnalizer we have a better grasp of our security position and understand the type of adversary attacks our installations.
What is most valuable?
The thing that I like the most is that they're very willing to work with us to resolve issues that they haven't taken care of before in their product.
The end-user protection suite is very good, including the log analysis feature that they now have.
What needs improvement?
The Fortinet solution has resolved the issues with Microsoft Azure active directory. This integration allows us to build rules based on Grupo membership for access to data center assets on individual bases.
Buyer's Guide
Fortinet FortiGate-VM
January 2025
Learn what your peers think about Fortinet FortiGate-VM. Get advice and tips from experienced pros sharing their opinions. Updated: January 2025.
831,265 professionals have used our research since 2012.
For how long have I used the solution?
We have used the Fortigate and Forticlient solutions for three years and they have proven to be very stable solutions.
What do I think about the stability of the solution?
Fortinet FortiGate-VM is very stable.
What do I think about the scalability of the solution?
The solution has proven to be scalable to all our requirements. In the years using Fortinet, we have had no cases of scalability due to Fortinet. We have had to increase the firewall resources to deal with a large increase in Forticlient connections.
How are customer service and support?
The technical support is very good.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
We previously used Check Point. Though it is a good solution, the license costs became too high for our organization and obliged us to look for another option.
How was the initial setup?
The initial setup was a little complicated due to our engineers working on knowledge of Checkpoint and trying to replicate the same configurations. Hindsight finds it may have been less complicated to build the rules from the ground up rather than importing them.
What about the implementation team?
Mostly through a vendor team at first, however, the process was plagued by miscommunications and inadequate scope definitions.
What's my experience with pricing, setup cost, and licensing?
Be very clear with your security consultant who is proposing Fortinet as a solution regarding all the features and integrations you expect to achieve with the solution.
Which other solutions did I evaluate?
We reviewed Palo Alto, Barracuda, and Sophos.
What other advice do I have?
Overall, on a scale from one to ten, I would give this solution a rating of eight.
Which deployment model are you using for this solution?
Public Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Microsoft Azure
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Technical Lead at a government with 1,001-5,000 employees
Responsive support, useful analyzer, and effective protection
Pros and Cons
- "The most valuable features of Fortinet FortiGate-VM are the servers, analyzer, and track protection."
What is our primary use case?
We use Fortinet FortiGate-VM as a network firewall.
What is most valuable?
The most valuable features of Fortinet FortiGate-VM are the servers, analyzer, and track protection.
For how long have I used the solution?
I have been using Fortinet FortiGate-VM for approximately seven years.
What do I think about the stability of the solution?
The solution is highly stable.
What do I think about the scalability of the solution?
The solution is not scalable.
We have approximately 7,000 users using this solution in my organization.
How are customer service and support?
The support has been responsive in my experience.
How was the initial setup?
The initial setup is easy and took approximately six months.
What about the implementation team?
We did the implementation with an integrator called Dimension Data and from Fortinet support.
We have a six-person technical team that does the maintenance of the solution.
What's my experience with pricing, setup cost, and licensing?
The price of the solution could be less expensive. There are some features that have to be purchased separately that have their own license.
What other advice do I have?
I rate Fortinet FortiGate-VM a nine out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Buyer's Guide
Fortinet FortiGate-VM
January 2025
Learn what your peers think about Fortinet FortiGate-VM. Get advice and tips from experienced pros sharing their opinions. Updated: January 2025.
831,265 professionals have used our research since 2012.
Director General CEO at SC Telecom
I like its interface and load-balancing features
Pros and Cons
- "In terms of specific features, I like FortiGate's load balancing, interface, and priority on the network."
- "Fortinet could improve the availability and delivery of its products. It takes four to six weeks for every purchase to arrive."
What is most valuable?
I like how Fortinet products work together to provide a total equipment solution. And, I don't see any issues with that solution. In terms of specific features, I like FortiGate's load balancing, interface, and priority on the network.
What needs improvement?
Fortinet could improve the availability and delivery of its products. It takes four to six weeks for every purchase to arrive.
For how long have I used the solution?
I've been using FortiGate-VM for six years.
How are customer service and support?
Fortinet's local support in Mexico could be better.
What other advice do I have?
I rate FortiGate 10 out of 10.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Engineering Manager at Primatel Communication Snd Bhd
More scalable than the hardware version
Pros and Cons
- "Fortinet-VM is more scalable than the hardware version. If you're using an appliance, there are limitations in terms of hardware specs. So if you want a more scalable firewall, you can get a VM and install it on a high-end server."
- "To improve FortiGate-VM, Fortinet needs to harden it more. For example, if you are using Hyper-V, then you need guidelines for hardening FortiGate-VM that are specific to the Hyper-V environment. If it's VMware, there should be at least a guideline on how to harden the firewall."
What is our primary use case?
We're using FortiGate-VM on-prem for our firewalls. The Fortinet component in the cloud is FortiGuard. We get our virus definitions regularly updated from the cloud, but the FortiGate firewalls are all on-prem. While the virtual firewalls are created inside the physical firewall, there is an option for a virtual machine firewall where we'll give you the VHD file, and you can install it to a server.
Virtual machines aren't widely used in Brunei because the Brunei government isn't ready for these things yet. They're more confident in hardware, but everything is slowly starting to head in this direction. Others are watching what will happen when people use the apps before they try them.
How has it helped my organization?
Some customers prefer VM, especially those customers already leveraging the virtual machine environment. Typically, they don't want to spend on the hardware because they already have all these VMs, so they choose the VM option. But in most deployments, they still prefer the hardware for their firewall because it's already hard-coded.
What needs improvement?
To improve FortiGate-VM, Fortinet needs to harden it more. For example, if you are using Hyper-V, then you need guidelines for hardening FortiGate-VM that are specific to the Hyper-V environment. If it's VMware, there should be at least a guideline on how to harden the firewall.
For how long have I used the solution?
We've been working with FortiGate-VM since 2010.
What do I think about the scalability of the solution?
Fortinet-VM is more scalable than the hardware version. If you're using an appliance, there are limitations in terms of hardware specs. So if you want a more scalable firewall, you can get a VM and install it on a high-end server. From there, you have more leverage on how many virtual firewalls you want to create based on that VM. In other words, it's already fixed hardware in the appliance — it's already hard-coded in the appliance. So if you are using a VM and installing it on a high-specs server, then your machine has much higher performance in packaging all these policies and all these hardware security features.
How are customer service and support?
We proved the frontline support for our client organizations or customers. So far we are satisfied with Fortinet support. We have currently have Fortinet-certified engineers in our company, so we don't have to contact support unless it's a complex issue. We have an NSE7-certified engineer, so we are quite confident with our deployment now.
How was the initial setup?
FortiGate-VM setup is pretty straightforward. It depends on the implementation size, but it takes a week for an organization of around 100 users. Normally Fortinet helps their customers with deployment and post-deployment adjustments, so you don't have any problems. If anything goes wrong, Fortinet is there to support you.
What's my experience with pricing, setup cost, and licensing?
Like most similar products in the market, Fortinet's enterprise customers need to pay for annual support. They call it FortiCare, and it's direct support from Fortinet. FortiCare is renewed annually and covers support for new releases, purchases, and updates.
What other advice do I have?
I rate Fortinet FortiGate-VM eight out of 10. However, based on experience, we usually don't recommend using VM firewalls. We still prefer using a hardware-based firewall when that's appropriate. It depends on your needs and the size of your user base. With FortiGate-VM, you can control the size of your firewall if you're using VMs. But on the other hand, if you are using Microsoft Hyper-V, you need to address all these vulnerabilities of Microsoft. And if you're using VMware, then you need to deal with VMware's vulnerabilities. The hardware version of FortiGate has already been hardened based on FortiGate standards. That's the main difference between the FortiGate appliance and FortiGate-VM.
Which deployment model are you using for this solution?
On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Consultant at a comms service provider with 11-50 employees
A solid product that could benefit from more traffic shaping
Pros and Cons
- "I really like that it's internationally deployable."
- "There should be more options to use lower-end models in a high availability configuration."
What is our primary use case?
It's an edge firewall that provides failover and redundancy management with the SD-WAN. We also use it for its traffic shaping capabilities and visibility through a central orchestrator.
How has it helped my organization?
It improves an organization because it's a single vendor solution for edge management.
It allows us to handle multiple types of connections at the edge and provide the proper routing and firewall services.
What is most valuable?
I really like that it's internationally deployable.
What needs improvement?
There should be more options to use lower-end models in a high availability configuration.
They should continue to improve the traffic shaping; they should add some AI to the traffic shaping. They should also consider learning from other organizations as opposed to just internally. They should follow patterns instead of everyone having to recognize patterns and make adjustments on their own. Instead, they should add some form of intelligence to guide administrators in best practices with traffic shaping. I think this will become very important as we move more toward a SaaS-type world.
For how long have I used the solution?
I have been using Fortinet FortiGate-VM for the past three years.
What do I think about the stability of the solution?
Stability is also high to very high.
What do I think about the scalability of the solution?
I'd say scalability is somewhere between high to very high.
How was the initial setup?
The initial setup depends on the types of connections that you're bringing into it and the complexity of the business requirements for individual networks. It depends on how you want to route across the company. Overall, I'd say it's less complex than Cisco but it really depends on who's doing it.
What other advice do I have?
My advice would be to look to the anticipated growth of the network before starting the implementation so that you are appropriately sizing the scope and size of the equipment.
Overall, on a scale from one to ten, I would give this solution a rating of seven — it's a solid product. Depending on the solution you need, some of the appliances can be a little cost-prohibitive at the high end, but at the low end, they're very cost-effective. Plus, the interface is simple to use. For the right customer, I think it's a solid play.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
Information Technology Manager and ISMS Auditor at a consultancy with 51-200 employees
Easy to use with a straightforward installation and good performance
Pros and Cons
- "The performance overall is very good."
- "There should be a bit more automation."
What is our primary use case?
We primarily use the solution for the firewall capabilities and security.
What is most valuable?
The solution is easy to use. It's not overly difficult.
The product is quite stable. We didn't have any issues related to stability at all.
The performance overall is very good.
The installation process is straightforward.
The pricing is okay.
We've found the scalability to be good.
What needs improvement?
There should be a bit more automation.
There could be more integration capabilities.
Technical support could be better.
The solution needs more features surrounding event log management.
For how long have I used the solution?
We used the solution for three or four years.
What do I think about the stability of the solution?
The solution is very stable. It's reliable and the performance is good. There are no bugs or glitches. It doesn't crash or freeze.
What do I think about the scalability of the solution?
The solution is quite scalable. If a company needs to expand the solution, it has the capabilities to do so.
We have about 500 people on the solution currently.
We've since moved away from the solution to a cloud-based product. We don't intent to increase usage for that reason.
How are customer service and technical support?
We would like the technical support to be slightly improved. We aren't completely satisfied with it at this time.
How was the initial setup?
The initial setup is not complex at all. It's very straightforward. It's simple.
I can't recall exactly how long the deployment process took.
We had two technicians that handled the implementation. It doesn't take a lot of people.
What's my experience with pricing, setup cost, and licensing?
We found the pricing to be okay. It's reasonable and not too expensive.
What other advice do I have?
We were customers and end-users of the product. That is no longer the case.
We've moved off of the product recently. We wanted a cloud-based option and therefore we switched.
Overall, I would recommend the solution. I would rate it at a ten out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Systems Engineer at a tech services company with 501-1,000 employees
Real time threat intelligence in a virtual form factor
Pros and Cons
- "The initial setup is very user-friendly."
- "With FortiGate, we sometimes encounter bugs in various operating systems."
What is our primary use case?
Most of the use cases that we have are SD-WAN and perimeter firewall related.
Our clients are mostly small to medium-sized businesses. We also have large enterprise clients that range from 1,000 to 8,000 users. We haven't planned to increase the usage, but we are currently using Fortinet FortiGate-VM for perimeter firewalls and SD-WAN for our branch offices.
How has it helped my organization?
FortiGate-VM is easier to deploy than physical solutions that require you to have an RNE as then you need to wait a couple of days or months for another physical appliance to be delivered. With VM, if we already have available servers in the network, we can just deploy FortiGate.
What needs improvement?
With FortiGate, we sometimes encounter bugs in various operating systems. Also, sometimes the security policies are hard to apply specifically when it comes to web filtering.
For how long have I used the solution?
We've been using FortiGate-VM from the moment I began in my company. So that was two years ago.
What do I think about the stability of the solution?
This solution is very stable.
How are customer service and technical support?
The technical support for FortiGate-VM is the same for the physical VM — they're very responsive.
How was the initial setup?
The initial setup is very user-friendly.
What's my experience with pricing, setup cost, and licensing?
For FortiGate-VM, we mostly have UTP Bundle. MA is for three to five years, but we just discovered that VM is cheaper; we found that it actually costs more than a physical appliance excluding the servers for the platform.
What other advice do I have?
Overall, on a scale from one to ten, I would give this solution a rating of eight.
Which deployment model are you using for this solution?
Private Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
IT Manager at Zipper
Easy to set up, quick to deploy, and very secure
Pros and Cons
- "The solution is very easy to set up. It doesn't take a lot of time and offers a quick deployment, so you can start using it almost right away."
- "The price model is not transparent by any means and should be made more clear. What's included in the packages is often not very obvious."
What is our primary use case?
We primarily provide the solution to our clients. We typically use it in the financial services industry.
What is most valuable?
The solution is very easy to set up. It doesn't take a lot of time and offers a quick deployment, so you can start using it almost right away.
It's a very secure product. The security provided is excellent and an organization can feel very safe while using it.
What needs improvement?
The scalability of the solution needs to be improved.
The price model is not transparent by any means and should be made more clear. What's included in the packages is often not very obvious.
For how long have I used the solution?
I've been using the solution for two years at this point.
What do I think about the stability of the solution?
The stability of the solution is pretty good. We don't have any blocks and we don't have problems with the solution in terms of bugs or crashes. We have a monitor. We have an aux for many services. It really is problem-free.
What do I think about the scalability of the solution?
The solution has some issues with scalability. I wouldn't say it's easy to scale at all.
Also, with the pricing model being so confusing, companies can't really wrap their arms around what the final pricing would be when they scale up, which makes it difficult for budgeting purposes.
How are customer service and technical support?
We don't use technical support from Fortinet. Rather, we get it from a local company. They are okay. They aren't terrible, however, they could be better. Their service is average at best.
How was the initial setup?
The initial setup is straightforward. We didn't find it to be complex at all.
Deployment is quick and easy. It takes a maximum of two hours to handle everything.
What's my experience with pricing, setup cost, and licensing?
The pricing of the solution is strange. We don't understand exactly how it's calculated or how it works.
What other advice do I have?
We recommend this firewall often and we've actually used many solutions previously. Since we chose this one, we've been overall quite happy with the results. We recommend it largely due to the fact that we use the solution ourselves.
I'd rate the solution eight out of ten. If it wasn't for the pricing model and the scalability issues, I would rate it higher.
Disclosure: My company has a business relationship with this vendor other than being a customer: Reseller
Buyer's Guide
Download our free Fortinet FortiGate-VM Report and get advice and tips from experienced pros
sharing their opinions.
Updated: January 2025
Product Categories
FirewallsPopular Comparisons
Fortinet FortiGate
Netgate pfSense
Cisco Secure Firewall
Sophos XG
Palo Alto Networks NG Firewalls
Azure Firewall
Check Point NGFW
Juniper SRX Series Firewall
Untangle NG Firewall
SonicWall NSa
Sophos XGS
Fortinet FortiOS
KerioControl
Sangfor NGAF
Buyer's Guide
Download our free Fortinet FortiGate-VM Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- Features comparison between Palo Alto and Fortinet firewalls
- How is FortiGate-VM different from the physical FortiGate firewall?
- Looking for a piece of advice and tips on the deployment of VPN concentrators for SD-WAN tunnels?
- What happens if FortiGate VM next-generation firewall in VMware NSX license becomes expired?
- Which would you recommend - FortiGate VM or Azure Firewall?
- What do you recommend for a corporate firewall implementation?
- Comparison of Barracuda F800, SonicWall 5600 and Fortinet
- Sophos XG 210 vs Fortigate FG 100E
- Which is the best network firewall for a small retailer?
- When evaluating Firewalls, what aspect do you think is the most important to look for?