The primary use case is to test our applications.
Good integration is quicker than other sandbox solutions and is stable
Pros and Cons
- "Fortinet FortiSandbox is faster than other sandbox solutions."
- "I would like to have machine learning added to the solution in a future release."
What is our primary use case?
What is most valuable?
The UI is good.
Fortinet FortiSandbox is faster than other sandbox solutions.
Fortinet FortiSandbox integrates with other solutions.
What needs improvement?
I would like to have machine learning added to the solution in a future release.
For how long have I used the solution?
I have been using the solution for almost three years.
Buyer's Guide
Fortinet FortiSandbox
February 2025
Learn what your peers think about Fortinet FortiSandbox. Get advice and tips from experienced pros sharing their opinions. Updated: February 2025.
832,138 professionals have used our research since 2012.
What do I think about the stability of the solution?
Fortinet FortiSandbox is stable.
What do I think about the scalability of the solution?
Fortinet FortiSandbox is scalable.
How are customer service and support?
The technical support is good.
Which solution did I use previously and why did I switch?
We previously used Check Point Sandblast.
How was the initial setup?
The initial setup is straightforward.
What about the implementation team?
The implementation was completed in-house with Fortinet support.
What's my experience with pricing, setup cost, and licensing?
The solution is affordable. There is an additional cost for a support license.
Which other solutions did I evaluate?
We evaluated Palo Alto.
What other advice do I have?
I give the solution an eight out of ten.
Compared to other sandbox solutions, Fortinet FortiSandbox is the most stable.
Which deployment model are you using for this solution?
On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Network and Server Engineer at AMiFN
Good for monitoring and security with helpful support
Pros and Cons
- "The GUI makes administration tasks straightforward."
- "It can be difficult if you need to use the Command Line Interface (CLI). It's much easier if you only have to deal with the GUI."
What is our primary use case?
Every day, we connect to Fortinet Administrative Center and Sandbox to view emails. It's great for monitoring and reporting.
What is most valuable?
The firmware is very good.
I like the services and features on offer.
Technical support is okay.
FortiGate is very easy in terms of configuration. The Web GUI is very simple and the Command Line is okay. The GUI makes administration tasks straightforward.
The solution is stable.
You can scale the solution easily.
What needs improvement?
While support is okay, it can always be slightly improved.
It can be difficult if you need to use the Command Line Interface (CLI). It's much easier if you only have to deal with the GUI.
The solution has all of the features we need.
For how long have I used the solution?
I've been using the solution for two years.
What do I think about the stability of the solution?
The product is stable. FortiGate firmware and the Sandbox are stable. We do not have problems. Even when you update, it's very reliable. There are no bigs or glitches.
What do I think about the scalability of the solution?
It is a scalable product.
How are customer service and support?
Support has been mostly helpful.
I have a contact from Fortinet support and my contact is very nice. I use it three to five times a year and they've mostly;y been able to support me and answer my questions.
We do pay for support and they do provide us with help and with patches, et cetera, to help with firmware and updates and any security items.
Which solution did I use previously and why did I switch?
I have used Stormshield in the past. That was a long time ago. We now only use Fortinet for security. Fortinet, in comparison, is easy to configure. Stormshield is also a smaller solution than Fortinet. It's technically more affordable, s Fortinet is more expensive, however, Fortinet is a bigger more technical option.
How was the initial setup?
Setting it up and configuring it is very easy.
It's easy to configure from Sandbox as configuration from the policy is very easy.
I don't have much information in terms of maintenance tasks and what might be needed to maintain the product.
What's my experience with pricing, setup cost, and licensing?
We have a one-year license for the product. You can renew it yearly.
What other advice do I have?
I'm very satisfied with this product.
We are using the latest version of the solution.
We have 500 people in the organization.
I'd recommend the solution to others. It's great, working from the cloud and the security is good.
I would rate the solution ten out of ten.
Which deployment model are you using for this solution?
Public Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Other
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Buyer's Guide
Fortinet FortiSandbox
February 2025
Learn what your peers think about Fortinet FortiSandbox. Get advice and tips from experienced pros sharing their opinions. Updated: February 2025.
832,138 professionals have used our research since 2012.
Network Security Engineer at MTDS
Highly scalable and offers good support
Pros and Cons
- "It is a stable solution."
- "In future releases, I would like to see more automation capabilities."
What is our primary use case?
We use this solution to stay updated on the latest vulnerabilities and attacks. It acts as a database for Fortinet customers to keep their equipment safe and secure.
What needs improvement?
In future releases, I would like to see more automation capabilities.
For how long have I used the solution?
I have a little experience with this solution. We recently purchased new equipment to upgrade from the old range to the new range.
We previously used FortiGate 100D and upgraded to FortiGate 100S now.
What do I think about the stability of the solution?
It is a stable solution.
What do I think about the scalability of the solution?
FortiSandbox is scalable. We have more than 1200 users across branch offices and headquarters.
How are customer service and support?
Whenever we reach out to Fortinet, they give a response in time. Till now, we have had positive interactions.
We connect with FortiGate through qualified vendors, especially regarding SLA and responsiveness.
Which solution did I use previously and why did I switch?
I have experience with other solutions like Sophos and CheckPoint.
How was the initial setup?
What about the implementation team?
We have an IT department managing the solution. There are around 30 people in the team.
What's my experience with pricing, setup cost, and licensing?
FortiSandbox is a subscription that can be purchased from Fortinet directly. Only using FortiSandbox as features purchased as a subscription in the cloud.
We purchased the bundle. So, we got one price for the package. It was a unified package.
What other advice do I have?
Overall, I would rate the solution an eight out of ten.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
IT Specialist at IPIC
A solution that helps to troubleshoot different software
Pros and Cons
- "Performance is a valuable feature."
- "The delivery feature in my country is extremely bad."
What is our primary use case?
We use Fortinet FortiSandbox to troubleshoot different software.
What is most valuable?
Performance is a valuable feature.
What needs improvement?
The delivery feature in my country is extremely bad.
For how long have I used the solution?
I have been using Fortinet FortiSandbox for three months.
What do I think about the stability of the solution?
It is a stable solution.
What do I think about the scalability of the solution?
It is a scalable solution.
How was the initial setup?
We have the support to set it up. It took a few months to deploy it. We integrate the solution and the support takes care of the solution after that. Almost three to four people are required for the maintenance.
What's my experience with pricing, setup cost, and licensing?
It is an expensive solution.
What other advice do I have?
I would rate the overall solution an eight out of ten.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Senior Network & Security Engineer at TransIT
Scalable, simple setup, but customization could improve
Pros and Cons
- "Fortinet FortiSandbox is scalable."
- "The use cases in Fortinet FortiSandbox are not good. It is difficult to upload a custom VM for Fortinet FortiSandbox. The integration of Fortinet FortiSandbox with other Fortinet or FortiGate firewalls is not good. VMs are already installed in the hardware and are working fine, but we tried to approve the custom VM many times but did not succeed."
What is our primary use case?
We use Fortinet FortiSandbox to integrate FortiMail and FortiGate firewalls.
What needs improvement?
The use cases in Fortinet FortiSandbox are not good. It is difficult to upload a custom VM for Fortinet FortiSandbox. The integration of Fortinet FortiSandbox with other Fortinet or FortiGate firewalls is not good. VMs are already installed in the hardware and are working fine, but we tried to approve the custom VM many times but did not succeed.
Fortinet FortiSandbox is complex in uploading the custom VM. Fortinet FortiSandbox needs to improve the customization and the custom framework updates.
For how long have I used the solution?
I have been using Fortinet FortiSandbox for approximately two years.
What do I think about the stability of the solution?
Fortinet FortiSandbox stability could improve.
What do I think about the scalability of the solution?
Fortinet FortiSandbox is scalable.
We have approximately 300 users using this solution. We plan to increase usage of Fortinet FortiSandbox. We are moving to the next version soon.
How are customer service and support?
The technical support of Fortinet FortiSandbox is good.
How was the initial setup?
The initial setup of Fortinet FortiSandbox is easy, it took us a few days to do.
What about the implementation team?
We used a third party to do the implementation of Fortinet FortiSandbox.
We have three engineers that are looking after the maintenance and are supporting the solution.
What's my experience with pricing, setup cost, and licensing?
The price of Fortinet FortiSandbox is expensive.
What other advice do I have?
Fortinet FortiSandbox is a leader in the market and they have good solutions.
I rate Fortinet FortiSandbox a seven out of ten.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Architect of solutions at a comms service provider with 11-50 employees
Good performance and integration capabilities with good technical support
Pros and Cons
- "Integration is one of the solution's most valuable aspects. You can integrate even third-party solutions so that they can send the information or files they quarantine through the FortiSandbox"
- "If you were to compare prices between vendors and manufacturers, you would see that the lowest equipment in the Sandbox line is quite expensive for a new customer."
What is our primary use case?
FortiSandbox was a solution that we mainly sold for manual protection, however, in order to have a more compact environment, like you see the security fabric that has Fortinet, in many of our clients, we performed integration within solutions. Our clients are mainly ones that have had Fortinet solutions previously or want to test Fortinet solutions. We also encourage them to use integration with Security Fabric.
Clients mainly use it for documents, or, for example, programs or execute tools that are injected in the network through the perimeter or through the DNC and also for internal analysis. When any of the users reconnect to the network after some time it will perform a check through FortiClient. They also have interaction with FortiSandbox - everything new is put in quarantine during the user's use. These files or execute tools are analyzed in the FortiSandbox.It can also analyze for scripts between documents or inside documents - mainly office documents like Excel, PowerPoint, or PDF.
What is most valuable?
Integration is one of the solution's most valuable aspects. You can integrate even third-party solutions so that they can send the information or files they quarantine through the FortiSandbox. That's one of the main features every customer relies on or likes.
The performance capacity is impressive. Normally, you will need a big solution, I would say, or big hardware so that you can handle all the processing you have to do. However, FortiSandbox is quite a good hardware in and of itself. You can handle it without any restrictions.
With an on-premises solution, you can do all the analysis locally and not have the need to connect to the internet to depend on that service.
The solution can scale, however, it needs to be planned ahead of time.
The technical support on offer is quite good.
What needs improvement?
With the 3000D we had some issues with the FortiOS version. I don't remember which one it was, however, there was an interaction problem or a performance issue. It might have been the FortiOS issue as it was a very particular, very specific issue and the performance was very high. All the indicators were in the highest levels and yet the equipment was not necessarily overloaded from doing analysis.
I haven't interacted directly with these solutions. I mainly use it for design and not how they work, and therefore I haven't interacted directly with them. It would be hard for me to comment on missing features in general.
The price just could be a little bit better, I would say, however, that depends a lot on the manufacturer. If you were to compare prices between vendors and manufacturers, you would see that the lowest equipment in the Sandbox line is quite expensive for a new customer. Those kinds of clients that don't have a very big budget or at least a medium one, need to rely on cloud solutions more than hardware, as hardware is expensive.
It would be ideal if the product had the ability to, if it cannot detect something correctly, to be able to put it on hold until a new release. That would be very circumstantial, actually. However, it could help protect against unknown entities.
What do I think about the stability of the solution?
I can't really speak to the stability. I haven't checked the functionalities of how they work in the current databases. So I don't have too much info about it.
What do I think about the scalability of the solution?
Part of the design is to know how the solution can scale. You normally try to leave some space. For example, you offer a customer the possibility to scale in the future, according to their needs, however, only if you know the customer is going to grow. If the customer doesn't have that need, it doesn't make any sense to offer them equipment with some space to grow or to have more processing capacity or more licenses in the future. I would say normally you would sell what the customer needs plus a 5% to 10% cushion for the future if needed. However, it would be a properly designed solution.
We usually work with medium to large-scale organizations.
How are customer service and technical support?
Technical support has been pretty good. I know they respond every time. It just takes a few hours. It doesn't take too much time to respond. They're helpful and you can count on them.
Which solution did I use previously and why did I switch?
We are also a reseller of Palo Alto solutions.
How was the initial setup?
In terms of the initial setup, I would say it is half straightforward and half complex. It depends on the scenario and it depends on the kind of things you want to do with the Sandbox, for example, the kind of files you want to analyze or which kind of OS or images you want to analyze. It also depends on the requirements. Sometimes it's harder to deploy due to the scenario, the use case.
Deployment times also vary, however, it takes, at minimum, 15 days to set everything up.
What's my experience with pricing, setup cost, and licensing?
The solution is a rather sizable investment. That said, for those organizations with sensitive data, that feed to know they are protected, it's likely worth the price tag.
What other advice do I have?
We are resellers of the product.
I worked as a systems engineer previously. I'm now a sales executive, however, previously, I was in charge of making all the designs and the architecture for the solutions, and therefore, I know the distribution of these products, how can they be used, and different scenarios. I know how to position, for example, a FortiGate inside of a network for network segmentation and also for perimeter protection. Working also for VPN solutions, we were using FortiClients in EMS. We can have a centralized solution for VPN and also endpoint protection.
In terms of versions we deployed, there was FortiSandbox 1000D and also FortiSandbox 3000D.
We try to integrate solutions together so they can have some feedback on each other and they can work better to provide security and to also sharpen the attack services.
If you don't want to have any zero-day malware on your network, if you know that you will be literally exposed to those kinds of malware, it's good to have a solution such as this. That said, it's a big, big investment. It's a big investment for a business. If you really want to protect your information, if you're dealing with very, very delicate information, you need some kind of hardware or solution that can protect it from any kind of malware, especially those from zero-day. This Sandbox would be a must-have solution for those kinds of customers.
I'd rate the solution at a nine out of ten. That would be dependant on what types of third-party software a company has that the solution could integrate with effectively.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Reseller
Vice- Head Of Math Department at a non-tech company with 5,001-10,000 employees
Beneficial analysis options, scalable, and plenty of interfaces
Pros and Cons
- "The most valuable features of Fortinet FortiSandbox are the analysis options, artificial intelligence, and the many interfaces it provides."
- "Fortinet FortiSandbox can improve by decreasing the time of analysis response. Other solutions have a better response time, such as WildFire."
What is our primary use case?
Fortinet FortiSandbox is used for threat protection. For example, in emails and the internet.
What is most valuable?
The most valuable features of Fortinet FortiSandbox are the analysis options, artificial intelligence, and the many interfaces it provides.
What needs improvement?
Fortinet FortiSandbox can improve by decreasing the time of analysis response. Other solutions have a better response time, such as WildFire.
For how long have I used the solution?
I have been using Fortinet FortiSandbox for approximately one year.
What do I think about the stability of the solution?
I rate the stability of Fortinet FortiSandbox a four out of five.
What do I think about the scalability of the solution?
I rate the scalability of Fortinet FortiSandbox a four out of five.
How are customer service and support?
I rate the support of Fortinet FortiSandbox a four out of five.
How would you rate customer service and support?
Positive
What other advice do I have?
I rate Fortinet FortiSandbox a nine out of ten.
Which deployment model are you using for this solution?
Public Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Amazon Web Services (AWS)
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
Senior Security Consultant at SEE "Systems Engineering of Egypt"
It is stable and scalable, and the technical support is good
Pros and Cons
- "The technical support is very good."
- "Most people are confused about how to use the right integration of the right Fortinet product."
What is our primary use case?
Our primary use case of this solution is to view the texts from our clients to their lawyers. We look for unknown malware and then I also use FortiFabric for integration.
What is most valuable?
I like the integration between FortiSandbox and FortiClient with FortiGate.
What needs improvement?
It would be awesome if it can be integrated with other solutions. I would like to add one more feature because there are some tricks to deploy integration for all sorts in a product. I had that problem because when I had FortiSandbox, FortiLink, FortiClient, FortiManager, FortiLicense, there was one license for the integration, and the other license was called IOP or FortiAnalyzer. I would like to have one bundle or one license for each device. There should be one orchestrator for the integration because until now there have been two devices, which are the orchestrators for the integration. So most people are confused about how to use the right integration of the right Fortinet product.
For how long have I used the solution?
I have been using this solution for three years now.
What do I think about the stability of the solution?
The solution is very stable and I've never had any issues with stability.
What do I think about the scalability of the solution?
I believe the solution is scalable.
How are customer service and technical support?
The technical support is very good.
How was the initial setup?
Setup and installation is very easy with the Fortinet Portal. If I remember correctly, the deployment took about a week.
What's my experience with pricing, setup cost, and licensing?
There are additional costs that aren't included in the licensing fee.
What other advice do I have?
I will definitely recommend this solution to others. On a scale of one to ten, my rating will be an eight. In the next version I would love to see more integration and more products from other vendors.
Disclosure: My company has a business relationship with this vendor other than being a customer: Reseller.
Buyer's Guide
Download our free Fortinet FortiSandbox Report and get advice and tips from experienced pros
sharing their opinions.
Updated: February 2025
Popular Comparisons
Microsoft Defender for Office 365
ESET Endpoint Protection Platform
Palo Alto Networks WildFire
Trend Micro Deep Discovery
Trellix Network Detection and Response
Check Point SandBlast Network
Symantec Advanced Threat Protection
Trellix Advanced Threat Defense
SonicWall Capture Advanced Threat Protection
Buyer's Guide
Download our free Fortinet FortiSandbox Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- Fortinet FortiSandbox: cloud version vs on-premise one. Which is better and why?
- How much do independent test results affect your security purchases?
- Holding Security Vendors Accountable
- What can businesses do to improve their security posture?
- When evaluating Advanced Threat Protection, what aspect do you think is the most important to look for?
- What is your recommended cost-effective solution to detect and prevent APT attacks?
- Compromise Assessment vs Threat Hunting
- What are the main evaluation criteria for you when choosing the right vendor for brand protection services?
- Why is ATP (Advanced Threat Protection) important for companies?