Information Security and Compliance Officer at Carnation
Real User
Top 5
2024-06-12T07:25:00Z
Jun 12, 2024
More SD-WAN features can be integrated into the FortiGate Next Generation Firewall. The vendor can make efforts to make the solution more budget-friendly.
When the SD-WAN is integrated with solutions like Citrix, it can appear complicated, which only tech professionals can implement. The solution should allow more user-friendly integrations or deployment.
Learn what your peers think about FortiGate Next Generation Firewall (NGFW). Get advice and tips from experienced pros sharing their opinions. Updated: November 2024.
FortiGate has been solid for us, but I see room to explore its integration with Secure Service Automation for a more comprehensive security view. The initial migration had some challenges, but they were manageable. Now, my focus is on automating responses to alerts, especially during nighttime attacks. I want to investigate how FortiGate can connect with other solutions, like SIEM, to enhance our security measures while offline.
Infrastructure Manager at a retailer with 501-1,000 employees
Real User
Top 5
2023-07-27T07:22:42Z
Jul 27, 2023
In terms of solutions, for now, we don't have any SD-WAN. Yeah. We are planning to implement SD-WAN due to some failures we experienced last year. For our high availability design, this would be beneficial. So I would like to have SD-WAN as a part of the Next Generation Firewall. It would enhance high availability.
Technical Support Engineer at ITCG SOlutions Pvt Ltd
Real User
Top 20
2023-07-11T06:44:51Z
Jul 11, 2023
There are multiple firewalls, and I mainly worked with Sophos and FortiGate. To weigh the pros and cons, different types and aspects should be considered in different firewalls. The support for FortiGate in the Indian region can be improved along with the scalability. The pricing of the solution is expensive, so it could be cheaper.
IT Specialist at a aerospace/defense firm with 1-10 employees
Real User
Top 5
2023-06-19T11:58:50Z
Jun 19, 2023
In order to make it even better in the future, improved integration with other vendors' solutions could be beneficial. FortiGate is compatible enough with other infrastructures, but I encountered difficulties when attempting integration with other infrastructures. So, better compatibility could be an area for improvement. Another area of improvement could be in terms of changing passwords. For instance, when using FortiGate firewall, you can have the option to set up SSL VPN, allowing users to connect to the network externally. It's like using FortiClient software. But here's the thing, when you have a local account on FortiGate, and you use it to access the network, there is no option to change your password, and that becomes a problem. Especially when you are not using Active Directory and instead relying on the local FortiGate database to create accounts. The admin creates the account for you with credentials and a password. But when you try to access using the VPN client software, you have the ability to change your password, and that's not ideal. It's quite challenging. So, if you need to change your password, you have to contact the administrator to change it on the equipment, and that's not convenient, especially in large environments. So, that could be the only solution.
Information Technology Infrastructure Manager at SVP
User
Top 20
2023-05-29T06:55:00Z
May 29, 2023
The price of licensing could be better. The security of the FortiOS needs improvement, and features are available only in CLI. They could be available also in GUI. Features like forward traffic capture or NAC in the VPN should take into consideration both Linux devices and Apple devices.
The FortiGate Next Generation Firewall (NGFW) from Fortinet is a comprehensive cybersecurity solution designed to cater to a wide array of organizational needs. It integrates seamlessly into the Fortinet Security Fabric, offering robust protection against various internal and external threats, including attacks, malware, and vulnerabilities. The NGFW is known for its advanced features such as SSL inspection, application control, visibility enhancements, and an effective intrusion prevention...
I would like to see improvements in some of the hard drive features on FortiGate so that we can generate reporting within a single box.
The solution’s pricing is high.
The performance can be improved.
More SD-WAN features can be integrated into the FortiGate Next Generation Firewall. The vendor can make efforts to make the solution more budget-friendly.
When the SD-WAN is integrated with solutions like Citrix, it can appear complicated, which only tech professionals can implement. The solution should allow more user-friendly integrations or deployment.
Support for courses available on the platform
FortiGate has been solid for us, but I see room to explore its integration with Secure Service Automation for a more comprehensive security view. The initial migration had some challenges, but they were manageable. Now, my focus is on automating responses to alerts, especially during nighttime attacks. I want to investigate how FortiGate can connect with other solutions, like SIEM, to enhance our security measures while offline.
The solution's stability should be improved because it is extremely unstable.
In terms of solutions, for now, we don't have any SD-WAN. Yeah. We are planning to implement SD-WAN due to some failures we experienced last year. For our high availability design, this would be beneficial. So I would like to have SD-WAN as a part of the Next Generation Firewall. It would enhance high availability.
I see problems with the licensing. If I have to add a new feature, we need to add a license. There may then be extra costs for our maintenance budget.
There are multiple firewalls, and I mainly worked with Sophos and FortiGate. To weigh the pros and cons, different types and aspects should be considered in different firewalls. The support for FortiGate in the Indian region can be improved along with the scalability. The pricing of the solution is expensive, so it could be cheaper.
FortiGate Next Generation Firewall's performance and threat intelligence could be improved.
In order to make it even better in the future, improved integration with other vendors' solutions could be beneficial. FortiGate is compatible enough with other infrastructures, but I encountered difficulties when attempting integration with other infrastructures. So, better compatibility could be an area for improvement. Another area of improvement could be in terms of changing passwords. For instance, when using FortiGate firewall, you can have the option to set up SSL VPN, allowing users to connect to the network externally. It's like using FortiClient software. But here's the thing, when you have a local account on FortiGate, and you use it to access the network, there is no option to change your password, and that becomes a problem. Especially when you are not using Active Directory and instead relying on the local FortiGate database to create accounts. The admin creates the account for you with credentials and a password. But when you try to access using the VPN client software, you have the ability to change your password, and that's not ideal. It's quite challenging. So, if you need to change your password, you have to contact the administrator to change it on the equipment, and that's not convenient, especially in large environments. So, that could be the only solution.
The price of licensing could be better. The security of the FortiOS needs improvement, and features are available only in CLI. They could be available also in GUI. Features like forward traffic capture or NAC in the VPN should take into consideration both Linux devices and Apple devices.