My company's customers use the solution for VPNs, specifically for SSL VPNs, IPSec VPNs, and other areas like web filters and application filters.
Fortinet FortiGate VM Next-Generation Firewall
Fortinet Inc.External reviews
External reviews are not included in the AWS star rating for the product.
Has an initial setup phase that is easy to handle
What is our primary use case?
What is most valuable?
The most valuable feature of the solution revolves around SSL VPN. SSL VPN is good since I stay in a family where we use some other servers with port forwarding features, and so there is a lot of risk with it. Last time, my server got hacked with a ransomware attack. After that, we got a firewall and gave an SSL VPN to my client to connect to their servers, after which, such kind of activities involving ransomware attacks stopped.
What needs improvement?
Though the tool's GUI is user-friendly, it can be considered as an area with certain shortcomings where improvements are required.
For how long have I used the solution?
I have been using Fortinet FortiGate for five years. I am a reseller of the solution. I work with Fortinet FortiGate 40F and 60F.
What do I think about the stability of the solution?
Stability-wise, I rate the solution a ten out of ten.
What do I think about the scalability of the solution?
Scalability-wise, I rate the solution an eight out of ten.
The challenges faced by our company related to the product are associated with the activation part. Whenever my company tries to activate the product, there are some challenges. Previously, my company had given a new product to our customer who had used Fortinet FortiGate in the past. When my company tried registering the product on the portal and activating the trial license, we saw that only 30 days of use remained in the tool. We installed the product's license after all the trial licenses were activated.
I have seven to ten customers running medium-sized businesses using Fortinet FortiGate.
After connecting to Fortinet Firewall, I have not faced any complaints related to large-scale traffic or attacks.
How are customer service and support?
The solution's technical support needs to be fast since whenever my company raises a complaint, it takes almost two to three hours to get a callback from the customer support team. I rate the technical support a seven out of ten.
Which solution did I use previously and why did I switch?
I don't have any experience with SonicWall because it is not very user-friendly. Fortinet FortiGate is more user-friendly than SonicWall, so we are currently working with Fortinet FortiGate and Sophos.
How was the initial setup?
The product's initial setup phase is easy. I rate it as an eight, where one is difficult, and ten is easy. Sometimes, when configuring the SD-WAN policies, I have seen issues with the tool not working properly. After updating the firmware, the tool worked properly, but there was some issue with the SD-WAN part.
For the product's deployment phase, I configured LAN and WAN, followed by the web filter policies. If a customer requires it, you can configure the VPNs.
The solution is deployed on an on-premises model.
The solution can be deployed in half an hour.
What's my experience with pricing, setup cost, and licensing?
It is a bit expensive. On a scale of one being cheap and ten being expensive, I rate the tool's price as an eight. The price is justified for the features and capabilities offered by the product.
What other advice do I have?
I can't describe how Fortinet FortiGate has been most effective for security posture since I haven't configured any security settings. It has a setting like in Outlook's configuration involving SMTP and POP. I didn't configure any security settings in the tool.
The tool's VPN functionality supports our company's customers' remote workforce since we have given an SSL VPN connection to support those working from outside the company. After connecting to the VPN, one needs to connect it to the server directly as it is better for security.
Whenever you upgrade firewall firmware, the user interface doesn't really change. If I upgrade to a new firmware with other tools, the user interface has slightly changed.
On the portal of Fortinet, there are VMs that are available for FortiGate. Our company can give the solution to the customer on a trial basis to check how it is working, so that there are no issues.
I rate the tool a nine out of ten.
Offers WAF and DDoS attack prevention systems and is outstandingly stable
What is our primary use case?
The solution is used to monitor daily network activities. FortiGate Next Generation Firewall acts as a security layer between public and private networks in our organization.
The solution successfully mitigates all types of advanced attacks by putting our company's production servers behind the firewall using a DDoS attack prevention system and WAF. FortiGate Next Generation Firewall handles our organization's internal network security. The solution is used mainly in IT companies, just like our organization.
What is most valuable?
The WAF and DDoS attack prevention system are the solution's most valuable features. FortiGate Next Generation Firewall has IBS/IPS systems, which are vital for handling cyberattacks.
What needs improvement?
More SD-WAN features can be integrated into the FortiGate Next Generation Firewall. The vendor can make efforts to make the solution more budget-friendly.
For how long have I used the solution?
I have been using FortiGate Next Generation Firewall for seven years.
What do I think about the stability of the solution?
I would rate the stability a ten out of ten.
What do I think about the scalability of the solution?
I would rate the scalability an eight out of ten. For each purpose, there are different products used in our company from the same vendor. For instance, our company has a dedicated subscription plan for log analytics. Fortinet should host bundle pack subscriptions for its products and add-ons.
There are more than 150 users of the product in our company. Our company is functional on a hybrid model for employees, and thus, there are not more than a hundred users of the solution in the office at any given time.
Due to the aforementioned work setup, our company is exploring more scalable solutions with end-to-end security features, as many employees are working from remote locations. At our company, for end point protection we use Microsoft Defender.
How are customer service and support?
At our company, we have Fortinet certified experts in-house, so most of the issues are solved without tech support from vendor. But whenever, an issue was escalated to the support team of FortiGate Next Generation Firewall, our company has received a response on time.
How was the initial setup?
FortiGate Next-Generation Firewall integrates perfectly with our organization's infrastructure. Our organization is using the solution for more than six years without any integration obstacles, even while integrating to Fortinet Access Points.
The initial setup process is easy for the solution. There are some configurations and policies that will facilitate routing among the varying traffic, dictating what to allow or block. I would rate the initial setup a nine out of ten. The setup duration depends upon the expertise of the deployment engineer, but on average it can be finished within a day.
What was our ROI?
Our investment in security through FortiGate Next Generation Firewall is worth it as there are zero complains regarding the effectiveness of it.
What's my experience with pricing, setup cost, and licensing?
It's an expensive solution. At our company, we updated the license every three years. I would rate the pricing a nine out of ten. Presently we are upgrading the hardware in our organization before the next license renewal date.
Which other solutions did I evaluate?
In our company, we have used Sophos about six years ago. Compared to other solutions like Sophos, we found FortiGate Next Generation Firewall to be much more expensive for our organization.
But FortiGate Next Generation Firewall has a more robust hardware and stable configuration, so our company prefers the solution over others. But as the license of the the solution is expiring soon in our company, we might explore some other firewall products from Fortinet as well.
What other advice do I have?
Our company found that in comparison to Microsoft Defender for Endpoint, FortiGate Next Generation Firewall has a limited number of features and requires an ideal Fortinet environment or infrastructure to function. FortiGate Next Generation Firewall should enhance its endpoint capabilities and be less dependent on Fortinet infrastructure. The product should have cloud solution integration capabilities.
Since implementing FortiGate Next Generation Firewall, we have not experienced any attack or cyber threat on our company's network. With the solution, we have been able to proactively monitor the network and take preventive measures on time. Our company finds the product reliable in mitigating all kinds of threats.
Our company expects some AI capabilities from Fortinet solutions. I would advise FortiGate Next Generation Firewall to others as a reliable solution. I would also advise other professionals to run tests with the product as per their requirements before adopting it. The solution has excellent security policies. I would overall rate the product a nine out of ten.
Has an effective intrusion prevention system feature for maintaining security efficiently
How has it helped my organization?
Fortinet FortiGate offers a new official solution for SASE. This solution is more cost-effective for my organisation than the hardware. It doesn’t require renewals every year or every three years. With FortiGate, you get a firewall as a cloud service and optimal protection.
What is most valuable?
Fortinet FortiGate meets all the security demands of my industry. It covers endpoint security, including web interface, DNS security, and ELP. I'm currently using the latest version. The features that have most improved our network security are Web Control, filtering, application control, IDS, IPS policies, and Deep SSL inspection.
The intrusion prevention system (IPS) in FortiGate is highly effective. It detects and prevents intrusions, maintaining security efficiently. It works seamlessly with my environment and Google Analytics, providing robust protection.
What needs improvement?
The firmware updates are sometimes not stable. The stability issues can vary, sometimes happening once a month or quarterly. New firmware updates can occasionally introduce bugs, causing some policies to fail. We then have to raise a ticket, and Fortinet usually provides a fix within a few days.
For how long have I used the solution?
I have been using Fortinet FortiGate for the past three to five years.
What do I think about the stability of the solution?
For overall stability, I'd rate FortiGate an eight. It is stable, but there are sometimes issues with the software, so there's room for improvement.
What do I think about the scalability of the solution?
There are no scalability issues with Fortinet FortiGate. I haven't needed to scale it yet, but I have a relationship with the vendor, and they have a program to scale their hardware if required.
They also offer many solutions free of cost with the hardware, including advanced solutions. We have four branches of our organization, and they use these effectively.
How are customer service and support?
The support team is very effective.
Which solution did I use previously and why did I switch?
I previously used Cisco for my environment, specifically Cisco ISE for access control, but I have shifted to Fortinet products due to their cost-effectiveness.
How was the initial setup?
The deployment process of Fortinet FortiGate was very straightforward. The installation took about twenty minutes, and fully configuring it with security features took about an hour. It was pretty fast, so I didn't need to spend days preparing and configuring.
I am involved in the maintenance of FortiGate, and I have five engineers with me. Three are on-site, handling different boxes, and two are remote.
What was our ROI?
I've noticed benefits in terms of performance and timing with Fortinet FortiGate. Its implementation and deployment are quick, and migration from other vendors to Fortinet is smooth and easy. Typically, we only have about fifteen minutes of downtime during the transition and gradually implement the policies.
What's my experience with pricing, setup cost, and licensing?
For the price, I'd rate it a ten because it's very cost-effective.
Which other solutions did I evaluate?
I chose Fortinet FortiGate because it is effortless to use compared to other vendors. Their customer support is excellent, with quick responses and qualified attack engineers. They provide relevant documentation and immediate engineer assistance if needed.
What other advice do I have?
Regarding AI capabilities, the product promises threat intelligence based on AI and machine learning, which I plan to explore. FortiGate integrates smoothly with other solutions.
I'd rate FortiGate a nine out of ten.
A user-friendly and reliable solution offering good performance at a reasonable cost
What is our primary use case?
FortiGate is a popular firewall in Turkey due to its widespread use and strong performance. Technical experts can easily be found for FortiGate, which is very important. Almost every company uses FortiGate internally. FortiGate is user-friendly and reliable, offering good performance at a reasonable cost.
What is most valuable?
You can integrate certain other services with FortiGate and use additional threat intelligence services because they allow you to combine various solutions, enhancing your overall security.
What needs improvement?
FortiGate may include AI capabilities and integrate external threat intelligence. However, version management and backup/restore operations could be improved.
For how long have I used the solution?
I have been using FortiGate Next-Generation Firewall as a reseller for 15 years.
What do I think about the stability of the solution?
With high availability, this FortiGate allows one device to take over for another seamlessly in case of failure.
I rate the solution’s stability an eight out of ten.
What do I think about the scalability of the solution?
FortiGate is scalable because it supports various models that can accommodate different dimensions. It is suitable for all types of businesses.
I rate the solution’s scalability a nine out of ten.
How was the initial setup?
The initial setup is easy. The firewall setup involves more than just physical installation and basic configurations. It includes customizing specific policies and configurations tailored to the customer's needs, which can take up to two or three days for a single firewall. This process is resource-intensive both in terms of cost and time.
I rate the initial setup a nine out of ten, where one is difficult, and ten is easy.
What's my experience with pricing, setup cost, and licensing?
The product is cheap.
What other advice do I have?
FortiGate Firewall offers advanced threat intelligence capabilities. It allows integration with various threat services, such as Cisco Talos. If you are a customer of both FortiGate and Cisco for threat intelligence, you can integrate Cisco Talos with FortiGate, which enhances security effectiveness through Intelligence.
I recommend FortiGate for every company. It's a highly effective solution that can significantly enhance firewall security. You can easily find technical guides to help you understand its capabilities. FortiGate is known for its reliability and robust features.
Overall, I rate the solution an eight out of ten.
Offers stateless balance featuresand provides excellent reports and API integration
What is our primary use case?
The solution is used as a perimeter firewall, and all traffic is routed through the appliances before accessing the Internet. FortiGate Next Generation Firewall is also used in policy-based routing. The solution has features such as IPS and web filtering.
Presently I am carrying out a POC to evaluate where the SD-WAN functionality of the solution can be utilized by our company.
What is most valuable?
It's an out-of-the-box solution with impressive ratings. FortiGate Next Generation Firewall has a stateless balance proposition. The updates from the vendor ensure that the product remains up to date in terms of threat intelligence capabilities.
I personally go through reports on utilizing FortiGate Next Generation Firewall resources, bandwidth and applications that are present in the company's environment. The product has been capable of providing the aforementioned reports for the last 280 days, and such features are highly valuable for reporting purposes. The reports provided by FortiGate Next Generation Firewall also help in analyzing the traffic condition in a network.
What needs improvement?
When the SD-WAN is integrated with solutions like Citrix, it can appear complicated, which only tech professionals can implement. The solution should allow more user-friendly integrations or deployment.
For how long have I used the solution?
I have been working with FortiGate Next Generation Firewall for five years.
What do I think about the stability of the solution?
I would rate the stability an eight out of ten. But recently, we needed to undergo regular patching of the network in our company, but that's probably due to increased hacking activities or attacks. At our company, we are still confident with the solution in spite of the recent breaches.
What do I think about the scalability of the solution?
The solution is highly scalable. I would rate the scalability a nine out of ten. At our company, we can scale the solution effortlessly for enterprise networks. There are two professional users of FortiGate Next Generation Firewall in our company. The other solutions which are being evaluated in our company are FortiNAC and Fortinet SD-WAN.
How are customer service and support?
I have received satisfying support for every issue I raised with the team. The support team is responsive and helpful in resolving issues. I would rate the customer support an eight out of ten.
Which solution did I use previously and why did I switch?
Previously, Cyberoam was used in our organization. Our company has also used Check Point to deploy a multi-layered firewall solution. Check Point has numerous partners and offers satisfying support, which makes it a formidable competitor of FortiGate Next Generation Firewall.
There are various local partners of FortiGate Next Generation Firewall who offer effective support for the solution.
How was the initial setup?
While integrating FortiGate Next Generation Firewall in our company's infrastructure I faced an error while implementing a secure LDAP server. I had to roll back for the aforementioned issue and review the authentication certificates.
The learning curve of the solution varies depending on the use cases and the different features the user starts interacting with within a specific environment. The initial setup of the FortiGate Next Generation Firewall can be claimed to be straightforward. I would rate the setup a six out of ten. The deployer's CLI understanding will also be a major factor in the deployment process of the solution.
The solution's initial setup can be completed in a few days, but much more time is required to learn about the environment, evaluate the policies' interference with the services, and implement optimizations based on the insights. In total, the complete deployment takes a few weeks.
What's my experience with pricing, setup cost, and licensing?
It's an expensive solution. FortiGate Next Generation Firewall costs our company around $12000 per year. There are no additional costs involved with the product.
What other advice do I have?
I have confidence in the threat detection capabilities of FortiGate Next Generation Firewall. I haven't witnessed any downtime in the solution, even after using it for multiple years.
An automation API integration is available with FortiGate Next Generation Firewall. For instance, the solution allows integration with CrowdStrike and Darktrace to enhance the threat intelligence capabilities. I would recommend others to use FortiGate Next Generation Firewall.
It's a reliable solution for real-time threat intelligence. In the security industry, FortiGate Next Generation Firewall is a highly praised product and I am able to embed policies for effective operation. I would rate FortiGate Next Generation Firewall an eight out of ten.
Has good two factor authentication and client VPN for advanced threat protection across clouds and data centers
What is our primary use case?
My customers use Fortinet FortiGate for SD-WAN, network security, branch-to-branch communication, site-to-site channel communication, multi-layer protection, authentication, and antivirus solutions. They span various industries, including IT setups, chip-level designing, VLSI companies, software development, SAP implementation, manufacturing, and production groups.
How has it helped my organization?
What is most valuable?
The strengths of Fortinet FortiGate include network security, VPN, site-to-site tunnels, client VPN solutions, two-factor authentication for VPN clients, and SD-WAN for branch level. We have implemented these solutions for various customers.
What needs improvement?
Regarding challenges, customers initially faced issues like internet dropping, but after firmware upgrades, everything worked well.
I believe Fortinet should offer short and frequent training sessions, preferably in video format, whenever they introduce new features. These sessions should be around five to ten minutes long, allowing users and partners to quickly grasp the information without disrupting their daily tasks.
Long training sessions spanning one or two full days can lead to distractions and reduced focus due to continuous support calls. Therefore, providing brief and focused training snippets would be more beneficial for users.
For how long have I used the solution?
I have been using Fortinet FortiGate for six to seven years.
What do I think about the stability of the solution?
Our customers are satisfied with the stability of Fortinet FortiGate. I would rate it as a ten out of ten for stability.
What do I think about the scalability of the solution?
Fortinet FortiGate is quite flexible and scalable, allowing us to scale up from sixty to a hundred units. However, there are limitations for extremely high production levels. I would rate its scalability an eight out of ten.
How was the initial setup?
Setting up Fortinet FortiGate is straightforward and easy. I would rate it a ten out of ten for ease of setup. The deployment typically takes around two to three hours.
What was our ROI?
Operational costs for Fortinet FortiGate are pretty low because once it's configured, no changes are needed. In terms of ROI, clients have seen benefits. After switching from other brands to
Fortinet, they experienced fewer support calls. Initially, there were some support calls in the first one to two months, but after that, there were none. Clients are now comfortable and not wasting productive hours on IT support.
What's my experience with pricing, setup cost, and licensing?
The cost of Fortinet FortiGate is competitive and not expensive compared to other enterprise- grade solutions. On average, the license cost per year is around seventy percent of the firewall's purchase price.
What other advice do I have?
Regarding AI elements, I believe Fortinet has the capability to implement machine learning snippets for improved security and advanced configurations, but this should be integrated as part of their overall strategy.
I will advise to focus on configuring the admin tools and monitoring users and serial numbers effectively.
As for rating the solution, I would give it a ten out of ten for being a very good solution.
Easily integrates with existing infrastructure and has a helpful technical support team
What is most valuable?
The product's basic firewall feature is one of the best in the market for network security.
What needs improvement?
The platform's compatibility with Wi-Fi equipment needs improvement. Sometimes, the Wi-Fi units don't work, or one of the networks stops working, and we have to reboot the FortiGate client's endpoint.
For how long have I used the solution?
I have been working with Fortinet FortiGate for more than ten years now.
What do I think about the stability of the solution?
It is a reliable solution. I rate the stability a ten.
What do I think about the scalability of the solution?
Small-scale companies sometimes use the whole UTM solution, which includes antivirus and URL protection. However, enterprise clients usually use additional solutions for those kinds of things.
I rate the scalability a ten.
How are customer service and support?
The technical support team is responsive and helpful.
How was the initial setup?
The initial setup is easy. Depending on the project, the deployment process can take several days.
What was our ROI?
The platform generates a good return on investment.
What's my experience with pricing, setup cost, and licensing?
The product pricing is reasonable.
What other advice do I have?
It is easy to integrate FortiGate into existing infrastructure. As a firewall, it's one of the best products available today. For other features, we sometimes prefer other vendors, but for firewalls, especially for SMBs, it is a great product.
I rate it a ten out of ten.
Easy to use and provides good visibility of network traffic
What is our primary use case?
It is just for firewalls and network security.
How has it helped my organization?
It's mostly compliance, like just meeting our security requirements to keep our data secure. We don't make money out of it. It just keeps our data safe.
I have FortiGate for SD-WAN and all access points here, which has helped with traffic shaping capabilities.
I also use AI (Rapid7) to improve my cybersecurity.
What is most valuable?
It's easy to use and provides good visibility of network traffic.
What needs improvement?
The SD-WAN functionality is a bit overly complicated and not fully documented.
For how long have I used the solution?
I have been using it for six years.
How are customer service and support?
The customer service and support are good. I can contact them online or over the phone.
Which solution did I use previously and why did I switch?
I have used Sophos XTM and Palo Alto.
FortiGate is more feature-rich and has a broader range of hardware. They offer switches, access points, firewalls, and the whole network stack, whereas a lot of others only do firewalls.
It's just a good value and the possibility of using those features. We haven't used FortiSwitches yet; we're investigating them at the moment, but we haven't ordered any yet.
How was the initial setup?
The SD-WAN was certainly tricky and took a while to figure out, but the rest of the security features were straightforward.
The deployment took us six months.
What was our ROI?
It's hard to measure the return on investment, but it certainly helps us manage our security requirements easier than other solutions that I've used.
It's good value for the money.
What's my experience with pricing, setup cost, and licensing?
It was worth the money overall. It's good value.
What other advice do I have?
Overall, I would rate the solution an eight out of ten.
Provides good threat intelligence feeds, but the advanced models are expensive
What is our primary use case?
We use the solution on the perimeter. We are a government entity. We have other organizations monitoring our network. We also have our own firewall to separate the DMZ and different things on our external servers.
What is most valuable?
The solution provides good threat intelligence feeds.
What needs improvement?
The advanced models are expensive.
For how long have I used the solution?
I have been using the solution for five to six years.
What do I think about the stability of the solution?
The tool’s stability is good. I rate the stability a seven or eight out of ten. The stability could be improved.
What do I think about the scalability of the solution?
The tool is very scalable. It connects to its own wireless access points. The firewall is supported by other technologies. We can add more products and extend the features and the network.
How was the initial setup?
Fortinet has a tool that migrates all the policies from the previous firewall to the new one.
What about the implementation team?
The vendor helped us with the setup. It was quick. We connected the new firewall first. Then, we exported the policies from the live firewall to the new one. On a weekend, we deployed the new firewall.
What's my experience with pricing, setup cost, and licensing?
If we buy licenses for a longer duration, we get discounts.
Which other solutions did I evaluate?
Fortinet has better models, but we are using the one within our budget. It's a good product. Besides Fortinet, we're using Microsoft 365 and Microsoft Defender, as well as the safety features that come with these products. There are many products in the market. The monitoring team is using Palo Alto. Palo Alto is better than Fortinet, but it's more expensive.
What other advice do I have?
We use Fortinet for VPN, too. We have not faced any major issues with the tool. It has a lot of capabilities that enable us to customize tunnels and allow traffic from certain countries or regions. The vendor provides cloud-based models, but we do not use them because they are subscription-based models that are not within our budget.
The vendor has a lot of free and paid training courses. It is the best way to learn about the product. It is similar to Palo Alto. All the good companies have a lot of training materials and training courses to understand the product. The initial versions are free of cost. The certifications will help people understand the process and make administration easier. The cloud version has AI features.
Overall, I rate the product a seven or eight out of ten.
Has a good network security feature with effective threat intelligence
What is our primary use case?
I'm managing security rules, bandwidth for the internet, switches, and fifty access points. Everything, including the network in Afghanistan, is managed from there, and it's something critical for us.
What is most valuable?
FortiGate's ability to perform as expected and fulfil our needs has been the most compelling feature for network security. FortiGate has proven to be secure and effective in terms of threat intelligence, as it alerts us about external login attempts and suspicious scripts, contributing to our system's overall security.
What needs improvement?
FortiGate can improve its token system, as it requires a purchase before use. Additionally, the VPN system could be more efficient, especially regarding VLAN passing through, which is currently a limitation. Another suggestion for improvement would be better timezone coordination for customer support. Currently, there are issues with calls coming at inconvenient times due to timezone differences. Another area for enhancement could be the response time for support tickets, as there is a delay of at least twelve hours, even for urgent tickets, which can be frustrating.
For how long have I used the solution?
I have been using Fortinet FortiGate for the past three years.
What do I think about the scalability of the solution?
It is scalable as we expand our usage of FortiGate as our company grows. We're currently using one, but we plan to use two as our network expands.
How are customer service and support?
I open a ticket and communicate with the engineers when I encounter issues. Although it may take some time, they always get back to me with a resolution. There are mainly due to these issues with time zone coordination and response time.
How was the initial setup?
The setup process for FortiGate depends on the complexity of your network. For simpler setups, a user-friendly interface is easy to use. However, for more advanced configurations, it may require expertise. Integration into the ecosystem is neither too easy nor too complex.
The maintenance process is relatively easy.
What was our ROI?
Regarding return on investment, I believe FortiGate is worth the money. It has helped us stay safe, and considering what we are paying for such a system and service aligns well with our expectations and financial goals.
What's my experience with pricing, setup cost, and licensing?
The price of FortiGate is reasonable as I plan to buy new switches. The initial gadgets are already booted, and the pricing seems normal on the market. As for additional costs, I haven't subscribed to many extra features, so I'm only using what I need. Last year, I renewed the support for three years, which can sometimes be expensive but depends on the security benefits and how it helps us.
What other advice do I have?
Overall, I would rate the solution an eight out of ten.