Fortinet FortiGate Next-Generation Firewall
Fortinet Inc.External reviews
External reviews are not included in the AWS star rating for the product.
Custom security policies enhance adaptability while transparency in rules calls for improvement
What is our primary use case?
What is most valuable?
What needs improvement?
For how long have I used the solution?
How are customer service and support?
How would you rate customer service and support?
Neutral
How was the initial setup?
What about the implementation team?
What's my experience with pricing, setup cost, and licensing?
Which other solutions did I evaluate?
What other advice do I have?
SD-WAN feature helps with network integrity, but support needs enhancement
What is most valuable?
The SD-WAN feature of Fortinet FortiGate has been most impactful in maintaining our network's integrity.
Fortinet FortiGate's threat detection capabilities are good for our use because it's an internal firewall; however, we haven't enabled some of the features that are there. We've enabled IPS and antivirus generally.
What needs improvement?
They could improve the response time and quality of support.
I'm not sure what additional features they need to have in the future to make it better. For the purpose that we use it, it is doing the job, but I haven't explored some of the features.
For how long have I used the solution?
I have been using Fortinet FortiGate for seven years.
What do I think about the stability of the solution?
I haven't had any issues with the stability or performance of the actual firewall. It has been fine with no bugs.
We didn't have to think about upgrading or anything; it does what we bought it for. If it wasn't for the end of support and the end of sale, we would not think about changing it. We are considering similar products for upgrading, maybe newer or bigger hardware.
What do I think about the scalability of the solution?
The product is scalable. Currently, 120 people are using Fortinet FortiGate in my company.
How are customer service and support?
I would rate their technical support about six out of ten; I'm not fully satisfied. They could improve the response time and quality of support.
How would you rate customer service and support?
Neutral
What was our ROI?
Fortinet FortiGate has delivered financial and operational ROI to my organization. It took about two to three years to realize ROI with Fortinet FortiGate.
What's my experience with pricing, setup cost, and licensing?
At the time we bought them, I was satisfied with their pricing; I don't know how the new pricing will be.
We have to pay additionally for maintenance or support; it is not all included.
What other advice do I have?
I would rate Fortinet FortiGate a seven out of ten.
Which deployment model are you using for this solution?
Effective threat prevention speeds up response but maintenance can be challenging
What is our primary use case?
My customers use Fortinet FortiGate for various purposes. The security services provided by Fortinet FortiGate are quite strong.
I have had use cases where FortiGate helped to protect the mission-critical data for my customers.
FortiGate is effective at protecting the data at the edge.
What is most valuable?
What I appreciate about Fortinet FortiGate is its effectiveness. The feature that I find the most effective is threat prevention.
The mean time to respond and the remediation process is sped up. FortiGate has also helped to consolidate tools and applications for my customers.
The firewall has indeed helped customers to consolidate tools and applications. Once everything is set and done, maintaining FortiGate can have its challenges.
Fortinet FortiGate brings numerous benefits to my company.
What needs improvement?
The good things aside, there are improvements needed in the Fortinet FortiGate. My customers requested specific features to be included in the Fortinet FortiGate.
For how long have I used the solution?
My experience with the Fortinet FortiGate is recent, as I worked with it less than a year ago.
What do I think about the stability of the solution?
My impression of the stability of FortiGate is that it is quite stable.
What do I think about the scalability of the solution?
When it comes to scalability, I find it scalable.
How are customer service and support?
I have escalated questions to Fortinet's tech support.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
We need to compare different firewalls, including Fortinet FortiGate and Hillstone, and then suggest the better one to our clients.
How was the initial setup?
The initial implementation part is straightforward, but it has some complexities. My implementation strategy involves several steps that I take when deploying it.
What about the implementation team?
I do have hands-on experience working with the products, and I do the POCs and implementation part.
What was our ROI?
When it comes to the ROI, the return on investment of FortiGate can be a bit hard to estimate, but based on my experience, I find it to be quite favorable. Overall, Fortinet FortiGate has indeed helped to reduce the total cost of ownership for my customers.
What other advice do I have?
My impression of the firewall's ability to provide network and security coverage is positive.
When it comes to sustainability, my impressions of the firewall are favorable.
The size of the environment with Fortinet FortiGate was significant, including many endpoints and users, and it involved enterprise-level business.
Based on my experience, I would say to someone considering purchasing Fortinet FortiGate's data center firewall is that it's a good choice. I would give Fortinet a solid score.
User-based policies improve network security but integration complexity persists
What is our primary use case?
We use different solutions from FortiGate, focusing primarily on their firewalls within our department. However, due to a reorganization, the operational maintenance of FortiGate is now managed by someone else.
What is most valuable?
The most helpful features of FortiGate include its firewall policy, specifically the user-based policy, which I find to be quite beneficial in managing our network security effectively. FortiGate has also provided reliable protection against many attacks, although it lacks the ability to detect specific attacks like SQL injection, which usually requires a web application firewall.
What needs improvement?
The main area needing improvement is the user-friendliness of FortiGate's integration with other Fortinet tools like FortiAuthenticator and VPN services. Configuring these services is quite complex and not very user-friendly, requiring technical steps that are difficult for normal users to understand. Fortinet support's resolution of issues is slow, and the research on making the solution user-friendly needs to progress further.
For how long have I used the solution?
I have worked with FortiGate for more than eight or nine years.
What do I think about the stability of the solution?
We have not faced any stability issues with FortiGate since we specified sizable RAM and CPU, and our size was adequate for our traffic.
How are customer service and support?
Fortinet provides a prompt response. However, the resolution process is slow. While their response time is quick, their ability to resolve issues takes a long time.
How would you rate customer service and support?
Neutral
Which solution did I use previously and why did I switch?
We have previously used a solution called Cyberoam, which has been replaced with a new brand. There are also managed firewalls offered as a cloud solution that we have not considered yet.
What's my experience with pricing, setup cost, and licensing?
In terms of cost-effectiveness, Fortinet tools like FortiGate are costly for us as a higher education institute in India. Our expenditure is focused on minimal levels, however, FortiGate's pricing is positioned for corporate levels, which can be inflexible.
Which other solutions did I evaluate?
We are considering replacing Fortinet with a different solution, taking about a year to change configurations and rules.
What other advice do I have?
Fortinet should consider developing a pricing scheme for the education segment since educational institutions in India operate on non-profit terms and under government regulations. They could potentially follow Kaspersky's example, which provided a more affordable pricing model for students and educational institutes.
As a product, I would rate FortiGate around seven out of ten.
Which deployment model are you using for this solution?
Threat prevention is reliable but signature management needs attention
What is our primary use case?
We primarily deal with Check Point products and Fortinet solutions, such as FortiGate and IPS.
What is most valuable?
The firewalls are valuable for threat prevention. FortiGate IPS is also useful, even though it has room for improvement.
What needs improvement?
There is a need for enhancement with the signature management, improving the datasheet numbers, and scalability issues.
What do I think about the stability of the solution?
I think Fortinet has stability issues in Istanbul.
What do I think about the scalability of the solution?
I believe the product is not scalable enough.
What's my experience with pricing, setup cost, and licensing?
I think a lower price might be beneficial.
What other advice do I have?
Overall, I would rate FortiGate IPS six out of ten.
There are issues with signature management, datasheet numbers, and scalability. Information about the security technical lead was discussed for internal use.
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Deep inspection provides strong threat protection but needs more advanced AI
What is our primary use case?
I primarily use FortiGate IPS to protect my company from advanced threats like zero-day attacks and other cybersecurity threats.
What is most valuable?
The most valuable feature is the deep inspection for traffic, which is capable of identifying zero-day attacks. This solution works well on a daily basis, detecting various types of malicious traffic. Integration with FortiFabric enables easy management and scalability across different locations.
What needs improvement?
There could be improvements in the mathematical algorithms used for behavior analytics of traffic. More advanced AI capabilities would be beneficial in future updates.
For how long have I used the solution?
I have been using FortiGate IPS for about two years.
What do I think about the stability of the solution?
The stability of the solution is excellent. I rate it as nine out of ten. There are no issues with stability, and it integrates seamlessly with the main product, which is a firewall.
What do I think about the scalability of the solution?
FortiGate IPS is highly scalable. I can easily integrate it with FortiFabric and manage multiple firewalls and other Fortinet solutions from a single dashboard.
How are customer service and support?
Fortinet support is very responsive. I would rate their support as eight out of ten.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
I also use Cisco for email security. Fortinet was chosen since it is a popular solution for middle-sized companies in my region.
How was the initial setup?
The initial setup took about two to three hours and included setup and configuration.
What about the implementation team?
The implementation involved two engineers. It was handled internally.
What was our ROI?
I have not calculated ROI specifically, however, the primary goal was to enhance cybersecurity.
What's my experience with pricing, setup cost, and licensing?
There are no extra expenses involved after purchasing the solution. Pricing could be better, however, overall, it is considered a middle-level price for a middle-level company.
Which other solutions did I evaluate?
I am currently working mostly with Fortinet as well as with Cisco for email security.
What other advice do I have?
I recommend FortiGate IPS for those looking to add an additional layer of security on top of a firewall to combat cyberattacks. I would rate the overall solution as seven out of ten.
Initial setup is very easy, but real-time connection with the cloud could be improved
What is most valuable?
The solution’s initial setup is very easy.
What needs improvement?
The solution's real-time connection with the cloud could be improved.
For how long have I used the solution?
I have been using Fortinet FortiGate IPS for four years.
What do I think about the stability of the solution?
Fortinet FortiGate IPS is a very stable product.
I rate the solution’s stability ten out of ten.
What do I think about the scalability of the solution?
Fortinet FortiGate IPS is a very scalable solution.
I rate the solution’s scalability an eight or nine out of ten.
Which solution did I use previously and why did I switch?
I have previously used Cisco.
How was the initial setup?
The solution’s initial setup is very easy. The solution was deployed by a network engineer or security engineer.
On a scale from one to ten, where one is difficult and ten is easy, I rate the solution’s initial setup a nine out of ten.
What's my experience with pricing, setup cost, and licensing?
Fortinet FortiGate IPS is cheaper than other solutions like Cisco or Check Point.
What other advice do I have?
I would recommend the solution to other users.
Overall, I rate the solution a seven out of ten.
Handles high traffic loads and maintains performance but lacks zero trust
What is our primary use case?
We use the solution for internet restrictions, application control, and enterprise protection.
What needs improvement?
Zero trust could be added. Nowadays, solutions like Zscaler, Netskope, and even SecureWorks combine multiple features into a single product.
For how long have I used the solution?
I have been using Fortinet FortiGate SWG for ten years.
What do I think about the stability of the solution?
We have not encountered any breaches or incidents using the FortiGate Firewalls. The integrated prevention services are effective.
What do I think about the scalability of the solution?
This solution is used by two thousand to three thousand users. I rate its scalability a six to seven out of ten.
How are customer service and support?
Support takes time to respond.
How would you rate customer service and support?
Neutral
How was the initial setup?
The initial setup is easy. We need to validate the difference between the existing and the new version. Some new categories may be added when we upgrade the versions; we have to recouple that whether it's like it or not.
It takes seven days to deploy because some products require a long installation and configuration. We perform during non-production hours and validate data releases using a different process that will continue when we are updating.
We have six members to handle the deployment.
What was our ROI?
FortiGate is a software solution that encompasses firewall capabilities with multiple built-in, readily usable features at one monthly pricing point.
What's my experience with pricing, setup cost, and licensing?
The product pricing is moderate and competitive to Palo Alto.
I rate the product’s pricing a six out of ten, where one is expensive, and ten is cheap.
What other advice do I have?
Issues with integration and other features that don't function as expected could occur. We aren't aware of these changes until we encounter problems and submit a ticket. This process is incomplete for configuring upgrades correctly.
FortiGate handles high traffic loads and maintains performance, but we need to size it based on our business, Internet bandwidth load, or connectivity requirements when deploying multiple Fortinet FortiGate firewalls. The firewall size should match the bandwidth needs; for example, a small firewall with 300-400 Mbps central bandwidth won't suffice for 48 panels.
Overall, I rate the solution a seven out of ten.
Which deployment model are you using for this solution?
Provides good threat intelligence feeds, but the advanced models are expensive
What is our primary use case?
We use the solution on the perimeter. We are a government entity. We have other organizations monitoring our network. We also have our own firewall to separate the DMZ and different things on our external servers.
What is most valuable?
The solution provides good threat intelligence feeds.
What needs improvement?
The advanced models are expensive.
For how long have I used the solution?
I have been using the solution for five to six years.
What do I think about the stability of the solution?
The tool’s stability is good. I rate the stability a seven or eight out of ten. The stability could be improved.
What do I think about the scalability of the solution?
The tool is very scalable. It connects to its own wireless access points. The firewall is supported by other technologies. We can add more products and extend the features and the network.
How was the initial setup?
Fortinet has a tool that migrates all the policies from the previous firewall to the new one.
What about the implementation team?
The vendor helped us with the setup. It was quick. We connected the new firewall first. Then, we exported the policies from the live firewall to the new one. On a weekend, we deployed the new firewall.
What's my experience with pricing, setup cost, and licensing?
If we buy licenses for a longer duration, we get discounts.
Which other solutions did I evaluate?
Fortinet has better models, but we are using the one within our budget. It's a good product. Besides Fortinet, we're using Microsoft 365 and Microsoft Defender, as well as the safety features that come with these products. There are many products in the market. The monitoring team is using Palo Alto. Palo Alto is better than Fortinet, but it's more expensive.
What other advice do I have?
We use Fortinet for VPN, too. We have not faced any major issues with the tool. It has a lot of capabilities that enable us to customize tunnels and allow traffic from certain countries or regions. The vendor provides cloud-based models, but we do not use them because they are subscription-based models that are not within our budget.
The vendor has a lot of free and paid training courses. It is the best way to learn about the product. It is similar to Palo Alto. All the good companies have a lot of training materials and training courses to understand the product. The initial versions are free of cost. The certifications will help people understand the process and make administration easier. The cloud version has AI features.
Overall, I rate the product a seven or eight out of ten.
Simplifies the deployment of next-generation firewalls with integrated IPS and VPN capabilities
How has it helped my organization?
I work with multiple customers. Most are comfortable running IPS within their firewalls rather than deploying it. The standard deployment requires finding a service owner and training them on the platform. However, if I deploy a next-generation firewall with integrated IPS and VPN capabilities, it simplifies things. It's straightforward for someone to manage. Consolidating a VPN server, IPS, and standalone firewall into one appliance can be challenging for many customers. Fortinet's servers are increasingly popular.
What needs improvement?
Fortinet has serious vulnerabilities. Some of their interfaces are exposed to attacks. Since they are more prevalent, they may attract more attacks and have more vulnerabilities discovered.
What do I think about the stability of the solution?
If I'm incorporating FortiGate IPS, FortiGate firewall, Forti VPN server, or any other component into an existing Fortinet fabric, I already have a Fortinet analyzer and FortiManager. With this integrated Fortinet ecosystem, stability issues are significantly reduced. Additionally, inserting a standalone Fortinet device is much easier and much more accessible.
How are customer service and support?
Customer support is fine and fairly responsive.
How would you rate customer service and support?
Neutral
Which solution did I use previously and why did I switch?
We used Cisco products and operated within a Cisco ecosystem. Currently, Cisco is too expensive, but FortiGate IPS does not position itself as premium like Cisco.
How was the initial setup?
The initial setup can be completed within a month with some IT security architecture by replacing IPS.
What's my experience with pricing, setup cost, and licensing?
The product is expensive but comparable to Cisco.
What other advice do I have?
There are limitations to consider, such as the sandbox capacity. Increasing the sandbox limit is essential for better integration with the firewall IPS, facilitating traffic offloading. Since my customers deal with heavy content, we often need to upload content for analysis by the IPS and sandbox. Thus, the system effectively fulfils its intended purpose. However, we do not need to assess features beyond what the customer requires. As long as we meet their specific needs and use case, it's satisfactory.
We're building a network of partners, you know, offering competitive pricing to engage in significant projects. Firewalls are pretty standard. The ecosystem issues may revolve around business support and pricing.
You need more considerable internal resources to manage it. For clients with a robust security solutions team, architects, and skilled developers who handle data and generate similar content, I would recommend Fortinet FortiGate IPS. These individuals should be capable of upgrading their packages and downloading them. If they are comfortable with Docker, they can deploy it as an appliance on a server.
Overall, I rate the solution a six out of ten.