We use Fortinet FortiGate 100F, which is one of two firewalls that we have, one at the entrance of the DMZ and one just outside. One is facing the internet, and the other is at the entrance of the DMZ. We use the one outside to essentially work as a VPN.
Fortinet FortiGate Next-Generation Firewall
Fortinet Inc.External reviews
External reviews are not included in the AWS star rating for the product.
A robust, secure, and reasonably priced firewall
What is our primary use case?
How has it helped my organization?
As compared to our previous firewall, WatchGuard, which is a good firewall, the successful hacking attempts were far fewer and further with the Fortinet FortiGate, but at the same time, I don't know if the credit goes to only FortiGate, as we have two firewalls versus one in the second implementation. Overall, it is more secure. The VPN is also more stable than the offering from WatchGuard at that time.
What is most valuable?
Fortinet FortiGate is one of the most solid and secure firewalls as long as you keep it up to date. The price is right; it's not very expensive.
It's quite feature-rich. While we've mostly used the VPN, we've also utilized it to create high availability.
What needs improvement?
We are pretty happy with it. If anything, I believe the web interface could be simpler, especially for someone who has limited networking experience. I mostly do administration, and I found Cisco to be the hardest major firewall manufacturer to deal with, with Fortinet FortiGate being the second hardest for me. In comparison, there's a bit of an easier and more user-friendly interface with WatchGuard.
For how long have I used the solution?
I have about three years of experience with the Fortinet FortiGate firewall. We also use FortiClient VPN.
What do I think about the stability of the solution?
The VPN was more stable than the offering from WatchGuard at that time.
How are customer service and support?
I would evaluate the service and technical support of Fortinet FortiGate as pretty good. Whenever we needed them, they would be there for us. I would rate them a nine out of ten. We had no complaints, although they were sometimes extremely busy.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
Before using Fortinet FortiGate, we were using WatchGuard, which is another good firewall.
How was the initial setup?
The initial setup process was efficient, as it took us less than an hour to set up both firewalls.
What about the implementation team?
I was involved in the deployment of the Fortinet FortiGate, handling the physical deployment myself while our vendor managed the initial setup.
We got the Fortinet FortiGate from Telus, which is a Canadian phone company. Our experience was excellent. They're a major phone company, so the services are never less than stellar.
The maintenance for Fortinet FortiGate involves just the occasional patch update. We have software that informs us whenever there's a new patch, and if it's critical, we run the patch update immediately; if not, we usually run it at the end of the month after it's released.
What was our ROI?
We had uninterrupted service. If one firewall failed, we still had a secure infrastructure. I believe we essentially had a great VPN compared to the alternative offerings, so that's a good return on investment.
What's my experience with pricing, setup cost, and licensing?
It's good. I would rate the price of the Fortinet FortiGate as an eight out of ten. It's not the cheapest, but it's value for money. Given everything we've got out of it: the DMZ port, the VPN, and the high availability, it's a pretty reasonable price.
What other advice do I have?
I would advise others considering or evaluating the Fortinet FortiGate to buy it. It's one of the best products for the price.
I would rate Fortinet FortiGate a nine out of ten.
Which deployment model are you using for this solution?
Deep inspection capabilities require improvement while good GUI and features enhance network performance
How has it helped my organization?
What is most valuable?
What needs improvement?
What other advice do I have?
Provides comprehensive security and time savings
What is our primary use case?
The typical use cases for Fortinet FortiGate revolve around its security capabilities, as it has a number of features that clients see as necessary for a security solution. This helps them protect various platforms on their networks and infrastructures.
I am involved in implementation as a partner.
What is most valuable?
It's a good solution. I've not interacted much with it. I know a few features, and it's a nice one.
It's comprehensive and time-saving. It covers several areas regarding security.
What needs improvement?
Improvements for Fortinet FortiGate could be made by making it easier to implement on networks and simpler to add users and accounts that utilize this solution. That's basically the only challenge that I see.
For how long have I used the solution?
I have one to two years of experience working with Fortinet FortiGate.
What do I think about the stability of the solution?
Fortinet FortiGate is a stable solution. While there are issues during implementation, once everything is properly configured, it remains stable. The implementation process can affect users, but those issues get sorted out.
What do I think about the scalability of the solution?
I find the scalability of this solution to be very good because it allows for easy expansion. You can add more users as needed, which makes it flexible.
How are customer service and support?
I would rate the technical support from Fortinet FortiGate an eight out of ten.
How would you rate customer service and support?
Positive
What's my experience with pricing, setup cost, and licensing?
I normally apply the licensing as a partner, but I am not involved in procurement.
What other advice do I have?
It's a good product that significantly enhances security and protects organizational data. Therefore, I would recommend considering using it.
I would rate Fortinet FortiGate an eight out of ten.
Which deployment model are you using for this solution?
Enables seamless traffic handling and effective network protection
What is our primary use case?
What is most valuable?
What needs improvement?
For how long have I used the solution?
What was my experience with deployment of the solution?
What do I think about the stability of the solution?
What do I think about the scalability of the solution?
How are customer service and support?
How would you rate customer service and support?
Neutral
How was the initial setup?
What about the implementation team?
What was our ROI?
What's my experience with pricing, setup cost, and licensing?
What other advice do I have?
Which deployment model are you using for this solution?
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Our clients like its comprehensive protection and easy installation and management
What is our primary use case?
The typical use case for the Fortinet FortiGate firewall for my clients is its ease of use. My clients are using Fortinet FortiGate as SD-WAN.
How has it helped my organization?
The effectiveness of Fortinet's unified SASE in providing consistent security policies is notable because there is one security profile from either the head office or the branch office, allowing your profile to move seamlessly with you wherever you go. You have end-to-end visibility, and you can look at the analytics. To me, that moves towards SASE.
What is most valuable?
My clients appreciate it for its features. It is easy to install and manage, and it offers all-around protection, including web filtering, content filtering, IPS, and IDS.
My clients find the next-generation firewall feature of Fortinet FortiGate to be particularly valuable. It provides internet security, network security, cloud security, ZTNA, and SD-WAN security. There is a unified agent for FortiClient. There is centralized management.
What needs improvement?
Areas of improvement for Fortinet FortiGate include the need for more training and certification, especially when dealing with distributors globally, which presents challenges in product availability and delivery timelines.
There should also be more training and certification.
For how long have I used the solution?
I have about 10 years of experience with Fortinet FortiGate.
What do I think about the stability of the solution?
I find Fortinet FortiGate to be a stable solution.
What do I think about the scalability of the solution?
Fortinet FortiGate is a scalable solution, as you can start small, maybe with FortiGate 40F, and then move to FortiGate 60F or FortiGate 80F, depending on your needs.
How are customer service and support?
It depends on who your distributor is.
How would you rate customer service and support?
Neutral
How was the initial setup?
It is not straightforward, but the implementation is pretty good overall. Every site is different for me. There is no standard site. We have a few different issues here and there, but overall, it's pretty good and straightforward to install. Its integration is not difficult.
It is a matter of learning and understanding the reasons why people need Fortinet FortiGate.
What was our ROI?
Fortinet FortiGate positively provides my clients' organizations with a high return on investment. There is visibility into network operations, allowing us to identify network issues. It has advanced security features. You can achieve about 200% ROI over three years, while enhancing IT teams' productivity by about 50%. It simplifies security across branches and enhances hybrid and cloud security. There is even a feature where you can predict the application performance.
What's my experience with pricing, setup cost, and licensing?
It's very competitive.
What other advice do I have?
Many users nowadays prefer agentless installations over installing agents on their devices, which presents challenges for endpoint security, especially concerning ZTNA, VPN, and endpoint protection.
I would rate Fortinet FortiGate an eight out of ten.
Which deployment model are you using for this solution?
Does its job effectively and protects our environment
How has it helped my organization?
We don't have any issues regarding security, and our web server is running fine with protection from all threats.
What is most valuable?
The best features of Fortinet FortiGate are that it does the job effectively and protects our environment. It has a VPN and can create a virtual IP for a web server and functions as a standard firewall.
What needs improvement?
We faced difficulties with the configuration because there are many features we could optimize using Fortinet FortiGate, but our reseller didn't have a good understanding of it. So, we just use it on a basic level, not with the best practice for using FortiGate.
For how long have I used the solution?
We have been using Fortinet FortiGate for around five years.
What do I think about the stability of the solution?
Overall, I find Fortinet FortiGate to be very stable. Fortinet FortiGate demonstrates consistent stability.
What do I think about the scalability of the solution?
In my case, the 101F is not scalable. I faced problems with scalability related to memory. When we hit 100% memory usage, it stops the internet connection, so we need to control the traffic. We cannot increase the memory.
We have about 350 users and only one admin.
How are customer service and support?
My experience with Fortinet's technical support is good and helpful. The response time and overall competence meet our expectations. I would rate their support a seven out of ten.
How would you rate customer service and support?
Neutral
Which solution did I use previously and why did I switch?
We used Juniper before Fortinet FortiGate. We switched because it was an old one and reached the end of support. We had to change.
How was the initial setup?
We were supported by a third party and the reseller. During deployment, it was not a good experience because of the reseller. We had challenges with the optimized configuration.
The deployment took around three months.
What about the implementation team?
The reseller helped us with the implementation. It has been a long time since the implementation, so I don't remember the name of the company that helped us.
Our IT has six people for deployment, and we used two staff members.
What was our ROI?
We have seen a return on investment with Fortinet FortiGate. The ROI calculation is based on potential loss prevention rather than traditional ROI metrics.
What's my experience with pricing, setup cost, and licensing?
Its pricing is good. The advantages of Fortinet FortiGate over its competitors include good pricing and meeting our requirements at a lower cost. Palo Alto's features are superior, but too expensive.
Which other solutions did I evaluate?
I compared other brands, such as Palo Alto and Sophos, and chose Fortinet FortiGate. Palo Alto is the best, but it is significantly more expensive. Palo Alto has better capabilities than Fortinet FortiGate. Their protection is much more secure, and they excel in detecting intrusion and reading information.
What other advice do I have?
I would rate Fortinet FortiGate an eight out of ten.
Which deployment model are you using for this solution?
Implementation improves efficiency and provides greater visibility over issues
What is our primary use case?
What is most valuable?
What needs improvement?
For how long have I used the solution?
What was my experience with deployment of the solution?
What do I think about the stability of the solution?
How are customer service and support?
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
How was the initial setup?
What about the implementation team?
What was our ROI?
What's my experience with pricing, setup cost, and licensing?
What other advice do I have?
Real-time updates strengthen our network edge security with effective threat detection
What is our primary use case?
What is most valuable?
What needs improvement?
For how long have I used the solution?
What was my experience with deployment of the solution?
What do I think about the stability of the solution?
What do I think about the scalability of the solution?
How are customer service and support?
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
How was the initial setup?
What about the implementation team?
What's my experience with pricing, setup cost, and licensing?
Which other solutions did I evaluate?
What other advice do I have?
Which deployment model are you using for this solution?
FSSO and Run Script are useful, and its price is also good
What is most valuable?
There is a tool called FSSO, which is a single sign-on user ID agent that works perfectly. You can configure anything on it, and it is better than Palo Alto's version.
The GUI is written in JavaScript, so when you move any object or policy to another one, it becomes easy to use. It is user-friendly and not complex for network configuration.
Run Script is the best tool to use in Fortinet FortiGate with multiple environments. You can perform multiple tasks at once with the script functionality. It is available through the GUI, whereas in Palo Alto, you need to run it in a separate tool, such as Python.
What needs improvement?
I prefer Palo Alto over Fortinet FortiGate. Its IPS engine is not better than the Palo Alto version. The monitoring tool needs improvement, and the syslog configuration needs enhancement.
The management plane and control plane are not separated as they are in the same hardware devices, whereas in Palo Alto, everything is separated. So, if the CPU and GPU usage gets higher in the data plane, the admin also becomes unreachable.
The web filter in Fortinet FortiGate is not very useful. While you can add web filters in security policies, it is difficult to understand and not flexible to use.
Fortinet FortiGate frequently experiences IPS engine problems.
For how long have I used the solution?
I have been working with it for four to five years.
What do I think about the stability of the solution?
In most cases, the IPS engine uses too many resources, which makes Fortinet FortiGate devices unstable. When clients encounter different issues, the IPS engine is usually the problem because it consumes excessive resources.
How are customer service and support?
I have not worked directly with technical support, but I am familiar with the distributor, partner, and vendor. People who work with Fortinet provide adequate service.
How would you rate customer service and support?
Positive
How was the initial setup?
I mostly migrate from Fortinet FortiGate, Check Point, and other solutions to Palo Alto. For migrations from various solutions to Fortinet FortiGate, it takes a few days, depending on the environment.
What's my experience with pricing, setup cost, and licensing?
Fortinet FortiGate is cheaper than Palo Alto. It is about 20% cheaper.
What other advice do I have?
I prefer Palo Alto over Fortinet FortiGate. Fortinet FortiGate is not the best firewall, but it is acceptable. If you have a budget to buy a firewall and Palo Alto is too expensive, then Fortinet FortiGate can be usable. As an instructor in Palo Alto Networks who knows all the techniques, I naturally prefer Palo Alto.
For a small company or branch, I would choose Fortinet FortiGate because it is cheaper and the features are sufficient. However, for more critical environments, such as government institutions or banks, where privacy and security are paramount, I would opt for Palo Alto.
In a hamburger topology setup with the internet side and internal side, I prefer using Palo Alto Networks on the internet side and Fortinet FortiGate on the internal side. This creates a multi-vendor environment, avoiding dependency on a single vendor. The internet side requires more security, hence I would go for Palo Alto, whereas the internal side would benefit from Fortinet FortiGate's flexibility and ease of use.
I would rate Fortinet FortiGate an eight out of ten.
Which deployment model are you using for this solution?
Provides good application control and security, and it's user-friendly
What is our primary use case?
We have two deployments of Fortinet FortiGate at different sites. One is the SD-WAN, and the other is the next-generation firewall.
We secure our perimeter using Fortinet FortiGate. We are using it as a gateway device, and we have all the filters, such as the web filter, the intrusion detection and the anti-virus. We mainly use it to filter our traffic. Most importantly, it serves as our gateway device. That is how we are using it at the end of the day.
We wanted to see how Fortinet FortiGate SD-WAN can help us reach out to our branch, and that was the only reason for enabling it. It pretty much works for connectivity to the branch.
How has it helped my organization?
It is very user-friendly compared to other products. It integrates with many other technologies out there. It does not matter what technology you have deployed within your network, it can work with that.
We have not had an issue with the Fortinet FortiGate firewall. We recently renewed the licenses for the firewall and FortiNAC, and it has been working well. I have not had any incidents or instances since the last renewal.
What is most valuable?
Application control and the web filter are the best features of Fortinet FortiGate.
Traffic control is available, and I have been using Fortinet FortiGate to allocate bandwidth also, so it helps me manage and allocate bandwidth to my applications. On that side, that has worked for me. Most importantly, it helps to filter unwanted traffic.
What needs improvement?
Its pricing can be better. I cannot think of anything else because it pretty much satisfies our requirements. I am comfortable with this product.
The only issue that I have is with FortiNAC. The firewall is fine, but the FortiNAC interface is a little bit too jumbled or too complicated, not as straightforward as it is on the Fortinet FortiGate firewall and FortiAnalyzer.
What do I think about the stability of the solution?
I have not faced any stability issues with Fortinet FortiGate. I would give it an eight out of ten for stability.
What do I think about the scalability of the solution?
Fortinet FortiGate is scalable. I would rate it an eight out of ten for scalability.
How are customer service and support?
I raise my tickets for Fortinet FortiGate, and they are handled well. The support is pretty good. I would rate the support an eight out of ten.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
In this work environment, Fortinet FortiGate was the first one we had as our firewall. We had nothing before it.
I have previously worked with Check Point and Cyberoam. Those are the only two products that I can compare with Fortinet FortiGate.
From my experience, administration is a bit complicated on the Check Point side. Most of the concepts are similar, but configuring Fortinet FortiGate is a little bit easier for me compared to Check Point. Cyberoam was resource intensive, which I have not seen in Fortinet FortiGate.
How was the initial setup?
The initial setup of Fortinet FortiGate was handled by a provider to implement it, but the knowledge transfer was pretty much straightforward. It took about two weeks to deploy Fortinet FortiGate.
What was our ROI?
We are not a business-oriented organization; our primary aim is to make sure that our assets are protected. We had some issues before having this firewall, and we have not had any incidents ever since we implemented Fortinet FortiGate.
What's my experience with pricing, setup cost, and licensing?
When I look around at other products, such as Sophos, Fortinet FortiGate is 20% to 30% more expensive with our current cost.
The license renewal for Fortinet FortiGate has been a little bit costly. When we are paying, we renew both the warranty and licenses for Fortinet FortiGate. That is what makes the whole thing a bit costly.
We normally purchase and renew those licenses for FortiAnalyzer, FortiNAC, and Fortinet FortiGate firewall at the same time. When I look around, I would say Fortinet FortiGate is on the higher side.
What other advice do I have?
The thing that I have not experienced with it is the web application firewall. I was trying to find out from the partner whether it is something that is licensed separately. When you look at the policies, it looks it is not active.
I would recommend using Fortinet FortiGate because of its usability. I would rate it a nine out of ten.