Sign in Agent Mode
Categories
Your Saved List Become a Channel Partner Sell in AWS Marketplace Amazon Web Services Home Help

Reviews from AWS customer

15 AWS reviews

External reviews

57 reviews
from and

External reviews are not included in the AWS star rating for the product.


    Hassan Wali Khan

Virtual firewall deployment has protected data center apps and simplified threat management

  • February 04, 2026
  • Review provided by PeerSpot

What is our primary use case?

Fortinet FortiGate-VM is used for virtual machine deployment within data centers to protect applications. Some customers do not want to deploy hardware firewalls due to budget constraints. With a good hypervisor, they can deploy Fortinet FortiGate-VM firewall in their data center as a virtual firewall.

For example, if you have applications hosted in a data center and do not want to deploy Fortinet FortiGate hardware firewalls due to budget constraints and have a good hypervisor, you can secure your application by deploying Fortinet FortiGate-VM on your hypervisor in the data center to protect the application directly. Traffic comes first to Fortinet FortiGate-VM, and then clean or secure traffic reaches the data center server.

What is most valuable?

Fortinet FortiGate-VM is similar to a Fortinet FortiGate hardware firewall, and we can get all the same features. It is a good solution with Fortinet FortiGate-VM firewall.

Deployment is easy within any hypervisor cloud, whether Citrix Xen, VMware, or Nutanix.

The threat detection capabilities are excellent. I would rate this as ten out of ten because of the good features that come with the services and FortiGuard connection. You can get signatures every hour, including IPS signatures, anti-malware signatures, web filters, and application filters. These signatures come directly from the firewalls. An additional feature is the ability to create custom signatures in Fortinet FortiGate-VM, such as application signatures and IPS signatures.

What needs improvement?

Regarding the solutions, more features need to be introduced. Fortinet FortiGate-VM has FortiWAF features, but they are limited. These features need to be enhanced in Fortinet FortiGate-VM itself. Although Fortinet FortiGate has FortiWAF feature as a standalone feature, more features need to be onboarded into this firewall. Additionally, some features should be offered for free. For example, the minimum comes with two CPU, but at least four CPU license-based or still two CPU should be free.

For how long have I used the solution?

I have been using Fortinet FortiGate-VM for the last six to seven years.

What do I think about the stability of the solution?

Stability is ten out of ten. Stability and scalability are both ten out of ten.

What do I think about the scalability of the solution?

Stability and scalability are both ten out of ten.

How are customer service and support?

The technical support of Fortinet FortiGate-VM and Fortinet FortiGate is eight or nine out of ten.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

Regarding Fortinet FortiGate-VM, I do not see any virtual machine of Cisco firewall to deploy in any hypervisor. This is the only time I have seen Fortinet FortiGate-VM with the feature to deploy on any hypervisor. Usually, these features are not available in other vendors.

How was the initial setup?

Setup can be completed within ten to fifteen minutes. Operational tasks and maintenance are very easy.

What about the implementation team?

Five people, all technical staff, are capable of deploying Fortinet FortiGate-VM.

What was our ROI?

Integration capabilities are very good. I deployed and integrated Fortinet FortiGate-VM with Microsoft AD server. Integration is very easy and can be completed within two to three minutes with Microsoft AD or any other third-party servers.

What's my experience with pricing, setup cost, and licensing?

Pricing cannot be said to be cheap because the pricing is not fixed. Pricing varies based on the size of the deal. If you have a good size deal, you can get more discount from Fortinet FortiGate team. If you buy a single Fortinet FortiGate-VM, you will not get as much discount from the Fortinet team. This can be marked as six, seven, or eight.

What other advice do I have?

Many organizations, enterprises, oil and gas companies, public sector, and commercial sector are all using these firewalls. The banking sector is also using them.

Automation can be configured in Fortinet FortiGate-VM. For example, if someone logs into Fortinet FortiGate-VM from an IP address, I can receive an email with the user login IP address, username, login time, and date.

I recommend this one hundred percent if you want to deploy a solution, have budget constraints, and do not want to buy hardware Fortinet FortiGate-VM. I will recommend using Fortinet FortiGate-VM deployed on your hypervisor. I would rate this solution ten out of nine. My overall review rating for this product is nine out of ten.


    reviewer2283873

Security has improved with deep visibility and zero trust, but performance sizing needs work

  • January 30, 2026
  • Review from a verified AWS customer

What is our primary use case?

Network and infrastructure security can be used depending on the environment which a customer has, but it is usually more useful in virtual data center protection. Fortinet FortiGate-VM can protect VM infrastructure, virtual infrastructure, or cloud infrastructure in AWS, Azure, or other cloud vendor providers, as well as virtual infrastructure on premises in your own private data center.

What is most valuable?

I would say that it is cheaper than other vendors. In comparison of features, it is at the same level as Palo Alto and Check Point. It is a leader in the Gartner quadrant with the same feature set but at a lower price. However, it also has some weak points that require careful sizing of the solution before using it with all security features switched on, because it has a significant downgrade of throughput capacity when switching on more security features. If you need all features switched on with all signatures and SSL inspection, then you need to check for a higher grade model.

Fortinet FortiGate-VM provides integration across various environments, which is important especially for integration with domain controllers and authentication services. This is very important nowadays. All other integrations depend on the project and company needs.

With this solution, you can apply the zero trust concept in place with role-based access to the internet. URL filtering works well, and it is flexible. At the same time, with integration with other security solutions, you can quickly respond to incidents if anything happens. In total, fewer security incidents appear and you can respond more quickly.

After deployment, you have better visibility. You can see who, where, when, and how, and you can make reports.

What needs improvement?

I would say that it is cheaper than other vendors. In comparison of features, it is at the same level as Palo Alto and Check Point. It is a leader in the Gartner quadrant with the same feature set but at a lower price. However, it also has some weak points that require careful sizing of the solution before using it with all security features switched on, because it has a significant downgrade of throughput capacity when switching on more security features. If you need all features switched on with all signatures and SSL inspection, then you need to check for a higher grade model.

Real-time threat response is better in Palo Alto because they have an embedded machine learning engine which can detect viruses. In Check Point, you have to have a sandbox or be connected to the sandbox to check for unknown threats.

These are not problems per se, but you need to be more careful and more experienced when choosing this solution. You should not look just at a data sheet, but also look at real tests in the field and load tests from companies who are making them. The best way to choose is to test in your environment, see the capacity and throughput which you need, and then choose the model after a proof of concept.

For how long have I used the solution?

Fifteen years.

What do I think about the stability of the solution?

If it is sized in a proper way, there would be no downtime. If it is sized in an improper way, there would be questions.

What do I think about the scalability of the solution?

It is scalable.

How are customer service and support?

I was a tech support person, so I did not have a chance to escalate. I faced issues and fixed them myself. I did not escalate to the second level, so I do not closely work with their support team.

How would you rate customer service and support?

How was the initial setup?

It depends on the project. If you need just an internet connection for a few people, you just plug it in and it is done. You write two rules which allow access and apply basic URL filtering. If it is a data center segmentation solution, you need to plan a lot before you deploy it, and deployment would be complicated with any product. For basic setups for small businesses, it is easy and plug and play. However, for big projects like data center protection, it is complicated with any vendor, not just easy.

What was our ROI?

It is difficult to count honestly. When you need a cheap solution, you go for Fortinet. If you have more money, it is a matter of choosing between Android phone or iPhone. Both products are good, but one is a little bit better. If you do not have money to overpay, then you go for the cheaper one. If you have budget, then you can go for a more expensive one.

What other advice do I have?

I work with the product both as a customer and as a partner integrator, and also as a reseller.

There is a significant impact because you see full network visibility from layer three to layer seven, all threats, and all vulnerability exploitation attempts. With SIEM integration, it highlights a lot of data which can be used with PI solutions and also for incident response.

It is scalable. As for technical support, I was a tech support person, so I did not have a chance to escalate. I faced issues and fixed them myself. I did not escalate to the second level, so I do not closely work with their support team.

Regarding real-time threat response capabilities, I think they are better in Palo Alto because they have an embedded machine learning engine which can detect viruses. In Check Point, you have to have a sandbox or be connected to the sandbox to check for unknown threats.

The impact of threat detection on IT security operations is significant because you see full network visibility from layer three to layer seven, all threats, and all vulnerability exploitation attempts. With SIEM integration, it highlights a lot of data which can be used with PI solutions and for incident response.

As a reseller and a user, the biggest benefit that stands out is that it is cheaper than other vendors. In comparison of features, it is at the same level as Palo Alto and Check Point. It is a leader in the Gartner quadrant with the same feature set but at a lower price. However, it also has some weak points that require careful sizing of the solution before using it with all security features switched on, because it has a significant downgrade of throughput capacity when switching on more security features. If you need all features switched on with all signatures and SSL inspection, then you need to check for a higher grade model.

Fortinet FortiGate-VM has some embedded features for automation such as tagging and dynamic groups. Using the API, you can respond and integrate with SIEM solutions. However, this requires technical background and work effort.

My overall review rating for this product is seven out of ten.

Which deployment model are you using for this solution?

On-premises

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?


    Vaibhav Patkar

Cloud firewall deployment has improved real-time threat response and centralized control

  • January 27, 2026
  • Review provided by PeerSpot

What is our primary use case?

I am still working with all these vendors today: Scion, Kaseya, and SolarWinds, as I use these products for usage as well as I support these products because we sell the solutions also. We sell Fortinet FortiGate-VM, we sell Palo Alto, and we sell most of them. I have been selling it probably in the last five years.

What is most valuable?

When you say VM, Fortinet FortiGate-VM is essentially a firewall in a cloud, which is Fortinet on a cloud, eliminating the need for a physical apparatus or physical appliance to run this solution. In the old days, you required a physical box in your environment to install physically in your data center and configure that box and communicate with wherever you wanted to do. Now with Fortinet FortiGate-VM kind of a system, the physical appliance is no longer required. All you require is a cloud-based or a software firewall that you can utilize anywhere, anyhow. The advantage here is you can start the implementation within no time; as soon as the order is received and the tenant is ready to start implementation, you do not require a mandatory delivery time of six to eight weeks. This can happen within probably four or five days or maybe two days itself after the confirmed order. That is one of the biggest advantages of having a VM-based firewall because you do not require any physical configuration. You can do a virtual or a software configuration, and you can be in business within the shortest possible time. Customers appreciate that because the delay in terms of deliveries is no longer available. Either you can install it on customer premises or we can install it on a cloud also.

Hybrid Mesh Firewall feature is beneficial because even if you have a Mesh Firewall, how it works is if you have an architecture designed in such a way that it will be controlled from centrally but utilized locally. You have a mesh of ten firewalls, but you are located at ten different locations and you want to go to the internet and you probably have a local gateway. In the older design, you have to come through a central location and then access your internet and go out, which becomes problematic because your latency would be very high. You will get a delayed response for anything and everything you want to access. However, with a meshed environment and a proper internet POP, you can have the standard controls implemented across. At the same time, since you are accessing the systems locally over the internet, the response time or latency is fast. That is one of the biggest advantages one gets with a mesh firewall and centralized management.

I also speak about real-time threat response capability, and it is real time. You get fast access and people are happy because when they ask for any query, you get an immediate response rather than waiting earlier for a longer time. That is the advantage.

Fortinet FortiGate-VM definitely improves overall security posture because it has better features in terms of better management or better configuration options and parameters. Any firewall cannot be configured with default parameters because it will probably give you issues. If you can configure it properly, and it has a GUI interface, the graphical interface actually helps you configure things much faster and in a better manner.

One benefit with such VM-based solutions is that if you are connected to the internet, all the updates and all the threat intelligence platforms are always kept online and up to the mark. You do not have to wait for an update which will happen probably a week, ten days, or a month later. Whatever updates are required are instantly available. Therefore, threat detection, even if it is a zero-day, can occur in a much better way because if it gets updated at the central Fortinet level, it gets percolated directly to the firewall's database, making it a better option.

I have been using Security Fabric Automation features to generate alerts or automate threat response because that is essential. When you have a fabric implemented, any issues with the firewalls can be immediately known, and you can take actions accordingly. That is a good feature.

What needs improvement?

Negatives are it could be the same as physical, because if the physical box has some defects, obviously it does not work. The same thing happens if the cloud has issues or a VM is not working well. Those are typical unavailability problems. Usually when it is VM or a cloud, you get better availability. But you never know what problems can happen. At least what I have seen is if the configuration is right and if you have a decent way of doing things, usually there are no issues. If the configuration has challenges then obviously configuration and availability are the main keys in terms of having a better one. They could be negatives also because if you do not configure, you have a problem. If the VM is not available, then also you have a problem because you cannot communicate. Those are the negatives I would address.

What do I think about the stability of the solution?

The general stability of Fortinet FortiGate-VM is very stable.

What do I think about the scalability of the solution?

The scalability of Fortinet FortiGate-VM depends on the VM configuration. Assuming I know that there are twenty, I am giving an example. Let us say the solution requires the base one supports five locations, and if you want to increase the number of locations and the bandwidth requirements, then obviously I can just increase my VM CPU or the basic. Alternatively, I can create a bigger VM or the larger VM and just implement this, which will take lesser time. It is not that complicated to do it, but it is possible to do it without much downtime.

How are customer service and support?

I rate customer support and technical support from Fortinet at a nine because we have certified people on our roles for such products. Most of the problems are troubleshot by my own team. Only when there are some peculiar issues do I have to talk to support and get the necessary done. Once the tickets are raised and severity is defined, then they are pretty prompt in supporting also.

How would you rate customer service and support?

Positive

How was the initial setup?

The implementation and deployment part is really straightforward because there is no hardware involved. If there is no hardware, then obviously software-wise you can configure it much faster and much better because as soon as you get the license. All these things are controlled by an activation key which is at Fortinet's side. When I am talking about Fortinet FortiGate-VM, the VM requirements are already set. I can immediately implement that, download the part, and for activation, if I get the key, I can be starting in no time. If I had to wait for an appliance, the appliance takes probably six to eight weeks to deliver. I should not have to wait for six to eight weeks when I can get things done without much of a challenge.

What other advice do I have?

The accessibility of integration across various environments in Fortinet FortiGate-VM is very easy, I would say, because we integrate with multiple SIEM systems. We have found that integration is relatively easier. As soon as you integrate with your SIEM, even we have integrated with our ticketing system, that is also possible, and we have done that. All you require is a little bit of understanding regarding parameters, and if you know what to look for and where to look, I think those are possible to do.

In terms of how the price of Fortinet compares to other products on the market, I think Fortinet is a much better product in terms of availability and support from Fortinet's side as well. My company has a long relationship with Fortinet. We deal mostly with Palo Alto on an appliance basis. They may be having such a product, but at least my experience with Fortinet is better than others.

Regarding TCO related to Fortinet, I think the customer is the right person to talk about that because I can only talk from a features point of view. In terms of similar size equipment, the customer must have a comparison with, let us say, Palo Alto or Juniper versus Fortinet. I think Palo and other products are a little expensive. Unless you go with some cheaper options, maybe a Cisco or Sophos kind of thing, those are cheaper options but still give you value for money. That is why I believe a customer chooses Fortinet. There is also an architecture thought process that goes behind. An enterprise customer will always go with an internal firewall and external firewall architecture and frequently choose one OEM for internal and another for external. Therefore, they will have a mixed bag kind of a thing, like Fortinet and Check Point or Fortinet and Juniper. It all depends on the architecture as well. To answer that question in terms of TCO is relative compared to the customer, and I will not be in a right position to provide an incorrect answer. I would rate this solution a nine overall.


    Flamur Prapashtica

Network security has improved and team now manages IDS, IPS, WAF and VPN with clear visibility

  • January 19, 2026
  • Review from a verified AWS customer

What is our primary use case?

We are using Fortinet FortiGate-VM on one VM, and two we are using as a dedicated appliance.

The features that we actually use are the IDS/IPS or IPS feature. We also use Intrusion Detection and WAF, Web Application Firewall. They have their own VDOM. We are using FortiAnalyzer for that separately and FortiBackup.

We are not using it yet. What we are focusing on first was migrating to a new VPN. That was one of the first steps. Then enabling the firewall and moving all the subnets as a gateway through Fortinet FortiGate-VM. If I remember correctly, we also are enabling WAF, enabling SSL inspection, and introducing FortiAnalyzer and so on.

How has it helped my organization?

Security is of course a major improvement, and we have more visibility on the network. We can probably say that the cost is manageable with four or five people managing those since we are a telecom and we also have our SOC. Comparing with others, it's straightforward and simplicity. We are not paying for features we are not using right now, but for the future, probably the Fabric and so on, but we only have those now.

From our perspective, it's quite good. When we have the visibility, we will make our policies depending on the threats that are coming because we are using many different other security measures. Fortinet FortiGate-VM as an internet gateway or firewall is very good for us.

What is most valuable?

We use an on-premises deployment.

The features that we actually use are the IDS/IPS or IPS feature. We also use Intrusion Detection and WAF, Web Application Firewall. They have their own VDOM. We are using FortiAnalyzer for that separately and FortiBackup.

What needs improvement?

I'm not entirely sure because I have to check now. What we purchased is a licensing for three years. I have to check now because in the coming year, we will be checking those. Probably, I'm not sure what the price is. It might be that it should be a little cheaper for us.

For how long have I used the solution?

We have been using Fortinet FortiGate-VM for two years for the firewalls, and I think four years with our mail, FortiMail.

What do I think about the stability of the solution?

There are not really complexities, so I would say that it's straightforward.

What do I think about the scalability of the solution?

It does not cause issues because actually it makes it longer. We do not only work with Fortinet FortiGate-VM, but I think it was around three months when we established everything. We were not in a hurry, which is why we did it ourselves. We had some kind of process first to determine our design and so on, the basic design. Because we are a telecom, we have to involve a lot of units and so on. But for deployment, it was straightforward. Until we had what we needed, and then we created everything ourselves from firewall. It does not take one hour or one day because we work partially on that and mostly focused on other jobs that we have, then we come back to Fortinet FortiGate-VM and so on. Probably we can say that within three months, we have started moving VLANs and people making through the gateway and so on. We implemented VPNs and some other things.

How are customer service and support?

We have had several cases with some support, but we can make it somewhere around eight.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

We are part of Telekom Slovenia. From our mother company, they have infrastructure that we took all the hardware from. I think it's a regional setup on the Adriatic part of East Europe, but I'm not sure.

How was the initial setup?

There are not really complexities, so I would say that it's straightforward.

What about the implementation team?

We did it with our team. We are about four members in my unit who are dealing with Fortinet FortiGate-VM. In the beginning, when we introduced FortiMail, it was from Forti itself with support from them, establishing the first setup. This is regarding the FortiMail VMs. It was some kind of lessons or training. We were together with them, and regarding the Forti Firewall, we did it alone with our team.

My team is mostly dealing with it. I only get some reports from them as my duty. I am not involved directly in implementing it and so on. But I am aware of the functionality and so on from Fortinet FortiGate-VM. We have a team of four people mostly who are dealing with Fortinet FortiGate-VM. There are also two or three others who are dealing with the FortiMail. We also have a SOC here who is dealing with the FortiAnalyzer. As a Head of Security, I am getting those reports and so on. My input or my role is very low on some occasions, but I am not typically managing directly those firewalls.

What was our ROI?

It might be positive.

What's my experience with pricing, setup cost, and licensing?

From our perspective, it's quite good. When we have the visibility, we will make our policies depending on the threats that are coming because we are using many different other security measures. Fortinet FortiGate-VM as an internet gateway or firewall is very good for us.

I'm not entirely sure because I have to check now. What we purchased is a licensing for three years. I have to check now because in the coming year, we will be checking those. Probably, I'm not sure what the price is. It might be that it should be a little cheaper for us.

Which other solutions did I evaluate?

We are part of Telekom Slovenia. From our mother company, they have infrastructure that we took all the hardware from. I think it's a regional setup on the Adriatic part of East Europe, but I'm not sure.

What other advice do I have?

From our perspective, it's quite good. When we have the visibility, we will make our policies depending on the threats that are coming because we are using many different other security measures. Fortinet FortiGate-VM as an internet gateway or firewall is very good for us. I would rate this review as an eight out of ten.


    Vishal Khedekar

Cloud security has become faster to deploy and now supports robust, user-friendly protection

  • January 08, 2026
  • Review from a verified AWS customer

What is our primary use case?

We are a system integrator, so we are dealing with Fortinet and Sophos. I work with all of them, depending on the customer's needs. I have experience with Fortinet, particularly with deployment experience using Fortinet FortiGate-VM, this particular firewall.

What is most valuable?

For me personally, the best features of Fortinet FortiGate-VM are that it is user-friendly and easy to deploy. The GUI is very user-friendly, so anyone can quickly learn how to use it.

Fortinet FortiGate-VM is time-saving and robust from a security perspective, so it brings positive benefits to the organization.

What needs improvement?

In the future, I would like to see configuration backup on email included in Fortinet FortiGate-VM.

The AI capabilities that they launched last year should be enhanced. If we procure FortiManager, then through FortiAI, we can find out the issues or the configuration changes required as per best practices. Those things need to be added to help us troubleshoot more easily. If the AI helps us even with troubleshooting, it will save a lot of time for us as well.

Some of the compatibility and technical support issues are reasons why I rate it eight instead of nine or ten; the rest of everything is good.

For how long have I used the solution?

I have been working with Fortinet FortiGate-VM for around five to ten years.

What do I think about the stability of the solution?

We were facing challenges while deploying Fortinet FortiGate firewall on AWS with Graviton instances; we were not able to build HA. The Graviton processor has some limitations. I do not know exactly what the issue was, but we changed the instance type and then installed it. There must be some compatibility issues with that particular Graviton CPU and Fortinet.

What do I think about the scalability of the solution?

It took a couple of weeks, approximately two to three weeks, to overcome all those issues.

How are customer service and support?

The technical support is very helpful, but reaching technical support is quite difficult because whenever we have raised a ticket, it takes a lot of time to reach them and even make them understand the issue. When we raise a ticket, it routes to some L1 engineer, and they might not have adequate AWS or Azure knowledge, which is why it took a lot of time to get an L3 or L2 engineer and find a resolution.

What about the implementation team?

We have an entire team of ten to fifteen people involved in the process of deployment, and they are the implementation engineers.

What other advice do I have?

With respect to cloud networks, we may require some detailed documentation because that will help improve our implementation.

It was good; I did not find any challenge with Fortinet Security Fabric's real-time threat response capabilities.

We do not utilize Fortinet FortiGate-VM's Hybrid Mesh Firewall feature.

It is better how I assess the impact of Fortinet FortiGate-VM's threat detection on our IT security and our customer's IT security after implementation.

It is very affordable and very competitive pricing; I think it is a good solution. I rate this product eight out of ten.

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Amazon Web Services (AWS)


    Mohamed Fouad

Firewall has strengthened perimeter security and has reduced incidents through real-time threat blocking

  • December 22, 2025
  • Review from a verified AWS customer

What is our primary use case?

My main use case for Fortinet FortiGate-VM is that it is used as a main firewall to secure our network as a perimeter firewall for our enterprise network.

As a perimeter firewall, Fortinet FortiGate-VM acts as a firewall for our enterprise network to access multiple VMs, providing security and a basic firewall for these VMs.

In addition to being a perimeter firewall, Fortinet FortiGate-VM helps us with inspecting traffic and blocking malicious activity on these VMs.

What is most valuable?

In my experience, the best features Fortinet FortiGate-VM offers are usability, stability, and return on investment.

Regarding stability, Fortinet FortiGate-VM has had no issues, and we have a great experience with implementing it. About return on investment, it reduced incidents, and fewer people are needed to manage this firewall, so money is saved.

Fortinet FortiGate-VM has positively impacted my organization by providing basic security and capabilities for threat modeling, threat prevention, and IPS. It has powerful IPS that provides the attack signature to be detected in real-time. We have FortiGuard and the license, and once we had the license on Fortinet FortiGate-VM, everything worked well.

What needs improvement?

It would be better to have high availability with hardware for Fortinet FortiGate-VM, as it will be better for implementing high availability.

For how long have I used the solution?

I have been using Fortinet FortiGate-VM for about five years.

What do I think about the stability of the solution?

Fortinet FortiGate-VM is stable.

Since implementing Fortinet FortiGate-VM, we have gained deep insight into network traffic due to its great viewing capabilities, and we can integrate with the cloud or FortiAnalyzer for log retention which is free for seven days and can be purchased for a longer duration. Fortinet FortiGate-VM's stability is the best feature.

What do I think about the scalability of the solution?

Fortinet FortiGate-VM's scalability is great. You can upgrade your licensing module and also purchase a license with the same VM as your organization grows.

How are customer service and support?

Customer support for Fortinet is one of its best features. You can open a ticket and expect a reply and problem-solving from effective engineers in just one hour, which no other vendor can offer.

How would you rate customer service and support?

Which solution did I use previously and why did I switch?

Previously, I used Palo Alto, and I configured it many times, but I think Fortinet FortiGate-VM is much better than Palo Alto because of licensing cost, complexity, and usability.

How was the initial setup?

My experience with pricing, setup cost, and licensing for Fortinet FortiGate-VM is very good. We have a licensing module along with a next-generation firewall module, and its pricing compared to other vendors is one of the best features of Fortinet as it is cheaper than any vendor, and the low setup cost allows anyone to implement Fortinet FortiGate-VM easily.

What was our ROI?

Specific outcomes from Fortinet FortiGate-VM show that we have reduced incidents as we are actively blocking attacks, which also leads to cost savings.

I have seen a return on investment. We have time saved due to visibility and security in one box, and fewer employees are needed because the usability of Fortinet FortiGate-VM means our management team is smaller.

What's my experience with pricing, setup cost, and licensing?

My experience with pricing, setup cost, and licensing for Fortinet FortiGate-VM is very good. We have a licensing module along with a next-generation firewall module, and its pricing compared to other vendors is one of the best features of Fortinet as it is cheaper than any vendor, and the low setup cost allows anyone to implement Fortinet FortiGate-VM easily.

Which other solutions did I evaluate?

Before choosing Fortinet FortiGate-VM, I evaluated Palo Alto.

What other advice do I have?

Fortinet FortiGate-VM is deployed in my organization on a public cloud and also on a hybrid cloud.

We use AWS as our cloud provider for both public and hybrid cloud deployments.

I purchased Fortinet FortiGate-VM through the AWS Marketplace.

Fortinet FortiGate-VM has improved our overall network security posture by stopping attacks and benefiting from FortiGuard, which provides attack signatures while applying WAF modules and antivirus signatures to analyze and stop attacks.

With Fortinet FortiGate-VM's threat detection, we can stop attacks in real time, and we have alerts. We also have automations on Fortinet FortiGate-VM, so once the host is compromised, we get notifications, allowing us to integrate Fortinet FortiGate-VM with our infrastructure security. This integration creates a great security fabric, enabling us to detect patient zero on our network and stop advanced attacks in real time.

We have set up automation on Fortinet FortiGate-VM to detect compromised hosts, and upon detection, we execute an action to FortiGate NAC to isolate the compromised host, leading to positive benefits from Fortinet FortiGate-VM.

The integration capability across environments is crucial for us because once we gain visibility, we can effectively deal with attacks and have great useful information to enhance our network security, applying firewall policies according to the logs, thereby enhancing the visibility of our network.

If you are considering using Fortinet FortiGate-VM, you should check Fortinet when deploying a firewall. My recommendation, based on best practices with Fortinet firewall implementation, is that its stability is the best feature. You can have a great licensing module and scalability across all signatures. Once you purchase the license, you will receive the most real-time signatures from FortiGuard, so I strongly recommend using Fortinet FortiGate-VM.

I am just a customer, and my company does not have a business relationship with this vendor. I would rate this product a ten out of ten.


    Mohamed Fouad

Centralized management has improved branch security operations and simplified threat prevention

  • December 19, 2025
  • Review provided by PeerSpot

What is our primary use case?

I have been dealing with Fortinet FortiGate-VM and have implemented it many times at customer sites. We are providing both hardware and VM solutions to connect branch sites and implementing FortiManager to manage Fortinet FortiGate-VMs as a cloud solution or as a dedicated VM to manage all of Fortinet FortiGate-VMs.

I utilize Fortinet FortiGate-VM Hybrid Mesh Firewall feature. We have used it as a demo and have purchased it already, but have not fully configured it.

What is most valuable?

In my opinion, Fortinet FortiGate-VM is stable, and the best aspect is usability. Fortinet has many good things regarding usability. It has a great user interface and you can easily manage it, easily view information, and easily generate reports. This applies not only to Fortinet FortiGate-VM but to all Fortinet products. The support is also one of the most good features of Fortinet.

My impression of Fortinet FortiGate-VM Security Fabric real-time threat response capabilities is that it is a first-world security fabric compared to others.

In assessing the impact of Fortinet FortiGate-VM threat detection on my IT security operations, it relies on FortiGuard. If you have an IP and the correct license, it has powerful capabilities with IPS signatures and updated signatures from FortiGuard about attacks. One of the standout features is providing some models with a WAF module. This can help many customers, including small customers, by providing them with WAF functionality to protect web application servers. I think threat prevention is excellent on Fortinet FortiGate-VM.

What needs improvement?

Fortinet FortiGate-VM can be improved in certain areas. It has most of the features I want, and honestly, it is one of my favorite VMs and one of my favorite vendors. Compared to others, Palo Alto is excellent, and I work with Palo Alto as well, but Fortinet offers a good quality product at a lower price point compared to Palo Alto.

It would be beneficial if Fortinet FortiGate-VM could set up high availability with hardware. Some Fortinet products already have this feature, but I do not think Fortinet FortiGate-VM will do it now. You can make high availability with hardware rather than on the same VM or with the same license requirements. If you have a VM, you can make it a high availability solution with hardware, which would be a great feature. FortiNAC from Fortinet has this feature already, but not Fortinet FortiGate-VM.

For how long have I used the solution?

I would generally recommend Fortinet FortiGate-VM to others. I would strongly recommend using Fortinet FortiGate-VM if you have a requirement to implement a firewall.

How are customer service and support?

The support is one of the most good features of Fortinet. Compared to others, such as IBM, I have had many issues with IBM support. It does not have enough engineers to support many customers. You can open a ticket and expect to receive a response in four business days if you have a medium impact case, which is very critical in SOC environments.

I would rate the technical support by Fortinet at a 10.

How would you rate customer service and support?

Positive

How was the initial setup?

The initial setup of Fortinet FortiGate-VM is straightforward and is the best aspect. It is easy to set up and easy to maintain. All Fortinet portfolio products have a default IP of 192.168.1.99. You can upgrade it in seconds. Compared to others, this is one of the standout features.


    Sankha Rajaguru

Cloud firewalls have strengthened real-time threat protection but still need smoother updates

  • December 11, 2025
  • Review from a verified AWS customer

What is our primary use case?

We are mainly using Fortinet FortiGate-VM firewalls which are particularly hosted in cloud environments. It will connect cloud environments with on-premise networks and secure cloud-hosted VM traffic, both outgoing and incoming traffic. Those are the main requirements we are receiving.

What is most valuable?

Real-time threat response is really good, and sandboxing and all the signatures are most of the time accurate. They are aligned with recent threats, and Fortinet also has Fortinet Labs where they do their own research and publish new signatures and threats in real-time to the firewalls and all the devices, so I think it is pretty good.

When comparing with Sophos, I think Fortinet's Security Fabric is really nice because they do have more signatures. When we talk about IPS and all these security features, I think Fortinet is good in that aspect.

Fortinet does provide a lot of visibility in Fortinet FortiGate-VM, and some devices do not have an inbuilt HDD. For logs and data retention, they provide the FortiCloud free service for seven days. Using those features, we gather information to troubleshoot and find root causes. They also have a FortiView section, which is very useful to find out the top sources, top destinations, and which sessions are running. It is very useful.

What needs improvement?

We mainly get firmware upgrades from time to time, and there are bugs. For the moment, I do not have any features in my mind to mention regarding improvements.

Since I have not worked with VMs so frequently, I cannot tell exact points. Overall, you are asking about the improvements which have to be done on the VM side. They are updating frequently, but sometimes it depends on internet connectivity. Those databases are not getting updated in such cases, so external threat feeds are helpful.

For how long have I used the solution?

I can say it has been about one to two years using it as a company. We use both the platforms.

What do I think about the stability of the solution?

I have not experienced any stability issues.

What do I think about the scalability of the solution?

It is scalable, but as per my knowledge, the license is bound to the hardware it comes with, which I have read.

How are customer service and support?

I have worked with the customer team and also the technical team. When we come to technical support, they provide very professional support to mitigate threats or troubleshoot issues. They provide the expected support.

How would you rate customer service and support?

Which solution did I use previously and why did I switch?

Three years ago, I worked in a different company. Now I work in a different one.

How was the initial setup?

I think someone who is new to firewalls can do the initial setup without any issue if they follow the guide. It is not that complex.

What about the implementation team?

Most of the time, we are purchasing it through our local partners and local distributors.

What was our ROI?

Obviously, when a customer hosts their firewalls in VMs, they will get ROI because they do not need that many specifications or hardware requirements to host a firewall.

What's my experience with pricing, setup cost, and licensing?

It is reasonable.

Which other solutions did I evaluate?

I am actually working with Fortinet and Sophos, and also I am looking partially for a rival to Checkpoint as well.

What other advice do I have?

Both Fortinet FortiGate-VM and appliance are available. The difference between Fortinet FortiGate-VM and appliance is the platform which you are hosting. In the appliance, I am really seeing the appliance already with the required OS and everything. When we go to the VM side, we have to host the VM according to the defined specifications, and we have to get the licensing for it. Basically, in the firewall maintenance and configuration part, I cannot see any huge difference. It is the same. When we go to the VM side, all the network cable management and some things are happening virtually.

Feature-wise, as per my knowledge, there are no additional features when you go to the VM or the appliance. You can have the same features either you go with the appliance or VM.

Fortinet FortiGate-VM, mainly affordability and flexibility because some customers do have their infrastructure in cloud environments. Some customers do not prefer to use the cloud platform's native firewalls. In those cases, customers are listing to host their own firewall. For cases in those situations, the customer can get the benefit for those areas since it is affordable. I think it is more affordable than cloud-native firewalls.

Benefits mean the main benefit is when a customer is trying to purchase a firewall. They do not need to pay a price for the appliance. They only need to purchase a license. For the appliance, they can use their own platform to host the firewall. I think that is the main benefit when it comes to the VM side.

Overall network security posture: when a customer implements their firewall in the VM in the cloud environment, they can monitor their hosted VMs' outgoing and incoming traffic. They can restrict access, and they can include IPS, AV, ATP, all these things to secure the traffic. I think it is a huge benefit rather than using the native cloud firewall that is provided by the platform.

When we come to threat detection, I can mention IPS as well. Also under the threat landscape, since as I remember, Fortinet FortiGate-VM has the largest signature base in the IPS. They help us to prevent a lot of known threats using their signature database, which updates continuously.

When we compare it with Sophos, I think the most benefits are their security posture. They have a strong security posture in Fortinet FortiGate-VM compared to Sophos. Also the utilization: Fortinet FortiGate-VM OS is very suitable for small hardware because Sophos OS runs on Linux, which requires huge CPU and RAM utilization. Those are the pros and cons when you compare it with Sophos.

We are using that. Recently we have done an implementation where when someone tries to scan our ports in the firewall for a few times, we have scripts to block those IPs. It is very useful and user-friendly. We can get a lot of tasks done through that automation feature.

Rather than depending on Fortinet's security posture, they provide us the possibility to integrate our firewalls with external threat feeds, which is a huge benefit. If Fortinet misses any host or signature update, we can get it updated through the external threat database.

It is very flexible. We can use several external authentication platforms to integrate with our firewall, for example, SAML or LDAP. They provide so many integration points, and as I remember, they are free of charge as well.

You have to size your firewall depending on your connection types and the threat sources. Fortinet FortiGate-VM firewall is based on that. You have to do proper sizing on the VM that you are putting the firewall on.

In our country, Sri Lanka, most of the customers use their internal firewall and perimeter firewalls. When we take all the customers, it is about more than thirty to forty percent using Fortinet FortiGate-VM as their internal or perimeter firewalls. Huge customers, so we do have a high demand for Fortinet for the internal and perimeter levels.

I would rate this product a seven out of ten overall.

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?


    Karel Ondracek

Faced hardware limitations and setup challenges but have improved network protection over time

  • October 21, 2025
  • Review provided by PeerSpot

What is our primary use case?

I am the network administrator at THK Rhythm Automotive.

What is most valuable?

The features and capabilities of Fortinet FortiGate-VM that I have found most valuable are not only specific to Fortinet FortiGate-VM, but generally for most sites: a valuable web filter and DNS filter work together. For some sites, application filtering is important. The most important feature is IPS, which is the main reason for using Fortinet FortiGate firewalls. The current solution is only on the border of our network, between the company network and the internet.

What needs improvement?

I spent much time finding exact firmware on Aruba which was working with these guns, but it is not optimal because it is not the latest version, so there could be potential security problems. We decided to replace those access points with another one. I personally have trouble because I don't know the exact life cycle of Fortinet FortiGate-VM boxes. I don't know if the life of boxes is five years or something else; we moved from our previous company, which sold us to other companies.

Before 10 years, we had a special department that took care of core networks, including firewalls. After that, this responsibility fell to me and my colleague. It is not easy to set up these Fortinet FortiGate-VM boxes properly because we didn't have previous experience with this kind of solution. At first, we set up only a few rules that were not secure enough, and over a couple of years, we improved the settings and security of these Fortinet FortiGate-VM boxes.

Currently, I have one Fortinet FortiGate-VM that needs to be replaced next year, and this box is not so powerful, so I need to redirect some traffic to another Fortinet FortiGate-VM. It is stable, but because the CPU processor of this box is not powerful, I need to redirect some traffic to another box. In the future, I need to choose a higher-level box to prevent potential troubles with the power of this box.

For how long have I used the solution?

We have been using this solution for more than 10 years. We are currently running version 7.2.

What do I think about the stability of the solution?

Currently each company needs a firewall. All types of firewalls such as Fortinet FortiGate-VM, Cisco, and others have different capabilities, but regarding our financial situation, when we compare the price of Fortinet FortiGate-VM firewalls against other firewalls from other companies, we choose Fortinet FortiGate-VM because of price. Other firewalls have better capabilities, but we have a limited amount of money for that.

What do I think about the scalability of the solution?

I expect that many threats are blocked by the IPS system because dynamic temporary rules are created. It works adequately, but I am not a security expert to compare this kind of firewall against another.

How are customer service and support?

The customer service experience has been rated 5 out of 5.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

Ten years ago we started with Fortinet FortiGate-VM. I don't have experience with other firewalls.

How was the initial setup?

General settings are very easy and could work in about half an hour. But after the initial setup, it is necessary to create security rules according to the company's needs. I am glad that the default settings block all traffic, and only directly set up traffic is allowed.

What about the implementation team?

After 10 years, we had a special department that took care of core networks, including firewalls. After that, this responsibility fell to me and my colleague.

What's my experience with pricing, setup cost, and licensing?

There are only initial costs and after that yearly maintenance for the exact level of hardware support and hardware and security support. I am from Czech Republic, and I have experience that prices for our area are a little bit lower than in other areas for some goods. I don't have this experience with Fortinet FortiGate-VM because my colleagues in Germany are reaching better prices than me.

What other advice do I have?

In the past, we were using that technology, but we had a problem with some wireless guns and found a solution with Aruba Networks. We are using Microsoft 365 with some version E5 license. Regarding the network, we are mainly using Cisco systems. My colleague is working on the SIEM and SOC system with some external companies that support us after the ransomware attack. I am referring to hardware boxes and also virtual machines.

I expect that generally logs can improve our security because currently we don't have someone who works through these firewall logs, so we don't have information about potential security problems. We are expecting that it will be better after these logs will be connected to the SIEM system.

These firewalls are very easy to set up or manage. It is easy to set up each box individually, but currently, I don't have experience or training for central management of these Fortinet FortiGate-VM firewalls. I have been working as an IT specialist for about 30 years. I use it only for the backup of the firewall configuration. It is helpful because I have a backup of each firewall configuration every day, and I can return back several days. However, it is another difficulty because if the configuration of Fortinet FortiGate-VM changes, many other items will change. Generally, all passwords are regenerated, so it is not easy to find changes when comparing two configurations of one firewall. I can see this feature, but it is not so important because everything is working adequately. I start to focus on the logs only when I have problems or if I need to set up new applications or allow new traffic. I only look at how much percentage of connections are used, and if it is below some limits, it is acceptable. This solution has received a rating of 31 out of 100.


    Eric_Martinez

A robust solution with automated threat response and easy setup

  • October 15, 2025
  • Review from a verified AWS customer

What is our primary use case?

I have experience in deployment for banking processes and at the perimeter of a financial institution. I have experience in configuration for PCI DSS compliance.

What is most valuable?

The best feature of Fortinet FortiGate-VM is the deployment. I applied best practices for deployment with Fortinet FortiGate-VM. By the VPN connection into the site, on-premise and cloud or hybrid for segmentation of level of security, the perimeter and inside zone.

It's very robust. It's a solution that is very complete with accessible support. The feature for deep inspection (DPI) for Fortinet FortiGate-VM is used for generating alerts or to automate threat response.

What needs improvement?

Licensing could be easier to understand.

For how long have I used the solution?

I have been using Fortinet FortiGate-VM for around six years and Cisco for around 10 years.

How are customer service and support?

The support deserves a rating of ten out of ten.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

I have also worked with Cisco firewalls. The main differences between FortiNet and Cisco include the price, which is very different. The variant of Cisco ASA, Cisco Firepower, is more difficult for configuration. Firepower is more complicated. Fortinet FortiNet is easier to deploy and also less expensive.

How was the initial setup?

I find that the initial setup of Fortinet FortiGate-VM is easy. Of course, I am very experienced in the area of telecom, and this setup and configuration is friendly. I see that other people find Fortinet FortiGate-VM to be user-friendly. The setup and learning curve is short.

What other advice do I have?

I would rate Fortinet FortiGate-VM a 10 out of 10. It is very good.