Systems Administrator at Interswitch
Real User
Easy to deploy with intuitive interface; integration with certain enterprise applications lacking
Pros and Cons
  • "Intuitive interface and easy to deploy."
  • "Integration with some other enterprise applications could be improved."

What is our primary use case?

We use this solution for two-factor authentication of most of our services. It includes VPN but also many other services that we have on our internet servers. We use the on-premise version because we also want it integrated into our in-house applications. We are customers of Fortinet and I'm a systems administrator. 

How has it helped my organization?

Security is such a big issue these days, a password alone is no longer enough for securing identity. In that sense, providing a second layer of authentication for users gives the company some level of comfort. 

What is most valuable?

I think the ease of deployment is a valuable feature. I like that the interface is intuitive and that natively and easily, it integrates with radios, ILDAP, fan mail, and with any applications supporting those protocols

What needs improvement?

I'd say that the integration with some other enterprise applications could be improved. For instance, ADFS. FortiAuthenticator does not work natively with ADFS and the company is not looking in that direction. It's one of our in-house applications and it was a challenge integrating with FortiAuthenticator. We had to write a separate, customized adapter for ADFS before we could make it work. We tried to get Fortinet to work on it but I don't think their development team is interested. It's not in their plan. The other challenge was when I integrated with I think VMware - there was an issue between the radio adapter and FortiAuthenticator. Both parties were not ready to work together and the implementation was buggy. 

I believe this solution can be adapted to so many things, depending on the technical side and the implementation engineers. I'd like to see some additional use cases that can be infused into the solution, such as ADFS.

Buyer's Guide
Fortinet FortiAuthenticator
May 2024
Learn what your peers think about Fortinet FortiAuthenticator. Get advice and tips from experienced pros sharing their opinions. Updated: May 2024.
770,428 professionals have used our research since 2012.

For how long have I used the solution?

I've been using this solution for two years. 

What do I think about the stability of the solution?

I haven't had any issues with stability. 

What do I think about the scalability of the solution?

It's a very scalable solution. They now have the option of deployment as a VM, and then they have the hardware. I believe we use the 1000D for the hardware - it's able to support up to 10,000 users. You license the appliance based on the number of users and if you need to add more, you buy additional licenses. Almost everybody in the company uses it and I'd say we've had a total of around 4,000 users.

How are customer service and support?

The technical support is mid-range It's not your wow kind of support but they do have levels of support. The support is in connectivity with their clients and it has to be renewed every year. You might do better if you go through their partners or something similar. They're not really there when it comes to support.

Which solution did I use previously and why did I switch?

We used RSA SecurID before Fortinet. We switched because of the high costs associated with RSA. I believe that with RSA you need to pay a token license every three years but with Fortinet, once you buy it, you own it. Even if a token is lost, you can always reposition the token and that will not come at any extra cost. It's cost-effective for us. We also have several channels we can use for authentication with FortiAuthenticator. With RSA, users are stuck with either carrying the dongle, the hardware token, or maybe having the mobile application token on their phone. With Fortinet you can decide whether to use a hardware token, soft token, email token, push notification, or SMS. It gives us flexibility and comfort.

How was the initial setup?

Initial setup was pretty straightforward. We were up and running within three days. I carried out the deployment. 

What's my experience with pricing, setup cost, and licensing?

The license is a one-off payment. 

What other advice do I have?

Every environment is obviously different so each user needs to know what they are looking for, and make a decision based on that. This is a cost effective and flexible solution. If a company is looking to use it on their server, it's important to look at the integration channels and your environment, the support. It's important to know that the channels are supported. 

I would rate this solution a seven out of 10. 

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
IT Manager at a tech services company with 11-50 employees
Real User
Good support, integrates well with Fortinet products, and the licensing is cost-effective
Pros and Cons
  • "FortiAuthenticator is really good software that integrates very well with Fortinet products."
  • "I would like to see more ways to authenticate, such as adding facial recognition to the two-factor, where you log into your phone or another device."

What is our primary use case?

Our primary use case is two-factor authentication, and we use it for a handful of our clients.

What is most valuable?

FortiAuthenticator is really good software that integrates very well with Fortinet products.

The licensing structure is cost-effective for us compared to some of the other solutions that have recurring monthly costs. We like that it has more one-time costs than the monthly recurring cost per user.

What needs improvement?

Although two-factor authentication has come a long way, there are a lot of companies that are going further. The reason for this is because people are finding ways to compromise traditional, web-based solutions. I would like to see more ways to authenticate, such as adding facial recognition to the two-factor, where you log into your phone or another device. That would be great.

What do I think about the stability of the solution?

I have had stability issues with FortiAuthenticator.

What do I think about the scalability of the solution?

As long as you purchase the right amount of licensing, it's scalable.

How are customer service and technical support?

Generally, the technical support is very good. I know some people that work for Fortinet and we haven't had any issues with getting to the right resources when needed.

Which solution did I use previously and why did I switch?

We have always used Fortinet products.

How was the initial setup?

The initial setup is fairly simple because there's product training available for all of the tools from Fortinet. Our team is fully versed in those products, so it wasn't very difficult.

What's my experience with pricing, setup cost, and licensing?

The licensing fee is less in the long term because it's not a recurring cost.

What other advice do I have?

My advice is that for any solution you want to deploy, you have to ensure that your team is trained so that you can support it. Before FortiAuthenticator goes into play, make sure that your team is trained.

Overall, we are pretty satisfied with FortiAuthenticator.

I would rate this solution a nine out of ten.

Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
PeerSpot user
Buyer's Guide
Fortinet FortiAuthenticator
May 2024
Learn what your peers think about Fortinet FortiAuthenticator. Get advice and tips from experienced pros sharing their opinions. Updated: May 2024.
770,428 professionals have used our research since 2012.
it_user685362 - PeerSpot reviewer
Pre-sales, Telecommunications & Security Specialist at a tech services company with 201-500 employees
Real User
It integrates very tightly with the rest of the Fortinet ecosystem. ​
Pros and Cons
  • "It integrates very tightly with the rest of the Fortinet ecosystem."
  • "A better integration with other vendors."

What is most valuable?

Integrated RADIUS server with 802.1x functionality and access control. Single Sign On and AD integration. It integrates very tightly with the rest of the Fortinet ecosystem.

How has it helped my organization?

It integrated with the existing Cisco wireless infrastructure to solidify the way people authenticate onto the network. It permitted having a centralized area to authenticate all users and enabled SSOimplementation.

What needs improvement?

A better integration with other vendors. The device is rich in features but there are a lot of functionalities I have still not experienced with.

For how long have I used the solution?

Two and a half years.

What do I think about the stability of the solution?

Overall not really, a few hiccups with the syncing with AD but nothing major.

What do I think about the scalability of the solution?

Not in my experience. The device can scale on a VM with an additional license. And there are boxes that can support thousands of users (which I have still not met).

How are customer service and technical support?

Very good. In our area we get support both in French and English and the response times are usually pretty decent.

Which solution did I use previously and why did I switch?

We are a Fortinet reseller and integrator so there were no "switches" per say.

How was the initial setup?

The setup process can be tedious.

What's my experience with pricing, setup cost, and licensing?

I would start off with a VM including the base license and scale according to the number of users you need to authenticate.

Which other solutions did I evaluate?

ClearPass by Aruba and ISE by Cisco are the two main competitors in this space. To me ClearPass seams to be the most feature-rich solution for the price and vendor neutral as is FortiAuthenticator.

What other advice do I have?

I strongly recommend someone accompany you in the initial deployment of the product to view all the functionalities that the platform is capable of doing.

Disclosure: My company has a business relationship with this vendor other than being a customer:
PeerSpot user
it_user589359 - PeerSpot reviewer
Senior Consultant at a tech company with 1,001-5,000 employees
MSP
It has its own hardware and software token for two-factor authentication. Some of the settings are difficult to access.

What is most valuable?

One of the most valuable features is the simple FSSO (Fortinet Single Sign-On) configuration that helps to manage user-based security rules.

It is a cool security product. It's easy to use, implement and maintain, but there is room for improvement.

How has it helped my organization?

When we came across access management, we required several technical features to help manage user access to critical systems and remote access. That’s why we always go for a SSO two-factor authentication server. FortiAuthenticator is a bundle of these features. It has its own hardware and software token for two-factor authentication. It supports single sign-on and seamless integration with user-based web filtering, without any prior authentication. It can act as a Radius server to support other systems for Radius authentication. One of the common practices is using FortiAuthenticator with Dot1.X network access control.

What needs improvement?

The GUI is not fancy enough and some of the settings are difficult to access.

Part of the configuration has to be done by CLI, which is not friendly for security administrators.

Integration with other firewalls may not be as good as expected.

For how long have I used the solution?

I have used it for two years, mostly implementation for clients.

What do I think about the stability of the solution?

No stability issues so far, as long as the number of users is not too large.

What do I think about the scalability of the solution?

No issues for scalability: It is easy to add new resources as we deploy virtual machines.

How are customer service and technical support?

FortiCare can provide prompt replies. They have basic knowledge on every single product in the Fortinet family. They have a standard protocol to response to support cases which is great. They are willing to accept RMA for technical difficulties that cannot be solved in a short period of time.

Which solution did I use previously and why did I switch?

I have tried Cisco ISE as a NAC solution. Cisco ISE is the "Terminator" of NAC solutions, which has numerous features to prevent unauthorized access. However, its integration with FortiGate firewall is not great. When I use the SSLVPN service from FortiGate, it fails to authenticate with two-factor authentication. For this, using FortiAnthenticator would be a good choice for its genuine integration.

What about the implementation team?

It is quite straightforward to set up the FortiAuthenticator. We mainly deploy as a virtual machine. An OVF file is provided by Fortinet and you just simply compile the file in the VMware environment. Upon simple configuration, such as IP address and default gateway, you can access the web GUI and do any configuration, as you like.

What's my experience with pricing, setup cost, and licensing?

Licensing is straightforward, as Fortinet provides stackable licenses for FortiAuthenicator. Count the number of users and select sufficient licenses. Pricing is acceptable; much cheaper than Cisco ISE.

Which other solutions did I evaluate?

I have tried Cisco ISE. For state-of-the-art features, I would recommend Cisco ISE because of its brilliant features. But I would recommend FortiAuthenticator, if you are currently using FortiGate firewall and you seek a well-suited, complimentary NAC solution.

What other advice do I have?

The need for a NAC solution depends on your infrastructure. If you are a Fortinet user, FortiAuthenticator would be a nice choice to enhance security on VPN and web access. However, there are many other choices, such as ForeScout, which is vendor-neutral, to support different systems from different vendors.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Channel Account Manager-Lead-West at a tech services company with 1,001-5,000 employees
Real User
Difficult to configure and deploy, poor support, and has issues with stability
Pros and Cons
  • "This is a scalable product."
  • "There are multiple areas that are in need of improvement. It is not a mature product."

What is our primary use case?

The primary use case is internal authentication.

What needs improvement?

There are multiple areas that are in need of improvement. It is not a mature product.

It is difficult to successfully configure.

For how long have I used the solution?

I have been using Fortinet FortiAuthenticator for one year.

What do I think about the stability of the solution?

The is not a very stable product.

What do I think about the scalability of the solution?

This is a scalable product. However, due to multiple challenges in the implementation, I will not be expanding its usage. Rather, I will be changing products.

How are customer service and support?

The support team is pathetic and does not properly understand the solution.

Which solution did I use previously and why did I switch?

This was the first of this type of solution that we implemented.

How was the initial setup?

The initial setup is not straightforward. Our deployment took almost two months to complete.

What about the implementation team?

We had a system integrator to assist us with the implementation and deployment. The implementation partner does not have sufficient expertise.

One or two engineers can implement it.

What was our ROI?

We have not seen ROI for this solution.

What's my experience with pricing, setup cost, and licensing?

We pay for licensing on a yearly basis. There are no costs in addition to the standard licensing fees.

Which other solutions did I evaluate?

Due to problems that I've been having with the implementation, after perhaps two years I will be changing to another product.

What other advice do I have?

This is not a product that I would recommend to others. There are different industry standards that require different expertise, and this product does not much help.

I would rate this solution a three out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Information Technology Manager at a tech services company with 51-200 employees
Real User
Good security and easy to use with good technical support
Pros and Cons
  • "The ease of use is really nice. Using Authenticator, I've been able to actually work better on my authentication due to the fact that I have a single fabric to authenticate control from my firewall and on my access points. Authentication takes place from this area."
  • "The solution could be more automated. It should be able to let me automate a lot of things so that what normally is done as a matter of manual processes can be handled quicker. Slow integrations can be taken up/out if there was more automation."

What is most valuable?

The most valuable aspect of the solution is the security. It's great. 

The ease of use is really nice. Using Authenticator, I've been able to actually work better on my authentication due to the fact that I have a single fabric to authenticate control from my firewall and on my access points. Authentication takes place from this area. 

It's easy to use for us due to the fact that, for each and every user, even a Mac user, we're able to easily retrieve them and add them. The authenticator syncs to my system and brings all the users to me under my firewall. 

What needs improvement?

For us, the solution works quite well. I can't think of an area where improvements are needed. I haven't worked with it too extensively yet, so it's hard to gauge what's lacking.

The solution could be more automated. It should be able to let me automate a lot of things so that what normally is done as a matter of manual processes can be handled quicker. Slow integrations can be taken up/out if there was more automation.

For how long have I used the solution?

I've only worked with the solution for five or six months at this point. I haven't worked with it extensively, although I do have an understanding of how it works and what to do, as well as how to configure it.

What do I think about the stability of the solution?

It's a stable product that integrates well with other products (such as FortiNAC). It's reliable. It doesn't give us any problems. We don't have to worry about bugs or glitches of the system crashing.

What do I think about the scalability of the solution?

The solution is scalable. While we have plans to grow it out and integrate it a bit more with other solutions, we're not at that stage yet.

We are a company of about 200 people. The whole organization uses it at this point. All authentication happens through FortiAuthenticator.

How are customer service and technical support?

I'm really happy with the technical support. They are responsive and knowledgable.

Which solution did I use previously and why did I switch?

Before using FortiAuthenticator we were not using anything else. We just were controlling everything from our Fortinet firewall. That was the only equipment which we had at that point in time. Now, we have got FortiAuthenticator.

Going forward we might go for FortiNAC. That might be in the cards for us. However, we're not immediately going to make the switch as it offers access control.

How was the initial setup?

The initial setup wasn't a problem at all. It was handled by certified Fortinet engineers. For that reason, it wasn't complex or difficult.

What about the implementation team?

We had certified Fortinet engineers assist us with the initial implementation. They handled the setup and configurations as well.

What other advice do I have?

We're just end users. We don't have a special relationship with the company.

We're using the latest version of the solution. It might be something around version six.

I would recommend FortiAuthenticator to other organizations.

It is really a good product. Somebody looking for a good security product should go with FortiGate products. New users should explore all the features and see how they can maximize usage.

Overall, I'd rate the solution eight out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Network Security Engineer at Technicom Mali
Real User
Top 5
Helps with SSL two-factor authentication but the graphical interface is outdated
Pros and Cons
  • "We use this product for SSL two-factor authentication and FortiToken management."
  • "It does the job I paid for, but the graphical interface could be improved."

What is our primary use case?

We use this product for SSL two-factor authentication and FortiToken management.

What needs improvement?

It does the job I paid for, but the graphical interface could be improved. If we take FortiGate or Fortinet, the graphical user interface is better designed. I think they can work on this.

It would be good to remove the FortiAuthenticator or to combine FortiAuthenticator and Fortinet. That would provide a single platform that can manage network access and user management. It doesn't make sense for me to sell FortiAuthenticator to a customer and then sell them Fortinet as well. I think they should just combine them into one solution.

For how long have I used the solution?

We've been using this solution for two years.

What do I think about the stability of the solution?

The solution is stable. I installed it two years ago, but we rarely check the internet for changes. It's really stable. We don't have problems.

What do I think about the scalability of the solution?

I think it's scalable. There are two kinds of appliances: virtual and physical. If you do a good sizing, the physical one can remain with the customer for a long time. The virtual one can be increased as you need. You can pay as you go with them. You purchase a base license and add to it as needed.

I have done an installation at an operator with over 200 users. That is the biggest one I've done.

How are customer service and technical support?

I don't usually have problems with this solution so I rarely test the support features. I cannot evaluate the support team.

How was the initial setup?

It was straightforward to implement and took one day to deploy.

What other advice do I have?

I would rate this solution as seven out of ten. I know there are other solutions that have a more modern graphical interface and provide better user management functionality. We need to tell the customer to get two solutions instead of doing the job with just one. I think I could give eight or nine to another solution, but FortiAuthenticator should be a seven.

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Datacenter Engineer at a university with 501-1,000 employees
Real User
One-time passwords help to authenticate users so we know the timing of their usage
Pros and Cons
  • "The feature I value the most is the one-time passwords because it helps to authenticate users so you know the timing of their usage."
  • "I don't have any issues with this solution, but it may need a better, more user-friendly interface or better design of the platform."

What is most valuable?

The feature I value the most is the one-time passwords because it helps to authenticate users so you know the timing of their usage.

What needs improvement?

I don't have any issues with this solution, but it may need a better, more user-friendly interface or better design of the platform.

For how long have I used the solution?

I've been using FortiAuthenticator ( /products/fortiauthenticator-reviews ) for three years now.

What do I think about the stability of the solution?

I have found that the solution is very stable. I am officially conducting at FortiGate and I found that it was so easy to conduct my environment and control my environment with this solution. 

What do I think about the scalability of the solution?

We have seven users licensed on this solution. With FortiAuthenticator it is so easy to manage our users and it is scalable to all the users at our university or in our environment.  

How are customer service and technical support?

I am really impressed by the technical support because they were very helpful. Once we logged our complaint, we received an answer from them in no time, and they quickly fixed our issue. 

How was the initial setup?

The initial setup is very easy.

What other advice do I have?

I will recommend this solution to others who are considering to use it. I give it a ten out of ten rating.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Buyer's Guide
Download our free Fortinet FortiAuthenticator Report and get advice and tips from experienced pros sharing their opinions.
Updated: May 2024
Buyer's Guide
Download our free Fortinet FortiAuthenticator Report and get advice and tips from experienced pros sharing their opinions.