We just raised a $30M Series A: Read our story
RajM2
Deputy Manager Of Information Technology at Nitco Limited
Real User
Top 20
High-performing SSL VPN functionality keeps our users secure while they work from home

Pros and Cons

  • "The most valuable feature is the SSL VPN, as it allows us to connect and it separates this product from other firewalls."
  • "Some of the web policy reports could be improved."

How has it helped my organization?

We use the FortiGate firewall for our centralized management services. We have SAP and there are multiple work-from-home users that connect using the VPN to access it. Also, we have some applications that are hosted on the server and we have assigned a public IP through the firewall for them.

For our server, we have specific some UTM policies, and we have designed access so that it is sectioned by zone.

What is most valuable?

The most valuable feature is the SSL VPN, as it allows us to connect and it separates this product from other firewalls.

The VPN performance with multiple users is very good.

We are able to generate a report where we can see details on exactly what the users are accessing. We can set limits as well as easily analyze what they are uploading and downloading.

What needs improvement?

The only challenge that we are facing is that a good internet connection is required for VPN stability.

Some of the web policy reports could be improved. There are reports generated that show exactly which user is using how much bandwidth, and which sites they have been browsing. We should have a way to show that on a single screen. As it is now, when I click on a user, the information shows on another tab.

For how long have I used the solution?

We have been using FortiGate for more than seven years.

What do I think about the stability of the solution?

There is no downtime with this solution. The last time the users could not connect to the VPN was an issue with the internet.

What do I think about the scalability of the solution?

We have not tried to scale FortiGate.

How are customer service and technical support?

We have been in contact with Fortinet several times and the technical support that we have received is absolutely fine.

Which solution did I use previously and why did I switch?

In addition to FortiGate, we are using a Sophos firewall.

How was the initial setup?

The deployment took approximately four months.

What's my experience with pricing, setup cost, and licensing?

The licensing costs are very low.

Which other solutions did I evaluate?

Previously, we were using Turbo VPN to connect using mobile devices. The problem was that the users would be disconnected when the mobile was in a roaming area, and the connectivity is not as stable.

We moved to a cloud service and assigned a public IP address for that application, and we have cut out the VPN for it. That was a rare issue that we were facing with FortiGate.

What other advice do I have?

This is a good firewall and I have recommended it to some of my colleagues in other organizations, and they have implemented it.

I would rate this solution a nine out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Ferrianto Suryanto
Director Of Technology at PT Exa Teknologi Indonesia
Real User
Top 5
I like the SD-WAN feature and their IP4 policy

Pros and Cons

  • "The features that I have found most valuable are the SD-WAN and their IP4 policy."
  • "In terms of what could be improved, the SD-WAN is quite difficult, because if you install the new box, 15 is okay, but if you change from an old configuration, if there is already configuration and a policy when you change to SD-WAN, you must change the whole policy that you see in the interface."

What is most valuable?

The features that I have found most valuable are the SD-WAN and their IP4 policy.

What needs improvement?

In terms of what could be improved, the SD-WAN is quite difficult, because if you install in the new box, 15 is okay, but if you change from an old configuration, if there is already a configuration and a policy when you change to SD-WAN, you must change the whole policy that you see in the interface.

For how long have I used the solution?

I have been using Fortinet FortiGate for about two years.

What do I think about the stability of the solution?

Fortinet FortiGate is stable so far. We had a difficulty, but after we opened the support, we found out that it was only from having the wrong config. But so far, it is stable.

What do I think about the scalability of the solution?

So far our biggest client is only FortiGate 400, a small-medium business.

How are customer service and technical support?

Their technical support is very helpful, although they only have it for their in-the-box and sometimes we have difficulty with the out of box, with the ISP or other things. So we must find a solution for the customer. But if it is the wrong product or if there is a configuration issue in the product, yes, they're very helpful.

Which solution did I use previously and why did I switch?

I have also worked with the Hillstone network, with Palo Alto and with Barracuda.

In terms of support, so far FortiGate is helpful whereas with Barracuda I didn't get the support like FortiGate.

How was the initial setup?

The initial setup and new configuration are very easy. It is very user-friendly. It's only three clicks from the menu, two or three sub-menus and we already have it configured. It's not difficult because we have experience with the SonicWall, Palo Alto, etc.., but Fortinet is user-friendly.

What's my experience with pricing, setup cost, and licensing?

In terms of price, FortiGate's price is reasonable. Most of the customers stand by it, and are aware that the price is worth it for the performance.

What other advice do I have?

In terms of advice for anyone looking to use FortiGate, you need to learn about trouble-shooting, because sometimes you find out you have the wrong configuration, not because of a FortiGate problem or FortiGate config, so you are responsible to handle the trouble-shooting.

On a scale of one to ten, I would give Fortinet FortiGate a nine.

One thing they could offer is a version that already has the configuration. This would make it easier. This is something that I would request. I worked with Barracuda, I worked with Palo Alto. If you want it easy. It's very easy. But FortiGate needs to have something more like that, to do it faster.

Disclosure: My company has a business relationship with this vendor other than being a customer: partner
Learn what your peers think about Fortinet FortiGate. Get advice and tips from experienced pros sharing their opinions. Updated: November 2021.
554,148 professionals have used our research since 2012.
KrishnakumarNair
IT Manager at KSB MIL Controls Limited
Real User
Top 20
Easy to use with good customization and an easy initial setup

Pros and Cons

  • "The solution is very, very easy to use."
  • "The integration with third-party tools may be something that they should work on."

What is our primary use case?

We primarily use the solution for a firewall plus as an overall UTM. We do not, however, use it as an SD-WAN.

What is most valuable?

The solution is very, very easy to use.

The user interface is very nice.

The product seems to offer pretty good customization.

The configuration of the product has been very straightforward and simple.

The reporting on offer is quite good.

The initial setup is straightforward as well.

We've found the pricing to be pretty good.

Technical support from the partner has been very helpful.

What needs improvement?

The integration with third-party tools may be something that they should work on. We haven't actually tried to implement that, however.

For how long have I used the solution?

I've been working with the solution for close to ten years. It's been at least a decade at this point. It's been a while.

What do I think about the stability of the solution?

We haven't had any issues with the solution's stability. It's very reliable. It doesn't crash or freeze. I can't recall experiencing bugs or glitches at all over the time I've used it. 

What do I think about the scalability of the solution?

The scalability of the solution seems to be pretty good. We haven't had any issues in that respect.

Currently, our organization has about 125 users on the product.

How are customer service and technical support?

While I don't have a direct line to Fortigate, I have used our partner support. They have been excellent and we are quite satisfied with the level of service we receive from them. They are knowledgeable and responsive.

How was the initial setup?

The initial setup is not complex at all. I found it to be very straightforward. This was due to the fact that we had this solution procured along back in 2007 or 2008, as a smaller firewall, a FortiGate 60C.

We don't have anyone that handles maintenance full-time. It's an on-call situation. If we have issues or need maintenance, we raise a ticket and it is dealt with.

What's my experience with pricing, setup cost, and licensing?

The pricing of the solution is fair. We don't find it to be overly expensive.

Which other solutions did I evaluate?

I've never looked at other products and therefore would not be able to really compare this solution to anything.

What other advice do I have?

We are just customers and end-users of the product. We don't have a business relationship with Fortinet.

I'd recommend the solution. It's very simple and easy to use. On top of that, it offers peace of mind.

Overall, I'd rate the solution nine out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
SW
Compliance Officer at a venture capital & private equity firm with 11-50 employees
Real User
Top 20
Good UI, easy to use, and offers reasonable pricing

Pros and Cons

  • "Overall, the pricing of the solution is very good. The product offers good value."
  • "There aren't really any negative aspects to discuss."

What is our primary use case?

We primarily use this solution for our network, as virtual security of the network. It helps protect us and keeps us safe.

What is most valuable?

The overall experience has been very good. It fully meets our requirements. We find the solution to be pretty user-friendly.

The solution has a lot of features. I'm not sure if there is one that stands out as the most valuable for us.

The stability of the solution is very good.

The vendor has been very good at providing us with everything we need.

Overall, the pricing of the solution is very good. The product offers good value.

The product is quite flexible.

We've found the scalability to be very good.

The dashboards and UI are very nice.

What needs improvement?

We aren't really missing any features. 

The solution isn't lacking anything. We've been overall very please with the experience we've had. There aren't really any negative aspects to discuss.

For how long have I used the solution?

I have used the solution for a while. It's been more than five years at this point.

What do I think about the stability of the solution?

So far, we have found the stability of the product to be quite good. It doesn't crash or freeze on us. We haven't experienced bugs or glitches. The performance is reliable. It's good.

What do I think about the scalability of the solution?

You can scale the solution if you need to. It's not a difficult thing to do.

We do plan to continue using this solution.

How are customer service and technical support?

We don't have any experience with technical support. No problems have really presented themselves, and therefore there hasn't been a need to reach out at all. Therefore, we can't really speak to the helpfulness of technical support.

Which solution did I use previously and why did I switch?

We didn't previously use a different solution.

How was the initial setup?

This is a cloud-based solution. Therefore, there really isn't an installation process per se. It's very easy to get started. 

What's my experience with pricing, setup cost, and licensing?

The solution offers good value for your money. It isn't too expensive.

What other advice do I have?

It is my understanding that we are using the latest version of the solution. However, I am not 100% positive. I don't know which version number we are currently on.

I'm not sure if I would recommend the product. It would depend on each individual company's needs.

I would rate this solution at an eight out of ten. It's been a pretty positive experience overall.

Which deployment model are you using for this solution?

Public Cloud
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Adriana Ymeri
IT Infrastructure Engineer at Communication Progress
Real User
Top 20
Scalable, Easy to implement, security fabric integration, wireless controller, low cost, stable

Pros and Cons

  • "Web filtering and two-factor authentication are great features."
  • "Vulnerability scanning could be improved."

What is our primary use case?

Our primary use case of this solution for our clients is for protecting internal networks with data center firewalls, internal segmentation and next generation firewalls. 

We are a gold partner of Fortinet.

What is most valuable?

SD-WAN, Security fabric integration, two-factor authentication, ADVPN, Dynamic routing, single pane of glas managements are great features. FortiGate is very easy to use, and to configure.

What needs improvement?

I think some improvements could be made in vulnerability scanning. I'd also like to see additional features in the authentication. They support RADIUS, LDAP  but the solution doesn't have API integration with other solutions. They have API in FortiAuthenticator, but not in the firewall and not all customers want to buy another solution. 

For how long have I used the solution?

I've been providing this solution to clients for seven years. 

What do I think about the stability of the solution?

This is a very stable solution. 

What do I think about the scalability of the solution?

This solution is scalable. They have now built hyperscale firewalls and it's very easy. Also VMs, for example, is very easy to scale, you just need to adjust the licensing. 

How are customer service and technical support?

Technical support is very, very good. They respond quickly and provide the solution to the problem. 

Which solution did I use previously and why did I switch?

I have previously used Check Point and Cisco ASA. In terms of cost and security features, Fortinet has the advantage and it's also easy to implement. Cisco and Check Point are a little bit more difficult in that aspect. 

How was the initial setup?

The initial setup is simple, as with all Fortinet technologies. Deployment time depends on the situation. For small customers it takes about one to two hours. For larger companies with different kinds of firewalls in their infrastructure, it may take a day or two, it depends on the complexity of the network, the infrastructure and the size of the business. The solution is suitable for any size company. Maintenance depends on the contract with our customers, but Fortinet includes support with every license. If a customer wants support from us, we provide it. 

What's my experience with pricing, setup cost, and licensing?

Fortinet offers four types of licensing - Advanced Threat Protection, Unified Threat Protection and Enterprise Protection and 360 degree Protection.  Licensing costs are dependent on the VM  or Hardware model, not per features. For example if vm or Hardware model supports 200 IPsec tunnels you can setup 200 IPsec tunnels, it doesn't matter what kind of license you have. 

What other advice do I have?

I would definitely recommend this solution. 

I would rate this solution a 10 out of 10. 

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
Mohsinoddi Mohammed
Senior Information Security Consultant at Alkhorayef
Consultant
Top 5
Easy to manage, improves visibility, and lowered our TCO

Pros and Cons

  • "FortiGate Secure SD-WAN includes best-of-breed next-generation firewall (NGFW) security, SD-WAN, advanced routing, and WAN optimization capabilities, delivering a security-driven networking WAN edge transformation in a unified offering."
  • "There is a lot of improvement needed with SSL-VPN."

What is our primary use case?

We are using the FortiGate firewall for multiple purposes including network antivirus, Application Control, Web Filtering, IPSec Tunnels, and SSL-VPN using soft FortiTokens.

For the past year, we have also been using this technology for Secure SD-WAN. This added a lot of value in terms of technology, such as datacenter connectivity using IPSec tunnel-added security filters, with less cost by canceling MPLS.

How has it helped my organization?

We have implemented secure SD-WAN using FortiGate firewalls in 15 locations and it is working extremely well. 

Since implementing, the total cost of ownership (TCO) has been lowered and the day-to-day security operations have been simplified through our FortiOps services. These provide cloud-based management, visibility, and automation across your Fortinet Security Fabric. It also helps to realize the operational benefits of a Fortinet-enabled Secure SD-WAN.

At the same time, cybersecurity threats have become more sophisticated and fast-moving. Fortinet offers a full range of services and subscriptions to help us simplify and make the most of your SD-WAN deployment with the lowest TCO possible.

What is most valuable?

FortiGate Secure SD-WAN includes best-of-breed next-generation firewall (NGFW) security, SD-WAN, advanced routing, and WAN optimization capabilities, delivering a security-driven networking WAN edge transformation in a unified offering. 

Fortinet Secure SD-WAN delivered the lowest total cost of ownership (TCO) per Mbps among all other vendors.

Antivirus, Application Control, Web Filtering, IPSec, and SSL-VPN are great features with the next-generation Fortinet firewall. They are all very easy to manage.

What needs improvement?

We are managing FortiGate using a FortiManager and it needs improvement with respect to the ease of administration tasks.

There is a lot of improvement needed with SSL-VPN.

Technical support could be improved.

For how long have I used the solution?

We have been using FortiGate technology for more than five years.

What do I think about the stability of the solution?

FortiGate is a very stable firewall.

What do I think about the scalability of the solution?

With respect to scalability, it's an excellent product.

How are customer service and technical support?

The customer service is good, although there is room for improvement with technical support.

Which solution did I use previously and why did I switch?

We did not use another solution prior to this one.

How was the initial setup?

The initial setup was straightforward.

What about the implementation team?

We implemented this solution with this assistance of a partner.

Which other solutions did I evaluate?

We did evaluate other products, including solutions by Cisco.

What other advice do I have?

There is always a need for improvement with any vendor.

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Flag as inappropriate
ME
Technical Lead at a tech services company with 10,001+ employees
Real User
Top 5Leaderboard
Stable with good technical support and very good UI

Pros and Cons

  • "The user interface (UI) is very, very good."
  • "The search tool needs improvement. It's very difficult to search for policies right now."

What is our primary use case?

We primarily use the solution for the firewall. We use it for a perimeter firewall or access firewall inside the network to allow some zones to be disabled from one zone to another zone. 

What is most valuable?

The stability of the solution is excellent.

The user interface (UI) is very, very good.

What needs improvement?

The search tool needs improvement. It's very difficult to search for policies right now.

When we need to engage with the endpoint or our customer during an investigation, there should be a way to investigate the issues without the need for the customer to be present. It would make it much easier.

For how long have I used the solution?

We've been using the product for the last few years.

What do I think about the stability of the solution?

We find the solution to be quite stable. It's very reliable. We don't have to worry about bugs or glitches on the system. It doesn't crash or freeze.

What do I think about the scalability of the solution?

We have more than 7.000 users on the solution right now.

We do plan to continue to use the solution going forward.

How are customer service and technical support?

The technical support is very good. We're quite satisfied with the level of support we receive. We find them to be knowledgeable and responsive when we have issues. 

Which solution did I use previously and why did I switch?

Before using FortiGate, we used Cisco. However, we found the Cisco solutions to be unstable and we needed to move away from them. We do still have some legacy Cisco solutions, however. We find they work better now, with FortiGate.

How was the initial setup?

We didn't have a problem with the installation. It wasn't complex in any way. We found it to be quite straightforward.

The deployment process was very fast. It took less than a day for us to do everything we needed to do.

In terms of maintenance, we have eight people taking care of the troubleshooting of tickets.

What about the implementation team?

An integrator helped us with the implementation process they were very helpful and extremely knowledgable. We had them in case something we wrong, however, nothing has gone wrong so far.

What other advice do I have?

We're a service provider. We work with clients that use the solution.

We utilize both the 1500 and 3000 series of the product.

I would definitely recommend this solution to other companies to use. We've had a good experience overall.

In general, I would rate the solution a nine out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
Effort Moyo
Technical Services Manager at ProComm technologies
Real User
Top 5Leaderboard
Helpful SD-WAN feature for uptime and privatizing applications, but needs better stability and integration

Pros and Cons

  • "The SD-WAN feature is the most valuable. This feature evolved from link load balancing. It has helped us in terms of our uptime and privatizing applications whenever we experience an outage. The SD-WAN feature has been a plus for us. Two-factor authentication has allowed us to add more users in terms of remote working. We have two-factor authentication for remote workers to authenticate them before they get on the network."
  • "It should be more stable. There should be full integration within Fortinet products themselves as well as with other third-party products. Especially when you're not dealing with SIEM and the correlation of the security box, we want Fortinet to be able to share that information with as many other products as it can."

What is our primary use case?

We're using it as an edge or a perimeter firewall. We have also used it to segment our LAN in terms of the endpoints and the servers, and we're also using it for remote access using SSL VPN. We have two other sites that we connect through FortiGate by using an IPSec, and we have integrated it with FortiAuthenticator for two-factor authentication and FortiAnalyzer to analyze logs and things like that. We are currently using the FortiGate 1200D series and running the latest software.

What is most valuable?

The SD-WAN feature is the most valuable. This feature evolved from link load balancing. It has helped us in terms of our uptime and privatizing applications whenever we experience an outage. The SD-WAN feature has been a plus for us. 

Two-factor authentication has allowed us to add more users in terms of remote working. We have two-factor authentication for remote workers to authenticate them before they get on the network.

What needs improvement?

It should be more stable. There should be full integration within Fortinet products themselves as well as with other third-party products. Especially when you're not dealing with SIEM and the correlation of the security box, we want Fortinet to be able to share that information with as many other products as it can.

For how long have I used the solution?

I have been using Fortinet FortiGate for four years.

What do I think about the stability of the solution?

In terms of stability, I would rate it a seven out of ten. It should be more stable. Sometimes when you do firmware upgrades, a feature that was previously working is broken. There are things like that, but I guess that can be taken care of by reading the release notes and seeing what changed in the firmware upgrades.

What do I think about the scalability of the solution?

It is highly scalable. A customer had about 500 users.

How was the initial setup?

The installation was straightforward.

What about the implementation team?

We deployed it ourselves. You just need one engineer for its deployment and maintenance.

What other advice do I have?

We are skilled in Fortinet and Check Point. For customers who specifically want Fortinet, we will continue to provide this solution. Our first preference is Check Point, but if a customer insists on Fortinet, then we can do a lot of integration there and incorporate other products like FortiNAC, FortiWifi, and so on.

I would recommend this solution to others. I would rate Fortinet FortiGate a seven out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Integrator
Buyer's Guide
Download our free Fortinet FortiGate Report and get advice and tips from experienced pros sharing their opinions.