Fortinet FortiGate Valuable Features

Chingiz Abdukarimov
Senior Network & Security Engineer at a integrator with 11-50 employees
Good VPN, both IPSEC and SSL (web-mode, tunnel-mode). An engineer/network administrator has tools to debug VPN issues that can occur during tunnel setup with other vendors' equipment. SD-WAN feature at no cost. This is really great feature for remote locations (branch offices) and HQ, application steering between many ISP links becomes a simple task. Steering can be done dynamically by measuring link quality (latency, jitter, packet loss, available bandwidth). Single Sign On support with deep LDAP integration (several variants for environments with different scales), RADIUS authentication. Can work as transparent and explicit web-proxy, the last option supports Kerberos authentication which requires no agents installed on any windows server. Human readable firewall policies with editable security policies and addresses in single page. This is very useful and time saving feature. Firmware upgrade process is very simple, even for cluster configurations it is fully automated by default. Straightforward SNAT and DNAT; you may work in two ways: with Central NAT rules configuration and by applying translation directly inside firewall policies. Bulk CLI commands are uploaded via gui in script file (portions of config file). VDOMs are very useful when you need to grant admin role to clients separately. VDOMs in FortiGate can be represented in FortiAnalyzer's ADOMs (administrative domain), which can have different log storage policies, event handling and alerting configurations. You can create one VDOM working in NAT/Route mode, and another VDOM working in Transparent mode. If you don't want to create and use second VDOM you can still transparently inspect traffic at layer 2 level while having only one VDOM in NAT/Route mode. This is achived by configuring Virtual Wire Pair ports that work like a separate bridge. Ability to capture packets going through any interface of device (and VM too). You can set number of packets, filter out packets by IP and port number for particular troubleshooting purposes, then download a .pcap file from web gui and analyze it in your favorite programm. Advanced routing (RIP, OSPF, BGP, PBR). It gives you a seamless and simple integration into a large network. IPS, AV, Web Filter, AppControl profiles are working very well. SSL Inspection and CASI (Cloud Access Security Inspection) profiles. Rich logging options allow you troubleshoot most problems. Straightforward HA with different redundancy schemas. IPv6 support. View full review »
Andrew S. Baker (ASB)
Cybersecurity & IT Operations Professional (VirtualCxO) at a tech services company with 1-10 employees
* The CLI is robust and powerful, enabling rapid, consistent changes via SSH. The device identification is very flexible, facilitating the creation of rules to regulate all sorts of devices that might spring up on a network, especially via WiFi. * The IPsec tunnels are very easily created, and quite interoperable with devices from other vendors. * WAN load-balancing has improved, but needs some refinement. You can set up a different DDNS config for each WAN link. It is great to be able largely use the same OS features across the family of devices. View full review »
Neal Tipton
Consultant at MT Pockets Computers
There's an all-inclusive appliance where all of the logs, registers, and everything is customizable as far as the way reporting comes back. View full review »
Find out what your peers are saying about Fortinet, Cisco, Sophos and others in Firewalls. Updated: January 2020.
396,515 professionals have used our research since 2012.
Cesar Nieves
Technical Services Manager with 501-1,000 employees
It's a complete solution. You can purchase switches and you don't need to do anything with them. You just put in the firewall and the switches get all the policies and rules that you already have in the firewall. That's a very nice feature because with, for example, Cisco, you need to set the switch, you need to set the firewall, and you need to test it. With Fortinet, you just connect the FortiSwitch to the Fortinet and that's it. It's very easy. In the last version of the FortiOS - the operating system of the firewall - they put a lot of new features to support communications in a firewall. Whatever the communication that you have, you can put that in the firewall, and that's great. View full review »
Branch Manager at a tech services company with 51-200 employees
One of the most valuable features for us is that it is easy to configure. It is also very easy to manage. One of the things we were looking at was a product that is user friendly, and this helps us to generate and analyze the reports we need. View full review »
Vineeth Babu P
IT System Administrator at emirates hospital
The most important features with FortiGate are the web filter and application controls. We can control our internet usage and use the web filter for application purposes. All branch FortiGate devices are integrated with FortiAnalyzer and easy to download and monitor the logs from all other locations. It's easy to change the configurations using CMD-SSH. FSSO is also another good feature. View full review »
Manager and General Attorney with 51-200 employees
The filtering that you can do with the firewall. View full review »
Emmanuel Salamat
Solutions Architect at UAS
First and foremost, Fortinet FortiGate is a security device. It can optimize security on the networks of a company. It actually protects the company from attacks from outside. With Fortinet FortiGate, you can categorize the users. You can create a group of users that can access all of the websites for their work. You can limit other users' access. It can also do detailed reporting and analytics that comprise information from recorded events on the network by traffic location, device, IP address, etc. View full review »
Diana Nongera
Senior I.T. Administrator at a agriculture with 201-500 employees
* DHCP functionality: The object tab where we manage our IP addresses and static. The DHCP monitors them. * FortiClient: You can easily connect when you are home, check out what you want to do, and connect to your network when you are not at work. You can switch on servers and you can check what is wrong. View full review »
Director, CFO at IT Green Public Company Ltd.
Fortinet FortiGate has many excellent functions and good security. The firewall is the most common function that we have used for a long time. View full review »
Sabyasachi Sen
General Manager with 51-200 employees
The only feature is that I don't have to be worried about categorization of the websites. I am able to put on the policies for the blog because this is an institution.There are several restrictions out there to get onto the websites. It creates a "headache free" environment for us. View full review »
Amgad Soliman
Senior System & Security Administrator at Icon
The main feature that Fortinet FortiGate has that is very useful for me, is that I can connect two sides of the network to each other with Fortinet. I can make two VPNs run side-to-side. VPN is very simple and so easy with FortiGate. View full review »
Information Security Analyst at a tech vendor with 51-200 employees
Valuable features include the Web Application Firewall, and it even has DLP (data leak prevention). View full review »
Sherif Abouelezz
Head of IT at CGP
I like all of FortiGate's features. View full review »
Fernando Neto
Network Analyst at a comms service provider with 201-500 employees
The firewall is a valuable feature because it offers more security for end customers. The HA function is fantastic, as the link switching time is almost imperceptible. It also offers dedicated IP, all in one box. View full review »
Naseema Ap
Manager systems at HOCL
The most valuable feature is the threat protection. With many users, I've found an issue where sometimes I need to monitor the traffic that I need to filter. View full review »
Md Mohiuddin
Assistant Manager IT at Urmi Garments Ltd
We are very happy with the general bandwidth agility we have seen from one website to another website. View full review »
ICT Officer at a non-profit with 5,001-10,000 employees
* There is an easy process for configuring it, and it is straightforward to implement the device from scratch. * It has a somewhat diverse device interface, but if you have one day to play with it, you can easily find whatever you need. * All types of policies need to be installed, then all the parameters are configured. It is not very demanding, View full review »
Principal Mining Consultant at senhwabio
The feature that prevents internet connections, the filtering, is the most valuable feature because we did not have any internet protection before. View full review »
Kevin Stephens
ICT Administrator at a mining and metals company with 11-50 employees
I really like the captive portal feature for our guest network. It has nice VLAN features in terms of separating our network. The anti-virus is also good. View full review »
Network and Security Manager at a Consumer Goods with 10,001+ employees
I like the UTM features, including the web filtering and antivirus. View full review »
Assistant Manager (Infrastructure) with 1-10 employees
All the features are very good, straightforward licensing, Fortinet product integration, standardized FortiOS and automatic uninterruptable firmware upgrade. Easy to use support and licensing portal as well as activation process. View full review »
Directorate at a wholesaler/distributor with 51-200 employees
The most important feature is that it's easy to use. It is user-friendly and has all the features you need. You can have IDS (Intrusion detection systems) and IPS (Intrusion prevention systems) in just one device. You don't need multiples. View full review »
PTL Network Administrator at a non-profit with 1,001-5,000 employees
It gives priority to certain applications compared to others as well because internally all our applications are web based. We use FortiGate to prioritize certain applications to be accessed much faster than the others. For end users, it enables access to the applications and web filtering, as well. That's where we block off most of the sites and we can do scheduling, as well as access to certain sites within certain periods of time. View full review »
Mgr. IT Infrastructure and Network Operations at a media company with 11-50 employees
The most valuable features are centralized monitoring, policy management, and virtualized appliances so we can have control over public and private Infrastructure. View full review »
Gamal Al-Hamzah
Network Engineer at LinkTech
The most important features of Fortinet FortiGate are the Intrusion Prevention System (IPS) and firewall control applications. View full review »
Kofi Osei-Appaw
Consultant at WorldNet ICT Solutions Limited
This solution has many good features. The security features are about the best that I've seen anywhere. I really like the fact that I am able to generate FortiCloud reports. View full review »
Network Engineer
* Stability * Ease of use * Configuration * The available feature sets View full review »
Derrick Slaton
IT Specialist 3 at a financial services firm with 51-200 employees
The ability to set up remote systems is the most valuable feature. View full review »
Ramon Henriquez
Director TICs at a comms service provider with 51-200 employees
* The security * Monitoring * Alarms It is a very strong platform. View full review »
Narendra Singh
Solution Architect at a marketing services firm with 11-50 employees
The most valuable feature is the VDOM, which allows the customer to have multiple firewalls in a single campus. Using the FortiGate security solution provides comprehensive visibility and advanced layer 7 security, including threat protection, intrusion prevention, web filtering, and application control. They face a major complexity hurdle managing these point products with no integration and lack of visibility. Thie solution provides a high-performance inspection of clear-text and encrypted traffic. The FortiOS Operating system is robust, and the WAN load-balancing very much transparent. View full review »
Abdy Sanjur
Gerente de Seguridad Informática at a financial services firm with 1,001-5,000 employees
The Fortinet FortiGate product has original features that we use. These features include: * IPS * Anti-Malware * Web Application Firewall View full review »
Network Engineer at a tech services company with 201-500 employees
The most valuable feature is the policy routing and application control. In addition, the firewall will act as a call-switch. So, the performance within the LAN is good. View full review »
Sr. Corporate Marketing Executive at a tech services company
FortiGate is really strong in the following: * UTM * IPS-like * Antivirus * App control * AntiBotnet * Anti-Spam web content filtering * L3 routing View full review »
Solutions Architect at Focus
It is a good product from a price perspective versus functionality. It is easy to use and performs very well. View full review »
Security Engineer at a real estate/law firm with 501-1,000 employees
* Box stability * Security features, like SSL scanning. * Their service: Whenever we raise a complaint with FortiGate, their response and resolution times are minimal. View full review »
Robert Kaczorowski
System Administrator at a construction company with 201-500 employees
* The ability to customize UTM features and add or remove features as we like. * Availability of different locations as options. * The VPN features are easy to deal with. * The CLI and GUI do a good job of putting a lot at your fingertips. View full review »
Panos Kre
The features that we have found most valuable are the SSL VPN and the user Portal. View full review »
Vuong Huynh
* A strong point of FortiGate is the graphical interface is complete and easy to use. * The IPS is good. It protect my network from attackers. View full review »
IT Management with 11-50 employees
It is easy to use. View full review »
Dave Winkel
President with 1-10 employees
Security Fabric makes VLANs a breeze. It impresses customers, as well as saves them money over the long run when comparing apples to apples. View full review »
Engineering Manager with 1-10 employees
The most valuable feature is the bundled subscription, which is IPS, TV and web filtering. I also like the application control. View full review »
Camilo Benavides
System Administrator at a university with 51-200 employees
The most important feature for me apart from the administrator is the UTM module because it protects in a very efficient way the equipment of the entity. View full review »
Shahab Razak
Network Architect at a financial services firm with 10,001+ employees
* Live traffic viewer * Packet capture, and * The option of using GUI and CLI interchangeably. FortiManager and FortiAnalyzer helps us manage multiply firewalls. View full review »
Ibrahim El Sayed
Network & Hardware Administrator with 1,001-5,000 employees
The most valuable feature is the SD-WAN because I can manage many lines and load balance them all. View full review »
CTO at a comms service provider with 501-1,000 employees
We find the most valuable aspect of this solution is the price. It is affordable and cheaper than other firewalls. View full review »
Ali Asvadi
President at a tech services company with 1-10 employees
Reliability and performance, those are key factors. View full review »
Zhargal Solovyev
Network Engineer with 11-50 employees
This solution has solid UTM features combined with a nice GUI. View full review »
User at a tech consulting company with 11-50 employees
Find out what your peers are saying about Fortinet, Cisco, Sophos and others in Firewalls. Updated: January 2020.
396,515 professionals have used our research since 2012.