Try our new research platform with insights from 80,000+ expert users
Alain ClovisBapfunya - PeerSpot reviewer
Cyber Security Specialist at a hospitality company with 1-10 employees
Real User
Mar 29, 2023
It aggregates and correlates all the events from multiple sources
Pros and Cons
  • "Many of my clients are financial institutions that transmit files from around the country across a VPN. In a setup like this, it's helpful to have a centralized dashboard to manage firewalls and other security solutions across a distributed environment. You can do all sorts of analysis and configure it to trigger alarms."
  • "FortiAnalyzer only integrates with Fortinet solutions. That is a limitation because many organizations use multiple vendors. It's often a mixture of Cisco network hardware and equipment from other vendors, such as switches, access points, etc."

What is our primary use case?

FortiAnalyzer provides a centralized dashboard for analyzing the output of all our Fortinet solutions, like FortiGate, FortiManager, FortiSandbox, etc. It aggregates and correlates all the events.

What is most valuable?

Many of my clients are financial institutions that transmit files from around the country across a VPN. In a setup like this, it's helpful to have a centralized dashboard to manage firewalls and other security solutions across a distributed environment. You can do all sorts of analysis and configure it to trigger alarms. 

What needs improvement?

FortiAnalyzer only integrates with Fortinet solutions. That is a limitation because many organizations use multiple vendors. It's often a mixture of Cisco network hardware and equipment from other vendors, such as switches, access points, etc. 

For how long have I used the solution?

We have used FortiAnalyzer for one year.

Buyer's Guide
Fortinet FortiAnalyzer
January 2026
Learn what your peers think about Fortinet FortiAnalyzer. Get advice and tips from experienced pros sharing their opinions. Updated: January 2026.
881,082 professionals have used our research since 2012.

What do I think about the stability of the solution?

FortiAnalyzer is stable as long as you don't push it. It can cause trouble if you are overreliant on virtual machines and you don't have hardware acceleration. You might see some performance problems. 

What do I think about the scalability of the solution?

FortiAnalyzer is scalable. It covers FortiGate firewalls, switches, etc. You can always buy more licenses or hardware if you need to upgrade. 

How are customer service and support?

The response times could be faster.

How was the initial setup?

Setting up FortiAnalyzer is straightforward. It doesn't take long because everything is already built for you unless you need to do some virtualization. The specific steps depend on your environment and what kind of device fabrics you use. 

What's my experience with pricing, setup cost, and licensing?

They have three-year licenses, but I usually recommend starting with a one-year license to try FortiAnalyzer out. After that, you can switch to a three-year license. 

What other advice do I have?

I rate FortiAnalyzer nine out of 10. I recommend FortiAnalyzer to anyone who is using Fortinet products. 

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer. Implementer
PeerSpot user
Saneesh Pv - PeerSpot reviewer
Network Security Specialist at a computer software company with 501-1,000 employees
Real User
Feb 13, 2023
Customer support is good, but the tool lacks a sophisticated and customizable dashboard
Pros and Cons
  • "I would say that Fortinet's tech support is really good."
  • "The deployment of Fortinet FortiAnalyzer is not complex, but integrating it with firewalls can take some time, depending on the number of firewalls."

What is our primary use case?

It's a lock storage correlation device. You can connect locks from different devices. Not just from Fortinet, but you can send locks from other devices to FortiAnalyzer. Basically, it is a centralized repository.

What is most valuable?

Fortinet FortiAnalyzer has a lock correlation feature. It simplifies the troubleshooting process for its customers. So now, instead of logging into every firewall, they can log into Fortinet FortiAnalyzer and check the locks. They can also check whether there are any issues with the network.

What needs improvement?

This is a difficult question for me to answer. I want the tool to have a sophisticated and customizable dashboard similar to the one in the SIEM solution. However, I'm not sure if that is in the pipeline. Basically, I would say that it's not a pure SIEM solution where your customer can have a layer on a view of dashboards or advanced dashboards.

For how long have I used the solution?

I work with Fortinet and Palo Alto. I am also a partner of Fortinet. Even though I have been working with Fortinet for more than five or six years now, Fortinet EDR is something very new for me and us in general. We have been working on firewalls, FortiAnalyzer, FortiManager, FortiMail, FortiADC, and FortiWeb. EDR, SDMA, and ZTNA are new to us. Speaking about Fortinet FortiAnalyzer, I have been working on it for more than six years now.

What do I think about the stability of the solution?

The stability of Fortinet FortiAnalyzer is okay. Although some customers have encountered issues, others have had a pretty okay experience and are doing pretty well with the solution.

What do I think about the scalability of the solution?

I would say that more than ten of our clients are working on this solution. I would say that it is kind of scalable since it comes in different form factors. Owing to the different form factors and sizing of the solution, you can add and get increased capacity. This can help a person to add more firewalls and devices.

How are customer service and support?

I would say that Fortinet's tech support is really good.

How would you rate customer service and support?

Neutral

How was the initial setup?

I can say that the setup is a mixture of both options. I wouldn't say it is difficult. I would rather say that the setup process is okay or moderate. Also, the straightforwardness and complexity of the setup process will depend on your environment.

The deployment of Fortinet FortiAnalyzer is not complex, but integrating it with firewalls can take some time, depending on the number of firewalls. So, the deployment of the entire solution can take approximately one week to complete.

What's my experience with pricing, setup cost, and licensing?

I'm not familiar with the cost point, because I am more of a technical person and I do not do pre-sales or sales.

Which other solutions did I evaluate?

I downloaded reports for CrowdStrike Falcon and FortiEDR from peerspot.com to see how they are in terms of performance.

What other advice do I have?

Based on current trends, people are shifting towards FortiGate devices for their attractive value proposition and exceptional performance. FortiGate is the go-to choice for firewalls. And for us, along with FortiGate, I'll even go with FortiManager and FortiAnalyzer. I rate this solution a seven out of ten.

Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
PeerSpot user
Buyer's Guide
Fortinet FortiAnalyzer
January 2026
Learn what your peers think about Fortinet FortiAnalyzer. Get advice and tips from experienced pros sharing their opinions. Updated: January 2026.
881,082 professionals have used our research since 2012.
Ajeet Singh - PeerSpot reviewer
Network Engineer at a healthcare company with 10,001+ employees
Real User
Sep 8, 2022
Efficient and user-friendly with a nice GUI
Pros and Cons
  • "The product works well with other products."
  • "Technical support could respond to queries faster."

What is our primary use case?

We are using the solution only for ticket logs and security logs, et cetera.

What is most valuable?

How the applications are working has been quite useful. It helps the users and how they are using the applications. We can see, for example, the utilization of all of the security fabric in a report. We are getting PDFs and Excel sheets that we can use to analyze everything, including how users are working on our internet services. We can generate reports quite easily.

It's been generally very efficient.

It is user-friendly and has a good GUI. 

The product works well with other products. 

The solution scales well. 

It's stable.

We found the pricing to be very reasonable. 

What needs improvement?

There are no areas that need to be improved. 

Technical support could respond to queries faster. 

For how long have I used the solution?

We've been using the solution for five or six years. 

What do I think about the stability of the solution?

It's stable and very easy to use. Everything is generated very easily. The performance has been fine.

What do I think about the scalability of the solution?

We have ten network engineers in India working on this product. There are between ten people directly working with it. 

In my location, we have 2,000 people and they are all users integrated into FortiAnalyzer. We are getting all logs for all these users through it. 

It is a very scalable solution.

How are customer service and support?

The technical support, we are taking from SNS team. Whenever the SNS team is talking on any ticket, they may get help from FortiGate. My concern is that they are taking too much time to respond. They should respond faster to requests for help. 

How would you rate customer service and support?

Neutral

How was the initial setup?

I have not installed or configured FortiAnalyzer. I came into this organization one year ago and it was already configured. I do not have that much of an idea about the installation.

I'm not sure what, if any, maintenance is required. 

What's my experience with pricing, setup cost, and licensing?

The pricing is very good. I'd rate it four out of five in terms of affordability.

What other advice do I have?

We are a customer and end-user.

Our firewall is FortiAnalyzer's 200D and it is not a new one. We are using the older one only. 

If an organization is using the FortiGate Firewall, then they should go with the FortiAnalyzer also. It is very helpful in terms of getting logs and tracking security threats. We can check the reports very easily.

I'd rate it eight out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
IgnitiusMolepo - PeerSpot reviewer
Senior IP Network Defense at a comms service provider with 10,001+ employees
Real User
Top 5Leaderboard
Feb 18, 2022
Reporting features like graphs, threat intelligence, and vulnerabilities analysis are helpful
Pros and Cons
  • "FortiAnalyzer's reporting features like graphs, threat intelligence, and vulnerabilities analysis are helpful. Fortinet knows how to do reporting. You can customize your reports to show exactly what you want to analyze. It's user-friendly and doesn't require a lot of effort."
  • "If Fortinet could introduce some firewalling or maybe FortiAnalyzer on the cloud, that would be interesting because I've never seen it on a cloud."

What is our primary use case?

We use FortiAnalyzer as our indicator of compromise solution, and I'm also running some SOC into it. 

What is most valuable?

FortiAnalyzer's reporting features like graphs, threat intelligence, and vulnerabilities analysis are helpful. Fortinet knows how to do reporting. You can customize your reports to show exactly what you want to analyze. It's user-friendly and doesn't require a lot of effort. 

The hub is another feature that's good to use. FortiAnalyzer can be connected to other Fortinet devices via the hub. It isn't restricted, and it's all controlled by FortiManager. It can also integrate all the opcodes to one box. 

What needs improvement?

If Fortinet could introduce some firewalling or maybe FortiAnalyzer on the cloud, that would be interesting because I've never seen it on a cloud. 

For how long have I used the solution?

We've been using FortiAnalyzer since 2015. 

What do I think about the stability of the solution?

FortiAnalyzer is stable. It will do the work as long as your FortiGate is stable. It depends more on the FortiGate, so if your FortiGate is cool, there's no problem. If there is a problem, you can bypass it most of the time. I can't say that there are no issues. I don't want to lie.

What do I think about the scalability of the solution?

FortiAnalyzer is scalable. It can even take over traffic from other analyzers. You can connect as many analyzers as you want to it. 

Which solution did I use previously and why did I switch?

I used a McAfee SIEM solution before at my previous employer, but it's not as powerful as FortiAnalyzer. I used a Rapid7 solution and Cisco FirePOWER, which are both weak.

How was the initial setup?

We don't need to do much to install FortiAnalyzer because it always depends on FortiGate. You need to deploy FortiGate before you install it. That's why I say that I see it as a dummy box. I don't see anything interesting in it. It's only a support structure.

What other advice do I have?

I rate FortiAnalyzer seven out of 10. It's a very user-friendly box. You don't even need to know the CLI. It has a CLI, but you don't need to know it because the GUI is excellent. It's always doing its duty to keep up with the reporting. 

Which deployment model are you using for this solution?

On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Othman Alamine - PeerSpot reviewer
Senior Network Engineer at a tech services company with 11-50 employees
Real User
Jan 18, 2024
Provides great visibility into user logs and traffic
Pros and Cons
  • "The traffic log information we receive from Fortinet FortiAnalyzer is valuable."
  • "Fortinet FortiAnalyzer needs to have more out-of-the-box connectors for integration with other solutions."

What is our primary use case?

We use Fortinet FortiAnalyzer for logs and reports. We have a SOC subscription to monitor the end users' login activity and traffic.

Fortinet FortiAnalyzer is deployed by us in both on-premises and cloud environments.

How has it helped my organization?

Fortinet FortiAnalyzer provides more visibility into the logs.

What is most valuable?

The traffic log information we receive from Fortinet FortiAnalyzer is valuable.

What needs improvement?

Fortinet FortiAnalyzer needs to have more out-of-the-box connectors for integration with other solutions.

For how long have I used the solution?

I have been using Fortinet FortiAnalyzer for three months.

What do I think about the stability of the solution?

Fortinet FortiAnalyzer is stable as long as we keep it up to date. 

What do I think about the scalability of the solution?

Fortinet FortiAnalyzer is scalable.

How are customer service and support?

The technical support is great. We receive support within 24 hours of opening a ticket.

How would you rate customer service and support?

Positive

How was the initial setup?

The initial deployment of Fortinet FortiAnalyzer is straightforward. There are two network interfaces involved: the Internet interface and the LAN interface. The LAN interface must be configured on the same subnet as the other Fortinet products to enable visibility of the network connector from the Fortinet console. Upon successful configuration, an authorization message will be received, allowing us to proceed with adding the devices to the FortiAnalyzer device manager and initiating log data collection. The deployment process is well-documented, requiring minimal personnel, and can be completed within five hours.

What's my experience with pricing, setup cost, and licensing?

The number of licenses required directly corresponds with the number of devices connected.

What other advice do I have?

I would rate Fortinet FortiAnalyzer a nine out of ten.

FortiAnalyzer enhances network security visibility with its comprehensive logging and analysis capabilities, making it a valuable tool for organizations seeking to improve their security posture. I highly recommend it.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer. Integrator
PeerSpot user
JavedHashmi - PeerSpot reviewer
Chief Technology Officer at a tech services company with 51-200 employees
Reseller
Top 5Leaderboard
Jan 18, 2024
Comprehensive reporting and efficient log management
Pros and Cons
  • "The most valuable is its robust and comprehensive reporting functionality, providing a thorough overview of various metrics."
  • "I believe that its technical support is the only aspect that requires significant improvement."

What is our primary use case?

The primary use case for our clients revolves around robust reporting capabilities, addressing key aspects such as understanding diverse utilizations and the performance of network links. They specifically sought insights into bandwidth usage and detailed reporting at the application level. Additionally, an essential requirement was efficient log management. This is crucial because FortiGate has limitations on retaining logs for an extended duration, and our clients needed a solution, such as FortiAnalyzer, to effectively manage and analyze logs over an extended period.

What is most valuable?

The most valuable is its robust and comprehensive reporting functionality, providing a thorough overview of various metrics. Additionally, its ability to centrally capture logs from multiple devices proves indispensable for our SOC. This centralized log management facilitates automation processes, and we also greatly appreciate the effectiveness of its analytics features.

What needs improvement?

I believe that its technical support is the only aspect that requires significant improvement. With the current trend toward AI advancements, there's an opportunity for improved AI analytics. This could empower us to better leverage technology to detect attacks in a more effective manner.

For how long have I used the solution?

I have been working with it for more than five years.

What do I think about the stability of the solution?

It offers excellent stability capabilities. I would rate it nine out of ten.

What do I think about the scalability of the solution?

It offers a capacity of up to two thousand gigabytes of logs daily, showcasing considerable scalability. I believe it is a scalable solution that can easily accommodate increasing needs without compromising performance. Our clients fall into the enterprise category. I would rate it eight out of ten.

How are customer service and support?

The support services are often outsourced to specific regions, resulting in varying levels of technical expertise. While regions like America, the USA, Europe, and certain countries in Australia benefit from reasonable and proficient engineers, other locations may experience subpar tech support. Consequently, issue resolution can be time-consuming, leading customers to sometimes address problems independently. Particularly in terms of time efficiency, there is a need for improvement to expedite the support process. I would rate it six out of ten.

How would you rate customer service and support?

Neutral

How was the initial setup?

The initial setup was straightforward. I would rate it eight out of ten.

What about the implementation team?

The deployment process is straightforward and efficient, requiring minimal time and effort. It takes approximately thirty minutes and it's quite user-friendly.

What's my experience with pricing, setup cost, and licensing?

The pricing is reasonable. The cost structure is primarily based on factors such as the number of logs, log sizes, and the daily log storage capacity, with a minimum requirement of two gigabytes per day. The maximum storage capacity can extend up to eight thousand gigabytes of logs per day.

What other advice do I have?

I would strongly recommend utilizing it. It's an excellent product with abundant features, offered at a very reasonable price point. Overall, I would rate it eight out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer. Reseller
PeerSpot user
reviewer2255289 - PeerSpot reviewer
IT Manager at a manufacturing company with 201-500 employees
Real User
Aug 25, 2023
Notifications and alerts are helpful, and it is a natural choice for Fortinet security devices
Pros and Cons
  • "Special notifications about compromised phones are valuable because we have some guest networks, and sometimes, people are connecting phones that are connected to compromised websites. We want to be informed about it. We sometimes have some cases where we want to analyze the connection from inside to outside ports. So, it helps with a lot of things. It depends on our needs."
  • "The interface or GUI does not work properly on Microsoft Edge. The behavior or the view is different on Microsoft Edge versus on Chrome or Firefox. When some buttons do not work, I am forced to switch to Firefox."

What is our primary use case?

We take all the logs from FortiGate. 

We have it deployed on-premises, and we are definitely using its latest version because we are creating a new virtual machine.

What is most valuable?

Special notifications about compromised phones are valuable because we have some guest networks, and sometimes, people are connecting phones that are connected to compromised websites. We want to be informed about it. We sometimes have some cases where we want to analyze the connection from inside to outside ports. So, it helps with a lot of things. It depends on our needs.

What needs improvement?

The interface or GUI does not work properly on Microsoft Edge. The behavior or the view is different on Microsoft Edge versus on Chrome or Firefox. When some buttons do not work, I am forced to switch to Firefox.

There could be better analysis from the client's perspective. If you have FortiClient EMS, you should be able to analyze users more than the connections.

For how long have I used the solution?

We started using Fortinet FortiAnalyzer this year. It was bought by our main company in the Netherlands.

What do I think about the stability of the solution?

It is now stable, but our previous instance was unstable. We had problems with connectivity. It was strange because it is a virtual machine, and it was on the same hypervisor or host, but only Fortinet FortiAnalyzer had connectivity problems. The connection was dropped, and it was not always possible to log in. We moved it to a different environment. We have now moved it to a Hyper-V cluster on a different site in Poland, and it is now stable.

What do I think about the scalability of the solution?

It is scalable. We could change the size. It was easy.

We have mainly two people working with Fortinet FortiAnalyzer. My colleague and I from the Netherlands work on it. All IT departments also can access it. In total, we have five or six users, but mainly, two of us work on it.

How are customer service and support?

I use their technical support when I have problems. They solve my problems, but sometimes, they take time because it is difficult to understand each other. I prefer a phone call over the email or ticket system because we can share more information in a short time. I would rate them a nine out of ten. They sometimes do not have a fast solution, but they always resolve an issue in the end.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

I did not work on any similar product previously.

How was the initial setup?

It was easy to deploy. It took one hour.

What about the implementation team?

We deployed it ourselves. We know the product. We know how to register devices and how to join devices. It was easy. We used our knowledge.

What's my experience with pricing, setup cost, and licensing?

I do not know the price of Fortinet FortiAnalyzer. I did not pay for it, but I know the price of other Fortinet products. They are not cheap. I am from Poland. We have Zloty, not Euro, so for us, everything is expensive. 

I had also tried to buy it in the past, but it was too expensive.

What other advice do I have?

If you have FortiGate and FortiClient EMS, FortiAnalyzer is a natural choice. You can have notifications and alerts. Some things are automatically done by FortiAnalyzer. From a security perspective, it is a very good product.

Overall, we are satisfied with it. I would rate Fortinet FortiAnalyzer an eight out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Dolf Krikke - PeerSpot reviewer
Senior Network Architect at a tech services company with 11-50 employees
Real User
Aug 25, 2023
The monitoring features are quite impressive, including maps, source IP, country codes, and geolocation
Pros and Cons
  • "What I like the most is the monitoring system."
  • "The UI can be more user-friendly for new users."

What is our primary use case?

We are an IT company. One of our clients utilizes FortiGate, FortiAnalyzer, and FortiManager. Thus, this is the sole customer in our portfolio using Fortinet FortiAnalyzer. Among our other clients, some exclusively employ FortiGate. Our responsibility encompasses network management for these clients.

What is most valuable?

What I like the most is the monitoring system. For example, it can track who is accessing through VPNs. The monitoring features are quite impressive, including maps, source IP, country codes, and geolocation – all of which are really cool. Additionally, the logging functionality is also excellent.

What needs improvement?

The UI can be more user-friendly for new users.

For how long have I used the solution?

I have been using Fortinet FortiAnalyzer for seven years.

What do I think about the stability of the solution?

Fortinet FortiAnalyzer is highly stable. In the seven years of usage, we have never needed to reinstall it or perform troubleshooting. We have not had to make any support calls to Fortinet either. We successfully performed upgrades from version five to six and from six to seven, all of which went smoothly.

What do I think about the scalability of the solution?

Fortinet FortiAnalyzer is scalable.

How are customer service and support?

The technical support is excellent. I have never encountered any problems with FortiAnalyzer, but the issues we faced with FortiGate, which I was unable to resolve on my own, were promptly resolved by their team.

How would you rate customer service and support?

Positive

How was the initial setup?

The initial setup is straightforward. We can choose to install either a single node or a cluster. We run it in a virtual environment on firmware, and the process of installing the RPA takes around 15 minutes. Afterward, some configuration is required, including the installation of certificates and similar tasks. Thus, the entire process usually takes approximately one to two hours.

Once the installation is complete, we need to connect all the FortiGate Firewalls to the FortiAnalyzer. This step also involves configuring them securely. When I deploy this solution for a customer, it typically takes me about four to eight hours to complete the installation and configuration. 

What's my experience with pricing, setup cost, and licensing?

The price is not expensive when compared to other solutions like Palo Alto.

In addition to the licensing, we pay for a support contract.

What other advice do I have?

I would rate Fortinet FortiAnalyzer eight out of ten.

Fortinet FortiAnalyzer is only valuable for organizations that utilize ten or more FortiGates.

I recommend Fortinet FortiAnalyzer to others.

Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
PeerSpot user
Buyer's Guide
Download our free Fortinet FortiAnalyzer Report and get advice and tips from experienced pros sharing their opinions.
Updated: January 2026
Product Categories
Log Management
Buyer's Guide
Download our free Fortinet FortiAnalyzer Report and get advice and tips from experienced pros sharing their opinions.