I am using Fortinet FortiAnalyzer for tracing anything that happens in the network.
Senior System Administrator at Citystars Properties
Helpful dashboards, reliable, and simple deployment
Pros and Cons
- "The most valuable features of Fortinet FortiAnalyzer are the dashboards and supporting services."
- "The most valuable features of Fortinet FortiAnalyzer are the dashboards and supporting services."
- "Fortinet FortiAnalyzer could improve by having better integration with other vendors."
- "Fortinet FortiAnalyzer could improve by having better integration with other vendors."
What is our primary use case?
What is most valuable?
The most valuable features of Fortinet FortiAnalyzer are the dashboards and supporting services.
What needs improvement?
Fortinet FortiAnalyzer could improve by having better integration with other vendors.
For how long have I used the solution?
I have been using Fortinet FortiAnalyzer for approximately five years.
Buyer's Guide
Fortinet FortiAnalyzer
March 2026
Learn what your peers think about Fortinet FortiAnalyzer. Get advice and tips from experienced pros sharing their opinions. Updated: March 2026.
885,286 professionals have used our research since 2012.
What do I think about the stability of the solution?
Fortinet FortiAnalyzer is highly stable.
What do I think about the scalability of the solution?
Fortinet FortiAnalyzer is scalable.
We have five managers that are using the solutions.
How are customer service and support?
The support was great for Fortinet FortiAnalyzer.
I rate the support from Fortinet FortiAnalyzer a four out of five.
How was the initial setup?
The initial setup of Fortinet FortiAnalyzer was simple. The full deployment took approximately two or three hours.
What about the implementation team?
We used a local partner of Fortinet that was assisting us with the deployment. We had a two-person team for the deployment.
What other advice do I have?
I rate Fortinet FortiAnalyzer an eight out of ten.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Senior Manager (Engineering Department) at a comms service provider with 10,001+ employees
User-friendly, easy to deploy and simple to create reports
Pros and Cons
- "The solution is quite easy to deploy."
- "The solution is quite easy to deploy."
- "The solution should be more price competitive."
- "The solution should be more price competitive."
How has it helped my organization?
The clients using this solution have wifi for their guests and for their own users. They want to know which user has used their wifi to access the internet, and probably use this knowledge for a kind of security management purpose.
What is most valuable?
The solution is quite easy to deploy. For the user, they don't need to have a lot of technical know-how. It is easy to generate the report for review by the management.
The solution is stable and reliable.
We have not faced any scalability issues.
What needs improvement?
The solution should be more price competitive.
For how long have I used the solution?
I've used the solution for one or two years. I used it on a recent project.
However, the first time I used this product was in 2006 for our own infrastructure. We are not using it in our infrastructure anymore.
What do I think about the stability of the solution?
The solution is stable. There are no bugs or glitches. It doesn't crash or freeze. The performance is reliable.
What do I think about the scalability of the solution?
In terms of scalability, it really depends. For our customer, the SME customer, not that many people need it. If you talk about scalability around analysis, related to the hub and space, the hub disk size, and the capacity of the box, for the on-prem model, we need to choose it with some buffer. We can't foresee any scalability issue for that customer.
We only have one client on the solution.
How are customer service and support?
While I haven't directly dealt with technical support, I have not heard any complaints from my colleagues that may have. I would say that the support has been satisfactory for the moment.
How was the initial setup?
The initial setup is pretty straightforward. That said, I didn't handle it directly. We had an internal team that did the implementation.
Most of the time, one engineer is sufficient for a small deployment, just two AP, one firewall, and one analyzer.
What about the implementation team?
The implementation work was done by my engineers. We did not need any outside assistance from any integrators or consultants.
What's my experience with pricing, setup cost, and licensing?
I can't remember if they have a new license for software maintenance. They have maintenance that is charged annually. Unlike a firewall, they have a UTM license you need to pay annually and then only an annual maintenance cost for the hardware, for FortiAnalyzer.
I'm not sure what the exact price is at the moment. However, my understanding is the pricing could be better.
What other advice do I have?
I would recommend the solution to others. We have been happy with its overall capabilities. I'd rate the solution at an eight out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
Buyer's Guide
Fortinet FortiAnalyzer
March 2026
Learn what your peers think about Fortinet FortiAnalyzer. Get advice and tips from experienced pros sharing their opinions. Updated: March 2026.
885,286 professionals have used our research since 2012.
Vice President of Innovation and Customer Solutions at a tech services company with 201-500 employees
Useful reports, scalable, and priced well
Pros and Cons
- "The solution does what it is supposed to. I want it to do reports for Fortinet and it does it well."
- "We have other log analyzers, but we have found with Fortinet FortiAnalyzer when you have a Fortinet environment, it's fully integrated."
- "The FortiAnalyzer is not good at managing multi-version environments. If all your FortiGate are at different versions in the field, that's difficult. The one thing we didn't like is the fact you have to have 100% of your environment at the same release, which is not pleasant, to have it fully functional. You can have a different release, but to have it fully functional 100% of your environment has to be the same release."
- "The FortiAnalyzer is not good at managing multi-version environments."
What is our primary use case?
We're a managed service provider and we use Fortinet FortiAnalyzer to generate reports for our customers. We manage our customer's Fortinet environment and FortiAnalyzer allows us to send a monthly report or on-demand report to our customers.
What is most valuable?
The solution does what it is supposed to. I want it to do reports for Fortinet and it does it well.
What needs improvement?
The FortiAnalyzer is not good at managing multi-version environments. If all your FortiGate are at different versions in the field, that's difficult. The one thing we didn't like is the fact you have to have 100% of your environment at the same release, which is not pleasant, to have it fully functional. You can have a different release, but to have it fully functional 100% of your environment has to be the same release.
In a future release, if they could turn they could turn Fortinet FortiAnalyzer into a multi-vendor supporting tool it would be awesome. However, I do not think this will happen.
For how long have I used the solution?
I used Fortinet FortiAnalyzer for approximately two years.
What do I think about the scalability of the solution?
Fortinet FortiAnalyzer is scalable.
Fortinet FortiAnalyzer is easy to scale. We have approximately 50-100 employees using this solution.
Which solution did I use previously and why did I switch?
We have other log analyzers, but we have found with Fortinet FortiAnalyzerwhen you have a Fortinet environment, it's fully integrated. This was what we were looking for, we were not looking for multi-vendor solutions, we were looking for the best log analysis tool for Fortinet.
How was the initial setup?
The solution is easy to set up.
What's my experience with pricing, setup cost, and licensing?
We found the price of Fortinet FortiAnalyzer to be reasonable.
What other advice do I have?
I would advise those wanting to use Fortinet FortiAnalyzer to use an MSP, to use a managed service provider, they can call us.
I rate Fortinet FortiAnalyzer an eight out of ten.
Which deployment model are you using for this solution?
Public Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Microsoft Azure
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
CEO at Corem Technologies
Robust reporting and flexible connectivity
Pros and Cons
- "The features that our customers have found most valuable are their different type of reports including the drill down report, as well as the flexibility to connect to any number of appliances which can be connected to it centrally."
- "For customers who need to have different types of reporting presentable to different levels of hierarchy, FortiAnalyzer is a lovely solution."
- "Pricing-wise, it not affordable for the normal customer. Most of the people want to see different types of reporting, but FortiAnalyzer's fee is a little bit difficult."
- "Pricing-wise, it is not affordable for the normal customer."
What is our primary use case?
The primary use case for Analyzer, is for keeping the logs and for different types of reporting.
What is most valuable?
The features that our customers have found most valuable are their different type of reports including the drill down report, as well as the flexibility to connect to any number of appliances which can be connected to it centrally.
What needs improvement?
In terms of what can be improved, of course the cloud storage possibilities are there, but the cost and the renewal parts are high. Pricing-wise, it not affordable for the normal customer. Most of the people want to see different types of reporting, but FortiAnalyzer's fee is a little bit difficult.
For how long have I used the solution?
We have been selling and supporting FortiAnalyzer for customers for three to four years.
What do I think about the stability of the solution?
All the Fortinet services are very stable products.
Maintenance and networking are under the Fortinet warranty so we cannot do anything on that. It means we can just coordinate things. It is based on the ticket.
What do I think about the scalability of the solution?
I don't think the built-in memory can be upgraded for the Analyzer. I think it is not possible. That means that the hardware is more suitable for large companies.
How are customer service and support?
Their support is fairly good.
How was the initial setup?
The initial setup was simple.
What's my experience with pricing, setup cost, and licensing?
In terms of fees, one is subscription and one is the hardware warranty. There are two types of subscriptions - one is a security subscription and the other one is the support.
A lot of products are coming with built-in facilities, but FortiAnalyzer is a much better solution. People may like it, but affordability is a problem.
What other advice do I have?
For customers who need to have different types of reporting presentable to different levels of hierarchy, FortiAnalyzer is a lovely solution. Otherwise, there is no point in getting some logs. It should be presentable.
On a scale of one to ten, I'll give FortiAnalyzer an eight or nine.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer. Reseller
Security Engineer at a recreational facilities/services company with 10,001+ employees
It runs very well on its own and doesn't really need much TLC
Pros and Cons
- "FortiAnalyzer has a robust ability to find a compromised host on your network, and when you identify a compromised host, you can address it."
- "FortiAnalyzer makes it much easier for us to find an apparently compromised host on the network."
- "Though FortiAnalyzer has improved over the last few versions, the user interface still has room for improvement. It's a bit dated-looking."
- "Though FortiAnalyzer has improved over the last few versions, the user interface still has room for improvement. It's a bit dated-looking."
What is our primary use case?
The normal use case for FortiAnalyzer is log review, log analysis, etc.
How has it helped my organization?
FortiAnalyzer makes it much easier for us to find an apparently compromised host on the network.
What is most valuable?
FortiAnalyzer has a robust ability to find a compromised host on your network, and when you identify a compromised host, you can address it.
What needs improvement?
Though FortiAnalyzer has improved over the last few versions, the user interface still has room for improvement. It's a bit dated-looking. I guess that's the nicest way to describe it. In FortiAnalyzer, I would like the ability to turn off some of the services. So, for example, FortiAnalyzer can take data from FortiCamera products and turn off the FortiCamera stuff to lighten the load on the box or turn off the FortiSock product.
For how long have I used the solution?
I've been using FortiAnalyzer for about seven years.
What do I think about the stability of the solution?
FortiAnalyzer is really stable. It runs very well on its own and doesn't really need much TLC. It's a good product.
What do I think about the scalability of the solution?
It's pretty scalable. The units that we have are the right size for the amount of stuff that we're running, but they do have products that scale up to handle significantly more Fortigate firewalls in log stuff than we do. I would say about 20 people use FortiAnalyzer. There's me, the security engineer, and the network engineering team, which uses it to look at stuff on the firewalls or check the firewall logs. And our information security group uses it to look at stuff that's going on with the firewalls as well as compromised hosts. It is being used pretty well as we get further down the path of deploying our FortiGate-managed endpoint product. There'll be more users and probably more use cases for it in the future.
Which solution did I use previously and why did I switch?
I haven't really used a different solution previously. We've always used FortiAnalyzer in concert with Splunk.
How was the initial setup?
FortiAnalyzer is a pretty straightforward product to deploy. It took half a day to deploy a pair of FortiAnalyzers and set them up in high availability mode. I deployed it by myself. These are hardware appliances, so there were a couple of devices that needed to be racked, powered, and configured.
What's my experience with pricing, setup cost, and licensing?
I believe that these devices were procured with a five-year maintenance and support license up front. I work at a university, so the vendor provides a considerable higher ed discount.
Which other solutions did I evaluate?
It's all part of our Fortinet ecosystem, so we didn't really consider alternatives. I have a significant investment in FortiGate firewalls, so it just made sense to add FortiAnalyzer.
What other advice do I have?
I rate FortiAnalyzer eight out of 10. It does an outstanding job of what it does. But the vendor doesn't necessarily live up to the hype, which is why it only got an eight out of 10. There's a lot of hype about the Fortinet security fabric. But for the large customers that buy their large firewalls and deploy them in infrastructure components, the Fortinet fabric does not work. If you are considering FortiAnalyzer, I suggest having a complete understanding of how your firewall infrastructure works in terms of what data you're going to and from it for analysis and what you're looking for in that analysis.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Co-founder at Korunet
User-friendly interface with a quick response and good analytics
Pros and Cons
- "FortiAnalyzer has a user-friendly interface with a quick response and good analytics. It's very secure because it's taking the log from the devices on a secure channel, so there is no problem with that in your network."
- "FortiAnalyzer has a user-friendly interface with a quick response and good analytics."
- "The cost of FortiAnalyzer could be cheaper, especially when you are installing to a VM. For 90 percent of customers, the VM solution is enough."
- "The cost of FortiAnalyzer could be cheaper, especially when you are installing to a VM."
What is our primary use case?
For most of our customers, we are installing FortiAnalyzer as a VM-based solution. We installed a big analyzer for just one customer because they needed too much storage capacity. We have about 10 clients using it currently.
How has it helped my organization?
We prepare reports for our customers, and when the manager sees them, he's pleased. They show how many users connected, how many attacks happened, and the number of attacks stopped. The management of the IP depends on your report, so the customers need it. We are customizing these reports every day or every week, depending on what the customers need. We send emails with these reports, and the managers are also pleased about it. Also, technical guys are thrilled because they can solve problems very quickly. It's working on the SQL Server, so techs can do a quick search in real-time and see everything in the port analyzer's interface query.
What is most valuable?
FortiAnalyzer has a user-friendly interface with a quick response and good analytics. It's very secure because it's taking the log from the devices on a secure channel, so there is no problem with that in your network. Because you're getting the information from a secure channel, it's also possible to back it up in a storage solution.
For how long have I used the solution?
We have been installing FortiAnalyzer bundled with other products for about six or seven years.
How was the initial setup?
Setting up FortiAnalyzer is very straightforward. It takes just 30 minutes or less. With our installation, we sent our FortiGates log, email logs, and other logs for the three devices we're currently running to the analyzers we are using within the public architecture.
What's my experience with pricing, setup cost, and licensing?
The license depends on the storage capacity. If you want to take a log of up to 1 gigabyte daily, it's free, if I remember correctly. But if you want 5 gigabytes daily, it's licensed at different prices. The cost of FortiAnalyzer could be cheaper, especially when you are installing to a VM. For 90 percent of customers, the VM solution is enough.
What other advice do I have?
I would rate FortiAnalyzer 10 out of 10
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
Regional Head at MASS INFONET (P) LTD.
Enables us to see what the user is doing and what sites he goes to
Pros and Cons
- "The solution allows for a lot of customization."
- "Basically, you can see absolutely all activity using FortiAnalyzer."
- "Their in-house technical support is extremely slow to respond. We have our own in-house team to manage issues so clients don't have to wait over two weeks for a response to issues."
- "Their in-house technical support is extremely slow to respond."
What is our primary use case?
We primarily distribute this product to our clients.
What is most valuable?
When you need the reporting on the ISP, you will hand it to FortiAnalyzer. It works amazingly well.
With FortiAnalyzer, you can see what the user is doing and what sites he goes to. You can also see how much quota there is and how much (size-wise) you want to hit, as well as what the incoming or outbound traffic is, and if it is through the ISP or not. Basically, you can see absolutely all activity using FortiAnalyzer.
The solution is very complete.
The product is very simple to use.
It's regularly updated with many versions constantly adding more content and information.
The solution has sandboxing, IPS, and DPS as well.
The solution allows for a lot of customization.
Whether it's FortiAnalyzer, FortiManager, FortiGate, FortiIP, and FortiSwitch you can manage everything through a single console. That is the beauty of Fortinet. It's the security fabrics on offer. When you use the security fabrics, harnessing that control on a single dashboard makes everything so easy and manageable.
What needs improvement?
There aren't any features missing. It's very complete.
Their in-house technical support is extremely slow to respond. We have our own in-house team to manage issues so clients don't have to wait over two weeks for a response to issues.
The solution has some limitations. We use MNC, and it has a US patent. Here we can do this thing but we maybe can't do that thing. They provide some documents to customers, but the customers want remote support to take on and/or finish the work. That's why I have the deployment team in place. It's a team within our team.
For how long have I used the solution?
We don't really use the solution. We sell the solution to our clients.
What do I think about the stability of the solution?
We've never had issues with stability. It's excellent. There are no bugs or glitches. It doesn't crash or freeze. It's very reliable.
What do I think about the scalability of the solution?
The scalability is good. If a company needs to scale the solution, they are able to do so very easily.
How are customer service and support?
We have our own technical support offering and have 22 people handling everything from tickets to critical issues. It's L3 support, not L2 or L1.
Fortinet's support, on the other hand, has a slow response time. That's why we handle issues. If you put in a ticket with Fortinet, you may not get a response for 15 or 20 days. Our response time is much quicker.
Which solution did I use previously and why did I switch?
We deal specifically in Fortinet products. We don't sell other solutions to our clients.
How was the initial setup?
The initial setup is not complex at all. It's very straightforward.
Deployment is very easy. If you're using multiple gateways you can just connect through a single gateway.
What other advice do I have?
We are an official partner and distributor of Fortinet in Maharashtra and Goa. We have only Fortinet products, and we are the sales stockist and we also offer our services. We have a limited portfolio and handle products such as FortiGate, FortiManager, FortiSwitch, and FortiED as well as FortiAnalyzer.
You can see in the Gartner report, Fortinet remains in the top tier of products, alongside Palo Alto and Check Point. Even Sophos and Sonic Wall aren't as highly ranked as Fortinet.
There isn't much competition locally on the market here. Palo Alto is technically a competitor, however, it lacks a few things that Fortinet already has.
I would definitely recommend the product. In fact, I would recommend the whole Fortinet portfolio to each and every client. Of course, which product would depend on the client requirements. All are excellent.
I'd rate the solution ten out of ten. Technical support is lacking, however, we have an internal team that can fulfill those needs.
Disclosure: My company has a business relationship with this vendor other than being a customer. Distributor
Head Cyberdefense at a tech vendor with 5,001-10,000 employees
Offers fast report generation and logging with easy deployment
Pros and Cons
- "Report generation is very easy"
- "The upgradation process is slow"
What is our primary use case?
As part of a company, we manage customers of Fortinet FortiAnalyzer. The solution is used to analyze and locate traffic in a particular network.
How has it helped my organization?
Fortinet FortiAnalyzer has helped my organization improve operational efficiency. The company has been using it for ten years.
What is most valuable?
Report generation is very easy when using Fortinet FortiAnalyzer. Checking and reading the logs becomes seamless with the solution. Fortinet FortiAnalyzer also allows fast logging on a license when requesting information. For example, when you are trying to locate a logged destination or using the tool to find an error or fault, the basic networking is very fast.
What needs improvement?
The upgrade process for Fortinet FortiAnalyzer is slow.
For how long have I used the solution?
I have been using Fortinet FortiAnalyzer for four years.
What do I think about the stability of the solution?
Fortinet FortiAnalyzer is a stable product.
What do I think about the scalability of the solution?
The solution is highly scalable.
How was the initial setup?
It's easy to deploy Fortinet FortiAnalyzer. The solution needs to be upgraded every two or three years. The product is very easy to maintain.
What's my experience with pricing, setup cost, and licensing?
Due to the multiple features and the large environment compatibility, the solution is quite expensive. I would rate the pricing an eight out of ten.
Which other solutions did I evaluate?
At our company, Kibana is sometimes used to pull logs and develop graphical representations from it.
What other advice do I have?
I would rate the solution an eight out of ten. I would advise others never to jump into upgrading to the latest firmware; wait until the present environment products are being used. There have been bad releases in the past, so everyone needs to carefully analyze options.
Disclosure: My company has a business relationship with this vendor other than being a customer.
Buyer's Guide
Download our free Fortinet FortiAnalyzer Report and get advice and tips from experienced pros
sharing their opinions.
Updated: March 2026
Product Categories
Log ManagementPopular Comparisons
Splunk Enterprise Security
Dynatrace
IBM Security QRadar
Elastic Security
Grafana Loki
Elastic Observability
Security Onion
Graylog Enterprise
LogRhythm SIEM
Elastic Stack
Amazon OpenSearch Service
Amazon CloudWatch
Buyer's Guide
Download our free Fortinet FortiAnalyzer Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- When evaluating Log Management tools and software, what aspect do you think is the most important to look for?
- Datadog vs ELK: which one is good in terms of performance, cost and efficiency?
- Which Windows event log monitoring tool do you recommend?
- What is the difference between log management and SIEM?
- Splunk vs. Elastic Stack
- How can Cloudtrail logs be used effectively to improve log monitoring?
- Why hot data and cold data differences in SIEM solutions are not discussed sufficiently?
- When evaluating Log Management solutions, what aspect do you think is the most important to look for?
- When evaluating Log Management solutions, what aspects do you think are the most important to look for?
- Why are Log Management tools important for companies?














